Job Description
United Weld Holdings has an exciting opportunity for an experienced IT Security Analyst to join our Information Technology team.
IT Security Analyst
United Weld Holdings: Epic Piping, BendTec
Location: Fully Onsite, Baton Rouge, LA - not a remote position
Relocation services are not offered
Travel Required
United Weld Holdings is a large-scale, industry-leading pipe fabrication company, headquarted in Baton Rouge, LA specializing in high-complexity piping spools and pipe supports for critical infrastructure projects. With multiple high production fabrication facilities with locations in Livingston, LA; San Marcos, TX; and Duluth, MN, with advanced welding and testing capabilities, and a reputation for critical path execution. We support major clients in the petrochemical, refining, oil & gas, power generation, and data center sectors across North America as well as internationally. Our continued growth has created an outstanding opportunity for a results-driven Business Development professional to further expand our market share.
The IT Security Analyst is responsible for protecting the organization's information systems, network infrastructure, and digital assets by implementing and maintaining effective cybersecurity practices. Also supports the organization's secure adoption and governance of AI technologies by helping establish security standards, monitoring AI-related risks, and ensuring AI solutions align with organizational security policies and regulatory requirements. This role focuses on developing or enhancing those security policies, monitoring and investigating security threats, coordinating incident response activities, managing vulnerability assessments, and ensuring systems remain secure through proactive maintenance and continuous improvement. This position will work closely with business stakeholders, and third-party security partners to maintain a strong security posture in support of a growing pipe fabrication and distribution business. This position will report to the IT Network & Security Specialist.
Key Responsibilities
- Develop, implement, maintain, and periodically review information security policies, standards, procedures, and best practices.
- Monitor the organization's security posture and investigate security events, alerts, and suspicious activities to identify potential threats and vulnerabilities.
- Coordinate incident response activities, including investigation, containment, eradication, recovery, documentation, and post-incident reviews.
- Assist in developing, testing, and maintaining incident response and disaster recovery plans.
- Perform vulnerability assessments and penetration testing activities, either directly or in coordination with third-party providers, and oversee remediation efforts.
- Maintain security of Windows workstations and Windows Server environments through regular patching oversight, configuration reviews, and security hardening.
- Administer and monitor security technologies including endpoint protection, firewalls, identity management, email security, and cloud security solutions.
- Review security logs and alerts using SIEM and managed detection and response platforms to identify emerging threats and recommend corrective actions.
- Manage and maintain firewall security policies, VPN connectivity, and network segmentation to support secure business operations.
- Collaborate with IT infrastructure teams to ensure secure system configurations and compliance with organizational security standards.
- Support Microsoft 365 and Microsoft Azure security administration, including identity protection, conditional access, multi-factor authentication, and related security controls.
- Participate in security risk assessments and recommend mitigation strategies for new technologies and business initiatives.
- Assist with security awareness training and promote cybersecurity best practices throughout the organization.
- Maintain documentation related to security configurations, procedures, incident investigations, and compliance activities.
- Develop and maintain security standards, policies, and governance for the secure use of artificial intelligence (AI) technologies across the organization.
- Assess the security and privacy risks associated with AI platforms, applications, and third-party AI services before deployment.
- Monitor emerging AI-related threats, including prompt injection, data leakage, model misuse, and unauthorized use of AI tools, and recommend appropriate safeguards.
- Collaborate with IT and business stakeholders to implement secure AI solutions while protecting confidential, proprietary, and customer information.
- Assist in establishing controls for the use of generative AI technologies, including data classification, acceptable use, access management, and monitoring.
- Evaluate AI vendors and cloud AI services for compliance with organizational security requirements and industry best practices.
- Monitor approved AI platforms for security configuration and compliance with organizational policies.
- Provide guidance and user awareness training on the secure and responsible use of AI technologies.
- Stay current on cybersecurity threats, emerging technologies, regulatory requirements, and industry best practices.
- Complete all over tasks assigned by supervisor.
Required Qualifications
- 5+ years of experience
- Experience developing and maintaining information security policies and procedures.
- Experience investigating security incidents and coordinating incident response activities.
- Experience conducting or managing vulnerability assessments and penetration testing initiatives.
- Strong knowledge of Windows workstation and Windows Server security, patch management, and system hardening.
- Experience administering and troubleshooting enterprise firewall platforms such as Cisco Meraki or Fortinet FortiGate.
- Experience working with Security Information and Event Management (SIEM) platforms.
- Experience with Arctic Wolf Managed Detection and Response (MDR) services or similar managed security platforms.
- Experience administering Sophos security products, including endpoint protection and related security solutions.
- Strong knowledge of Microsoft 365 and Microsoft Azure security features, including identity and access management.
- Understanding of networking concepts, authentication protocols, and cybersecurity best practices.
- Working knowledge of cybersecurity considerations related to artificial intelligence, machine learning, and generative AI technologies.
- Understanding of AI governance principles, data privacy considerations, and security risks associated with enterprise AI platforms.
- Strong analytical, problem-solving, and communication skills.
- Experience supporting manufacturing, industrial, or distribution environments.
- Knowledge of operational technology (OT) or industrial control system (ICS) security principles.
- Industry certifications such as CISSP, Security+, GSEC, CySA+, CEH, Microsoft Security certifications, or comparable credentials.
- Experience supporting regulatory or compliance frameworks such as NIST Cybersecurity Framework, CIS Controls, ISO 27001, or similar standards.
- Experience securing Microsoft Copilot, Microsoft 365 Copilot, Azure AI services, Microsoft Purview AI controls, or comparable enterprise AI platforms.
- Familiarity with AI governance frameworks such as the NIST AI Risk Management Framework (AI RMF), ISO/IEC 42001, or similar emerging AI security standards.
- Experience implementing data protection controls for AI applications, including Data Loss Prevention (DLP), sensitivity labeling, and information protection.
What We Offer
- Competitive base salary commensurate with experience.
- Discretionary bonus based on company performance, merit and goals achieved.
- Comprehensive benefits package: medical, dental, vision, life insurance, short-and long-term disability.
- 401(k) with company match.
- Collaborative culture that values integrity, innovation, and execution.
- Professional development opportunities and career growth within a rapidly expanding
organization.
As an equal opportunity employer, Epic Piping is committed to the development of its employees and strives to promote an environment that fosters personal training and development