Enterprise Application Assessment Cybersecurity Analyst

6 hours ago


Nashville, Tennessee, United States Vanderbilt University Medical Center Full time

Discover Vanderbilt University Medical Center : Located in Nashville, Tennessee, and operating at a global crossroads of teaching, discovery, and patient care, VUMC is a community of individuals who come to work each day with the simple aim of changing the world. It is a place where your expertise will be valued, your knowledge expanded, and your abilities challenged. Vanderbilt Health is committed to an environment where everyone has the chance to thrive and where your uniqueness is sought and celebrated. It is a place where employees know they are part of something that is bigger than themselves, take exceptional pride in their work and never settle for what was good enough yesterday. Vanderbilt's mission is to advance health and wellness through preeminent programs in patient care, education, and research.

Organization:

VEC AVA

Job Summary:

In this role, the Analyst will be responsible for assisting in assessing applications to identify security best practices are being followed in the development lifecycle. Analysts will work closely with our senior security analysts to analyze, and respond to potential security issues, ensuring the confidentiality, integrity, and availability of VUMC developed applications.

.

KEY RESPONSIBILITIES

  • Conduct regular assessments to identify weaknesses in VUMC applications.
  • Assist in analyzing security issues to detect and report potential security incidents to the respective support team.
  • Collaborate with cross-functional teams to implement security best practices and mitigate identified weaknesses.
  • Stay informed about the latest security trends, and coding best practices to address emerging security issues.
  • Assist in the development and implementation of security policies, procedures, and controls.

TECHNICAL CAPABILITIES

  • Security Researcher (Novice) – Conduct research and analyze emerging cyber threats and vulnerabilities. Has existing knowledge of areas that contain Cybersecurity knowledge or how to search for new areas where information can be found. Able to provide timely intelligence to inform security strategies and Cybersecurity management. This will include oral and written notification to the necessary parties.
  • Conduct Application Assessment (Novice) – Conduct application assessment on various applications. Provide timely reports to any stakeholders of the issues and Cybersecurity management. Will be expected to identify vulnerabilities that need to be remediated and provide guidance on potential mitigations for the vulnerabilities. Has conducted an application assessment in the past on an application. Basic knowledge of the following: APIs, Operating Systems, Software packages, Application Frameworks, Basic Languages, Application Authentication, Application Assessment Tools, Development Lifecycles.
  • Conduct Source Code Reviews (Novice) – Will be expected to conduct and participate in source code reviews. This will include providing a detailed write-up of the review. Will work with various key stakeholders to report existing issues and potential fixes if needed. Basic knowledge of the following: Source code review tools, common programming languages.
  • Escalation/Troubleshooting (Novice) – Will be expected to be a technical resource for any issues that may arise from scanning or assessing applications. They will be expected to report the issue to the necessary parties and follow through until the issue is resolved.
  • Consultation (Novice) – Will provide consulting services to VUMC support personnel as designated by VEC SOS leadership. They will operate in both a per directive and per request basis through approved methods. These include, but not limited to approved short-term and long-term initiatives.
  • Project Resource (Novice) – Will assist in cybersecurity centric projects for the institution. They will be expected to be assigned to multiple initiatives at the same time. They will be expected to operate in both an independent and team environment executing proper time and resource management skills. Regular reporting cadence with their director is expected.

About the Department:

VUMC Enterprise Cybersecurity (VEC)

VUMC Enterprise Cybersecurity focuses on protecting Vanderbilt Health from the numerous cyberthreats that exist in today's world. They work to identify and mitigate risks, create proactive solutions to manage these risks, and develop a strong culture of safety and security within the organization.

Our professional administrative functions include critical supporting roles in information technology and informatics, finance, administration, legal and community affairs, human resources, communications and marketing, development, facilities, and many more.

At our growing health system, we support each other and encourage excellence among all who are part of our workforce. High-achieving employees stay at Vanderbilt Health for professional growth, appreciation of benefits, and a sense of community and purpose.

Core Accountabilities:

Organizational Impact: Executes job responsibilities with the understanding of how output would affect and impact other areas related to own job area/team with occasional guidance. Problem Solving/ Complexity of work: Analyzes moderately complex problems using technical experience and judgment. Breadth of Knowledge: Has expanded knowledge gained through experience within a professional area. Team Interaction: Provides informal guidance and support to team members.

Core Capabilities :

Supporting Colleagues:- Develops Self and Others: Invests time, energy, and enthusiasm in developing self/others to help improve performance e and gain knowledge in new areas.- Builds and Maintains Relationships: Maintains regular contact with key colleagues and stakeholders using formal and informal opportunities to expand and strengthen relationships.- Communicates Effectively: Recognizes group interactions and modifies one's own communication style to suit different situations and audiences. Delivering Excellent Services:- Serves Others with Compassion: Seeks to understand current and future needs of relevant stakeholders and customizes services to better address them.- Solves Complex Problems: Approaches problems from different angles; Identifies new possibilities to interpret opportunities and develop concrete solutions.- Offers Meaningful Advice and Support: Provides ongoing support and coaching in a constructive manner to increase employees' effectiveness. Ensuring High Quality: - Performs Excellent Work: Engages regularly in formal and informal dialogue about quality; directly addresses quality issues promptly.- Ensures Continuous Improvement: Applies various learning experiences by looking beyond symptoms to uncover underlying causes of problems and identifies ways to resolve them. - Fulfills Safety and Regulatory Requirements: Understands all aspects of providing a safe environment and performs routine safety checks to prevent safety hazards from occurring. Managing Resources Effectively: - Demonstrates Accountability: Demonstrates a sense of ownership, focusing on and driving critical issues to closure.- Stewards Organizational Resources: Applies understanding of the departmental work to effectively manage resources for a department/area.- Makes Data Driven Decisions: Demonstrates strong understanding of the information or data to identify and elevate opportunities. Fostering Innovation:- Generates New Ideas: Proactively identifies new ideas/opportunities from multiple sources or methods to improve processes beyond conventional approaches.- Applies Technology: Demonstrates an enthusiasm for learning new technologies, tools, and procedures to address short-term challenges.- Adapts to Change: Views difficult situations and/or problems as opportunities for improvement; actively embraces change instead of emphasizing negative elements.

Position Qualifications:

Responsibilities:

Certifications:

Work Experience:

Relevant Work Experience

Experience Level:

2 years

Education:

Bachelor's

Vanderbilt Health is committed to fostering an environment where everyone has the chance to thrive and is committed to the principles of equal opportunity. EOE/Vets/Disabled.


  • Cybersecurity Analyst

    7 hours ago


    Nashville, Tennessee, United States Tennessee State University Full time

    Position InformationPosition TitleCybersecurity AnalystDivisionSpecial Asst. to Pres. for ITDepartmentOffice of Technology ServicesNumber of hours per week37.5Days to be workedMonday, Tuesday, Wednesday, Thursday, FridayMonths per yearFiscal (12 months)If modified, list monthsJob TypeFull-TimeCampusMain CampusIf other location, please indicatePosition...


  • Nashville, Tennessee, United States Tennessee Board of Regents Full time

    Title: CLSCC Enterprise Application AnalystEmployee Classification: Institution: System OfficeDepartment: Information TechnologyCampus Location: Tennessee Board of Regents System OfficeJob SummaryThe position will be involved in technical areas ranging from support of enterprise business logic, delivery of new initiatives supporting Ellucian's Banner ERP,...

  • Intern, Cybersecurity

    7 hours ago


    Nashville, Tennessee, United States LP Building Solutions Full time

    Louisiana-Pacific Corporation (LP Building Solutions) is a leading provider of high-performance building solutions that meet the demands of builders, remodelers, and homeowners worldwide. We manufacture engineered wood building products that include an extensive offering of innovative and dependable building materials and accessories. LP's values-driven...


  • Nashville, Tennessee, United States AAA Cooper Transportation Full time

    Job Description:AAA Cooper Transportation is immediately hiring a Director of Enterprise Applications (ERP or TMS) to help lead the team of 35 employees in Dothan, AL.Salary Starting at $160,000 DOETo perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of...


  • Nashville, Tennessee, United States Caterpillar Inc. Full time $128,470 - $192,710

    Career Area:Technology, Digital and DataJob Description:Your Work Shapes the World at Caterpillar Inc. When you join Caterpillar, you're joining a global team who cares not just about the work we do – but also about each other.  We are the makers, problem solvers, and future world builders who are creating stronger, more sustainable communities. We...


  • Nashville, Tennessee, United States Caterpillar Inc. Full time

    Career AreaTechnology, Digital and DataJob DescriptionYour Work Shapes the World at Caterpillar Inc.When you join Caterpillar, you're joining a global team who cares not just about the work we do – but also about each other. We are the makers, problem solvers, and future world builders who are creating stronger, more sustainable communities. We don't just...


  • Nashville, Tennessee, United States Oracle Full time

    Reporting to: Chief of Staff to the CISO, Oracle Health & GIUsAbout the RoleOracle Health is seeking a Cybersecurity Metrics Architect to design and manage a performance measurement strategy that enables data-driven decision-making across our security program. This role will define how we measure progress, communicate effectiveness, and identify areas for...


  • Nashville, Tennessee, United States Metropolitan Nashville Public Schools Full time

    Enterprise Applications SpecialistJob Code: Job Family/Function: 45 – Information Technology\Software SolutionsFLSA: ExemptGrade Ladder: MNPS Support HourlyPay Grade: MNPS.SCH010-HDuration (days/year): 260Locations(s): Support HubWe Are Team MNPSMetro Schools is one of the largest and most diverse school districts in the United States. Our teachers and...


  • Nashville, Tennessee, United States Vanderbilt University Medical Center Full time

    Discover Vanderbilt University Medical Center : Located in Nashville, Tennessee, and operating at a global crossroads of teaching, discovery, and patient care, VUMC is a community of individuals who come to work each day with the simple aim of changing the world. It is a place where your expertise will be valued, your knowledge expanded, and your abilities...


  • Nashville, Tennessee, United States Cloud Range Full time

    Cloud Range, winner of the Top InfoSec Innovator Award for Most Innovative Cyber Defense Readiness Platform, is on a mission to make organizations battle-ready by preparing cybersecurity teams to defend against complex attacks through a customized, full-service, simulation-based cyber attack training program. Our cyber range solutions and live-fire attack...