Information Security Analyst

3 days ago


New York, United States Atlas Search Full time
Job DescriptionJob Description

Our client is a well-known financial services organization whose mission is to create a better informed and more efficient financial market. They are actively seeking an Information Security Analyst to join their team. The ideal candidate has experience with risk assessment, regulatory compliance, as well as documenting and implementing security policies and procedures. This is a fantastic contract opportunity that offers a mostly remote schedule, and we are looking to fill the position as quickly as possible.

 

Responsibilities:

  • Review, update, and enhance all relevant policies and procedures to ensure the company’s compliance with SEC Regulation SCI and ISO 27001 requirements.
  • Develop and implement new policies as needed to address emerging security threats and regulatory changes.
  • Assist with organizing and running external risk assessments, ensure proper documentation of identified risks, develop risk mitigation plans and follow through on their implementation.
  • Implement continuous monitoring strategies with regular reports to senior management.
  • Enhance and implement procedures for reviewing access authorizations, especially during personnel transfers and third-party engagements.
  • Enhance controls around privileged system accounts and administrative access.
  • Conduct regular audits to ensure access controls are effective and compliant.
  • Enhance and formalize incident response plans, including regular testing and integration with other organizational plans.
  • Enhance business continuity and disaster recovery plans, ensuring detailed procedures and roles are defined.
  • Implement data loss prevention controls and encryption protocols.
  • Help improve policies for data classification, retention, and destruction.
  • Conduct regular audits to ensure data protection measures are effective.
  • Maintain a comprehensive security awareness training program, including insider threat and incident response training.
  • Update training content to address new threats and compliance requirements.
  • Establish and enforce security requirements for third-party vendors.
  • Conduct periodic assessments of vendors and review of applicable CUICs – Complimentary User Entity Controls.
  • Enhance and implement a comprehensive GRC framework that integrates governance, risk management, and compliance activities across the organization.
  • Ensure alignment with industry standards and regulatory requirements and facilitate regular GRC audits and assessments to identify and mitigate potential gaps.
  • Assist with maintaining the firm’s security tools and daily processes such as security reviews, applications approvals, and change management approvals.
  • Help manage security information and event management (SIEM) systems to monitor network and system activities for signs of security breaches.
  • Ensure timely detection and response to potential security incidents.
  • Conduct regular vulnerability assessments and penetration testing to identify and remediate security weaknesses.
  • Assist with the response to security incidents, including investigation, containment, eradication, and recovery.
  • Maintain detailed incident logs and conduct post-incident reviews to improve response processes.
  • Provide regular reports to senior management on security posture, incident trends, and areas for improvement.

 

Qualifications:

  • Bachelor's degree in Information Security, Cybersecurity, or a related field; Advanced degree preferred.
  • Relevant certifications such as CISSP, CISM, CISA, or ISO 27001 Lead Implementer are highly desirable.
  • At least 5 years of experience in cybersecurity, information security, information technology, engineering, risk management, compliance or a related field, preferably within the financial services industry.
  • Demonstrated experience with regulatory compliance such as SEC Regulation SCI requirements.
  • Proficiency with ISO 27001 standard, CIS Benchmarks, risk assessment methodologies, and implementation of security controls.
  • Proven successful track record of developing, documenting, and implementing security policies and procedures.
  • Experience in incident response, business continuity planning, capacity planning and stress testing.
  • Demonstrated expertise in managing third-party vendor relationships, including conducting security assessments.
  • Familiarity with data protection and encryption technologies.
Company DescriptionAtlas Search is an executive recruiting firm dedicated to placing accounting, finance, middle office, information technology, human resources, and office / accounting support professionals. Our clients range from Fortune 500 to start-ups and we service all industries ranging from Financial Services to Media & Entertainment. We were founded on the principle of relationships; our firm has been built on partnering with candidates and clients with a focus on their long-term interests. We provide Technology professionals like yourself on a permanent basis for our clients across all industries. Specialties include: Software Engineers, Web Developers, iOS/Android Engineers, Data Analysts, Business Intelligence, Data Engineers, Data Scientists, Help Desk/Desktop Support, Systems Administrators/Engineers, Network Administrators/Engineers, Cloud/DevOps Engineers, Application Support, Business Analysts, Project Managers, IT Managers, CTOs, etc.Company DescriptionAtlas Search is an executive recruiting firm dedicated to placing accounting, finance, middle office, information technology, human resources, and office / accounting support professionals. Our clients range from Fortune 500 to start-ups and we service all industries ranging from Financial Services to Media & Entertainment. We were founded on the principle of relationships; our firm has been built on partnering with candidates and clients with a focus on their long-term interests. We provide Technology professionals like yourself on a permanent basis for our clients across all industries. Specialties include: Software Engineers, Web Developers, iOS/Android Engineers, Data Analysts, Business Intelligence, Data Engineers, Data Scientists, Help Desk/Desktop Support, Systems Administrators/Engineers, Network Administrators/Engineers, Cloud/DevOps Engineers, Application Support, Business Analysts, Project Managers, IT Managers, CTOs, etc.

  • New York, New York, United States Vimerse InfoTech Inc Full time

    Information Security Analyst">Vimerse InfoTech Inc is seeking an experienced Information Security Analyst to join our team. This is a 12+ month contract position with the possibility of extension.We are looking for an individual with 2+ years of experience in cybersecurity and a strong background in Network Segmentation and Isolation, Physical Access Control...


  • New York, New York, United States Fidelity Information Services Full time

    Job Title: IT Security Analyst SpecialistFidelity Information Services is seeking a skilled IT Security Analyst Specialist to join our team. This role will be responsible for completing support, maintenance, and implementation tasks for one or more of our Identity and Access Management solutions. The successful candidate will work closely with operations and...


  • New York, United States Open Systems Technologies Full time

    A financial firm is looking for an Information Security Analyst to join their team in New York, NY. Pay: $ 80/hr w2 Top Skills: 1. IAM 2. access reporting 3. AD 4. Sailpoint/Saviyint 5. RBAC CISSP is a plus, cloud exp also good. Powershell scripting maintenance. Team is responsible for IAM policies and standards for the firm as well as being responsible for...


  • New York, New York, United States Bank of China Limited, New York Branch Full time

    About the Role">We are seeking a highly skilled Information Security Analyst to join our team at Bank of China Limited, New York Branch. In this role, you will be responsible for monitoring security systems, reviewing alerts, and generating statistics reports. Your proactive attitude, patience, and alertness will help you succeed in this dynamic...


  • New York, United States City of New York Full time

    Company Description Job Description The Financial Information Services Agency and the Office of Payroll Administration (FISA-OPA) has a vacancy for a Senior Information Security Analyst. The Senior Information Security Analyst will act as a lead for the Information Security Team and report directly to the CISO. This role requires a strong technical...


  • New York, United States City of New York Full time

    Company DescriptionJob Description The Financial Information Services Agency and the Office of Payroll Administration (FISA-OPA) has a vacancy for a Senior Information Security Analyst. The Senior Information Security Analyst will act as a lead for the Information Security Team and report directly to the CISO. This role requires a strong technical background...


  • New York, United States TD Bank N.A Full time

    Department Overview:This role is for a Threat Intelligence Analyst for the Threat Intelligence Group (TIG). The successful candidate will support TIG's mission to provide timely, actionable, and relevant intelligence to its stakeholders within TD's f Security Analyst, Security, Information, Analyst, Supply Chain, Intelligence, Banking


  • New York, New York, United States Stratford Solutions Inc. Full time

    Job DescriptionStratford Solutions Inc. is seeking a highly skilled Information Technology Security Analyst to join our team in Harlem, NY. The successful candidate will be responsible for performing analysis on the security of all cloud services, including AWS, Microsoft Azure, and Google.Key Responsibilities:


  • New York, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a weekAs a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security administration tasks and...


  • New York, United States Metropolitan Jewish Health System Full time

    Our Corporate team may not provide direct care, but we still touch people's lives in a very real and substantial way. The services we provide contribute greatly to the overall patient and member experience, supporting our reputation for excellence. The Senior Information Security Analyst will have strong technical experience and a risk evaluation mindset in...


  • New York, United States Metropolitan Jewish Health System Full time

    Our Corporate team may not provide direct care, but we still touch people's lives in a very real and substantial way. The services we provide contribute greatly to the overall patient and member experience, supporting our reputation for excellence. The Senior Information Security Analyst will have strong technical experience and a risk evaluation mindset in...


  • New York, New York, United States City of New York Full time

    The City of New York is looking for a highly skilled Information Security Analyst Manager to lead our Information Security Team. As a key member of our organization, you will be responsible for implementing, maintaining, and monitoring our information security program.Responsibilities:Lead the Information Security Team and report directly to the...


  • New York, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a week$130k base + bonus As a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security...


  • New York, United States Intelliswift Software Full time

    Local or Semi local Talent only.This is not a full remote position. Workers are required to report to the office two days per week.- Must be US citizen or Green Card holderResponsibilities:The position’s primary responsibility is to support access management operational activities for critical financial systems. This support includes user onboarding,...


  • New York, United States Metropolitan Jewish Health System Full time

    Overview: Our Corporate team may not provide direct care, but we still touch people's lives in a very real and substantial way. The services we provide contribute greatly to the overall patient and member experience, supporting our reputation for excellence. Why work for MJHS?: When you work with us you will receive comprehensive and affordable health and...


  • new york city, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a weekAs a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security administration tasks and...


  • new york city, United States Social Capital Resources Full time

    Senior Information Security AnalystLocation: Onsite in NYC Midtown, 5 days a weekAs a Senior Information Security Analyst, you will serve as a key risk manager responsible for identifying, assessing, and escalating security risks. You will collaborate closely with the Security and IT Infrastructure teams to support various security administration tasks and...


  • New York, United States MORS Full time

    Details Posted: 10-Sep-24 Location: New York, NY, US, Type: Full-time Salary: Open Internal Number: Information Security Analyst Tier 1 US-NY-New York Job ID: - Type: NYU IT (WS) # of Openings: 1 Category: Technology New York University Overview The Information Security Analyst I role involves conducting basic threat...


  • New York, United States ADEX Full time

    Summary: This is a full-time position for a Senior Information Security Analyst ("Security Analyst") within the Information Security team that participates in all aspects of information security. The Security Analyst shall act as a risk manager with the responsibility for identifying, acting on and escalating risks and is held strictly accountable for the...


  • New York, United States New York University Full time

    Position Summary The Information Security Analyst I role involves conducting basic threat detection and incident response activities to maintain NYU’s security posture. Job duties include identifying and mitigating security risks by analyzing security events and alerts, executing incident response procedures, and communicating and assisting stakeholders....