Information Security Analyst (Red Team)

Point32Health, Inc
Canton, MA, United States
7 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$91,189.0 - $136,783.0
Working hours
Regular working hours

Tech stack

Java (Programming Language) Vbscript Microsoft Windows Active Directory Apache Tomcat Server Applications Software System Penetration Testing Oracle WebLogic Server Unix Cloud Computing Security Cyber Security Information Leak Prevention
+27 more
Data Mart Data Warehousing Perl (Programming Language) Emulators Monitoring of Systems IBM Websphere Application Server Identity and Access Management Web Portals Intrusion Detection and Prevention Virtual Private Networks (VPN) Mobile Application Software Python (Programming Language) Lightweight Directory Access Protocols (LDAP) Operational Data Store Public Key Infrastructure Red Team (Cyber Security) Salesforce.Com Security Information and Event Management Cyberark Office365 Firewalls (Computer Science) Siteminder Pingfederate Information Technology Cybercrime SailPoint Vulnerability Analysis

Job description

Job Summary This position is responsible for simulating real-world cyber threats to evaluate the effectiveness of the organization’s security controls, detection capabilities, and response processes. This role conducts adversary emulation, penetration testing, social engineering assessments, and security exercises to identify vulnerabilities, improve the organization’s overall security posture, validate security investments, and reduce cyber risk. Reporting to the Cybersecurity Manager, the Security Analyst will work closely with IT teams across all threads where security applies., * Consult with Security and Infrastructure Services staff to evaluate and implement software systems that provide appropriate security.

  • Communicate potential security exposures, misuse, or noncompliance situation to appropriate managers.
  • Monitor security logs to identify potential security related events. Capture and report security metrics.
  • Monitors security trends and assess potential uses of new technologies to meet identified business goals.
  • Analyze business requirements and risks to technology implementation for security-related issues.
  • Develop and produce systems monitoring and metrics reports and assess the content.
  • Work with Technical Writers to document and review security policy and procedures.
  • Participate in audits both internal and external as required.
  • As required, participate on project teams, and manage the completion of all assigned project related tasks.
  • Train information owners in the implementation of necessary security controls by developing and presenting information security awareness.
  • Other duties as assigned

Requirements

  • Required (minimum): Bachelor’s degree in computer science with emphasis on IT security required or equivalent experience.
  • Preferred: Master’s degree

Experience

  • Required (minimum): 3-5 years of professional experience
  • Preferred: 5-7 years of progressive experience in information services including 3 years in systems security, including maintenance and use of security products in a distributed enterprise environment, and experience in compliance with federal security regulations.

Skill Requirements

  • Specific working knowledge of and experience in the following work environments:

  • Identity and Access Management
  • SailPoint Identity Management
  • PingFederate
  • SiteMinder/Identity Manager/Provisioning Manager
  • CyberArk PAM
  • Cloud security
  • Active Directory
  • LDAP Directory Services
  • Perl, Python, VBS and Java.
  • Vulnerability scanning and management
  • Intrusion Detection/Prevention System
  • Virus & malware protection
  • Advanced Threat Protection
  • Public Key Infrastructure
  • Data Loss Prevention
  • Microsoft O365
  • Firewalls
  • VPN
  • Forensics
  • Mobile application security
  • Operational data stores, data marts, data warehouse
  • Security Information and Event Management (SIEM)
  • N-tiered infrastructure patterns
  • Windows and UNIX operating system environments
  • Web portal technology and application servers, i.e. Apache Tomcat, WebLogic, WebSphere
  • Data/Computer Operations technology integration and support
  • CRM solutions/Salesforce
  • Excellent communications skills both written and oral

Working Conditions and Additional Requirements (include special requirements, e.g., lifting, travel):

  • Must be able to work under normal office conditions and work from home as required.
  • Work may require simultaneous use of a telephone/headset and PC/keyboard and sitting for extended durations.
  • May be required to work additional hours beyond standard work schedule.

Benefits & conditions

Salary Range $91,188.71 -$136,783.07 Compensation & Total Rewards Overview The annual base salary range provided for this position represents a range of salaries for this role and similar roles across the organization. The actual salary for this position will be determined by several factors, including the scope and complexity of the role; the skills, education, training, credentials, and experience of the candidate; as well as internal equity. As part of our comprehensive total rewards program, colleagues are also eligible for variable pay. Eligibility for any bonus, commission, benefits, or any other form of compensation and benefits remains in the Company’s sole discretion and may be modified at the Company’s sole discretion, consistent with the law. Point32Health offers their Colleagues a competitive and comprehensive total rewards package which currently includes: Medical, dental and vision coverage Retirement plans Paid time off Employer-paid life and disability insurance with additional buy-up coverage options Tuition program Well-being benefits Full suite of benefits to support career development, individual & family health, and financial health For more details on our total rewards programs, visit We welcome all All applicants are welcome and will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status. Scam Alert: Point32Health has recently become aware of job posting scams where unauthorized individuals posing as Point32Health recruiters have placed job advertisements and reached out to potential candidates. These advertisements or individuals may ask the applicant to make a payment. Point32Health would never ask an applicant to make a payment related to a job application or job offer, or to pay for workplace equipment. If you have any concerns about the legitimacy of a job posting or recruiting contact, you may contact

About the company

Point32Health is a leading not-for-profit health and well-being organization dedicated to delivering high-quality, affordable healthcare. Serving nearly 2 million members, Point32Health builds on the legacy of Harvard Pilgrim Health Care and Tufts Health Plan to provide access to care and empower healthier lives for everyone. Our culture revolves around being a community of care and having shared values that guide our behaviors and decisions. We’ve had a long-standing commitment to inclusion and equal healthcare access and outcomes, regardless of background; it’s at the core of who we are. We value the rich mix of backgrounds, perspectives, and experiences of all of our colleagues, which helps us to provide service with empathy and better understand and meet the needs of the communities where we serve, live, and work. We enjoy the important work we do every day in service to our members, partners, colleagues and communities. Learn more about .

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:04 min

Defining timestamps and the international standard format

Denny Biasiolli Denny Biasiolli · Europe 2026 Virtual

10:42 min

Essential soft skills and evaluating security candidates

Kurt Eder · LIVE

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

1:41 min

Reverting destructive Unix commands with the Undo utility

Chris Heilmann +2 · LIVE

Videos

See all

Related articles

See all