Experienced Security Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
The Experienced Security Analyst investigates, analyzes, and resolves security incidents. This role handles more complex threats, conducts in-depth forensics, and contributes to incident response planning.
-
Security Risk Management:
-
Monitor and assess security alerts and system events, identifying potential security risks, threats, or
vulnerabilities in systems and infrastructure. * Implement controls to mitigate security risks, ensuring the organization’s security posture is continually improved. * Conduct regular security audits and assessments (e.g., vulnerability scans, penetration testing).
-
Incident Response and Remediation:
- Detect, analyze and investigate security incidents, determining root causes and impact.
- Develop and implement remediation strategies for confirmed incidents.
- Ensure that security breaches are properly documented, analyzed, and remediated.
- Coordinate with external vendors or authorities in case of a major incident (e.g., data breach).
-
Security Tools and Technologies:
- Implement and manage in-scope security tools.
- Continuously evaluate and upgrade security tools to meet evolving threats and compliance requirements.
-
Regulatory Compliance:
- Implement frameworks and practices to comply with industry regulations, laws, and standards around
data protection, privacy, and industry-specific requirements. * Keep abreast of changing regulatory landscapes and ensuring the organization adjusts policies and practices accordingly. * Collaboration:
- Work with legal teams to ensure contracts and agreements (e.g., with third-party vendors) comply with
security and regulatory requirements. * Coordinate with audit teams to ensure compliance with both internal and external audits.
- Assist in conducting security training sessions for employees and liaise with legal, HR, and IT to ensure
cohesive security practices. * Reporting and Documentation:
- Provide regular reports to senior management on security and compliance posture.
- Create detailed documentation for audits and compliance reviews.
-
All other duties as assigned.
-
Specific to Audit and Compliance:
- Update and maintain security policies, procedures, and documentation. Collaborate with other teams
(e.g., IT, Legal, HR) to ensure consistent security and compliance practices across the organization. * Lead portions of internal audits and participate in external audits. Maintain audit schedules and track remediation efforts. * Interpret and apply regulatory and audit standards (e.g., SOC 2, SOX, Cyber Essentials. Identify compliance gaps and propose corrective actions. * Conduct risk assessments and analyze effectiveness of controls.
Requirements
- Threat Analysis: Ability to assess and mitigate advanced threats, such as malware, phishing, and APTs.
- Network Forensics: Experience conducting forensic analysis on compromised systems and networks.
- Incident Response: Proficiency in handling and responding to security incidents and breaches.
- Compliance Knowledge: Understanding of regulatory frameworks (e.g., GDPR, HIPAA, SOC 2, PCI DSS, NIST, ISO 27001).
- Proficient with network security, cloud security, encryption techniques, firewalls, SIEM (Security Information and Event Management), vulnerability scanning tools, and other security technologies.
- Proficient written and verbal communication skills to report findings and collaborate with teams.
About the company
As a global market leader, iPipeline combines technology, innovation, and expertise to deliver ground-breaking, award-winning software solutions that transform the life insurance, financial services, and protection industries. With one of the industry’s largest data sets, we help advisors/advisers and agents to transform paper and manual operations into a secure, seamless digital experience - from proposal to commission- so they can help better secure the financial futures of their clients. At iPipeline, you’ll play a major role in helping us to provide best-in-class, transformative solutions. We’re passionate, creative, and innovative, and together as a team, we continually strive to advance, accelerate, and expand the reach of our technology. We value different perspectives and are committed to creating an environment that embraces diverse backgrounds and fosters inclusion. We’re proud that we’ve been recognized as a repeat winner of various industry awards, demonstrating our excellence and highlighting us as a top workplace in both the US and the UK. We believe that the culture we’ve built for our nearly 900 employees around the world is exceptional – and we’ve created a place where our employees love to come to work, every single day. Come join our team! About iPipeline Founded in 1995, iPipeline operates as a business unit of Roper Technologies (Nasdaq: ROP), a constituent of the Nasdaq 100, S&P 500®, and Fortune 1000® indices. iPipeline is a leading global provider of comprehensive and integrated digital solutions for the life insurance and financial services industries in North America, and life insurance and pensions industries in the UK. We couple one of the most expansive digital and automated platforms with one of the industry’s largest data libraries to accelerate, automate, and simplify various applications, processes, and workflows - from quote to commission - with seamless integration. Our vision is to help everyone achieve lasting financial security by delivering innovative solutions that connect, simplify, and transform the industry. iPipeline is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to gender, race, color, religious creed, national origin, age, sexual orientation, gender identity, physical or mental disability, and/or protected veteran status. We are committed to building a supportive and inclusive environment for all employees. This is an office-based position.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
9 Ways to Make Money Hacking
Understanding and Mitigating Common Web Vulnerabilities
Dev Digest 134 - Where pixels sing?
The Overflow: Security and Privacy