> Markdown version of [/jobs/ext/2351599-information-security-analyst](https://www.wearedevelopers.com/jobs/ext/2351599-information-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Analyst - **Company:** Eastman Inc - **Location:** Kingsport, TN, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, CompTIA Security+, Cyber Security, Information Security Management, Information Security Management System, Information Technology - **Published:** August 9, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=ca02bb8be99a061d ## About the Role Our ideal candidate will conduct themselves in a way that reflects our high standards of professionalism and customer service. These standards include excellent communication skills, leadership ability, self-awareness, and flexibility. We search for candidates that reflect integrity, loyalty, and dedication in everything they do., * 5+ years in I/T, information security, auditing, or risk management. * Bachelor's degree in information technology, information security, or relevant business-related field preferred * Certification preferred: CompTIA Security+, CEH, CISSP, GSEC, etc. ## Description The Information Security Analyst will provide technical and administrative support for the management of the information security program. Identify and manage risks within the department., * Responsible for daily operational security reports and other metrics to ensure operational conformity to program guidelines and to identify security anomalies and potential security threats. * Assists in the development of security architecture and security policies, principles, and standards. * Leads internal penetration testing projects and other ethical hacking activities to validate and test information security controls under the direction of information security leadership. * Works with information security leadership to develop strategies and plans to enforce security requirements and address identified risks. * Researches, evaluates, and recommends information security related hardware and software, including business cases for security investments. * Serves in the information security responsibility role on any projects that impact information security to ensure that security issues are addressed throughout the project life cycle. * Coordinates all remediation activities related to risk and security assessments and audits. These activities include providing suggestions on management response to findings and tracking progress and providing status updates to information security leadership. * Performs information security audit and control functions such as user access reviews, network account auditing, and periodic process control tests. * Participates in information security governance and oversight by serving as a member of the information security committee. * Assists in the investigation, analysis, and resolution of reported security incidents. * Collaborates with various business units to identify security requirements using methods such as risk analysis and business impact analysis. * Stays abreast of information security industry developments, external threats, vendor community, and best practices. Participates in industry collaborative efforts to monitor emerging security threats. * Participates in various information security training and awareness activities for employees and members. * Completes various information security projects and tasks as assigned. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Enabling intelligent logistics automation: home-grown Industrial IoT platform at Austrian Post](https://www.wearedevelopers.com/videos/2018-enabling-intelligent-logistics-automation-home-grown-industrial-iot-platform-at-austrian-post) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [It's not easy being green](https://www.wearedevelopers.com/videos/558-it-s-not-easy-being-green) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)