Hiring.Camp

Information Security Analyst Senior

Careers @Arkansasbluecross

·

Yesterday

Salary
$99k – $129k
Location
Little Rock, AR, United States of America
Workplace
Hybrid, Onsite
Type
Full-time
Department
Security
Seniority
Senior
Source
Workday

Description

To learn more about Arkansas Blue Cross and Blue Shield Hiring Policies, please click here.

Job Summary

The Information Security Analyst is responsible for the operations, administration, and governance of the enterprise security solutions and processes.

Requirements

EDUCATION

  • Bachelor’s degree in Business, Computer Science, Management Information Systems, or related field. In lieu of degree, five (5) years’ relevant experience will be considered.

LICENSING/CERTIFICATION

  • Professional security management certification, such as a HITRUST certification (CCSFP), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA) or other similar credentials preferred.

EXPERIENCE

  • Minimum five (5) years' IT security experience with a complex system technology.
  • Advance knowledge of at least one (1) common information security management framework, such as HIPAA, HITRUST, ISO/IEC 27001, ITIL, NIST, COBIT, and/or ITL.
  • System analysis experience preferred.
  • Project management experience preferred.
  • Data testing and/or software application testing preferred.

ESSENTIAL SKILLS & ABILITIES

  • Detail-Oriented
  • Critical thinking
  • Strong analytical skills
  • Problem sensitivity
  • Ingenuity
  • Project management skills
  • Excellent communication skills
  • Ability to build collaborative relationships

LOCATION

This is a hybrid role in our Little Rock, AR, location, requiring a minimum of three days in office weekly.

Skills

• Active Listening • Business Compliance • Computer Literacy • Coordinating Resources • Critical Thinking • Deductive Reasoning • Interpersonal Relationship Management • Operations Coordination • Oral Communications • Problem Sensitivity • Process Improvements • Systems Analysis • Time Management • Written Communication

Responsibilities

• Asset Security: Provides guidance and policy expertise for data security, specifically regarding data classification, data storage, data transmission, and data lifecycle. Sets baseline configurations and monitors data governance. Sets policy and enforcement on security standards, such as file permissions, encryption, cloud data security, network assets, endpoint requirements, and others. • Communications and Network Security: Provides/supports network monitoring solutions within SOC/SIEM implementation. Handles initial incident response functions. Provides limited consultation to support elements within this domain. Oversees implementation, configuration, maintenance, and changes for all network security capabilities and assets. • Identity and Access Management: Provides account security management and control across all account security systems. Manages privileged access management entitlement review/approvals. Conducts usage audits, verifies removal and retired accounts, approves launcher requests, and provides end user support. Creates, modifies, deletes, and retires member accounts. Manages role entitlement process. Maintains Workday integration. Manages access management application/system updates and testing. • Peforms other duties as assigned. • Security & Risk Management: Provides guidance to business partners for all information security-related issues and identified security risks. Creates, manages, and enforces information security policy. Provides oversight of framework compliance. Manages enterprise audit remediation and CAP management. Manages vulnerability management plan. Conducts anti-phishing campaigns. Conducts and manages the security awareness and training program. Manages the third party risk management program. • Security Architecture and Engineering: Ensures information security is designed with confidentiality, integrity, and access in mind. Sets security requirements. Ensures system redundancy and fault tolerance. Sets standards for mobile and web security. Ensures security of IoT devices. • Security Assessment and Testing: Provides requested evidence/artifacts for all security-related assessments/audits. Coordinates and schedules security assessments required of the Enterprise. Coordinates and ensures the quality of outside vendor-provided security assessments, risk assessments, and penetration testing of enterprise assets • Security Operations: Applies information security concepts, techniques, and best practices to support incident response plans and capabilities. Conductsand supports investigations, conducts logging and monitoring activities, securely provisions resources, tests disaster recovery plans, and addresses personnel safety and security concerns. • Software Development Security: Provides technical consultation as required. Oversees the static and dynamic scanning of internally developed software within the company and provides reports to ensure proper remediation of code vulnerabilities. Reviews SDLC documentation to ensure compliance with established company and regulatory standards as applicable. • This is an all-inclusive responsibility listing for all levels of Information Security Analyst. Incumbent is responsible for:
Senior – Proficiency in five (5) security components:

Certifications

Certified Information Security Manager (CISM) - Information Systems Audit and Control Association (ISACA), Certified Information Systems Auditor (CISA) - Information Systems Audit and Control Association (ISACA), Certified Information System Security Professional (CISSP) - Information Systems Audit and Control Association (ISACA)

Hiring Range

$99,000.00 - $128,600.00

 

Security Requirements

This position is identified as level three (3). This position must ensure the security and confidentiality of records and information to prevent substantial harm, embarrassment, inconvenience, or unfairness to any individual on whom information is maintained. The integrity of information must be maintained as outlined in the company Administrative Manual.

Segregation of Duties

Segregation of duties will be used to ensure that errors or irregularities are prevented or detected on a timely basis by employees in the normal course of business. This position must adhere to the segregation of duties guidelines in the Administrative Manual.

Employment Type

Regular

ADA Requirements

2.1 General Office Worker, Semi-Active, Campus Travel - Someone who normally works in an office setting or remotely, periodically has lifting and carrying requirements up to 40 lbs and routinely travels for work within walking distance of location of primary work assignment as essential functions of the job.

Skills

WorkdayPenetration TestingSIEMSOCRisk ManagementComplianceProject ManagementITILHIPAACISSP

Similar Jobs

30

Information Security Analyst

Join the connected world of Assurant·Buenos Aires, Argentina

1d ago

Analyst, Information Security

Totalwine·SSC - MD, US

1d ago

Information Security Analyst

Datalabusa·Westminster, CO·Hybrid

1d ago

Information Security Analyst

Eurofins Scientific·Bengaluru, KA·Hybrid

1d ago

Information Security Analyst

Nttlimited·Petaling Jaya, Malaysia·Hybrid

2d ago

Analyst, Information Security

Spe·London, UK·Hybrid

3d ago

Analyst, Information Security

StandardAero·San Antonio, TX

3d ago

Information Security Analyst

Datalabusa·Germantown, MD·Hybrid

4d ago

Information Security Analyst

City of College Station·College Station, TX

5d ago

Analyst Information Security

Jci·Bratislava Business Center JCI, Slovakia

5d ago

Analyst, Information Security

Imax·Sheridan Park, Canada

1w ago

Information Security Analyst

Customized Energy Solutions·Ho Chi Minh City, Ho Chi Minh·Hybrid

1w ago

Information Security Analyst

Pico·Madrid

1w ago

Information Security Analyst

Pico·Belfast

1w ago

Information Security Analyst

Global Payments·Pune, India·Onsite

1w ago

Information Security Analyst

Arctiq·Duluth, Georgia

1w ago

Information Security Analyst

Db·Bangalore Velankani ISC, India

1w ago

Information Security Analyst

FIVE STAR BANK, CA·Rancho Cordova, CA

2w ago

Information Security Analyst

Empeople·Moline, IL·Remote

2w ago

Information Security Analyst

First Farmers Bank & Trust·Kokomo, IN

2w ago

Information Security Analyst

First Farmers Bank & Trust·Carmel, IN

2w ago

Information Security Analyst

Cisco·CRI-SAN JOSE, Costa Rica·Hybrid

2w ago

Information Security Analyst

BlueWater Federal Solutions·Germantown, MD

2w ago

Information Security Analyst

Episodesixlinkedin·Argentina·Hybrid

2w ago

Information Security Analyst

Episodesix·Argentina·Hybrid

2w ago

Information Security Analyst

Cherokee Federal·Washington, DC·Onsite

2w ago

Information Security Analyst

Cobalt Benefits Group LLC·Manchester, NH·Hybrid

2w ago

Information Security Analyst

Brandesassociates·Point Mugu, CA

2w ago

Information Security Analyst

Hudl·Lincoln, NE +1·Remote, Onsite

3w ago

Information Security Analyst

The Granite Group·Liverpool, UK

3w ago
Information Security Analyst Senior at Careers @Arkansasbluecross • $99k – $129k | Hiring.Camp