Associate Information Security Analyst

Tekberry Inc.
Redwood City, CA, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$124,800.0 - $145,600.0
Working hours
Regular working hours
Languages
English
Job source

Tech stack

CompTIA Security+ Cyber Security Learning Management Systems Intrusion Detection Systems PCI Data Security Standards Firewalls (Computer Science) Data Management Vulnerability Analysis

Job description

In this essential position, you will lead initiatives to protect digital resources, developing and implementing innovative security strategies to e ectively mitigate risks. Your expertise will contribute to a mission of maintaining a secure and resilient environment for education, research, and healthcare.

The Information Security O ice operates with a high degree of autonomy, expecting each of its contributors to bring their own special talents to bear on the tough challenges facing the organization. You will provid support and guidance on information security matters and collaborate with local groups ato help implement and improve security measures that meet NIST 800-171 standards.

Your main responsibilities will include helping to execute a strategy that prepares the organization for an increasing number of security audits and changing regulatory requirements, particularly focusing on the Cybersecurity Maturity Model Certification (CMMC) and NIST 800-171 standards. This will involve helping to assess currenty security practices and identifying any gaps that could affect compliance. Assist in implementing best practices and guidelines to strengthen cybersecurity measures and support audit preparations. Responsibilities

  • Assist in the preparation and implementation of the NIST readiness project, ensuring alignment with NIST frameworks and guidelines to improve the organization s security posture.
  • Collaborate in developing and executing a comprehensive strategy to prepare for security audits and regulatory requirements, with a particular focus on the Cybersecurity Maturity Model Certification (CMMC).
  • Support the assessment and implementation of security controls in accordance with NIST standards, assisting in identifying gaps and recommending corrective actions.
  • Develop and deliver an awareness and training program aligned with NIST to educate the organization.
  • Collaborate in the review and update of security policies and procedures to ensure they meet NIST requirements and reflect best practices in cybersecurity.
  • Support the monitoring of security controls and risk management practices, regularly evaluating the e ectiveness of existing security measures.
  • Help prepare and maintain documentation related to security policies, procedures, and compliance e orts, including risk assessments and operational reports.
  • Collaborate with cross-functional teams, including IT, Finance, Human Resources, and Legal, to integrate information security into the organization’s overall risk management program.
  • Keep abreast of industry trends, emerging threats, and evolving regulatory requirements to inform security practices and compliance strategies.
  • Perform any other related duties assigned to support the organization’s information security program.

Requirements

  • You re a well-rounded, critical thinker with a bachelor s degree (or equivalent experience).
  • A minimum of three years of experience in information security, risk management, or compliance.

Preferred Qualifications

  • Experience in information security, risk management, and compliance.
  • Knowledge of industry standards and regulations, particularly NIST & HIPAA.
  • Strong analytical and problem-solving skills, with the ability to identify and assess security risks.
  • Exposure to security audits, risk assessments, or vulnerability assessments.
  • Knowledge of security technologies such as encryption, firewalls, intrusion detection systems, and SIEMs.
  • Experience with working as part of a team in cybersecurity, information security, assurance or related fields.
  • Ability to express complicated, highly technical information using accessible language, proficiently in English, to a wide variety of audiences with varying degrees of technical savviness.
  • Ability to stay up-to-date with the latest security threats, technologies, and industry regulations.

  • Knowledge of ISO 27001 and PCI DSS
  • Security+ or other professional cybersecurity certifications.
  • Proficiency in setting up and managing a learning management system (LMS), including course creation and configuration
  • Prior work in a highly-regulated industry or higher education.

We need hard-working, reliable employees. If you’re ready to contribute to meaningful clinical research while supporting accurate, high-quality data management, we’d love to hear from you!

About the company

Tekberry is seeking an Associate Information Security Analyst to play a vital role in a dynamic and close-knit team within the Information Security O ice of our client, a world renowned university.

This position is eligible for permanently remote work, but keep the following in mind: this team operates on Pacific Time, and salary is adjusted based on regions of the country. You may be expected to come onsite, but generally expect that to be no more than a few days each quarter.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:43 min

Data management for stateful cloud-native workloads

Michael Cade · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

1:44 min

Career transition into cloud native and data management

Michael Cade · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all