Analyst, Security Information Systems (CISSP Preferred)
Start date:
Job Type:
Job Details
Job Summary: This role supports organizational needs including patients, clinicians, and operations by enforcing corporate, regulatory, and risk management policies. The position assists in designing user awareness programs, compliance monitoring, and security adherence. Responsibilities include implementing upgrades, repairs, and modifications to security devices or software, as well as maintaining logical security reporting to facilitate monitoring.
Essential Responsibilities:
- Implement, update, maintain, and monitor enterprise network and security operations infrastructure.
- Test and configure security operations support, including user setup based on role and project needs.
- Provide reporting on internet usage, firewall, and intrusion protection.
- Analyze security products, tools, and services to ensure protection of information systems from unauthorized access or damage.
- Generate audit reports and test security modifications.
- Evaluate new software or tool implementations for security implications.
- Support and oversee the information security management program.
Customer Service:
- Identify and resolve security issues promptly.
- Collaborate with IS associates to deliver quality service and provide Tier 1 support for tickets.
- Recognize patterns indicating major issues and escalate appropriately.
- Act as a change agent to improve processes and implement new technologies.
Continuous Improvement:
- Assist in developing enterprise-level security strategies and recommend standards.
- Communicate and educate others on sound security principles.
- Analyze business processes and recommend improvements for efficiency.
- Provide recommendations on security practices and their implementation.
Change Management:
- Follow established change management governance.
- Contribute to the Change Management Committee by making decisions affecting security and infrastructure.
Skills and Abilities:
- Strong knowledge of security controls and best practices.
- High level of loyalty, reliability, tact, and discretion in handling confidential information.
Supplemental Responsibilities:
- Participate in on-call rotation for information security.
- Regularly meet with management and security teams to discuss projects, tasks, and policy development.
- Collaborate with project management office on assigned projects.
Guest Relations:
- Exhibit excellent relations with patients, visitors, physicians, and coworkers by showing courtesy, compassion, and respect.
- Communicate effectively with coworkers, other departments, and vendors.
Patient Data Protection: This role requires adherence to HIPAA regulations to ensure confidentiality, integrity, and availability of patient data.
Education
Bachelor’s degree in an IT-related field is preferred.
Experience
At least two years of experience in IT or a quantitative business area focusing on data security and architecture is preferred but not required.
Requirements
Desirable certifications include CompTIA Security+, CISSP, CCSP, CISA, Cisco CyberOps Associate, SCNS, or SSCP.
