Free Sample

The Complete Guide to Becoming An Information Security Analyst

What the job really pays, what the work really looks like, and how to know if you can actually handle it

by Alumigogo Books

Chapter 1: What Does a Information Security Analyst Actually Do?

Let's get one thing out of the way: no two days as an Information Security Analyst are exactly alike. But if you're trying to picture what this job really involves, you don't need a list of vague responsibilities like "protect sensitive data" or "respond to incidents." You need to know what you'll actually be doing at 10 AM on a Wednesday, the tools you'll be clicking around in, and the people you'll be talking to. So let's walk through that.

At its core, this job is about monitoring, protecting, and responding. You are the person who watches over the computer systems and networks that a company depends on, and you work to make sure that the bad guys can't get in, or if they do get in, that they don't get very far. You are not a "hacker" in the pop-culture sense. You're not typing green text into a black screen in a dark room while dramatic music plays. Most of the time, you're looking at dashboards, reading alarm notifications, writing reports, and updating security policies.

The Core Responsibility: Monitoring and Triage

A huge portion of your day is spent on what's called "monitoring." This means you're watching the traffic that flows through the company's network, and you're looking for anything that seems out of the ordinary. You'll be using a Security Information and Event Management (SIEM, pronounced "seem") tool. This is a central platform that collects log data from

Enjoyed the sample?

Buy the full book →