Company

Vibrant Emotional HealthSee more

addressAddressRemote
salary Salary$78,000 - $90,000 a year
CategoryInformation Technology

Job description

Position Title: Analyst I, Information Security
Salary Range: $78,000 – $90,000/year
Department: Information Technology
Reports to: Manager, Information Security
Location: Remote
Schedule: Monday - Friday , 35 hours

Formerly the Mental Health Association of New York City (MHA-NYC), Vibrant Emotional Health’s groundbreaking solutions have delivered high quality services and support, when, where and how people need it for over 50 years. Through our state-of-the-art technology-enabled services, community wellness programs, and advocacy and education work, we are building a society in which emotional wellness can be a reality for everyone.

Position Summary:

Vibrant is looking for an Information Security Analyst I to join our Cybersecurity team as it grows. You will report directly to the Information Security Manager. The primary emphasis of this role will be on cloud, infrastructure and application security, incident response, auditing, training, and other relevant aspects of the program, as required. This role will be involved in day-to-day operations of the in-place security solutions. You will be responsible for playing a key role in protecting the confidentiality, integrity, and availability of all company data and systems. This may include the identification, investigation, and resolution of security incidents detected by those systems. Projects may include the implementation of new security solutions, participation in the creation and/or maintenance of policies, standards, baselines, guidelines, and procedures, as well as conducting vulnerability audits and assessments, and working with technology teams to update and maintain system security. The Security Analyst is expected to be fully aware of the enterprise’s security goals as established by its stated policies, procedures, and guidelines and to actively work towards upholding those goals.


Duties/Responsibilities:

Strategy & Planning
  • Participate in the planning and design of enterprise security architecture.
  • Participate in the creation of enterprise security documents (policies, standards, baselines, guidelines, and procedures).
  • Participate in the planning and design of an enterprise business continuity plan and disaster recovery plan.
Acquisition & Deployment
  • Maintain up-to-date detailed knowledge of the Cybersecurity industry including awareness of new or revised security solutions, improved security processes, and the development of new attacks and threat vectors.
  • Assist with recommending additional security solutions or enhancements to existing security solutions to improve overall enterprise security.
  • Perform the deployment, integration, and initial configuration of all new security solutions and of any enhancements to existing security solutions in accordance with standard best operating procedures generically and the enterprise’s security documents specifically.
Operational Management
  • Maintain up-to-date baselines using industry standard frameworks such as CIS and CSA for the secure configuration and operations of all in-place devices, whether they be under direct control (i.e. security tools) or not (e.g. workstations, servers, network devices).
  • Maintain operational configurations of all in-place security solutions as per the established baselines and industry best practices.
  • Monitor all in-place security solutions for efficient and appropriate operations.
  • Review logs and reports of all in-place devices, whether they be under direct control (i.e. security tools) or not (e.g. workstations, servers, network devices). Interpret the implications of that activity and devise plans for appropriate resolution.
  • Respond to tickets for addressing security concerns, vulnerabilities, and end-user reported issues.
  • Participate in investigations into problematic activity.
  • Participate in the design and execution of vulnerability assessments, penetration tests, and security audits.
  • Provide on-call support for end users for all in-place security solutions.
  • Partner with AppDev to identify and remediate vulnerabilities in Applications
Required Skills/Abilities:

Knowledge & Experience

  • General knowledge of security frameworks and controls such as: NIST (CSF, SP 800-53, SP 800-171), CIS, CSA, ISO27000.
  • Some experience with security systems and tools that may include: Firewalls, WAF, SIEM, SOAR, MDR, IAM, PAM/PIM, Network Packet sniffers, Nmap, IDS/IPS, Vulnerability Management tools, SAST/DAST Burp Suite.
  • Some experience with Encryption, Antivirus/Malware, Penetration Testing, Source Code Scanning.
  • Familiar with threat modeling methodologies
  • Working technical knowledge of Cloud and SaaS security solutions and tools.
  • Basic understanding of IP, TCP/IP, and other network administration protocols.
  • Basic understanding of security controls and system configurations for technologies such as: AWS, Azure, GCP, Microsoft AD, Linux.

Personal Attributes

  • Proven analytical, troubleshooting and problem-solving abilities.
  • Ability to effectively prioritize and execute tasks in a high-pressure environment.
  • Good written, oral, and interpersonal communication skills.
  • Ability to conduct research into IT security issues and products as required.
  • Ability to present ideas in business-friendly and user-friendly language.
  • Highly self-motivated and directed.
  • Keen attention to detail.
  • Team-oriented and skilled in working within a collaborative environment.
Required Qualifications:

Experience:

  • Minimum 2 years of technical experience working in cloud, application, infrastructure, and/or network security required
  • Minimum 1 years of experience with Linux operating systems required
  • Minimum 1 years of prior experience with Cloud-based security technologies required
  • Preferred experience implementing and assessing Industry Security Standards including: HIPAA HITECH, HITRUST, FISMA, IS027K, PCI, NIST, CIS, etc.
  • Some experience with Incident Response or Penetration Testing as a nice to have

Formal Education & Certification

  • College diploma or university degree in Cybersecurity or other computer technology degree and/or two years equivalent work experience.
  • One or more of the following certifications:
  • CompTIA Security+
  • GIAC Security Essentials (GSEC)
  • GIAC Cloud Security Essentials (GCLD)
  • Any AWS Certified Associate level certifications
  • AWS Certified Security - Specialty
  • Microsoft Certified Systems Administrator: Security
Physical Requirements:
  • NA

Excellent comprehensive benefits, including medical, dental, vision, supplemental income insurance, pre-tax transit/parking, pre-tax FSA for medical and dependent care, and 401K available. 4 weeks’ vacation, plum benefits, etc.
Studies have shown that women and people of color are less likely to apply for jobs unless they believe they are able to perform every task in the job description. We are most interested in finding the best candidate for the job, and that candidate may be one who comes from a less traditional background. Vibrant will consider any equivalent combination of knowledge, skills, education and experience to meet minimum qualifications. If you are interested in applying, we encourage you to think broadly about your background and skill set for the role.

Benefits

Health insurance, Dental insurance, 401(k), Flexible spending account, Vision insurance
Refer code: 8444397. Vibrant Emotional Health - The previous day - 2024-03-04 02:58

Vibrant Emotional Health

Remote
Jobs feed

Document Management Analyst II

Amentum

Lorida, FL

Assistant Director of Human Resources

Connecticut Housing Finance Authority

Rocky Hill, CT

$114,823 - $151,382 a year

Maintenance Specialist III

Amentum

Richland, WA

CWMD Intelligence Analyst

Amentum

Lorida, FL

Product Director

Ubiety

Chicago, IL

$180,000 - $190,000 a year

Group HR Director

Tripspark Technologies

Remote

$126K - $159K a year

Director of Product Management - Telecommute Available

Imagetrend Llc

Minnesota, United States

$157K - $199K a year

PACKAGING FILLER OP TECH 1

Sierra Nevada Brewing Co

Chico, CA

Director of Product Management, Alarms - Core

Verkada

San Mateo, CA

$160,000 - $275,000 a year

Director, Product Management

Maxor National Pharmacy Services, Llc

Remote

$135K - $170K a year

Share jobs with friends

Security Analyst

Peraton

$115k-138k (estimate)

Washington, DC

just now - seen

Cyber Security Analyst

Peraton

Chantilly, VA

3 hours ago - seen

Security Analyst Investigator

Meta

Washington, DC

3 hours ago - seen

Cyber Security Analyst

Commscope

Olin, NC

3 hours ago - seen

Security Analyst

Peraton

Washington, DC

12 hours ago - seen

Senior FP&A Analyst

Armis Security

New York, NY

14 hours ago - seen

IT Security Analyst

Cyberhaven

United States

15 hours ago - seen

Cyber Security Specialist/Analyst/Engineer

Vastek, Inc.

Chicago, IL

22 hours ago - seen

Information System Security Analyst

Resource Management Concepts, Inc.

Dahlgren, VA

24 hours ago - seen

Jr. Security Incident Response Analyst

Kaseya

Lorida, FL

24 hours ago - seen

EFB Cyber Security Analyst

Input Technology Solutions

Hampton, VA

2 days ago - seen

EFB Cyber Security Analyst

Ttc, Inc.

Hampton, VA

2 days ago - seen

Security Analyst – Risk Management

The University Of Tennessee, Knoxville

Knoxville, TN

3 days ago - seen

Jr. Information Security Analyst

Abacus Technology

Massachusetts, United States

4 days ago - seen

Associate Information Security Compliance Analyst - US

Intelsat

Virginia, United States

4 days ago - seen

Epic Security Analyst

Prominence Advisors

New York, NY

4 days ago - seen

Security Incident Response Analyst I

Box

Remote - United States

4 days ago - seen

Info Security Analyst

Nesco Resource

Up to $69.00 •

Remote - Florida, United States

4 days ago - seen