Our goal at FedPoint is to foster an engaging environment for our employees that promotes career growth and supports a work-life balance. From professional development to wellness programs to volunteer opportunities, we have created a culture that puts our employees on a positive pathway to success.
About FedPoint
FedPoint creates and operates digital benefits marketplaces that make it easy for our millions of federal and military customers to understand, select, and use their benefits. A subsidiary of John Hancock Life & Health Insurance Company, FedPoint was founded in 2002 and is headquartered in Portsmouth, NH.
Our mission
Create and deliver world-class benefits experiences for our customers, clients, and business partners.
| Department: | Infrastructure & IT Management |
| Location: | Portsmouth, NH |
Security Operations Analyst
Platform Operations | Enterprise IT & Cloud Security
FedPoint is seeking an experienced Security Operations Engineer to help protect enterprise systems, networks, and data across both traditional and cloud environments. This role is critical to strengthening our security operations capabilities, improving incident response maturity, and supporting a scalable cloud security framework aligned with regulatory and industry best practices.
This individual contributor role is a hybrid role requiring two days per week in the office and offers the opportunity to work on complex security challenges within a regulated enterprise environment.
Security Operations (40%)
Perform day-to-day security operations, including monitoring, detection, investigation, and response to cybersecurity threats.
Implement and maintain security technologies across endpoint, network, identity, and cloud environments.
Support and administer tools including EDR, DLP, secure web gateway, email security, IDPS, firewalls, SIEM, and identity protection solutions.
Configure and maintain cloud web filtering tools, including policy design, SAML integration, and performance monitoring.
Install, configure, and support Network Access Control (NAC) solutions in enterprise environments.
Conduct and oversee forensic investigations to determine root cause and prevent recurrence of security incidents.
Review vulnerability findings, assess risk, and partner with infrastructure and application teams to drive remediation.
Lead and mentor IT Security and Infrastructure Engineers on threat detection, prevention, and incident response best practices.
Vulnerability Management (40%)
Support the enterprise Vulnerability Management Program and ensure alignment with risk tolerance and operational priorities.
Classify and prioritize vulnerabilities based on criticality, exposure, and business impact.
Provide operational guidance to IT teams on interpreting scan results and applying effective mitigation strategies.
Support automated and manual patching processes, including systems requiring customized remediation timelines.
Track remediation progress, produce reports, and ensure accountability across stakeholders.
Facilitate regular patch review meetings to identify blockers and align remediation with business constraints.
Incident Response (20%)
Partner with Security Compliance and Policy teams to develop, maintain, and execute the incident response program.
Serve as an on-call cybersecurity escalation point during security incidents.
Detect, analyze, triage, and remediate threats across the enterprise.
Analyze SOC alerts, anomalies, and false positives, escalating issues as appropriate.
Leverage threat intelligence to correlate indicators of compromise and communicate risk to leadership and technical teams.
Maintain situational awareness through daily monitoring of internal and external cybersecurity alerts.
Bachelor’s degree in Cybersecurity, Information Technology, or a related field preferred, or equivalent professional experience.
Minimum of 3 years of hands-on cybersecurity experience supporting cloud, endpoint, identity, and network security technologies.
Demonstrated experience administering cloud web filtering solutions, including architecture, deployment, policy design, and troubleshooting.
Proven experience supporting federal or highly regulated environments.
Strong working knowledge of network protocols and security fundamentals, including DNS, TCP/IP, SSL/TLS, and VPN technologies.
Hands-on experience installing and deploying Network Access Control (NAC) solutions in enterprise environments.
Strong knowledge of NAC, segmentation, Zero Trust architectures, and network-based enforcement models.
Demonstrated ability to balance security architecture design with hands-on engineering and troubleshooting.
Practical experience with tools such as EDR, DLP, secure web gateways, email security platforms, IDPS, firewalls, SIEM, and identity protection solutions.
Proficiency in Windows or Linux system administration, scripting (PowerShell, Python, Bash), and integrating cloud-native security technologies.
Strong analytical, troubleshooting, and communication skills with the ability to collaborate across technical and business teams.
Proven ability to resolve Zscaler onboarding and adoption challenges in large enterprise environments.
Hands-on experience with Zscaler, ForeScout platforms or other web filtering experience highly desired.
Experience reviewing vulnerability reports, assessing risk, and driving remediation with engineering teams.
Familiarity with DNS-layer protection, threat analytics platforms, and Zero Trust security models.
Working knowledge of Microsoft security technologies, including Office 365, Microsoft Defender, and Intune.
Relevant certifications such as Zscaler Certified Administrator, Security+, CySA+, GSEC, Microsoft SC-300, or CCNP Security.
About FedPoint
FedPoint creates and operates digital benefits marketplaces that make it easy for our millions of federal and military customers to understand, select, and use their benefits. A subsidiary of John Hancock Life & Health Insurance Company, FedPoint was founded in 2002 and is headquartered in Portsmouth, NH. To learn more, visit fedpointusa.com.
Why Join Us?
At FedPoint, our mission is to create and deliver world-class benefits experiences for our customers, clients, and business partners.
We offer a dynamic work environment where innovation and collaboration are encouraged. You'll have the opportunity to make a significant impact while honing your skills and advancing your career.
In addition to working for a company with great people and an excellent reputation, what’s in it for you?
All offers of employment with FedPoint are conditional upon satisfactory completion of a pre-employment background check.
FedPoint is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, or protected veteran status and will not be discriminated against on the basis of disability. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an online application, please call (603) 433-4500. Equal Employment Opportunity (EEO) Poster Family and Medical Leave Act (FMLA) Poster Employee Polygraph Protection Act Poster