An Information Security Analyst starts their day monitoring security reports and virus alerts to update protection systems as needed. They conduct risk assessments by testing data processing systems and analyzing network traffic for potential vulnerabilities or breaches. Throughout the day, they modify security configurations, encrypt data transmissions, and configure firewalls to protect confidential information during transmission. They review security violation reports, investigate incidents, and discuss remediation procedures with users who may have compromised security protocols. The analyst documents security policies and procedures, coordinates with IT teams and external vendors to implement security plans, and provides security training to end users to promote awareness and improve overall system protection.
Individuals who excel as Information Security Analysts possess strong analytical and critical thinking abilities, with high levels of dependability and attention to detail being essential for protecting sensitive systems. They demonstrate intellectual curiosity to stay current with evolving cyber threats and security technologies, combined with the cautiousness needed to thoroughly evaluate potential risks before implementation. These professionals have excellent reading comprehension and written communication skills to understand complex technical documentation and clearly document security procedures and policies. They thrive on complex problem-solving and possess the deductive and inductive reasoning abilities necessary to identify patterns in security data and anticipate potential threats.
Information Security Analysts face moderate automation risk, as many core activities like working with computers and analyzing data can be augmented by AI tools, but human judgment remains critical. While automated systems can enhance threat detection and routine monitoring tasks, the role's emphasis on evaluating complex security scenarios, making strategic decisions about risk mitigation, and coordinating with diverse stakeholders requires human expertise that is difficult to automate.
Postings appear within hours of going live on the source ATS. No aggregator lag. Direct from source.
| TERM | COUNT | FREQ | BAR | SOURCE ATTRIBUTION |
|---|---|---|---|---|
| security | 202 | 0.0304 | wikipedia 78% inference 15% | |
| management | 64 | 0.0096 | wikipedia 88% onet dimensi 11% | |
| change | 62 | 0.0093 | wikipedia 92% onet dimensi 6% | |
| risk | 46 | 0.0069 | wikipedia 83% inference 11% | |
| others | 43 | 0.0065 | onet dimensi 88% wikipedia 7% | |
| tendency | 42 | 0.0063 | onet dimensi 100% | |
| access | 41 | 0.0062 | wikipedia 88% onet tasks 7% | |
| business | 40 | 0.0060 | wikipedia 98% onet dimensi 2% | |
| control | 40 | 0.0060 | wikipedia 70% onet dimensi 30% | |
| computer | 38 | 0.0057 | wikipedia 47% onet tasks 21% | |
| organization | 32 | 0.0048 | wikipedia 88% onet dimensi 12% | |
| procedures | 28 | 0.0042 | wikipedia 43% onet dimensi 29% | |
| controls | 27 | 0.0041 | wikipedia 93% onet dimensi 4% | |
| equipment | 26 | 0.0039 | onet dimensi 88% wikipedia 12% | |
| processing | 25 | 0.0038 | wikipedia 68% onet dimensi 16% | |
| activities | 25 | 0.0038 | wikipedia 52% onet dimensi 36% | |
| standards | 25 | 0.0038 | wikipedia 64% onet dimensi 32% | |
| changes | 24 | 0.0036 | wikipedia 83% onet dimensi 12% | |
| principles | 22 | 0.0033 | onet dimensi 73% wikipedia 23% | |
| resources | 22 | 0.0033 | wikipedia 59% onet dimensi 41% | |
| technology | 22 | 0.0033 | wikipedia 68% onet dimensi 18% | |
| protection | 20 | 0.0030 | wikipedia 75% inference 15% | |
| environment | 20 | 0.0030 | wikipedia 80% onet dimensi 20% | |
| policies | 19 | 0.0029 | wikipedia 68% inference 16% | |
| includes | 19 | 0.0029 | onet dimensi 63% wikipedia 37% | |
| integrity | 19 | 0.0029 | wikipedia 89% onet dimensi 11% | |
| act | 19 | 0.0029 | wikipedia 100% | |
| services | 18 | 0.0027 | wikipedia 61% onet dimensi 33% | |
| financial | 18 | 0.0027 | wikipedia 83% onet dimensi 17% | |
| software | 17 | 0.0026 | wikipedia 71% onet dimensi 18% |
Provenance Window — Full Source Record · 15-1212.00 · Information Security Analysts 7 source blocks · click to expand
[Core] [72% incumbents] Develop plans to safeguard computer files against accidental or unauthorized modification, destruction, or disclosure and to meet emergency data processing needs. DWAs: Develop computer or information security policies or procedures. [Core] [72% incumbents] Monitor current reports of computer viruses to determine when to update virus protection systems. DWAs: Update knowledge about emerging industry or technology trends. [Core] [72% incumbents] Encrypt data transmissions and erect firewalls to conceal confidential information as it is being transmitted and to keep out tainted digital transfers. DWAs: Implement security measures for computer or information systems. [Core] [72% incumbents] Perform risk assessments and execute tests of data processing system to ensure functioning of data processing activities and security measures. DWAs: Test computer system operations to ensure proper functioning. [Core] [72% incumbents] Modify computer security files to incorporate new software, correct errors, or change individual access status. DWAs: Implement security measures for computer or information systems. [Core] [72% incumbents] Review violations of computer security procedures and discuss procedures with violators to ensure violations are not repeated. DWAs: Implement security measures for computer or information systems. [Core] [72% incumbents] Document computer security and emergency measures policies, procedures, and tests. DWAs: Document operational procedures. [Core] [72% incumbents] Confer with users to discuss issues such as computer data access needs, security violations, and programming changes. DWAs: Troubleshoot issues with computer applications or systems. | Collaborate with others to resolve information technology issues. [Core] [72% incumbents] Coordinate implementation of computer system plan with establishment personnel and outside vendors. DWAs: Coordinate project activities with other personnel or departments. [Core] [72% incumbents] Train users and promote security awareness to ensure system security and to improve server and network efficiency. DWAs: Train others in computer interface or software use. [Core] [71% incumbents] Monitor use of data files and regulate access to safeguard information in computer files. DWAs: Monitor the security of digital information.
--- SKILLS --- Reading Comprehension (imp:4.00 lvl:4.12) — Understanding written sentences and paragraphs in work-related documents. Critical Thinking (imp:3.88 lvl:4.12) — Using logic and reasoning to identify the strengths and weaknesses of alternativ Active Listening (imp:3.75 lvl:3.88) — Giving full attention to what other people are saying, taking time to understand Speaking (imp:3.62 lvl:3.75) — Talking to others to convey information effectively. Writing (imp:3.50 lvl:3.75) — Communicating effectively in writing as appropriate for the needs of the audienc Monitoring (imp:3.38 lvl:3.88) — Monitoring/Assessing performance of yourself, other individuals, or organization Active Learning (imp:3.25 lvl:3.88) — Understanding the implications of new information for both current and future pr Learning Strategies (imp:2.88 lvl:3.12) — Selecting and using training/instructional methods and procedures appropriate fo Mathematics (imp:2.25 lvl:2.38) — Using mathematics to solve problems. Science (imp:1.88 lvl:1.62) — Using scientific rules and methods to solve problems. --- KNOWLEDGE --- Computers and Electronics (imp:4.35 lvl:5.97) — Knowledge of circuit boards, processors, chips, electronic equipment, and comput English Language (imp:4.26 lvl:4.20) — Knowledge of the structure and content of the English language including the mea Administration and Management (imp:3.68 lvl:3.79) — Knowledge of business and management principles involved in strategic planning, Engineering and Technology (imp:3.64 lvl:3.88) — Knowledge of the practical application of engineering science and technology. Th Telecommunications (imp:3.64 lvl:3.95) — Knowledge of transmission, broadcasting, switching, control, and operation of te Customer and Personal Service (imp:3.42 lvl:4.14) — Knowledge of principles and processes for providing customer and personal servic Public Safety and Security (imp:3.27 lvl:3.34) — Knowledge of relevant equipment, policies, procedures, and strategies to promote Education and Training (imp:3.19 lvl:4.24) — Knowledge of principles and methods for curriculum and training design, teaching Mathematics (imp:2.87 lvl:3.53) — Knowledge of arithmetic, algebra, geometry, calculus, statistics, and their appl Communications and Media (imp:2.80 lvl:2.61) — Knowledge of media production, communication, and dissemination techniques and m Law and Government (imp:2.70 lvl:2.82) — Knowledge of laws, legal codes, court procedures, precedents, government regulat Administrative (imp:2.69 lvl:3.13) — Knowledge of administrative and office procedures and systems such as word proce Personnel and Human Resources (imp:2.44 lvl:3.02) — Knowledge of principles and procedures for personnel recruitment, selection, tra Production and Processing (imp:2.41 lvl:2.24) — Knowledge of raw materials, production processes, quality control, costs, and ot Design (imp:2.40 lvl:2.76) — Knowledge of design techniques, tools, and principles involved in production of Economics and Accounting (imp:2.29 lvl:2.17) — Knowledge of economic and accounting principles and practices, the financial mar Psychology (imp:2.09 lvl:2.44) — Knowledge of human behavior and performance; individual differences in ability, Sociology and Anthropology (imp:1.71 lvl:1.58) — Knowledge of group behavior and dynamics, societal trends and influences, human Mechanical (imp:1.68 lvl:1.34) — Knowledge of machines and tools, including their designs, uses, repair, and main Transportation (imp:1.61 lvl:0.86) — Knowledge of principles and methods for moving people or goods by air, rail, sea Geography (imp:1.59 lvl:1.25) — Knowledge of principles and methods for describing the features of land, sea, an Sales and Marketing (imp:1.51 lvl:0.92) — Knowledge of principles and methods for showing, promoting, and selling products Physics (imp:1.37 lvl:0.82) — Knowledge and prediction of physical principles, laws, their interrelationships, Building and Construction (imp:1.34 lvl:1.03) — Knowledge of materials, methods, and the tools involved in the construction or r Foreign Language (imp:1.31 lvl:0.67) — Knowledge of the structure and content of a foreign (non-English) language inclu Chemistry (imp:1.23 lvl:0.56) — Knowledge of the chemical composition, structure, and properties of substances a Philosophy and Theology (imp:1.19) — Knowledge of different philosophical systems and religions. This includes their History and Archeology (imp:1.13) — Knowledge of historical events and their causes, indicators, and effects on civi Therapy and Counseling (imp:1.10) — Knowledge of principles, methods, and procedures for diagnosis, treatment, and r Medicine and Dentistry (imp:1.06) — Knowledge of the information and techniques needed to diagnose and treat human i Biology (imp:1.04) — Knowledge of plant and animal organisms, their tissues, cells, functions, interd Food Production (imp:1.02) — Knowledge of techniques and equipment for planting, growing, and harvesting food Fine Arts (imp:1.02) — Knowledge of the theory and techniques required to compose, produce, and perform --- ABILITIES --- Oral Comprehension (imp:4.00 lvl:4.25) — The ability to listen to and understand information and ideas presented through Written Comprehension (imp:4.00 lvl:4.12) — The ability to read and understand information and ideas presented in writing. Problem Sensitivity (imp:4.00 lvl:4.12) — The ability to tell when something is wrong or is likely to go wrong. It does no Deductive Reasoning (imp:4.00 lvl:4.12) — The ability to apply general rules to specific problems to produce answers that Inductive Reasoning (imp:4.00 lvl:4.12) — The ability to combine pieces of information to form general rules or conclusion Written Expression (imp:3.88 lvl:4.00) — The ability to communicate information and ideas in writing so others will under Information Ordering (imp:3.88 lvl:3.88) — The ability to arrange things or actions in a certain order or pattern according Oral Expression (imp:3.75 lvl:4.12) — The ability to communicate information and ideas in speaking so others will unde Near Vision (imp:3.75 lvl:3.88) — The ability to see details at close range (within a few feet of the observer). Category Flexibility (imp:3.50 lvl:3.62) — The ability to generate or use different sets of rules for combining or grouping Flexibility of Closure (imp:3.38 lvl:3.50) — The ability to identify or detect a known pattern (a figure, object, word, or so Speech Recognition (imp:3.38 lvl:3.12) — The ability to identify and understand the speech of another person. Speech Clarity (imp:3.38 lvl:3.00) — The ability to speak clearly so others can understand you. Selective Attention (imp:3.12 lvl:3.12) — The ability to concentrate on a task over a period of time without being distrac Fluency of Ideas (imp:3.00 lvl:3.75) — The ability to come up with a number of ideas about a topic (the number of ideas Originality (imp:3.00 lvl:3.25) — The ability to come up with unusual or clever ideas about a given topic or situa Perceptual Speed (imp:3.00 lvl:3.00) — The ability to quickly and accurately compare similarities and differences among Speed of Closure (imp:2.88 lvl:3.00) — The ability to quickly make sense of, combine, and organize information into mea Mathematical Reasoning (imp:2.75 lvl:2.88) — The ability to choose the right mathematical methods or formulas to solve a prob Visualization (imp:2.75 lvl:3.00) — The ability to imagine how something will look after it is moved around or when Time Sharing (imp:2.75 lvl:2.88) — The ability to shift back and forth between two or more activities or sources of Far Vision (imp:2.75 lvl:2.75) — The ability to see details at a distance. Finger Dexterity (imp:2.38 lvl:2.12) — The ability to make precisely coordinated movements of the fingers of one or bot Number Facility (imp:2.25 lvl:2.75) — The ability to add, subtract, multiply, or divide quickly and correctly. Memorization (imp:2.25 lvl:2.75) — The ability to remember information such as words, numbers, pictures, and proced Visual Color Discrimination (imp:2.12 lvl:1.88) — The ability to match or detect differences between colors, including shades of c Arm-Hand Steadiness (imp:2.00 lvl:1.75) — The ability to keep your hand and arm steady while moving your arm or while hold Manual Dexterity (imp:1.88 lvl:1.62) — The ability to quickly move your hand, your hand together with your arm, or your Control Precision (imp:1.88 lvl:1.50) — The ability to quickly and repeatedly adjust the controls of a machine or a vehi Hearing Sensitivity (imp:1.88 lvl:1.75) — The ability to detect or tell the differences between sounds that vary in pitch Depth Perception (imp:1.75 lvl:0.75) — The ability to judge which of several objects is closer or farther away from you Auditory Attention (imp:1.75 lvl:1.50) — The ability to focus on a single source of sound in the presence of other distra Trunk Strength (imp:1.62 lvl:1.00) — The ability to use your abdominal and lower back muscles to support part of the Extent Flexibility (imp:1.62 lvl:0.75) — The ability to bend, stretch, twist, or reach with your body, arms, and/or legs. Wrist-Finger Speed (imp:1.38 lvl:0.38) — The ability to make fast, simple, repeated movements of the fingers, hands, and Dynamic Strength (imp:1.38 lvl:0.50) — The ability to exert muscle force repeatedly or continuously over time. This inv Response Orientation (imp:1.12 lvl:0.12) — The ability to choose quickly between two or more movements in response to two o Stamina (imp:1.12 lvl:0.12) — The ability to exert yourself physically over long periods of time without getti Spatial Orientation (imp:1.00) — The ability to know your location in relation to the environment or to know wher Multilimb Coordination (imp:1.00) — The ability to coordinate two or more limbs (for example, two arms, two legs, or Rate Control (imp:1.00) — The ability to time your movements or the movement of a piece of equipment in an Reaction Time (imp:1.00) — The ability to quickly respond (with the hand, finger, or foot) to a signal (sou Speed of Limb Movement (imp:1.00) — The ability to quickly move the arms and legs. Static Strength (imp:1.00) — The ability to exert maximum muscle force to lift, push, pull, or carry objects. Explosive Strength (imp:1.00) — The ability to use short bursts of muscle force to propel oneself (as in jumping Dynamic Flexibility (imp:1.00) — The ability to quickly and repeatedly bend, stretch, twist, or reach out with yo Gross Body Coordination (imp:1.00) — The ability to coordinate the movement of your arms, legs, and torso together wh Gross Body Equilibrium (imp:1.00) — The ability to keep or regain your body balance or stay upright when in an unsta Night Vision (imp:1.00) — The ability to see under low-light conditions. Peripheral Vision (imp:1.00) — The ability to see objects or movement of objects to one's side when the eyes ar Glare Sensitivity (imp:1.00) — The ability to see objects in the presence of a glare or bright lighting. Sound Localization (imp:1.00) — The ability to tell the direction from which a sound originated. --- WORK ACTIVITIES --- Working with Computers (imp:4.70 lvl:5.26) — Using computers and computer systems (including hardware and software) to progra Getting Information (imp:4.50 lvl:4.70) — Observing, receiving, and otherwise obtaining information from all relevant sour Identifying Objects, Actions, and Events (imp:4.29 lvl:5.26) — Identifying information by categorizing, estimating, recognizing differences or Evaluating Information to Determine Compliance with Standards (imp:4.12 lvl:5.18) — Using relevant information and individual judgment to determine whether events o Processing Information (imp:4.09 lvl:5.21) — Compiling, coding, categorizing, calculating, tabulating, auditing, or verifying Analyzing Data or Information (imp:4.08 lvl:4.84) — Identifying the underlying principles, reasons, or facts of information by break Updating and Using Relevant Knowledge (imp:4.05 lvl:5.73) — Keeping up-to-date technically and applying new knowledge to your job. Documenting/Recording Information (imp:4.03 lvl:4.48) — Entering, transcribing, recording, storing, or maintaining information in writte Communicating with Supervisors, Peers, or Subordinates (imp:4.00 lvl:5.28) — Providing information to supervisors, co-workers, and subordinates by telephone, Making Decisions and Solving Problems (imp:3.94 lvl:4.62) — Analyzing information and evaluating results to choose the best solution and sol Monitoring Processes, Materials, or Surroundings (imp:3.92 lvl:4.74) — Monitoring and reviewing information from materials, events, or the environment, Interpreting the Meaning of Information for Others (imp:3.74 lvl:4.07) — Translating or explaining what information means and how it can be used. Organizing, Planning, and Prioritizing Work (imp:3.67 lvl:4.77) — Developing specific goals and plans to prioritize, organize, and accomplish your Thinking Creatively (imp:3.56 lvl:4.70) — Developing, designing, or creating new applications, ideas, relationships, syste Establishing and Maintaining Interpersonal Relationships (imp:3.45 lvl:4.70) — Developing constructive and cooperative working relationships with others, and m Developing Objectives and Strategies (imp:3.27 lvl:3.62) — Establishing long-range objectives and specifying the strategies and actions to Performing Administrative Activities (imp:3.27 lvl:3.51) — Performing day-to-day administrative tasks such as maintaining information files Estimating the Quantifiable Characteristics of Products, Events, or Information (imp:3.18 lvl:3.07) — Estimating sizes, distances, and quantities; or determining time, costs, resourc Communicating with People Outside the Organization (imp:3.13 lvl:3.83) — Communicating with people outside the organization, representing the organizatio Judging the Qualities of Objects, Services, or People (imp:3.07 lvl:3.67) — Assessing the value, importance, or quality of things or people. Providing Consultation and Advice to Others (imp:3.01 lvl:3.77) — Providing guidance and expert advice to management or other groups on technical, Coordinating the Work and Activities of Others (imp:2.85 lvl:3.49) — Getting members of a group to work together to accomplish tasks. Developing and Building Teams (imp:2.83 lvl:2.82) — Encouraging and building mutual trust, respect, and cooperation among team membe Training and Teaching Others (imp:2.73 lvl:3.19) — Identifying the educational needs of others, developing formal educational or tr Coaching and Developing Others (imp:2.67 lvl:2.98) — Identifying the developmental needs of others and coaching, mentoring, or otherw Scheduling Work and Activities (imp:2.63 lvl:3.22) — Scheduling events, programs, and activities, as well as the work of others. Resolving Conflicts and Negotiating with Others (imp:2.59 lvl:3.32) — Handling complaints, settling disputes, and resolving grievances and conflicts, Monitoring and Controlling Resources (imp:2.56 lvl:2.76) — Monitoring and controlling resources and overseeing the spending of money. Repairing and Maintaining Electronic Equipment (imp:2.53 lvl:3.09) — Servicing, repairing, calibrating, regulating, fine-tuning, or testing machines, Inspecting Equipment, Structures, or Materials (imp:2.45 lvl:2.32) — Inspecting equipment, structures, or materials to identify the cause of errors o Guiding, Directing, and Motivating Subordinates (imp:2.42 lvl:2.60) — Providing guidance and direction to subordinates, including setting performance Selling or Influencing Others (imp:2.32 lvl:2.37) — Convincing others to buy merchandise/goods or to otherwise change their minds or Staffing Organizational Units (imp:2.27 lvl:2.44) — Recruiting, interviewing, selecting, hiring, and promoting employees in an organ Drafting, Laying Out, and Specifying Technical Devices, Parts, and Equipment (imp:1.95 lvl:1.83) — Providing documentation, detailed instructions, drawings, or specifications to t Controlling Machines and Processes (imp:1.91 lvl:1.46) — Using either control mechanisms or direct physical activity to operate machines Performing for or Working Directly with the Public (imp:1.75 lvl:1.59) — Performing for people or dealing directly with the public. This includes serving Handling and Moving Objects (imp:1.68 lvl:2.33) — Using hands and arms in handling, installing, positioning, and moving materials, Assisting and Caring for Others (imp:1.65 lvl:1.12) — Providing personal assistance, medical attention, emotional support, or other pe Performing General Physical Activities (imp:1.62 lvl:1.49) — Performing general physical activities includes doing activities that require co Repairing and Maintaining Mechanical Equipment (imp:1.36 lvl:0.88) — Servicing, repairing, adjusting, and testing machines, devices, moving parts, an Operating Vehicles, Mechanized Devices, or Equipment (imp:1.34 lvl:0.74) — Running, maneuvering, navigating, or driving vehicles or mechanized equipment, s --- WORK STYLES --- Dependability (imp:10.00) — A tendency to be reliable, responsible, and consistent in meeting work-related o Attention to Detail (imp:9.00) — A tendency to be detail-oriented, organized, and thorough in completing work. Integrity (imp:8.00) — A tendency to be honest and ethical at work. Cautiousness (imp:7.00) — A tendency to be careful, deliberate, and risk-avoidant when making work-related Intellectual Curiosity (imp:6.00) — A tendency to seek out and acquire new work-related knowledge and obtain a deep Achievement Orientation (imp:5.00) — A tendency to establish and maintain personally challenging work-related goals, Adaptability (imp:4.00) — A tendency to be open to and comfortable with change, new experiences, or ideas Perseverance (imp:3.00) — A tendency to exhibit determination and resolve to perform or complete tasks in Attention to Detail (imp:3.00) — A tendency to be detail-oriented, organized, and thorough in completing work. Integrity (imp:2.93) — A tendency to be honest and ethical at work. Cautiousness (imp:2.78) — A tendency to be careful, deliberate, and risk-avoidant when making work-related Dependability (imp:2.65) — A tendency to be reliable, responsible, and consistent in meeting work-related o Intellectual Curiosity (imp:2.37) — A tendency to seek out and acquire new work-related knowledge and obtain a deep Innovation (imp:2.36) — A tendency to be inventive, to be imaginative, and to adopt new perspectives on Perseverance (imp:2.15) — A tendency to exhibit determination and resolve to perform or complete tasks in Adaptability (imp:2.09) — A tendency to be open to and comfortable with change, new experiences, or ideas Achievement Orientation (imp:2.04) — A tendency to establish and maintain personally challenging work-related goals, Initiative (imp:2.03) — A tendency to be proactive and take on extra responsibilities and tasks that may Innovation (imp:2.00) — A tendency to be inventive, to be imaginative, and to adopt new perspectives on Stress Tolerance (imp:1.96) — A tendency to cope and function effectively in stressful situations at work. Self-Control (imp:1.70) — A tendency to remain calm and composed and to manage emotions effectively in res Tolerance for Ambiguity (imp:1.66) — A tendency to be comfortable with ambiguity and uncertainty at work. Self-Confidence (imp:1.38) — A tendency to believe in one's work-related capabilities and ability to control Leadership Orientation (imp:1.16) — A tendency to lead, take charge, offer opinions, and provide direction at work. Cooperation (imp:1.08) — A tendency to be pleasant, helpful, and willing to assist others at work. Initiative (imp:1.00) — A tendency to be proactive and take on extra responsibilities and tasks that may Sincerity (imp:0.82) — A tendency to be genuine and sincere in interactions with others at work, withou Social Orientation (imp:0.56) — A tendency to seek out, enjoy, and be energized by social interaction at work. Empathy (imp:0.32) — A tendency to show concern for others and be sensitive to others' needs and feel Humility (imp:0.15) — A tendency to be modest and humble when interacting with others at work. Tolerance for Ambiguity () — A tendency to be comfortable with ambiguity and uncertainty at work. Self-Confidence () — A tendency to believe in one's work-related capabilities and ability to control Leadership Orientation () — A tendency to lead, take charge, offer opinions, and provide direction at work. Humility () — A tendency to be modest and humble when interacting with others at work. Sincerity () — A tendency to be genuine and sincere in interactions with others at work, withou Empathy () — A tendency to show concern for others and be sensitive to others' needs and feel Cooperation () — A tendency to be pleasant, helpful, and willing to assist others at work. Optimism () — A tendency to exhibit a positive attitude and positive emotions at work, even un Social Orientation () — A tendency to seek out, enjoy, and be energized by social interaction at work. Stress Tolerance () — A tendency to cope and function effectively in stressful situations at work. Self-Control () — A tendency to remain calm and composed and to manage emotions effectively in res Optimism (imp:-0.01) — A tendency to exhibit a positive attitude and positive emotions at work, even un --- TRANSFERABLE SKILLS --- Complex Problem Solving (imp:3.75 lvl:3.62) — Identifying complex problems and reviewing related information to develop and ev Judgment and Decision Making (imp:3.38 lvl:3.62) — Considering the relative costs and benefits of potential actions to choose the m Systems Analysis (imp:3.38 lvl:3.38) — Determining how a system should work and how changes in conditions, operations, Time Management (imp:3.12 lvl:3.12) — Managing one's own time and the time of others. Coordination (imp:3.00 lvl:3.00) — Adjusting actions in relation to others' actions. Operations Monitoring (imp:3.00 lvl:3.12) — Watching gauges, dials, or other indicators to make sure a machine is working pr Quality Control Analysis (imp:3.00 lvl:3.12) — Conducting tests and inspections of products, services, or processes to evaluate Systems Evaluation (imp:3.00 lvl:3.38) — Identifying measures or indicators of system performance and the actions needed Instructing (imp:2.88 lvl:3.12) — Teaching others how to do something. Service Orientation (imp:2.88 lvl:2.75) — Actively looking for ways to help people. Management of Personnel Resources (imp:2.88 lvl:2.88) — Motivating, developing, and directing people as they work, identifying the best Social Perceptiveness (imp:2.75 lvl:2.75) — Being aware of others' reactions and understanding why they react as they do. Persuasion (imp:2.62 lvl:2.88) — Persuading others to change their minds or behavior. Negotiation (imp:2.62 lvl:2.75) — Bringing others together and trying to reconcile differences. Programming (imp:2.62 lvl:2.25) — Writing computer programs for various purposes. Operations Analysis (imp:2.50 lvl:2.50) — Analyzing needs and product requirements to create a design. Technology Design (imp:2.12 lvl:2.12) — Generating or adapting equipment and technology to serve user needs. Troubleshooting (imp:2.12 lvl:1.88) — Determining causes of operating errors and deciding what to do about it. Equipment Selection (imp:1.75 lvl:1.00) — Determining the kind of tools and equipment needed to do a job. Operation and Control (imp:1.75 lvl:0.88) — Controlling operations of equipment or systems. Management of Financial Resources (imp:1.75 lvl:1.12) — Determining how money will be spent to get the work done, and accounting for the Management of Material Resources (imp:1.75 lvl:1.00) — Obtaining and seeing to the appropriate use of equipment, facilities, and materi Equipment Maintenance (imp:1.62 lvl:0.88) — Performing routine maintenance on equipment and determining when and what kind o Repairing (imp:1.62 lvl:0.75) — Repairing machines or systems using the needed tools. Installation (imp:1.50 lvl:0.50) — Installing equipment, machines, wiring, or programs to meet specifications.
--- NATIONAL WAGES --- total_employment : 190,650 annual_median : $129,180 annual_pct10 : $75,090 annual_pct25 : $97,810 annual_pct75 : $163,500 annual_pct90 : $199,850 annual_mean : $132,510 hourly_median : $62.11 --- GEOGRAPHIC DISPERSION --- highest_state : Washington ($154,940) lowest_state : Puerto Rico ($63,740) dispersion_ratio : 2.431x --- TOP STATES BY WAGE (49 total) --- Professional, Scientific, and Technical Services emp: 78,770 median: $ 131,720 Finance and Insurance emp: 29,580 median: $ 130,630 Management of Companies and Enterprises emp: 19,390 median: $ 128,950 Information emp: 17,910 median: $ 138,650 Manufacturing emp: 9,870 median: $ 129,260 Administrative and Support and Waste Management and Remediation Services emp: 9,020 median: $ 118,400 Federal, State, and Local Government, excluding State and Local Government Schools and Hospitals and the U.S. Postal Service (OEWS Designation) emp: 5,600 median: $ 101,760 Educational Services emp: 4,920 median: $ 98,430 Health Care and Social Assistance emp: 4,760 median: $ 105,890 Wholesale Trade emp: 4,310 median: $ 131,500 --- TOP INDUSTRIES BY EMPLOYMENT (19 total) --- Professional, Scientific, and Technical Services emp: 78,770 median: $ 131,720 Finance and Insurance emp: 29,580 median: $ 130,630 Management of Companies and Enterprises emp: 19,390 median: $ 128,950 Information emp: 17,910 median: $ 138,650 Manufacturing emp: 9,870 median: $ 129,260 Administrative and Support and Waste Management and Remediation Services emp: 9,020 median: $ 118,400 Federal, State, and Local Government, excluding State and Local Government Schools and Hospitals and the U.S. Postal Service (OEWS Designation) emp: 5,600 median: $ 101,760 Educational Services emp: 4,920 median: $ 98,430 Health Care and Social Assistance emp: 4,760 median: $ 105,890 Wholesale Trade emp: 4,310 median: $ 131,500
exact_match_status : found matched_title : Information security match_score : 0.8163 wikidata_qid : Q189900 word_count : 8,008 wikipedia_url : https://en.wikipedia.org/wiki/Information_security license : CC BY-SA 4.0 fetched_at : 2026-06-02T20:19:52.407457Z --- WIKIPEDIA FULL TEXT --- Information security is the practice of protecting information by mitigating information risks. It is part of information risk management. It typically involves preventing or reducing the probability of unauthorized or inappropriate access to data or the unlawful use, disclosure, disruption, deletion, corruption, modification, inspection, recording, or devaluation of information. It also involves actions intended to reduce the adverse impacts of such incidents. Protected information may take any form, e.g., electronic or physical, tangible (e.g., paperwork), or intangible (e.g., knowledge). Information security's primary focus is the balanced protection of data confidentiality, integrity, and availability (known as the CIA triad, unrelated to the US government organization) while maintaining a focus on efficient policy implementation, all without hampering organization productivity. This is largely achieved through a structured risk management process. To standardize this discipline, academics and professionals collaborate to offer guidance, policies, and industry standards on passwords, antivirus software, firewalls, encryption software, legal liability, security awareness and training, and so forth. This standardization may be further driven by a wide variety of laws and regulations that affect how data is accessed, processed, stored, transferred, and destroyed. While paper-based business operations are still prevalent, requiring their own set of information security practices, enterprise digital initiatives are increasingly being emphasized, with information assurance now typically being dealt with by information technology (IT) security specialists. These specialists apply information security to technology (most often some form of computer system). IT security specialists are almost always found in any major enterprise/establishment due to the nature and value of the data within larger businesses. They are responsible for keeping all of the technology within the company secure from malicious attacks that often attempt to acquire critical private information or gain control of the internal systems. There are many specialist roles in Information Security including securing networks and allied infrastructure, securing applications and databases, security testing, information systems auditing, business continuity planning, electronic record discovery, and digital forensics. == Standards == Information security standards are guidelines generally outlined in published materials that aim to protect a user's or an organization's cyber environment from threats. This environment includes the users themselves, hardware such as devices and networks, software such as applications or services, and any information in storage or transit. These standards comprise security concepts, technologies, and guidelines to deal with an adverse event. They may also include assessment criteria and certification for organizations implementing a minimum level of security. These standards are developed by various international and national bodies to prevent or mitigate cyber-attacks, ensure consistency among developers, and establish a minimum standard in industries susceptible to an attack. The ISO/IEC 27000 family, published by the International Organization for Standardization (ISO) and the International Electrotechnical Commission (IEC), provides information about the guidelines and requirements for an Information Security Management System (ISMS). The Common Criteria (ISO/IEC 15408) provides guidelines on evaluating and certifying the security of a system. The IEC 62443 establishes security standards for automation and control systems. Similarly, the ISO/SAE 21434, ETSI EN 303 645, and EN 18031 provide standards for road vehicles, the Internet of Things, and radio-based systems respectively. The NIST Cybersecurity Framework (NIST CSF) is a set of guidelines developed by the U.S. National Institute of Standards and Technology to help organizations with risk management. NIST also publishes various Federal Information Processing Standards (FIPS) and Special Publications. The United Kingdom has introduced Cyber Essentials, which is a certification scheme to protect organizations against common security threats. The Australian Cyber Security Centre publishes the Essential Eight mitigation strategies. The Payment Card Industry Data Security Standard (PCI DSS) regulates handling of cardholder data in order to reduce credit card fraud. UL has published standards related to specific industries such as UL 2900-2-3 for security and life safety signaling systems and UL-2900-2-1 for healthcare and wellness systems. == Threats == Information security threats come in many different forms. Some of the most common threats today are software attacks, theft of intellectual property, theft of identity, theft of equipment or information, sabotage, and information extortion. Viruses, worms, phishing attacks, and Trojan horses are a few common examples of software attacks. The theft of intellectual property has also been an extensive issue for many businesses. Identity theft is the attempt to act as someone else usually to obtain that person's personal information or to take advantage of their access to vital information through social engineering. Sabotage usually consists of the destruction of an organization's website in an attempt to cause loss of confidence on the part of its customers. Information extortion consists of theft of a company's property or information as an attempt to receive a payment in exchange for returning the information or property back to its owner, as with ransomware. One of the most functional precautions against these attacks is to conduct periodical user awareness. Governments, military, corporations, financial institutions, hospitals, non-profit organizations, and private businesses amass a great deal of confidential information about their employees, customers, products, research, and financial status. Should confidential information about a business's customers or finances or new product line fall into the hands of a competitor or hacker, a business and its customers could suffer widespread, irreparable financial loss, as well as damage to the company's reputation. From a business perspective, information security must be balanced against cost; the Gordon-Loeb Model provides a mathematical economic approach for addressing this concern. For the individual, information security has a significant effect on privacy, which is viewed very differently in various cultures. == History == Since the early days of communication, diplomats and military commanders understood that it was necessary to provide some mechanism to protect the confidentiality of correspondence and to have some means of detecting tampering. Julius Caesar is credited with the invention of the Caesar cipher c. 50 B.C., which was created in order to prevent his secret messages from being read should a message fall into the wrong hands. However, for the most part protection was achieved through the application of procedural handling controls. Sensitive information was marked up to indicate that it should be protected and transported by trusted persons, guarded and stored in a secure environment or strong box. As postal services expanded, governments created official organizations to intercept, decipher, read, and reseal letters (e.g., the U.K.'s Secret Office, founded in 1653). In the mid-nineteenth century more complex classification systems were developed to allow governments to manage their information according to the degree of sensitivity. For example, the British Government codified this, to some extent, with the publication of the Official Secrets Act in 1889. Section 1 of the law concerned espionage and unlawful disclosures of information, while Section 2 dealt with breaches of official trust. A public interest defense was soon added to defend disclosures in the interest of the state --- SEMANTIC NEIGHBORS (5) --- Title: Computer security (similarity: 0.4783) URL: https://en.wikipedia.org/wiki/Computer_security QID: Q3510521 Extract: Computer security is a subdiscipline within the field of information security. It focuses on protecting computer software, systems, and networks from threats that can lead to unauthorized information disclosure, theft, or damage to hardware, software, or data, as well as to the disruption or misdire Title: Security information and event management (similarity: 0.5429) URL: https://en.wikipedia.org/wiki/Security_information_and_event_management QID: Q3493999 Extract: Security information and event management (SIEM) is a field within computer security that combines security information management (SIM) and security event management (SEM) to enable real-time analysis of security alerts generated by applications and network hardware. SIEM systems are central to sec Title: Financial analyst (similarity: 0.5217) URL: https://en.wikipedia.org/wiki/Financial_analyst QID: Q1416279 Extract: A financial analyst is a professional undertaking financial analysis for external or internal clients as a core feature of the job. The role may specifically be titled securities analyst, research analyst, equity analyst, investment analyst, or ratings analyst. The job title is a broad one: In banki Title: Chief technology officer (similarity: 0.2642) URL: https://en.wikipedia.org/wiki/Chief_technology_officer QID: Q5287861 Extract: A chief technology officer (CTO), chief technical officer, or chief technologist is a corporate officer tasked with managing technical operations of an organization. They oversee and supervise research and development and serve as a technical advisor to a higher executive such as a chief executive o Title: Chief security officer (similarity: 0.4706) URL: https://en.wikipedia.org/wiki/Chief_security_officer QID: Q1071690 Extract: A chief security officer (CSO) is an organization's most senior executive accountable for the development and oversight of policies and programs intended for the mitigation and/or reduction of compliance, operational, strategic, financial and reputational security risk strategies relating to the pro
model_pass1 : claude-sonnet-4-20250514
model_pass2 : claude-haiku-4-5-20251001
inference_confidence : high
confidence_notes : High confidence based on comprehensive O*NET data including detailed tasks, skills, and work activities, strong BLS wage data with large sample size (190,650 employed), and clear Wikipedia match confirming the occupation's established definition and scope.
inferred_at : 2026-06-03T13:47:51.163878+00:00
tokens_input : 4,640
tokens_output : 4,370
cost_usd : $0.048758
wikipedia_used : True
wikipedia_title : Information security
wikipedia_note : The Wikipedia entry for 'information security' provides comprehensive coverage of the practice that Information Security Analysts implement professionally. It accurately describes the core mission of protecting information through risk mitigation and preventing unauthorized access, which aligns directly with the analyst role's responsibilities.
--- PROSE FIELDS ---
ROLE SUMMARY:
Information Security Analysts are cybersecurity professionals who design, implement, and maintain security measures to protect organizational computer networks and information systems from threats. They assess vulnerabilities, develop risk mitigation strategies, and monitor security controls to safeguard digital assets against unauthorized access, modification, or destruction. These specialists combine technical expertise with analytical thinking to ensure comprehensive protection of sensitive data and maintain compliance with security standards.
DAY IN THE LIFE:
An Information Security Analyst starts their day monitoring security reports and virus alerts to update protection systems as needed. They conduct risk assessments by testing data processing systems and analyzing network traffic for potential vulnerabilities or breaches. Throughout the day, they modify security configurations, encrypt data transmissions, and configure firewalls to protect confidential information during transmission. They review security violation reports, investigate incidents, and discuss remediation procedures with users who may have compromised security protocols. The analyst documents security policies and procedures, coordinates with IT teams and external vendors to implement security plans, and provides security training to end users to promote awareness and improve overall system protection.
WHO THRIVES:
Individuals who excel as Information Security Analysts possess strong analytical and critical thinking abilities, with high levels of dependability and attention to detail being essential for protecting sensitive systems. They demonstrate intellectual curiosity to stay current with evolving cyber threats and security technologies, combined with the cautiousness needed to thoroughly evaluate potential risks before implementation. These professionals have excellent reading comprehension and written communication skills to understand complex technical documentation and clearly document security procedures and policies. They thrive on complex problem-solving and possess the deductive and inductive reasoning abilities necessary to identify patterns in security data and anticipate potential threats.
CAREER ENTRY:
Most Information Security Analysts enter the field with a bachelor's degree (52.6% of practitioners), typically in computer science, cybersecurity, information technology, or a related technical field. Post-baccalaureate certificates are increasingly common (22.5%), allowing professionals to specialize in cybersecurity after completing degrees in other disciplines. Entry-level positions often require foundational knowledge in computers and electronics, networking, and basic security principles, which can be gained through internships, entry-level IT roles, or specialized cybersecurity bootcamps and certification programs.
CAREER TRAJECTORY:
Information Security Analysts can advance to specialized roles such as Information Security Engineers, Penetration Testers, or Digital Forensics Analysts, leveraging their foundational security knowledge. Senior progression paths include Cloud Security Architect, Chief Information Security Officer (CISO), or security consultant roles. Many professionals pursue advanced certifications like CISSP (Certified Information Systems Security Professional) and may transition into management positions overseeing cybersecurity teams or establishing security policies at the organizational level.
MARKET INTELLIGENCE:
Information Security Analysts enjoy strong market demand with 190,650 employed nationwide and a median annual salary of $129,180 according to BLS OEWS May 2025. Compensation varies significantly by geography, with Washington state offering the highest wages at $154,940 compared to Puerto Rico's $63,740, representing a 2.43x geographic premium. The salary range spans from $75,090 to $199,850 (10th to 90th percentile), reflecting the varying levels of experience and specialization within the field. Professional, Scientific, and Technical Services employ the largest number of analysts (78,770), followed by Finance and Insurance (29,580), indicating strong demand across sectors handling sensitive data. The role's importance in protecting against increasing cyber threats suggests continued growth potential in this high-demand, well-compensated field.
AUTOMATION OUTLOOK:
Information Security Analysts face moderate automation risk, as many core activities like working with computers and analyzing data can be augmented by AI tools, but human judgment remains critical. While automated systems can enhance threat detection and routine monitoring tasks, the role's emphasis on evaluating complex security scenarios, making strategic decisions about risk mitigation, and coordinating with diverse stakeholders requires human expertise that is difficult to automate.
--- REASONED EDGES ---
[career_pathway] Information Security Engineers (15-1299.05) — confidence:high
reasoning: Both roles share identical Computers and Electronics knowledge requirements (imp:4.3, lvl:6.0) and represent natural career progression from analyst to engineer.
data: Computers and Electronics knowledge match
data: O*NET declared Primary-Short relationship
data: Similar RIASEC profiles
[skill_overlap] Penetration Testers (15-1299.04) — confidence:high
reasoning: Both require identical critical thinking skills (imp:3.9, lvl:4.1) and problem sensitivity abilities (imp:4.0, lvl:4.1) for identifying security vulnerabilities.
data: Critical thinking skill match
data: Problem sensitivity ability match
data: Security-focused work activities
[task_similarity] Network and Computer Systems Administrators (15-1244.00) — confidence:high
reasoning: Both roles involve working with computers (imp:4.7) and implementing security measures for computer systems as core work activities.
data: Working with computers activity
data: Computer system implementation tasks
data: Similar technical knowledge requirements
[transferable_skill] Computer Systems Analysts (15-1211.00) — confidence:medium
reasoning: Both roles require identical systems analysis skills (imp:3.4, lvl:3.4) and complex problem solving abilities for evaluating technical systems.
data: Systems analysis skill match
data: Complex problem solving overlap
data: Technical analysis capabilities
[knowledge_overlap] Computer Network Architects (15-1241.00) — confidence:medium
reasoning: Both require high-level telecommunications knowledge (imp:3.6, lvl:4.0) and engineering/technology expertise for designing secure network infrastructures.
data: Telecommunications knowledge match
data: Engineering and technology knowledge
data: Network infrastructure focus
[riasec_cluster] Database Administrators (15-1242.00) — confidence:medium
reasoning: Both roles show strong Conventional (C:6.08) and Investigative orientations, focusing on systematic data protection and analytical problem-solving.
data: High Conventional RIASEC scores
data: Data protection focus
data: Systematic analytical approach
--- NORMALIZER SIGNALS ---
match_keywords : ['information security analyst', 'cybersecurity analyst', 'computer security analyst', 'security analyst', 'infosec analyst', 'cyber analyst', 'IT security analyst', 'systems security analyst']
exclude_keywords : ['financial analyst', 'business analyst', 'data analyst', 'research analyst', 'marketing analyst']
title_patterns : ['*security analyst', 'information security*', 'cyber*analyst', '*infosec*', 'IT security*']
common_variations: ['information security analyst', 'cybersecurity analyst', 'computer security specialist', 'security systems analyst', 'information systems security analyst', 'cyber security analyst', 'IT security specialist', 'network security analyst']
total_terms : 40 top_words : ['security', 'management', 'change', 'risk', 'others', 'tendency', 'access', 'business', 'control', 'computer', 'organization', 'procedures', 'controls', 'equipment', 'processing', 'activities', 'standards', 'changes', 'principles', 'resources'] source_layers : onet_tasks | onet_dimensions | dwas | wikipedia | inference TERM COUNT FREQ DOMINANT SOURCE SOURCE BREAKDOWN ────────────────────────────────────────────────────────────────────────────────────────── security 202 0.03045 wikipedia wikipedia:78% inference:15% onet_tasks:3% management 64 0.00965 wikipedia wikipedia:88% onet_dimensions:11% inference:2% change 62 0.00935 wikipedia wikipedia:92% onet_dimensions:6% onet_tasks:2% risk 46 0.00693 wikipedia wikipedia:83% inference:11% onet_dimensions:4% others 43 0.00648 onet_dimensions onet_dimensions:88% wikipedia:7% dwas:5% tendency 42 0.00633 onet_dimensions onet_dimensions:100% access 41 0.00618 wikipedia wikipedia:88% onet_tasks:7% inference:5% business 40 0.00603 wikipedia wikipedia:98% onet_dimensions:2% control 40 0.00603 wikipedia wikipedia:70% onet_dimensions:30% computer 38 0.00573 wikipedia wikipedia:47% onet_tasks:21% dwas:18% organization 32 0.00482 wikipedia wikipedia:88% onet_dimensions:12% procedures 28 0.00422 wikipedia wikipedia:43% onet_dimensions:29% onet_tasks:11% controls 27 0.00407 wikipedia wikipedia:93% onet_dimensions:4% inference:4% equipment 26 0.00392 onet_dimensions onet_dimensions:88% wikipedia:12% processing 25 0.00377 wikipedia wikipedia:68% onet_dimensions:16% onet_tasks:12% activities 25 0.00377 wikipedia wikipedia:52% onet_dimensions:36% onet_tasks:4% standards 25 0.00377 wikipedia wikipedia:64% onet_dimensions:32% inference:4% changes 24 0.00362 wikipedia wikipedia:83% onet_dimensions:12% onet_tasks:4% principles 22 0.00332 onet_dimensions onet_dimensions:73% wikipedia:23% inference:5% resources 22 0.00332 wikipedia wikipedia:59% onet_dimensions:41% technology 22 0.00332 wikipedia wikipedia:68% onet_dimensions:18% dwas:9% protection 20 0.00301 wikipedia wikipedia:75% inference:15% onet_tasks:5% environment 20 0.00301 wikipedia wikipedia:80% onet_dimensions:20% policies 19 0.00286 wikipedia wikipedia:68% inference:16% onet_tasks:5% includes 19 0.00286 onet_dimensions onet_dimensions:63% wikipedia:37% integrity 19 0.00286 wikipedia wikipedia:89% onet_dimensions:11% act 19 0.00286 wikipedia wikipedia:100% services 18 0.00271 wikipedia wikipedia:61% onet_dimensions:33% inference:6% financial 18 0.00271 wikipedia wikipedia:83% onet_dimensions:17% software 17 0.00256 wikipedia wikipedia:71% onet_dimensions:18% onet_tasks:6% electronic 17 0.00256 wikipedia wikipedia:71% onet_dimensions:29% analysis 17 0.00256 wikipedia wikipedia:76% onet_dimensions:24% network 16 0.00241 wikipedia wikipedia:88% onet_tasks:6% inference:6% communication 16 0.00241 wikipedia wikipedia:88% onet_dimensions:6% inference:6% availability 16 0.00241 wikipedia wikipedia:100% threats 16 0.00241 wikipedia wikipedia:75% inference:25% organizations 15 0.00226 wikipedia wikipedia:93% onet_dimensions:7% implementation 14 0.00211 wikipedia wikipedia:86% onet_tasks:7% inference:7% critical 14 0.00211 wikipedia wikipedia:79% inference:14% onet_dimensions:7% human 14 0.00211 onet_dimensions onet_dimensions:50% wikipedia:36% inference:14%