Unclassified - Mather, CA

posted 4 months ago

Full-time - Mid Level
Mather, CA

About the position

M odis is seeking a Security Analyst for our client in Sacramento, California. This is a technical position on the Information Security Team, where the successful candidate will provide data security support and guidance to client regions and affiliates. The role involves representing the Data Security Office on project teams and other Information Services (IS) initiatives, collaborating with other IS operations support departments to identify and recommend solutions for security-related issues. The position requires hands-on security administration across a broad range of security duties, necessitating a high level of technical experience. The Security Analyst will be responsible for oversight of design, engineering, analysis, research, testing, and monitoring of security measures. This role serves as the Technical Analyst to application managers, business systems owners, and IT support staff. The candidate should have experience with IT General Controls, HIPAA controls, and/or SOX control frameworks. The primary goal of the Information Services department is to ensure that electronic data and communications are available to employees, providers, and patients, thereby supporting the health and well-being of the community, enhancing patient care and safety, and improving business processes and performance. The successful candidate will plan and conduct security and operational audits of varying complexity under the direction of the Department Audit Manager. Essential functions include completing work/projects within tight deadlines, managing multiple assignments simultaneously, and handling private/sensitive information with complete confidentiality. Specific accountabilities include ensuring the quality and completion of audits, understanding business systems and operations, recognizing and evaluating relevant business risks and controls, and developing audit findings and recommendations into a report format. The role also involves evaluating business risks, determining compliance with policies, and preparing audit reports for management.

Responsibilities

  • Provide data security support and guidance to client regions and affiliates.
  • Represent the Data Security Office on project teams and other IS initiatives.
  • Collaborate with other IS operations support departments to identify and recommend solutions for security-related issues.
  • Perform hands-on security administration across a broad range of security duties.
  • Oversee design, engineering, analysis, research, testing, and monitoring of security measures.
  • Serve as the Technical Analyst to application managers, business systems owners, and IT support staff.
  • Plan and conduct security and operational audits of varying complexity under the direction of the Department Audit Manager.
  • Ensure quality and completion of audits, focusing on high-risk areas and developing audit findings and recommendations.
  • Evaluate business risks and the effectiveness of internal controls and operating practices.
  • Determine compliance with policies and procedures, reporting on deviations and identifying control weaknesses.
  • Prepare draft and final audit reports for issuance to management with minimal edits required.
  • Coordinate with external auditors during their interim and year-end audits as planned.
  • Assist the Audit Manager, IS Director, and CISO as required.
  • Present audit status updates and findings to audit teams and management.

Requirements

  • Bachelor's Degree in Management Information Systems, Accounting, or Computer Science.
  • Professional designation (CISA, CISSP, CIA) is strongly desired.
  • Minimum of two years of significant hands-on experience in IS or IT operations or auditing acquired in public accounting, private industry, or consulting.
  • Working knowledge of IS or IT auditing techniques is required.
  • Knowledge of how information systems and applications support/enable business processes.
  • Strong verbal and written communication skills as well as interpersonal skills.
  • Ability to quickly learn and understand business environments and develop and execute audit testing in assigned areas.
  • Skilled in problem-solving and identifying risks and exposure areas.
  • Ability to conduct research, analyze data, and report information concisely.

Nice-to-haves

  • CISSP Certification or equivalent combination of education and experience.
  • Relevant work experience as an IT Security Analyst or related field.
  • Healthcare information technology industry experience (2 years highly desired).
  • Thorough knowledge of information systems security concepts and current information security trends & practices.
  • Strong tech skills in planning, administration, and management of information systems, operational & tech security controls, and security risk analysis management.
  • Knowledge of Federal and state IS security and privacy-related regulatory requirements.
  • Detailed knowledge regarding NIST, HIPAA, FIPS, and other recognized industry security standards and best practices.
  • CISA Certification or equivalent combination of education and experience (highly desired).
  • CIA Certification or equivalent combination of education and experience (highly desired).

Benefits

  • Health insurance coverage
  • 401k benefit for retirement savings plan
  • Paid holidays
  • Flexible scheduling options
  • Professional development opportunities
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service