IS Security Analyst

Hunterdon Medical Center (Inc)
Flemington, NJ, United States
19 days ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$88,646.0 - $110,807.0
Working hours
Regular working hours
Job source

Tech stack

Active Directory Cloud Computing Security CompTIA Security+ Cyber Security Identity and Access Management Issue Tracking Systems Information Technology Operations Network Administration Anti-Phishing Security Information and Event Management Software Vulnerability Management Malware
+4 more
Information Technology Gsuite CIS Benchmarks Vulnerability Analysis

Job description

The IS Security Analyst will support the organization’s day-to-day cybersecurity operations, including alert triage, incident response support, vulnerability management, endpoint/security tool monitoring, and coordination with internal IT teams and external security partners.

The position will work closely with managed security partners, including SOC partner, to investigate alerts, follow up on recommendations, improve security processes, and help strengthen the organization’s overall security posture. This individual must be adaptable, able to balance competing priorities, and assist with growing the Cybersecurity program.

Primary Position Responsibilities

  • Security Monitoring & Alert Response Monitor and review security alerts from SOC and other security tools. Triage alerts, gather relevant information, and escalate potential incidents as appropriate. Coordinate with IT, infrastructure, and application teams to validate suspicious activity. Support incident response activities, including evidence gathering, timeline development, containment coordination, and documentation. Track alert trends and help identify recurring issues, gaps, or opportunities for improvement.

  • SOC Support Serve as a day-to-day point of contact for SOC alert follow-up and operational coordination. Review SOC findings, tickets, reports, and recommendations. Help ensure timely follow-up on escalations, remediation actions, and open items. Participate in recurring meetings with SOC support and internal stakeholders. Help translate SOC recommendations into internal action plans.

  • Vulnerability & Risk Support Assist with vulnerability management activities, including reviewing scan results, tracking remediation, and following up with system owners. Help prioritize vulnerabilities based on severity, asset criticality, exploitability, and business impact. Support remediation tracking for security findings, audit items, and risk treatment plans. Maintain documentation related to accepted risks, remediation status, and recurring security issues.

  • Security Operations & Program Support Help develop and maintain security operations procedures, runbooks, and incident response documentation. Support security awareness efforts, phishing follow-up, and user education as needed. Assist with access reviews, endpoint security checks, asset inventory validation, and control monitoring. Support internal and external audit requests by gathering evidence and documenting security activities. Contribute to the development of basic security metrics and reporting for leadership.

  • Cross-Functional Collaboration Work closely with IT operations, service desk, identity and access, infrastructure, application, and compliance teams. Communicate findings clearly to both technical and non-technical stakeholders. Follow up persistently but professionally to drive remediation and closure. Support other cybersecurity initiatives as assigned in a lean-team environment.

  • Other duties as assigned

Requirements

High School Diploma or Equivalent

Preferred:

Associates Degree in Cybersecurity; Computer Science

Minimum Years of Experience (Amount, Type and Variation):

Required:

2-5 years of experience in cybersecurity, IT operations, help desk, systems administration, network administration, or a related technical role.

Preferred:

Knowledge of frameworks or regulations such as NIST CSF, HIPAA, HITRUST, CIS Controls, or ISO 27001., Security certifications such as Security+, CISSP, GSEC, SSCP, or similar are a plus but not required., Basic understanding of security monitoring, endpoint protection, phishing, malware, vulnerability management, and incident response concepts. Ability to investigate alerts, ask good questions, document findings, and escalate appropriately. Strong communication, organization, and follow-up skills. Comfortable working in a growing cybersecurity program where processes may still be evolving. Ability to manage multiple priorities and shift focus when urgent issues arise. Willingness to learn, take initiative, and grow into broader cybersecurity responsibilities.

Preferred:

Experience working with a managed detection and response provider, such as Arctic Wolf or a similar MDR/SOC partner. Familiarity with tools such as EDR, SIEM, vulnerability scanners, email security platforms, ticketing systems, and endpoint management tools. Experience with Google Workspace security, Active Directory, identity and access management, or cloud security basics. Knowledge of frameworks or regulations such as NIST CSF, HIPAA, HITRUST, CIS Controls, or ISO 27001., The hiring range listed is the potential base compensation that may be offered to a successful applicant for this position at the time of this job advertisement. When determining an applicant’s hourly rate and/or base salary, several factors may be considered as applicable (e.g., years of relevant experience, education, internal equity, and specialty).

Benefits & conditions

Hunterdon Health is committed to providing a competitive benefit package to our employees. Benefit offerings vary based on status and may include but not be limited to medical, dental, vision, family forming, paid time off, tuition reimbursement, and retirement savings.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

6:24 min

Common information security tools and terminologies

Antonio De Mello +1 · LIVE

5:11 min

Deploying manual Seccomp profiles to block malware

Dimitrij Klesev +1 · LIVE

Videos

See all

Related articles

See all