Hiring.Camp

Information Security Analyst, FT, Days

Prismahealth

·

Yesterday

Location
Greenville Memorial Hospital, United States of America
Type
Full-time
Department
Security
Education
Master
Source
Workday

Description

Inspire health. Serve with compassion. Be the difference.

Job Summary

Assists in developing, implementing and administering plans, policies and procedures, techniques, and services ensuring ongoing compliance and security of Prisma Health information resources. Assists with risk and compliance assessments and/or audits of organizational systems, SaaS, PaaS, IaaS services and processes, assists in interpreting results, and developing and communication recommendations for improvement to management. Assists with review, development and maintenance of security policies. Assists with Third Party Risk Assessments and recommends controls and monitors the effectiveness of the controls after implementation. Provides enterprise-wide, risk-based security and continuity capabilities to meet changing internal and external threat landscapes. This includes responsibility for identifying and protecting sensitive information, detecting and responding to cyber threats, and maintaining compliance with regulatory requirements and industry standards. Provides security training and awareness delivery. Performs a security advocacy role and act as a liaison with business units for issues related to information security and ongoing compliance maintenance.

Essential Functions

  • All team members are expected to be knowledgeable and compliant with Prisma Health's values:  Inspire health.  Serve with compassion.  Be the difference.

  • Supports security awareness training to organization employees. Administer Security Awareness Training Program (research and update content, rollout, employee training participation verification, reporting on hosted LMS). Provides on-demand targeted security training supporting key initiatives.

  • Supports vulnerability management program to ensure vulnerabilities across the enterprise are identified and remediated. Vulnerabilities to include common infrastructure systems and services, third party platforms, vendor managed medical systems, hosted web-services and software development code vulnerabilities. Reviews and verify security patch processes to ensure all patches are applied to within policy guidelines.

  • Supports Governance Risk and Compliance platform. Ensure risk is accurately tracked across the enterprise. Document, review and maintain controls, control activities, conduct control mapping across multiple frameworks and regulatory requirements.

  • Supports third party risk and compliance assessment engagements. Perform internal system/platform risk assessments and audits. Responsible for answering security compliance assessment questionnaires and RFP's.

  • Supports Information Security Program to ensure enterprise level framework including defining, implementing and enforcing policies, standards and practices to protect the business, information and resources. 

  • Assists with the implementation and management of an incident response plan and reporting process to address security breaches and respond to alleged policy violations or complaints. Participates on the incident response team to contain, and investigate incidents then prepare a plan to prevent future similar incidents.

  • Assists with development of information security reports and metrics for staff, management and executive presentations.

  • Assists with the development of security standards, policies and procedures and best practices for the organization.

  • Stays current on all regulations, laws, security frameworks and certifications. Research the latest information technology (IT) security trends and threats.

  • Assists technical staff to support security efforts as directed by management.

  • Performs other duties as assigned.

Supervisory/Management Responsibilities

  • This is a non-management job that will report to a supervisor, manager, director or executive.

Minimum Requirements

  • Education - Bachelor's degree in Computer Science, Information Security, Business or related field of study.

  • Experience - Two (2) years technical and information security experience.

In Lieu Of

  • In lieu of the education and experience requirements noted above, a combination of acceptable experience, education and certifications may be considered (i.e., High school diploma and seven years of experience Associate degree and four years of experience, Master's degree and no experience).

Required Certifications, Registrations, Licenses

  • One or more certifications CISSP, CISA, CISM, CRISC, Security+ preferred

Knowledge, Skills and Abilities

  • Basic computer skills (spreadsheets, databases and date entry)

  • Understanding of multiple regulatory requirements and frameworks (ex. NIST, ISO, PCI DSS, HIPAA, GDPR, CCPA).

  • Understanding of certifications SOC 1 and 2, Hitrust and ISO 27001.

Work Shift

Day (United States of America)

Location

Greenville Memorial Hospital

Facility

Corporate

Department

Information Security

Share your talent with us! Our vision is simple: to transform healthcare for the benefits of the communities we serve. The transformation of healthcare requires talented individuals in every role here at Prisma Health.

Skills

SOCComplianceHIPAAGDPRISO 27001CISSP

Similar Jobs

30

Information Security Analyst

Uniti · United States · Remote

Yesterday

Information Security Analyst

Atlas Technica · Kyiv, UA · Remote

Yesterday

Information Security Analyst

Willkie · New York, NY, US

5 days ago

Information Security Analyst

Ausredcross · Sydney NSW, Australia +1

6 days ago

Information Security Analyst

Abacus Technology · Hanscom AFB, MA, US

1 week ago

Information Security Analyst

Dolby · Wrocław, Lower Silesian Voivodeship,PL, PL

1 week ago

Information Security Analyst

Videoslots · Tal-Pietà, Pieta, Malta

1 week ago

Information Security Analyst

Adobe · Bangalore, India

1 week ago

Information Security Analyst

Zillow · Bengaluru, India · Onsite

1 week ago

Information Security Analyst

ONYX Insight · Nottingham, GB

2 weeks ago

Information Security Analyst

Bostonpartners · Boston, United States of America

2 weeks ago

Information Security Analyst

Global Payments · Pune, India · Onsite

2 weeks ago

Information Security Analyst

Omnissa · USA-GA, United States of America · Remote

3 weeks ago

Information Security Analyst

Yakimacounty · Technology Services, United States of America

3 weeks ago

Information Security Analyst

Yakimacounty · Technology Services, United States of America

3 weeks ago

Information Security Analyst

Corporate Careers · IAA Building B, United States of America +2 · Onsite

3 weeks ago

Information Security Analyst

Join the connected world of Assurant · Buenos Aires (Alem), Argentina

3 weeks ago

Information Security Analyst

NextGen Federal Systems · Washington, District of Columbia · Onsite

3 weeks ago

Analyst, Information Security

Melcoresorts · City of Dreams Manila, Philippines

3 weeks ago

Information Security Analyst

Eurofins Scientific · Bengaluru, KA, India

4 weeks ago

Information Security Analyst

Rockwellautomation · Mexico Mexico City +2 · Hybrid

1 month ago

Information Security Analyst

Rockwell Automation · Mexico Mexico City +2 · Hybrid

1 month ago

Information Security Analyst

Vesync · Tustin, CA · Onsite

1 month ago

Information Security Analyst

Octanner · USA - Utah-Salt Lake City-Headquarters, United States of America

1 month ago

Information Security Analyst

Itron here · Budapest, Hungary (Local Office) · Hybrid

1 month ago

Information Security Analyst

Crown Agents Bank · London, England, United Kingdom

1 month ago

Information Security Analyst

Jadin Tech · Colorado Springs, CO

1 month ago

Information Security Analyst

Profound · Buenos Aires, Argentina · Onsite

1 month ago

Information Security Analyst

Didomi · Paris,France · Remote

1 month ago

Analyst, Information Security

Consilio · Bangalore, IN

1 month ago