- Salary
- $70k – $85k
- Location
- Syracuse NY · Syracuse
- Department
- IT
- Experience
- 2+ years
Description
Who: HealtheConnections, a respected national leader in providing health information exchange (HIE) services for NYS-based organizations.
What: We're looking for a Security Analyst to help strengthen our enterprise security and compliance program. This role is ideal for someone with experience in information security, governance, risk, compliance, or IT operations who enjoys building processes, improving security practices, and collaborating across teams to protect sensitive healthcare information.
Why: Every day, HealtheConnections supports the secure exchange of healthcare information used by providers and organizations across New York State. As a Security Analyst, you'll help safeguard that information by coordinating vendor security reviews, supporting regulatory compliance, maintaining risk documentation, tracking remediation efforts, and helping ensure we're always audit-ready.
You'll work with internal teams, business partners, and vendors to strengthen security processes while supporting a collaborative, high-performing organization whose work has a direct impact on healthcare throughout our communities.
We're looking for someone who is organized, proactive, enjoys solving problems, and takes pride in creating well-documented, repeatable processes.
Talk to us to see if this is a fit for you!
Primary Responsibilities
- Coordinate third-party vendor security reviews and risk assessments.
- Collaborate with third-party vendors, security partners, and service providers to support security operations, resolve security issues, assess risks, and ensure adherence to organizational security requirements and best practices.
- Maintain security risk registers, audit documentation, Plans of Action and Milestones (POA&Ms), and remediation tracking to support timely resolution of identified security risks and compliance requirements.
- Support HIPAA, HITRUST, NIST, OHIP and other security compliance initiatives.
- Track security vulnerabilities and coordinate remediation with technical teams.
- Develop and maintain security policies, procedures, and operational documentation.
- Prepare security metrics, dashboards, and reports.
- Support security awareness initiatives and organization-wide security communications.
Competencies & Experience
- 2–5 years of experience in Information Security, IT Risk, Compliance, Audit, or related field.
- Working knowledge of HIPAA and healthcare security requirements.
- Familiarity with security frameworks such as NIST Cybersecurity Framework, HITRUST, OHIP or similar governance frameworks.
- Experience supporting vendor risk assessments, audit activities, security documentation, or remediation tracking.
- Strong organizational skills with the ability to manage multiple priorities and follow through on open items.
- Experience using Microsoft 365, SharePoint, Excel, Jira, Salesforce, Process Street or similar workflow tools preferred.
- Healthcare or other regulated industry experience is a plus.
- Security certifications (Security+, CySA+, CISA, CRISC, or similar) or progress toward certification are preferred.
Not sure you meet all qualifications? Research shows that women and members of other under-represented groups tend to not apply to jobs when they think they may not meet every qualification, when, in fact, they do! We are committed to creating a diverse and inclusive environment and strongly encourage you to apply.
You’re a great fit for us if you’re good at…
- Staying organized and managing multiple priorities
- Building repeatable processes and maintaining detailed documentation.
- Communicating effectively with both technical and non-technical stakeholders.
- Thinking critically and solving problems with a risk-based mindset.
- Following through on projects and proactively driving work to completion.
- Collaborating across departments while maintaining attention to detail.
We’re a great fit for you if you’re looking for…
- A high-performance, high-energy, collaborative environment. One of the best things about working here is our team. They’re smart, supportive, passionate, and among the best in the business.
- A dynamic industry. Health information exchange has exciting opportunities on the horizon as the healthcare industry evolves, both within NYS and on the national stage.
- Strong benefits. We cover the cost of medical insurance for employees along with a full suite of benefits, including 401k matching, generous vacation/holiday time, unlimited sick time, flexibility in work hours and hybrid/remote work, and more.
- Work that makes a difference in your community. We’re proud to make an impact on the daily lives of health professionals and support improved health outcomes for individuals right here in New York State.
We like to say that we’re “casually competent” – we’re not pretentious, but we know our stuff. Our people are talented, our culture is vibrant, and our work is at the top of its class. Even better, our customers genuinely like working with us, and we’ve seen firsthand how what we do has made a positive impact on our community.
$70,000-85,000 is the lowest to highest salary that we in good faith believe we would pay for this role at the time of this posting. We may ultimately pay more or less than the posted range, and the range may be modified in the future. An employee’s pay position within the salary range will be based on several factors including, but not limited to, the prevailing minimum wage for the location, relevant education, qualifications, certifications, experience, skills, and seniority.