Senior Information Security Analyst

Red Roof
New Albany, OH , US
Full-time

Duties and Responsibilities

Assesses information risk and facilitates remediation of identified vulnerabilities with the systems, and applications. Reports on findings and recommendations for corrective action.

Performs vulnerability assessments as assigned utilizing IT security tools and methodologies. Performs assessments of the IT security / risk posture within the IT network, systems, and software applications, in addition to assessments within the Vendor Management Program.

Identifies opportunities to reduce risk and documents remediation options regarding acceptance or mitigation of risk scenarios.

Facilitates and monitors performance of risk remediation tasks, changes related to risk mitigation & reports on findings.

Maintains oversight of IT and vendors regarding the security maintenance of their systems and applications. Provides weekly project status reports, including outstanding issues.

The IT Security / Risk Analyst assists in all IT audits, IT risk assessments and regulatory compliance.

  • Management of IT security and IT risk (, data systems, network and / or web) across the enterprise.
  • Address questions from internal and external audits and examinations.
  • Develop policies, procedures and standards that meet existing and newly developed policy and regulatory requirements including but not limited to PCI, and / or NIST.
  • Facilitate IT security / risk training curriculum.
  • Serve as project manager / lead within IT security projects.
  • Promote awareness of applicable regulatory standards, upstream risks and industry best practices across the enterprise.
  • Leverage security data from internal sources (IDS, routers, SIMS, Firewalls, hosts) and external sources (Industry portals, threat intel feeds, etc.
  • to identify high priority alerts and develop / implement proactive mitigations.
  • Review security incidents; determine their severity and impact.
  • Forensic analysis; analysis of compromised machines and analysis of network traffic and log data.
  • Implement and maintain information resources security; recommend enhancements to security process, procedures, and policies.
  • Knowledge using Microsoft and Azure tools, including Microsoft Defender suite.
  • Participate in security incident management and vulnerability management processes.
  • Works as part of a team to ensure that corporate data and technology platform components are safeguarded from known threats.
  • Communicate effectively with customers, teammates, and management.
  • Provide input on tuning and optimization of security systems.
  • Staying up to date with emerging security threats including applicable regulatory security requirements.
  • Other responsibilities and additional duties as assigned by the management team.

Qualifications

  • Bachelor’s degree, Information Systems, Computer Sciences, Information Security, Information Systems, Engineering, Sciences, or related field.
  • years of information security or security analysis, deployment, and support.
  • years’ experience conducting IT compliance assessments.
  • years’ experience in administering IT security controls in an organization.
  • Certified Information System Security Professional or related certification.
  • Knowledge of IT including multiple operating systems and system administration skills (Windows, Linux)
  • Knowledge of client-server applications, multi-tier web applications, relational databases, firewalls, VPNs, and enterprise Anti-Virus products.
  • Understanding of security incident management, malware management and vulnerability management processes.
  • Understanding of PCI requirements and other security standards.
  • Security monitoring experience.
  • Excellent analytical abilities, including process analysis and development, problem solving and root cause analysis.
  • Ability to interpret log data and draw analytical conclusions.
  • Experience or understanding of computer programming and scripting languages.
  • Experience with open-source security analysis tools, Wireshark, SNORT, Sift, etc.
  • Experience with web content filtering technology Policy engineering and troubleshooting.
  • Understanding of networking principles including TCP / IP, WANs, LANs, and commonly used Internet protocols such as SMTP, HTTPS, SFTP, LDAP, etc.
  • Strong organization, attention to detail, proven track record in managing multiple initiatives.
  • Strong confidentiality assessment and ethic.
  • Strong team and communication skills; collaboration, negotiation, written and in-person interaction, presentation to small or large group, people management and conflict resolution ability.
  • On call / after-hours availability to respond to security situations as required by management.

We encourage you to apply even if you do not meet % of the qualifications

30+ days ago
Related jobs
Red Roof
New Albany, Ohio
Full-time

Duties and ResponsibilitiesAssesses information risk and facilitates remediation of identified.. The IT Security Risk Analyst assists in all IT audits, IT risk assessments and regulatory compliance..

NTT
Ohio, United States of America
Full-time

Learning and growing opportunities. Open communication. Casual dress code. More information on our.. Analysts develop skills to perform 1st touch resolution from start to finish for security infrastructure..

Alternate Solutions Health Network
Remote Ohio
Remote
Full-time

Westerville OH 43081, OH Job Type. Full time Job Number. 01105 Department. INFORMATION SYSTEMS Division.. 2 27 2024 Closing Date. Continuous Description Information Systems Security work focuses on preventing..

Promoted
City of Westerville, OH
Westerville, Ohio
$89.8K-$134.7K a year
Full-time

Interns will analyze large volumes of raw information to quickly report relevant information and to verify all our customers are keeping to our security policies. In addition to assigned..

CarepathRx
OH, US
Remote
Part-time

This is a great role for someone who wants to continue their Cyber Security career, touching many.. years experience in InfoSec or Information technology OR6. years equivalent work experience (Coding..

Promoted
Eaton
OH, United States
$80.3K-$117.7K a year
Full-time

Providing strategic guidance to business partners and analysts. Facilitate communication regarding.. Requirements & Qualifications. Bachelor's Degree required, preferably in Business, Information..

Promoted
GQR
OH, United States
Full-time

DoD 8570 IAT level II or higher certification such as CompTIA Security. CE, ISC2 SSCP, SANS GSEC prior.. Existing 8570 CSSP Analyst Certifications (CEH), CySA. etc. Original Posting Date. 2024 03 06 While..

Promoted
Leidos Inc
Whitehall, Ohio
$81.3K-$146.9K a year
Full-time

Altamira. Information System Security Officer (ISSO), Lead. Wright Patterson AFB, OH. Full Time.. Job Description. Information System Security Officer, Lead. Altamira Technologies Corporation is looking..

Promoted
Altamira Technologies Corp.
OH, United States
Full-time

In the case of conflict between the information listed and the official plan documents, the plan.. Job Summary The IT Service Desk Analyst II role is integral to ensuring efficient technical assistance..

Promoted
Concentric
OH, United States
Full-time