Senior Information Security Analyst

3 days ago


New York, New York, United States ADEX Full time
Job Summary:

This is a full-time position for a Senior Information Security Analyst within the Information Security team that participates in all aspects of information security. The Security Analyst shall act as a risk manager with the responsibility for identifying, acting on and escalating risks and is held strictly accountable for the failure to discharge their information security duties. The employee shall also be responsible for demonstrating risk awareness by following all security policies, procedures and internal controls in the daily routine. Ability to make decisions and influence decisions in the areas of risk management and compliance are key to the role. The Security Analyst will ensure that policy and compliance documentation, requirements and controls are properly and timely identified, mapped, tracked, reviewed and reported for the organization to increase security posture. In this role, he will work closely with other members of the Security Team and IT Infrastructure Teams to manage and support security administration tasks and security projects.

Key Responsibilities:
Lead risk assessments, audits, policy, governance and/or reporting, preferably in a financial institution
Assist with mapping controls to policies, procedures and processes and testing of those controls to ensure adequate coverage
Establish and maintain security manuals
Work with control owners in the remediation and tracking of deficiencies
Assist with increasing the maturity of the Information Security program, strategy and process
Provide security services in identifying, assessing, managing and tracking remediation of information security risks related to IT infrastructure, applications, platforms and suppliers and drive explicit requirements and timelines in all environments
Provide update to the CISO and/or CRO on progress of remediation efforts

Qualys: scanning for vulnerabilities and baseline configuration compliance
Monitoring new and existing vulnerabilities and working with IT and users to remediate

Network monitoring
Monitoring assets connected to the network scanning for assets and reconciling with IT asset inventory

Daily monitoring of system events for malicious activity
Tufin - Firewall rule review and approval
AlienVault - SIEM - System event monitoring and analysis with follow up if issue is detected
Tipping Point - IPS - Monitoring network for signs of malicious activity or exploitation
Trellix EPO + TMS - Daily monitoring of Data Loss Prevention tools
Manage phishing campaigns, create email templates, perform testing, analyze results and write report
Spirion - Create scans to monitor files containing PII and ensure they are destroyed in accordance with data retention policy
Privileged Access Management (PAM) and reporting
Chair weekly IT meeting to discuss vulnerabilities, patching and alarms generated by IS tools
Threat Intelligence - Monitor Qualys Threat Protection Feed and CISA emails for relevant information to protect the network
Work with vendors for troubleshooting and maintenance of IS tools

Requirements:
5+ years managing information security governance, risk and compliance
Bachelor's degree in information technology or security discipline (e.g. cybersecurity) or related worked experience
Industry recognized security certifications are a plus but not required (e.g. CISSP, CISA, CISM, CEH, etc.)

Skills and Knowledge:
Demonstrated knowledge of industry authoritative sources such as NIST Cybersecurity Framework, SOC2 and ISO standards, FFIEC framework and NYDFS-Part 500 regulations
Working with GRC applications and toolsets, such as RSA Archer
Proficient in Microsoft Office
Excellent written and verbal communication and presentation skills; Good command of spoken and written English
Interpersonal and collaborative skills; and the ability to communicate information risk-related concepts to technical as well as nontechnical audiences
Skilled at planning, tracking plans, working cross department to review risks, controls and processes, and gathering and organizing documentation and test results
Self-directed, works with minimal guidance, and recognizes when guidance needed
Ability to cope with pressure and responsibility

  • New York, New York, United States MJHS Full time

    Job Title: Senior Information Security AnalystWe are seeking a highly skilled Senior Information Security Analyst to join our team at MJHS. As a key member of our Information Security team, you will be responsible for ensuring the confidentiality, integrity, and availability of our organization's information assets.About the Role:The Senior Information...


  • New York, New York, United States Edwards Lifesciences Full time

    Join Our Team as a Senior Security AnalystWe are seeking a highly skilled Senior Security Analyst to join our IT team at Edwards Lifesciences. As a key member of our security operations team, you will play a critical role in ensuring the security of our systems and data.Key Responsibilities:Monitor and investigate potential security events to identify and...


  • New York, New York, United States Datadog Full time

    About DatadogDatadog is a global SaaS business that delivers a rare combination of growth and profitability. We are on a mission to break down silos and solve complexity in the cloud age by enabling digital transformation, cloud migration, and infrastructure monitoring of our customers' entire technology stacks.Job DescriptionWe are seeking a highly skilled...


  • New York, New York, United States Social Capital Resources Full time

    Senior Information Security Analyst AVPTop-Tier Bank in Midtown, Manhattan is seeking a Senior Information Security Analyst AVP for a full-time position.Responsibilities:Act as a risk manager with the responsibility for identifying, acting on and escalating risks and is held strictly accountable for the failure to discharge their information security...


  • New York, New York, United States Unavailable Full time

    Job Title: Senior Information Security AnalystOverviewTISTA Science and Technology is seeking a Senior Information Security Analyst to join our growing team. The ideal candidate will work collaboratively with a high-performing team of cybersecurity experts on a Federal project to support Assessment and Authorization, Audit, and Continuous Monitoring...


  • New York, New York, United States ADEX Full time

    Job Summary:This is a full-time position for a Senior Information Security Analyst within the Information Security team at ADEX. The Security Analyst will participate in all aspects of information security, acting as a risk manager and being held strictly accountable for the failure to discharge their information security duties. The employee will also be...


  • New York, New York, United States ASCAP Full time

    Job Title: Information Security AnalystWe are seeking a highly skilled Information Security Analyst to join our team at ASCAP. As a key member of our security team, you will be responsible for ensuring the security and integrity of our systems, networks, and applications.Key Responsibilities:Configure and manage security systems, monitoring and alerting...


  • New York, New York, United States Metropolitan Jewish Health System Full time

    OverviewAt Metropolitan Jewish Health System, our Corporate team plays a vital role in supporting our reputation for excellence. We contribute significantly to the overall patient and member experience, and our services have a real and substantial impact on people's lives.Why Work for Us?We offer comprehensive and affordable health and financial benefits,...


  • New York, New York, United States City of New York Full time

    The City of New York is seeking a highly skilled Information Security Analyst to play a vital role in protecting the organization's digital assets.The ideal candidate will have a strong background in information technology, computer science, or a related field, and will be responsible for ensuring the security of the organization's online and on-premises...


  • New York, New York, United States Amerit Consulting Full time

    Job Title: Senior Information Security AnalystWe are seeking a highly skilled and experienced Senior Information Security Analyst to join our team at Amerit Consulting. As a key member of our security team, you will be responsible for leading the development and execution of risk assessment methodologies, designing and engineering comprehensive access...


  • New York, New York, United States MORS Full time

    Job Title: Information Security AnalystAt MORS, we are seeking a highly skilled Information Security Analyst to join our team. As an Information Security Analyst, you will play a critical role in maintaining the security posture of our organization.Key Responsibilities:Conduct basic threat detection and incident response activities to identify and mitigate...


  • New York, New York, United States MORS Full time

    Job Title: Information Security AnalystAt MORS, we are seeking a highly skilled Information Security Analyst to join our team. As an Information Security Analyst, you will play a critical role in maintaining the security posture of our organization.Key Responsibilities:Conduct basic threat detection and incident response activities to identify and mitigate...


  • New York, New York, United States Social Capital Resources Full time

    Senior Information Security AnalystJob Summary:We are seeking a highly skilled Senior Information Security Analyst to join our team at Social Capital Resources. As a key member of our security team, you will be responsible for identifying, assessing, and escalating security risks to ensure the organization's infrastructure and data remain protected.Key...


  • New York, New York, United States Citigroup Inc Full time

    Job Title: Info Sec Tech Lead AnalystJob Summary: We are seeking a highly skilled Info Sec Tech Lead Analyst to join our team. The successful candidate will be responsible for driving efforts to prevent, monitor, and respond to information/data breaches and cyber-attacks.Key Responsibilities:Identify opportunities to automate and standardize information...


  • New York, New York, United States Considine Search Full time

    Job Title: Information Security AnalystJob Summary:The Information Security Analyst will be responsible for monitoring Firm security systems and assisting in the coordination effort to remediate alerts and respond to incidents. Key responsibilities entail daily monitoring activities including SIEM and other security tools and identification and mitigation of...


  • New York, New York, United States Datadog Full time

    We're on a mission to build the best platform in the world for engineers to understand and scale their systems, applications, and teams.We operate at high scale-trillions of data points per day-allowing for seamless collaboration and problem-solving among Dev, Ops and Security teams globally for tens of thousands of companies.Our engineering culture values...


  • New York, New York, United States CDW Full time

    Job SummaryWe are seeking a highly skilled and experienced Information Security Analyst to join our team at CDW. As a key member of our Security Operations Centre, you will be responsible for monitoring, analyzing, and responding to cybersecurity threats and incidents.Key ResponsibilitiesMonitor and analyze cybersecurity alerts on EDR/XDR tools using...


  • New York, New York, United States Fidelity Information Services Full time

    About the RoleWe are seeking a highly skilled Cloud Security Analyst to join our team at Fidelity Information Services. As a Cloud Security Analyst, you will be responsible for analyzing and monitoring the hybrid public cloud environment across our FIS environment.Key ResponsibilitiesAdminister and implement security measures for hybrid public cloud...


  • New York, New York, United States New York University Full time

    Job SummaryThe Information Security Analyst I role involves conducting basic threat detection and incident response activities to maintain NYU's security posture.Key responsibilities include identifying and mitigating security risks by analyzing security events and alerts, executing incident response procedures, and communicating with stakeholders.Typical...


  • New York, New York, United States Children's Hospital Full time

    About UsChildren's Minnesota is a leading pediatric health system in the United States, providing care exclusively to children from birth through young adulthood. As a not-for-profit organization, we are committed to delivering high-quality, patient-centered care to our community.Job SummaryWe are seeking an experienced Information Security Risk Analyst to...