Senior IT Security Analyst

TRIDENTCARE
United States
17 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Working hours
Regular working hours
Job source

Tech stack

Software Applications Cyber Security Data Systems Intrusion Detection and Prevention Information Systems Security Architecture Professional Software Vulnerability Management Enterprise Software Applications Software Security Information Technology Vulnerability Analysis

Job description

The Sr. Information Security Analyst is responsible for assessing information risk and facilitates remediation of identified vulnerabilities for IT security and IT risk across the enterprise. Assesses information risk and facilitates remediation of identified vulnerabilities with the network, systems, and applications. Reports on findings and recommendations for corrective action. Performs vulnerability assessments as assigned utilizing IT security tools and methodologies. Performs assessments of the IT security/risk posture within the IT network, systems and software applications. Identifies opportunities to reduce risk and documents remediation options regarding acceptance or mitigation of risk scenarios. Facilitates and monitors performance of risk remediation tasks, changes related to risk mitigation & reports on findings. Maintains oversight of IT and vendors regarding the security maintenance of their systems and applications. Liaise with other governance functions such Operations, IT, HR, Legal, and Compliance., * Management of IT security and IT risk (e.g., data systems, network and/or web) across the enterprise

  • Address questions from internal and external audits and examinations
  • Develop policies, procedures and standards that meet existing and newly developed policy and regulatory requirements including SOX, PCI, and/or HIPAA guidance

  • Facilitate IT security/risk training curriculum
  • Serve as a leader within IT security projects
  • Plan, implement, and upgrade security measures and controls
  • Maintain data and monitor security access
  • Manage network, intrusion detection and prevention systems
  • Recommend and install appropriate tools and countermeasures
  • Define, implement and maintain corporate security policies
  • Coordinate security plans with outside vendors
  • Maintain knowledge of new security trends and technologies
  • Other tasks as needed/determined

Requirements

  • 5+ years of experience in information security or related IT roles.
  • Certified Information Systems Security Professional (CISSP) Certified (Preferred)
  • Associates Degree in Computer Science or equivalent experience in on the job experience
  • Proven experience with:
  • Security operations and incident response
  • Vulnerability management and threat analysis
  • Network and application security
  • Security architecture and risk assessments Excellent analytical and problem-solving abilities

  • Strong communication skills for cross-functional collaboration
  • Strong inter-personal, written, and oral communication skills including the ability to communicate complex technical issues to non-technical staff
  • Ability to translate technical risks into business impacts
  • Leadership and mentoring capabilities
  • Demonstrated ability to work in teams and prioritize and manage competing work assignments in a time sensitive environment
  • 1-2 experience with Networking, Microsoft Windows Enterprise systems, and security-related systems
  • Understanding of NIST cybersecurity framework
  • Understanding of HIPAA compliance requirements
  • Strong troubleshooting skills

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:37 min

Classifying and anonymizing data during system design

Reto Kaeser · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:30 min

The universal and shared team responsibility of software security

Julia Wilson Julia Wilson +1 · World Congress 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:15 min

Bridging operational and analytical systems using formal data contracts

Matthias Niehoff Matthias Niehoff · World Congress 2024

Videos

See all

Related articles

See all