Senior Information Security Analyst

2 months ago


New York, United States ADEX Full time

Summary:
This is a full-time position for a Senior Information Security Analyst ("Security Analyst") within the
Information Security team that participates in all aspects of information security.
The Security Analyst shall act as a risk manager with the responsibility for identifying, acting on
and escalating risks and is held strictly accountable for the failure to discharge their information
security duties. The employee shall also be responsible for demonstrating risk awareness by
following all security policies, procedures and internal controls in the daily routine.
Ability to make decisions and influence decisions in the areas of risk management and
compliance are key to the role. The Security Analyst will ensure that policy and compliance
documentation, requirements and controls are properly and timely identified, mapped,
tracked, reviewed, and reported for the organization to increase security posture.
In this role he will work closely with other members of the Security Team and IT Infrastructure
Teams to manage and support security administration tasks and security projects.

Responsibilities:
 Experience leading risk assessments, audits, policy, governance, and/or reporting, preferably
in a financial institution
 Assist with mapping controls to policies, procedures, and processes and testing of those
controls to ensure adequate coverage
 Establish and maintain security manuals
 Work with control owners in the remediation and tracking of deficiencies.
 Assist with increasing the maturity of the Information Security program, strategy and process.
 Provide security services in identifying, assessing, managing, and tracking remediation of
information security risks related to IT infrastructure, applications, platforms and suppliers and
drive explicit requirements and timelines in all environments
 Provide update to the CISO and/or CRO on progress of remediation efforts
 Qualys:
- scanning for vulnerabilities and baseline configuration compliance
- monitoring new and existing vulnerabilities and working with IT and users to remediate
- Daily, Weekly, Monthly, reporting - reviewing results of reports and presenting to IT to
remediate issues
- Network monitoring - Monitoring assets connected to the network scanning for assets
and reconciling with IT asset inventory
- Daily monitoring of system events for malicious activity
 Tufin - Firewall rule review and approval
 AlienVault - SIEM - System event monitoring and analysis with follow up if issue is detected
 Tipping Point - IPS - Monitoring network for signs of malicious activity or exploitation
 Trellix EPO + TMS - Daily monitoring of Data Loss Prevention tools
 Manage phishing campaigns, create email templates, perform testing, analyze results, and
write report
 Spirion - Create scans to monitor files containing PII and ensure they are destroyed in
accordance with data retention policy
 Privileged Access Management (PAM) and reporting
 Chair weekly IT meeting to discuss vulnerabilities, patching, and alarms generated by IS tools
 Threat Intelligence - Monitor Qualys Threat Protection Feed and CISA emails for relevant
information to protect the network
 Work with vendors for troubleshooting and maintenance of IS tools

Education and Experience Requirements:
 5+ years managing information security governance, risk, and compliance
 Bachelor's degree in information technology or security discipline (e.g. cybersecurity) or
related worked experience
 Industry recognized security certifications are a plus but not required (e.g. CISSP, CISA, CISM,
CEH, etc.)

Skills and Knowledge:
 Demonstrated knowledge of industry authoritative sources such as NIST Cybersecurity
Framework, SOC2 and ISO standards, FFIEC framework and NYDFS-Part 500 regulations
 Working with GRC applications and toolsets, such as RSA Archer
 Proficient in Microsoft Office
 Excellent written and verbal communication and presentation skills; Good command of
spoken and written English.
 Interpersonal and collaborative skills; and the ability to communicate information risk-related
concepts to technical as well as nontechnical audiences
 Skilled at planning, tracking plans, working cross department to review risks, controls and
processes, and gathering and organizing documentation and test results
 Self-directed, works with minimal guidance, and recognizes when guidance needed
 Ability to cope with pressure and responsibility



  • New York, United States City of New York Full time

    Company Description Job Description The Financial Information Services Agency and the Office of Payroll Administration (FISA-OPA) has a vacancy for a Senior Information Security Analyst. The Senior Information Security Analyst will act as a lead for the Information Security Team and report directly to the CISO. This role requires a strong technical...


  • New York, United States City of New York Full time

    Company DescriptionJob Description The Financial Information Services Agency and the Office of Payroll Administration (FISA-OPA) has a vacancy for a Senior Information Security Analyst. The Senior Information Security Analyst will act as a lead for the Information Security Team and report directly to the CISO. This role requires a strong technical background...


  • New York, United States Metropolitan Jewish Health System Full time

    Our Corporate team may not provide direct care, but we still touch people's lives in a very real and substantial way. The services we provide contribute greatly to the overall patient and member experience, supporting our reputation for excellence. The Senior Information Security Analyst will have strong technical experience and a risk evaluation mindset in...


  • New York, United States Metropolitan Jewish Health System Full time

    Our Corporate team may not provide direct care, but we still touch people's lives in a very real and substantial way. The services we provide contribute greatly to the overall patient and member experience, supporting our reputation for excellence. The Senior Information Security Analyst will have strong technical experience and a risk evaluation mindset in...


  • New York, United States Metropolitan Jewish Health System Full time

    Overview: Our Corporate team may not provide direct care, but we still touch people's lives in a very real and substantial way. The services we provide contribute greatly to the overall patient and member experience, supporting our reputation for excellence. Why work for MJHS?: When you work with us you will receive comprehensive and affordable health and...


  • New York, United States Atlas Search Full time

    Job DescriptionJob DescriptionOur client is a well-known financial services organization whose mission is to create a better informed and more efficient financial market. They are actively seeking an Information Security Analyst to join their team. The ideal candidate has experience with risk assessment, regulatory compliance, as well as documenting and...


  • New York, New York, United States MJHS Full time

    Senior IT Security Analyst PositionEstimated salary: $81,600 - $102,000 per yearMJHS is seeking a highly experienced Senior IT Security Analyst to join our team. In this role, you will be responsible for developing and implementing security strategies to protect the organization's assets.Key Responsibilities:Develop and implement security policies and...


  • New York, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a weekAs a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security administration tasks and...


  • New York, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a week$130k base + bonus As a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security...


  • New York, New York, United States Metropolitan Jewish Health System Full time

    Job DescriptionThe Senior Information Security Analyst will have strong technical experience in security operations, including event triage, incident response, vulnerability management, penetration testing, and event management. This role requires a risk evaluation mindset and the ability to analyze malware, network traffic, and large sets of disparate data.


  • New York, United States Intelliswift Software Full time

    Local or Semi local Talent only.This is not a full remote position. Workers are required to report to the office two days per week.- Must be US citizen or Green Card holderResponsibilities:The position’s primary responsibility is to support access management operational activities for critical financial systems. This support includes user onboarding,...


  • New York, New York, United States Vimerse InfoTech Inc Full time

    Information Security Analyst">Vimerse InfoTech Inc is seeking an experienced Information Security Analyst to join our team. This is a 12+ month contract position with the possibility of extension.We are looking for an individual with 2+ years of experience in cybersecurity and a strong background in Network Segmentation and Isolation, Physical Access Control...


  • new york city, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a weekAs a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security administration tasks and...


  • new york city, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a weekAs a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security administration tasks and...


  • New York, New York, United States Fidelity Information Services Full time

    Job Title: IT Security Analyst SpecialistFidelity Information Services is seeking a skilled IT Security Analyst Specialist to join our team. This role will be responsible for completing support, maintenance, and implementation tasks for one or more of our Identity and Access Management solutions. The successful candidate will work closely with operations and...


  • New York, New York, United States Metropolitan Jewish Health System Full time

    Our estimated annual salary range is $124,000 - $160,000, commensurate with experience and location within New York City.Job Description:As a Senior Information Security Analyst on our team, you will be responsible for event triage, incident response, vulnerability management, penetration testing, and SIEM event management. You will analyze malware, network...


  • New York, United States Open Systems Technologies Full time

    A financial firm is looking for an Information Security Analyst to join their team in New York, NY. Pay: $ 80/hr w2 Top Skills: 1. IAM 2. access reporting 3. AD 4. Sailpoint/Saviyint 5. RBAC CISSP is a plus, cloud exp also good. Powershell scripting maintenance. Team is responsible for IAM policies and standards for the firm as well as being responsible for...


  • New York, New York, United States Fidelity Information Services Full time

    About the RoleFidelity Information Services is seeking a highly skilled Production Support Senior Analyst to join our team. In this role, you will be responsible for leading business systems, product or service solutions, and acting as a subject matter expert across Retirement Plan Services (RPS) to lead initiatives on behalf of RPS Operations in partnership...


  • New York, New York, United States Bank of China Limited, New York Branch Full time

    About the Role">We are seeking a highly skilled Information Security Analyst to join our team at Bank of China Limited, New York Branch. In this role, you will be responsible for monitoring security systems, reviewing alerts, and generating statistics reports. Your proactive attitude, patience, and alertness will help you succeed in this dynamic...


  • New York, United States Alpha Global Search LLC Full time

    International Bank is seeking an Information Security Analyst who will perform duties related to 3rd Party Risk Management, and Operational Risk Management. This position will assist the CISO to manage and maintain the 3rd Party Riks Managment Program and will act a backup to perform Information Security duties as well.3rd Party Risk ManagementAssist in the...