14 Mar
100% Remote (Okta) Security Analyst
Illinois, Desplaines , 60016 Desplaines USA

Vacancy expired!

100% Remote (Okta) Security Analyst Columbus, Ohio- 100% REMOTE OPPORTUNITY Direct Hire (open to C2H as well) The Security Analyst is a collaborative, analytical, detail-oriented technology professional with responsibility to proactively work to monitor, enforce, advise and analyze the technology and data ecosphere both internally and externally to the organization. The Security Analyst will also act to coordinate and quantify security issues/threats discovered and track remediation/mitigation efforts to resolution as appropriate. This role is in the Identity and Access Management space.

Responsibilities:
  • 3-5 years of relevant experience is required.
  • Associates degree or higher in Computer Science, Information Systems, Computer Engineering, Information Security or a related field is required.
  • Cyber Security Certifications (e.g. CISSP, GIAC certifications, etc.) are preferred.
  • Direct and recent working experience with the following compliance programs: ISO 27001, PCI-DSS, SSAE18 SOC1 Type 2/SOC2 Type 2 is preferred.
  • Demonstrated experience with

    NIST CSF, CoBit and/or COSO frameworks is preferred.
  • Knowledge of these tools preferred:

    AD/powershell, Okta.
  • Knowledge of these concepts required:

    SSO/Federated Identity Management, PAM, Certificates.

Essential Activities:
  • Develop risk ratings, audits, models and hierarchies to identify security impact, severity and risk events by day-to-day monitoring and analysis of the organization's information security and privacy strategy/program's daily operations and consolidating relevant data.
  • Identify risks of non-compliance and recommend appropriate changes/actions by continually monitoring and analyzing external legal, regulatory and/or client driven information security and privacy requirements and its impact to current enterprise operations.
  • Enforce internally developed information security and privacy practices, policies, procedures and processes to ensure proper adherence, education and documentation as appropriate. Ensure proper education and maintenance of regulatory/compliance standards and/or frameworks (e.g. SSAE-18, PCI-DSS, NIST CSF, etc.)
  • Consult in areas relating to information security and privacy regulations/compliance standards (e.g. PCI-DSS, Consumer Protection Acts, GDPR, etc) as it relates to enterprise operations. Review, edit and advise on client, supplier, vendor and/or partner contracts as it relates to information security and privacy issues
  • Proactively works with partners and suppliers to achieve objectives on time and within budget. Directs and/or takes appropriate action when necessary with partners/suppliers to build enterprise class solutions, respond to issues/threats, and/or communicate to stakeholders all utilizing efficient and effective tools and techniques.
  • Actively engages in the greater information security and privacy community (e.g. peer groups, seminars, conferences, etc.) to help identify new technologies, new regulations/standards, new techniques and new partners.

Vacancy expired!


Report job