Information Security Analyst

3 weeks ago


New Hyde Park, United States Newtek One Full time
Job DescriptionJob Description

NewtekOne®, Your Business Solutions Company®, is a financial holding company, which along with its bank and non-bank consolidated subsidiaries, provides a wide range of business and financial solutions under the Newtek® brand to the small- and medium-sized business ("SMB") market. Since 1999, Newtek has provided state-of-the-art, cost-efficient products and services and efficient business strategies to SMB relationships across all 50 states to help them grow their sales, control their expenses, and reduce their risk.

Newtek's and its subsidiaries' business and financial solutions include: Banking (Newtek Bank, N.A.), Business Lending, Electronic Payment Processing, Technology Solutions (Cloud Computing, Data Backup, Storage and Retrieval, IT Consulting), eCommerce, Accounts Receivable Financing & Inventory Financing, Insurance Solutions, Web Services, and Payroll and Benefits Solutions.

Newtek One is looking for an Information Security Analyst.

The Information Security Analyst - Access Management (ISAM) plays a critical role in ensuring the security and efficiency of an organizations digital identity and access management processes including: provisioning, de-provisioning (terminations), and re-certification of access. They are responsible for assisting the Information Security Director - Access Management in developing and implementing access management strategies, policies, and procedures to safeguard sensitive data, systems, and applications.

Essential Functions & Responsibilities include:

Develop and Implement IAM Program:
- Execute an IAM program that includes policies, procedures, and guidelines.
- Ensure appropriate controls and documentation are in place to mitigate the risk of inappropriate access throughout the organization

User Access Management:
- Facilitate the provisioning, de-provisioning, and re-certification of access by possessing and documenting an understanding of the relevant IT systems and networks within the organization, the various roles within those environments, and what entitlements are required for employees to achieve the concept of "least privilege".

Risk Assessment and Compliance:
- Conduct risk assessments and periodic reviews related to IAM.
- Monitor compliance with policies, regulations, and customer requirements.

Incident Investigation and Corrective Actions:
- Investigate security incidents related to identity and access management.
- Recommend and implement corrective actions.

User Training:
- Train users on IAM policies and procedures.


Knowledge, Skills & Abilities:

In-Depth Knowledge of identity and access management concepts, including Single Sign-On (SSO):
Enabling users to access multiple applications with a single set of credentials and role-based access.

Familiarity with IAM tools and technologies

Thorough understanding of all data privacy laws and regulations, including FRB and OCC requirements.

Proficient understanding of the Identity Lifecycle Management (provisioning, de-provisioning, modifications, re-certifications, etc.)


Education & Certification Requirements:

The ideal candidate should have at least 5 years of experience in adopting, maintaining, and reviewing internal controls related to information security, logical access, and relevant general IT controls.

Education:
Bachelors degree in Information Security or a related field. Masters degree preferred.

Having the following certifications can be beneficial:
Standard of expertise for cloud security (CCSK)
Certified Information Systems Security Professional (CISSP)
Certified Information Systems Auditor (CISA)

Salary Range: $65,000 to $85,000

NewtekOne is an Equal Opportunity Employer; M/F/D/V. We require all of our employees to perform work in an ethical manner and uphold our Code of Business Conduct and Ethics at all times.



  • Lexington Park, United States Imagine One Technology & Management, Ltd. Full time

    **Job Location: Lexington Park, Maryland** **Job Code: 16424212** Imagine One Technology & Management is currently seeking an **Information Security Analyst **“contingent” on award of the associated work to the Imagine One Team. This position supports the U.S. Navy in Lexington Park, Maryland. The** Information Security Analyst** will plan, implement,...


  • Lexington Park, United States Imagine One Technology & Management, Ltd. Full time

    **Job Location: Lexington Park, Maryland** **Job Code: 16424212** Imagine One Technology & Management is currently seeking an **Information Security Analyst **“contingent” on award of the associated work to the Imagine One Team. This position supports the U.S. Navy in Lexington Park, Maryland. The** Information Security Analyst** will plan, implement,...


  • New York, United States Assured Guaranty Full time

    Position Summary The goal of information security is to protect the confidentiality, integrity, and availability of information assets. The information security team is responsible for defining and implementing security policy and standards and continuously monitoring for new threats. The Information Security Analyst is a hands-on technical role, responsible...


  • New Orleans, United States ExecRecruitment Full time

    ExecRecruitment is a global professional services provider and contingency staffing company. Our main objective is to source top talent and support professional growth. One of our direct clients is actively seeking an Information Security Compliance Analyst to join their team. Job Title: Information Security Compliance Analyst Location: Remote Duration: 6...


  • New York, United States ASCAP Full time

    Job DescriptionJob DescriptionAbout ASCAPThe American Society of Composers, Authors and Publishers (ASCAP) is a membership association of more than 960,000 songwriters, composers and music publishers, and represents some of the world’s most talented music creators. Founded and governed by songwriters, composers and publishers, it is the only performing...


  • New York, United States ASCAP Full time

    Job DescriptionJob DescriptionAbout ASCAPThe American Society of Composers, Authors and Publishers (ASCAP) is a membership association of more than 960,000 songwriters, composers and music publishers, and represents some of the world’s most talented music creators. Founded and governed by songwriters, composers and publishers, it is the only performing...


  • Lexington Park, United States Perrygo Consulting Group, LLC Full time

    Perrygo is a small, rapidly growing company; we are passionate about our employees as well as supporting our customers and their mission. We are excited for the opportunity to bring aboard highly motivated and energetic individuals to join our teams. Currently, we are seeking an Information Security Analyst - Entry to Advanced. This role will support our...


  • Lexington Park, United States Perrygo Consulting Group, LLC Full time

    Perrygo is a small, rapidly growing company; we are passionate about our employees as well as supporting our customers and their mission. We are excited for the opportunity to bring aboard highly motivated and energetic individuals to join our teams. Currently, we are seeking an Information Security Analyst - Entry to Advanced. This role will support our...


  • New York, United States Datadog Full time

    **Who we are**: The Customer Trust team is the face of Datadog's security organization. Members of the Customer Trust team interact directly with our customers, and translate customer security and compliance requirements into the overall Datadog information security program. You will support the sales organization in the procurement phase and ongoing vendor...

  • CSOC Analyst

    2 weeks ago


    Galena Park, United States Comtec Information Systems Full time

    Title: Senior CSOC Analyst Location: Little Rock, AR or Houston, TX (Hybrid) Length : Fulltime The Cyber Security Operations Center Analyst is a level 3 position, will be responsible for investigating and responding to security incidents, understanding, and mitigating attack vectors, and staying abreast of the evolving threat landscape. The ideal candidate...


  • New Hyde Park, United States New York Cancer & Blood Specialists Full time

    **Radiology Systems Analyst** **New Hyde Park, NY** *** **New York Cancer and Blood Specialists (NYCBS),** a prominent and respected Oncology/Hematology group, is seeking a Radiology Systems Analyst to join a well-established and growing pure sub-specialty practice with academic affiliation. Clinics from Southampton to NYC. Practice manages a freestanding...


  • New York, United States Saxon Global Full time

    What you'll do: • Establish a strategic security architecture vision, including standards and frameworks that are aligned with the overall business and IT strategies • Act as information security subject matter expert; provides advisory and consulting services to business, IT departments, and IS management • Work closely with Enterprise...


  • New York, United States Saxon Global Full time

    What you'll do: • Establish a strategic security architecture vision, including standards and frameworks that are aligned with the overall business and IT strategies • Act as information security subject matter expert; provides advisory and consulting services to business, IT departments, and IS management • Work closely with Enterprise...


  • New York, United States eTeam Full time

    Skills and Experience: +3 years experience in information security, governance, IT audit, or information technology risk management Experience with risk assessments and compliance of major regulatory initiatives (e.g. SOX, NYDFS) Experience with cyber security and information security program management and frameworks (e.g., NIST CSF, ISO/IEC 27000,...


  • New York, United States eTeam Full time

    Skills and Experience: +3 years experience in information security, governance, IT audit, or information technology risk management Experience with risk assessments and compliance of major regulatory initiatives (e.g. SOX, NYDFS) Experience with cyber security and information security program management and frameworks (e.g., NIST CSF, ISO/IEC 27000,...


  • New York, United States Quorum Federal Credit Union Full time

    Who is Quorum?Quorum Federal Credit Union is a national employer of choice that attracts, develops, enables, and retains the right resources to drive the organization forward. We are a human-centered organization that delivers a positive work journey and is committed to enhancing the lives of our employees and helping them to grow personally and...


  • New York, United States Adobe Full time

    Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information. Draft compliance reports to summarize the compliance objectives, key findings, and work with teams to remediate key findings. Identify internal controls issues, ensure they are well-defined and root causes are identified. Build and maintain...


  • New York, United States Adobe Full time

    Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information. Draft compliance reports to summarize the compliance objectives, key findings, and work with teams to remediate key findings. Identify internal controls issues, ensure they are well-defined and root causes are identified. Build and maintain...


  • New York, United States Considine Search Full time

    SummaryThe New York office of an elite Global Law Firm is looking to hire an experienced Information Governance Analyst to join the Electronic Information Governance Department. The Information Governance Analyst provides day to day services in support of Firm and client needs, assuring electronic information is secured and monitored, and IS compliance...


  • New York, United States Considine Search Full time

    Summary The New York office of an elite Global Law Firm is looking to hire an experienced Information Governance Analyst to join the Electronic Information Governance Department. The Information Governance Analyst provides day to day services in support of Firm and client needs, assuring electronic information is secured and monitored, and IS compliance...