logo inner

Senior Information Security Analyst (July 2024)

SERSUnited StatesRemote, Onsite
This job is no longer open

Job Title (Date):  

Senior Information Security Analyst (July 2024)

Department:

Enterprise Risk Management (ERM)

Employee Type:

  Full-time

Reports to:  Information Security & Privacy Officer


FLSA Status:

Exempt

Travel Required:

  None

Supervisory Responsibility: 

None
Salary Range: $82,179 – $123,270

Posting Period:

July 1, 2024 – July 31, 2024
*Typically, initial wage is set between the minimum and the midpoint of the salary range depending on the employee’s qualifications and experience.  

Summary of Responsibilities:


The Senior Information Security Analyst will be responsible for leading the efforts to safeguard SERS sensitive information, detect fraudulent activities, and mitigate risks posed by insider threats.  The Senior Information Security Analyst will work collaboratively with cross-functional teams, specifically with SERS’ IT Department, and have a deep understanding of security best practices.  In addition to these primary responsibilities, the Senior Information Security Analyst will provide support in the areas of vulnerability management, application security and customer identity.

 Beyond technical administration, the Senior Information Security Analyst will develop and maintain service documentation and training as appropriate.  The Senior Information Security Analyst is expected to generate reports for management that map capabilities and controls according to multiple cybersecurity frameworks.   In collaboration with the CISO the Senior Information Security Analyst will assist with addressing complex IT security architecture issues, coordinate with users to determine requirements and ensuring that systems are appropriately hardened while striking a balance between user experience and operational security.

Essential Duties and Responsibilities:


  • Lead the design, implementation, and maintenance of data loss prevention (DLP) solutions to protect sensitive data from unauthorized access, exfiltration, and leakage.
  • Develop and deploy fraud detection mechanisms and tools to identify and mitigate fraudulent activities across systems and applications.
  • Design and implement controls and monitoring mechanisms to detect and respond to insider threats, including unauthorized access and data misuse.
  • Conduct thorough risk assessments and threat modeling exercises to identify potential vulnerabilities and develop strategies for mitigation.
  • Collaborate with Information Technology teams to integrate DLP, fraud detection, and insider monitoring capabilities into existing systems and workflows.
  • Monitor security logs and alerts for suspicious activities related to data loss, fraud, and insider threats, and take appropriate action to investigate and respond.
  • Participate in incident response activities, including forensic analysis, root cause identification, and remediation planning for security incidents related to data loss, fraud, and insider threats.
  • Collaborate with internal audit to ensure adherence to regulatory requirements and industry standards related to data protection, fraud prevention, and insider threat mitigation.
  • Stay abreast of emerging threats, vulnerabilities, and trends related to data security, fraud, and insider threats, and recommend proactive measures to mitigate risks
  • Maintain a service-oriented mindset while delivering requirements on time.  
  • Comply with all security policies and procedures, to ensure that the highest level of system and data confidentiality, integrity and availability is maintained.
  • Participate in business continuity planning and execution.   
  • Provide after-hours support for daily business needs as needed.
  • Other responsibilities as assigned.

Educations and Skills/Qualifications:


  • Bachelor's degree (B.S.) in computer science or related field;
  • 4-7 years of experience in information security roles, with a focus on data loss prevention, fraud detection, and insider threat mitigation.  
  • Strong understanding of DLP technologies, including content inspection, data classification, and data encryption.
  • Experience with fraud detection techniques and tools, such as anomaly detection, machine learning, and behavioral analytics.
  • Understanding of insider threat monitoring and detection mechanisms, including user behavior analytics and privilege access management.
  • Knowledge of regulatory requirements and industry standards related to data protection, fraud prevention, and insider threat mitigation.
  • Excellent analytical and problem-solving skills, with attention to detail and the ability to think critically under pressure.
  • Strong communication and interpersonal skills, with the ability to effectively convey complex technical concepts to non-technical stakeholders.
  • Relevant industry certifications are highly desirable, such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Global Information Assurance Certification (GIAC), etc.
  • Experience with security tools and technologies, such as SIEM, data classification, data protection, endpoint detection and response, is a plus. 
  • Equivalent combination of education, skills, and experience

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skills, and abilities required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Working Conditions: 


This role operates in a professional office environment and is subject to prolonged periods of sitting or standing at a desk and working on a computer. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets and fax machines and may need to be able to lift up to 10 pounds at times. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. The noise level in the work environment is usually moderate.

 ERM staff members are eligible to work remotely 2 days per week, after training and 30 days of employment. Remote working days are not guaranteed and subject to change based on organizational needs.   

Competencies:


SERS Specific:


Focus - Dedicated to meeting the needs of customers both internal and external.   Talks, acts, and makes decisions with customers in mind.   Accountability - Takes responsibility for all work activities and personal actions; follows throughon commitments, implements decisions that have been agreed upon; maintains confidentiality with sensitive information; acknowledges and learns from mistakes without blaming others. Recognizes the impact of one’s behavior on others.Communication - Creates an environment of open, direct and proactive communication, both written and verbal.

 Is unafraid to communicate freely across layers of the organization.Collaboration- Develops cooperation and teamwork while participating in a group, working toward solutions which generally benefit all involved parties.Innovation - The commitment to search for and create new and innovative approaches to activities that enhances performance. Is willing to change.Note:  While performing the duties of this job, the employee is regularly required to sit, stand, walk, and lift up to 10 pounds.  Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. The noise level in the work environment is usually moderate. SERS is an equal employment opportunity employer.Disclaimer: This job posting is not meant to be all-inclusive and the position itself is subject to change.SERS is an Equal Employment Opportunity Employer. We recruit, hire, train, and promote without discrimination due to age, race, color, religion, sex, sexual orientation, national origin, citizenship, disability, military leave or veteran status, genetic information, or any other status protected by applicable federal, state or local law.  SERS is committed to ensuring all applicants can successfully submit an application for consideration. If you have a disability, and you wish to discuss potential accommodations to complete your application for employment, please call (614) 340-2255. 

SERS does not accept unsolicited recruiter and agency resumes and will not pay fees to any third-party agency or company that does not have a signed agreement with SERS. 82179.00 To 123270.00 (USD) Annually


This job is no longer open

Life at SERS

The mission of SERS is to enhance the well-being and financial security of our members, retirees, and beneficiaries through benefit programs and services which are soundly financed, prudently administered, and delivered with a focus on understanding and responsiveness. Over the next five years, SERS will operate from 300 East Broad Street in Columbus, Ohio. Based on current trends, it will serve 195,000 members, retirees, and beneficiaries, and 1,000 employers. Our employees will operate in a safe and secure environment, providing services to stakeholders and managing investments. SERS will provide its members, retirees, and beneficiaries a variety of flexible and portable benefits and services, including enhanced benefits, while continuing to provide access to quality health care. SERS will also provide to these stakeholders additional services associated with retirement savings, financial planning, and wellness. These services will be available both in-person and electronically. Finally, SERS will remain under public scrutiny, requiring a focus on accountability and awareness of public concerns and perceptions.
Thrive Here & What We Value- Flexible hybrid work from home policies may apply- Must live in the Columbus, Ohio metro area- SERS is an equal employment opportunity employer- We recruit, hire, train, and promote without discrimination due to age, race, color, religion, sex, sexual orientation, national origin, citizenship, disability, military leave or veteran status, genetic information, or any other status protected by applicable federal, state or local law.- SERS is committed to ensuring all applicants can successfully submit an application for consideration. If you have a disability, and you wish to discuss potential accommodations to complete your application for employment, please call (614) 340-2255.- SERS does not accept unsolicited recruiter and agency resumes and will not pay fees to any third-party agency or company that does not have a signed agreement with SERS.- Dedicated to meeting the needs of customers both internal and external- Takes responsibility for all work activities and personal actions; follows through on commitments, implements decisions that have been agreed upon; maintains confidentiality with sensitive information; acknowledges and learns from mistakes without blaming others.- Creates an environment of open, direct and proactive communication, both written and verbal.- Develops cooperation and teamwork while participating in a group, working toward solutions which generally benefit all involved parties.- The commitment to search for and create new and innovative approaches to activities that enhances performance. Is willing to change.</s>
Your tracker settings

We use cookies and similar methods to recognize visitors and remember their preferences. We also use them to measure ad campaign effectiveness, target ads and analyze site traffic. To learn more about these methods, including how to disable them, view our Cookie Policy or Privacy Policy.

By tapping `Accept`, you consent to the use of these methods by us and third parties. You can always change your tracker preferences by visiting our Cookie Policy.

logo innerThatStartupJob
Discover the best startup and their job positions, all in one place.
Copyright © 2024