Performs analysis of Alliance information security practices to ensure alignment with industry standards and guidelines
Identifies, investigates, and resolves security breaches detected by Alliance security solutions
Participates in the creation and maintenance of policies, standards, guidelines, and procedures related to information security
Leads and performs staff training on information security and security breach prevention
Reports to the Information Security Manager and collaborates with IT, compliance, and business units to align security with organizational goals
Monitors security solutions (SIEM and detection technologies), conducts vulnerability assessments, recommends remediation, and participates in incident response and forensic analysis
Supports proactive security functions such as risk assessments, audits, and security awareness training
May be required to attend quarterly company-wide events or in-office/in-community presence depending on business need; interview process remote via Microsoft Teams
Requirements
Brings a broad foundation across multiple areas of information security, including network security, endpoint protection, identity and access management, and cloud security, in a healthcare environment
Demonstrates strong knowledge of security frameworks (e.g., NIST, ISO 27001, CIS Controls) and regulatory requirements (e.g., HIPAA, PCI-DSS, GDPR)
Skilled in monitoring, analyzing, and responding to security incidents using SIEM tools and other detection technologies
Able to perform vulnerability assessments, interpret findings, and recommend practical remediation steps
Comfortable with both proactive (risk assessments, audits, security awareness training) and reactive (incident response, forensic analysis) security functions
Effective communicator who can explain technical risks and solutions to both technical teams and non-technical stakeholders
Strong problem-solving mindset and attention to detail; able to anticipate threats and implement preventive measures
Demonstrated ability to collaborate across IT, compliance, and business units to align security with organizational goals
CISSP or CISM a plus
Knowledge of: HIPAA and FISCAM security guidelines; Computer network penetration testing; Security frameworks such as NIST, ISO 27001, and COBIT; Firewalls, proxies, SIEM, antivirus, and IDPS concepts; Security systems, operating systems, and virtualization
Ability to: identify, mitigate and educate staff regarding the avoidance of network vulnerabilities; write clearly, concisely and precisely; interpret and synthesize a wide range of information; develop training materials and conduct staff training; demonstrate strong analytical and problem-solving skills
Education: Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field
Experience: A minimum of eight years of professional-level information technology experience, which included a minimum of three years of experience performing information security functions in a health care environment (a Master’s degree may substitute for two years of the required experience); or an equivalent combination of education and experience may be qualifying
Work authorization: Applicants must be currently authorized to work in the United States on a full-time, ongoing basis without current or future needs for employer-sponsored sponsorship
IT & Security Analyst managing IT operations and security for WEBTOON Entertainment in Los Angeles. Collaborating with global security teams and overseeing user access and security systems.
Information Security Analyst managing critical governance, risk, and compliance topics. Leading incident responses and security policy development in a hybrid work model.
Information Security Analyst overseeing access management for SKY applications, ensuring security compliance and incident management. Involves technical support and lifecycle management of requests.
Cyber Security Analyst enhancing cyber resilience for the Swiss financial sector with a focus on threat intelligence. Collaborating closely with partners and regulatory agencies to safeguard against cyber threats.
Junior Information Security Analyst at Dotz supporting IT in security solutions and information asset protection. Engaging with various technology areas and projects on cybersecurity initiatives.
Cybersecurity Analyst developing and implementing information security programs at WebTPA. Liaising between IT and business partners, addressing security requirements throughout project life cycle.
Cyber Security Analyst managing user access and security for all company applications at a non - profit organization. Collaborating with teams to monitor cyber security incidents and ensure compliance with policies.
Cyber Security Analyst managing cyber security incidents and improving resilience at Heathrow Airport. Leading response playbook development and simulation exercises for effective incident handling.
Security Operations Analyst responsible for monitoring and analyzing security events at Gen Digital. Collaborating with experts to protect global systems and data while enhancing cybersecurity posture.