Analyst II - Information Security

alsacstjude

Memphis (TN)

On-site

USD 75,000 - 115,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

ALSAC is seeking an Information Security Analyst to develop, implement, and continuously improve the enterprise information security program. The role partners across IT and business teams to protect systems, applications, networks, and data from evolving cybersecurity threats.

The analyst contributes to security operations, governance, incident response, risk assessment, IAM, and application security, delivering technical analysis, reports, and recommendations to strengthen security posture

Responsibilities

  • Monitor, analyze, and investigate security events, alerts, and activity across enterprise systems and networks.
  • Support incident response activities including triage, investigation, containment, documentation, and post-incident analysis.
  • Assist in developing, maintaining, and improving enterprise information security policies, standards, procedures, and response plans.
  • Perform security risk assessments and provide actionable recommendations to mitigate identified risks.
  • Conduct vulnerability management activities including scanning, validation, reporting, prioritization, and remediation tracking.
  • Review security logs and intelligence sources to identify threats, vulnerabilities, and indicators of compromise.
  • Collaborate with security staff, system administrators, and developers to address security concerns and implement controls.
  • Assist with implementing, validating, and documenting security-related changes across environments.
  • Support application security initiatives through testing validation and secure coding reviews.
  • Develop and deliver security metrics, status reports, and presentations for management and stakeholders.
  • Participate in enterprise security projects, audits, and continuous improvement efforts.
  • Educate and train employees on cybersecurity awareness and best practices.

Job description

At ALSAC you do more than make a living; you make a difference.

We like people who are different...because we're different, too. As one of the world's most iconic and respected nonprofits, we know what it's like to stand out. That's why we're looking at you. Your background, perspective, and desire to make an impact set you apart. As we work to help St. Jude cure childhood cancer, we're calling on the game-changers, innovators and visionaries to join our family. Not just for the kids of St. Jude, but also for you. Because at ALSAC, we develop and celebrate our employees. So, bring your whole, authentic self and become part of our shared mission: Finding cures. Saving children.

Job Description

The Information Security Analyst is responsible for supporting the development, implementation, and continuous improvement of the enterprise information security program. This role partners across Information Technology and business teams to protect organizational systems, applications, networks, and data from evolving cybersecurity threats.

The analyst contributes to key cybersecurity functions including security operations, vulnerability management, security governance, incident response, identity and access management, risk assessment, and application security. This position provides technical analysis, consultation, reporting, and recommendations to strengthen the organization's security posture while supporting strategic business objectives.

This role offers broad exposure to multiple cybersecurity domains and provides opportunities to work with a diverse set of security technologies, enterprise initiatives, and cross-functional stakeholders.

What You'll Do
  • Partner with Information Security, Infrastructure, and Application Development teams to strengthen enterprise security controls and capabilities.
  • Participate in security operations activities, including monitoring, investigation, and response to potential security incidents.
  • Conduct vulnerability assessments, analyze findings, and support remediation efforts across technology environments.
  • Assist in the development, implementation, and maintenance of security policies, standards, procedures, and response plans.
  • Perform information security risk assessments and provide recommendations to reduce organizational risk.
  • Support identity and access management processes, access reviews, and privilege management initiatives.
  • Validate application security testing results and collaborate with development teams to promote secure coding practices.
  • Evaluate emerging cybersecurity threats, vulnerabilities, and industry trends to recommend appropriate safeguards and mitigation strategies.
  • Provide security consultation and guidance to systems administrators, technology teams, and business stakeholders.
  • Develop meaningful security metrics, dashboards, and reports to communicate risk and program effectiveness to leadership.
  • Participate in enterprise security projects, audits, compliance initiatives, and continuous improvement efforts.
  • Help educate and train employees on cybersecurity awareness and security best practices.
Why This Role is Unique
  • Work across nearly every area of Information Security, gaining exposure to multiple cybersecurity disciplines.
  • Collaborate with infrastructure, cloud, networking, identity, and application development teams.
  • Contribute to enterprise-wide security initiatives that directly impact organizational risk and resilience.
  • Gain hands-on experience with security technologies, investigations, risk management, and governance activities.
  • Join a team that values continuous learning, innovation, and professional development.
Essential Job Functions
  • Monitor, analyze, and investigate security events, alerts, and suspicious activity across enterprise systems and networks.
  • Support incident response activities, including triage, investigation, containment, documentation, and post-incident analysis.
  • Assist in developing, maintaining, and improving enterprise information security policies, standards, procedures, and response plans.
  • Perform security risk assessments and provide actionable recommendations to mitigate identified risks.
  • Conduct vulnerability management activities, including scanning, validation, reporting, prioritization, and remediation tracking.
  • Review security logs, alerts, and intelligence sources to identify threats, vulnerabilities, and potential indicators of compromise.
  • Collaborate with security team members, system administrators, and application developers to address security concerns and implement controls.
  • Assist with implementing, validating, and documenting security-related changes across enterprise technology environments.
  • Support application security initiatives through testing validation, secure coding reviews, and collaboration with development teams.
  • Develop and deliver security metrics, status reports, and presentations for management and stakeholders.
  • Research emerging cybersecurity threats, vulnerabilities, technologi
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Analyst II - Information Security
Analyst II - Information Security

St. Jude Children's Research Hospital - ALSAC • Memphis (TN)

Hybrid
USD 90,000 - 130,000
Medical, dental, vision coverage
401K with employer contribution
Paid time off
+5
Analyst II - Information Security
Analyst II - Information Security

Thecentermemphis • Memphis (TN), Northern (KY)

Hybrid
USD 70,000 - 110,000
Medical coverage
401K
Paid time off
+3
Information Security Analyst II: Protect & Improve Security
Information Security Analyst II: Protect & Improve Security

St. Jude Children's Research Hospital - ALSAC • Memphis (TN)

Hybrid
USD 90,000 - 130,000
Medical, dental, vision coverage
401K with employer contribution
Paid time off
+5
Analyst II - Information Security
Analyst II - Information Security

ALSAC/St. Jude Children's Research Hospital • United States

Hybrid
USD 90,000 - 140,000
Core Medical Coverage
401K Retirement Plan
Exceptional Paid Time Off
+6
Information Security Analyst II — Protect & Improve IT
Information Security Analyst II — Protect & Improve IT

alsacstjude • Memphis (TN)

On-site
USD 75,000 - 115,000
Engineer II - Software (Memphis, TN)
Engineer II - Software (Memphis, TN)

alsacstjude • Memphis (TN)

Hybrid
USD 85,000 - 120,000
Security Analyst II - Hybrid Role, Impact & Security
Security Analyst II - Hybrid Role, Impact & Security

Thecentermemphis • Memphis (TN), Northern (KY)

Hybrid
USD 70,000 - 110,000
Medical coverage
401K
Paid time off
+3
Hybrid InfoSec Analyst II — Drive Security & Risk
Hybrid InfoSec Analyst II — Drive Security & Risk

ALSAC/St. Jude Children's Research Hospital • United States

Hybrid
USD 90,000 - 140,000
Core Medical Coverage
401K Retirement Plan
Exceptional Paid Time Off
+6
Information Security Analyst
Information Security Analyst

Cisive • Maryland

Hybrid
USD 80,000 - 110,000
Information Security Analyst
Information Security Analyst

Clearcapital • Reno (NV)

On-site
USD 113,800 - 139,000
Comprehensive medical, dental, and vision insurance
401(k) retirement plan with employer match
Paid time off (PTO) and paid holidays