Hays - Tallahassee, FL

posted 2 months ago

Full-time - Entry Level
Tallahassee, FL
Administrative and Support Services

About the position

The Cybersecurity Analyst will work with organizations to identify and prioritize security risks, and help drive governance and compliance initiatives. This role requires a deep dive into nuanced, technical issues, making it essential for the candidate to possess strong time management and organizational skills. The ideal candidate is intrinsically motivated and stays up-to-date on the fast-paced security world, new SaaS technology, and evolving IT technical and systems environments, particularly in relation to healthcare regulatory requirements. In this position, the individual will work closely with the Manager of Information Security, focusing on governance, security, and compliance across all aspects of the end-to-end management of security risks and governance-based compliance initiatives. The role involves continuously improving, strengthening, and scaling the company's security and compliance program in coordination with internal and external teams and partners, prioritizing strategies that focus on improving quality and mitigating risks. The Cybersecurity Analyst will assist in the end-to-end management of security-related risks, including risk identification, analysis, mitigation, and reporting to management on a periodic basis. This includes aggregating and tracking security risks across various business units, reviewing network and application security logs to identify any non-standard environment usage or behavior, and utilizing IT incident management procedures to determine risk exposure and take necessary actions to address potential issues. The role also involves facilitating Application User Access Reviews, collaborating with IT, Application Development, Compliance, and Business Operations to improve and implement new processes, and developing subject matter expertise in assigned cybersecurity technology stacks. Additionally, the analyst will participate in the vendor risk management process, maintain and promote security awareness training, and evaluate technical security solutions while working closely with IT personnel to assess changes to risk and the effectiveness of risk mitigation strategies.

Responsibilities

  • Identify and prioritize security risks for organizations.
  • Drive governance and compliance initiatives.
  • Manage security-related risks including identification, analysis, mitigation, and reporting.
  • Aggregate and track security risks across various business units and asset categories.
  • Review network and application security logs for non-standard usage or behavior.
  • Utilize IT incident management procedures to address potential issues.
  • Facilitate Application User Access Reviews according to IT policies.
  • Document and recommend policies, standards, guidelines, and procedures for IT security.
  • Collaborate with IT, Application Development, Compliance, and Business Operations to improve security processes.
  • Develop subject matter expertise in assigned cybersecurity technology stacks.
  • Participate in vendor risk management processes and review vendor security controls.
  • Work on HIPAA Gap remediation initiatives and action items.
  • Maintain and promote security awareness training and campaigns.

Requirements

  • 2+ years of experience in security and compliance with relevant certifications.
  • Experience with vulnerability scans (Qualys, Tenable/Nessus, Rapid7, etc.).
  • Experience with security monitoring and SIEM (AlienVault, Splunk, Qradar, etc.).
  • Experience with cloud security computing (AWS).
  • Experience conducting risk assessment audits with frameworks such as ISO 27000 series, NIST CSF, and regulations like HIPAA/HITECH.
  • Excellent communication and program management skills.
  • Bachelor's degree or equivalent education/training from an accredited institution.

Nice-to-haves

  • Certifications such as CompTIA Security+, AWS, CISM, CISSP, CRISC, GSEC, CSSLP, CGEIT, CISA.
  • Experience with DLP (Data Loss Prevention) and MDM (Mobile Device Management).
  • Experience with Microsoft O365 security configurations and IAM - Identity and Access Management.

Benefits

  • Medical
  • Dental
  • Life Insurance
  • 401K
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service