Enable job alerts via email!

Cyber Risk Analyst - Remote

501 CSAA Insurance Services, Inc.

Orlando (FL)

Remote

USD 70,000 - 110,000

Full time

30+ days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An established industry player is seeking an Information Security Risk Management Specialist to enhance their cybersecurity posture. This role involves evaluating and implementing security tools and standards across diverse systems. You'll leverage your expertise in risk management, vulnerability assessment, and regulatory compliance to protect sensitive information. As part of a collaborative IT team, you'll conduct risk assessments, monitor for threats, and develop response strategies to ensure robust security. Join a dynamic organization that values innovation and offers opportunities for professional growth while making a significant impact in the field of information security.

Qualifications

  • 5+ years in IT security risk management and system administration.
  • Experience in assessing security controls and compliance standards.

Responsibilities

  • Perform risk assessments of applications, databases, and servers.
  • Monitor activities to detect and respond to anomalous behavior.

Skills

IT Security Risk Management
Cybersecurity
Vulnerability Management
Incident Management
Regulatory Compliance
Access Control Management
Disaster Recovery Planning
Business Continuity Planning

Education

Bachelor’s degree in Computer Science
Equivalent work experience

Tools

Governance, Risk and Compliance Tools

Job description

Harris is a leading provider of financial management and Customer Information Systems (CIS) software solutions; providing feature-rich and robust turnkey solutions to Public Sector, Schools, Utility, and Healthcare agencies throughout North America. We are a financially strong, growing and stable company guided by our values to do the right thing when it comes to our customers, our employees, and our local communities. At Harris, we offer employees the opportunity to learn and have fun, while empowering them to make a difference and directly contribute to the success of the organization!

The Harris Corporate IT Team is seeking an Information Security Risk Management Specialist who will participate in evaluating, developing, and implementing security tools, standards, procedures, and guidelines for multiple platforms in diverse systems environments as needed. As the Information Security Risk Management Specialist, you will utilize your wide area of expertise in risk management, security frameworks, regulatory compliance, cybersecurity, vulnerability management, disaster recovery and business continuity planning, incident management, and other areas to provide security support for the Harris group of companies. You will analyze, monitor, track, and report behaviors and tasks logged by assets (i.e., applications, systems, networks) in the form of incidents to ensure Harris’ network and systems are protected from any potential leaks of information or malicious activities. Routine tasks include analyzing and correlating event logs to help identify normal versus malicious activity in the network/domain and proactively monitoring cybersecurity and information technology infrastructure, including hardware, software, networks, applications, and services. This position will communicate with the Corporate IT team, customer’s IT representatives, Managed Security Services, and other appropriate areas, as deemed necessary.

What you'll do
  1. Perform risk and security assessments of applications, databases, and servers and supporting network technologies, such as routers, switches, access points, to identify, evaluate, and prioritize risks.
  2. Responsible for security controls, processes and architecture consultation, design and monitoring.
  3. Responsible for overall access control risk management including but not limited to auditing current access controls to identify potential risks, making recommendations for improvement in security and tracking remediation.
  4. Responsible for conducting risk assessments against various regulatory compliance such as HIPAA, PCI, etc. and industry recognized security frameworks.
  5. Develop and execute corrective action and remediation plans for identified issues, risks or vulnerabilities.
  6. Analyze and assess security incidents and escalate incidents by following incident plan.
  7. Develop and maintain standard practices and procedures for appropriate response to identified threats.
  8. Monitor activities and events to detect, classify and act upon anomalous behavior appropriately in a timely manner.
  9. Assess potential risks and vulnerabilities to develop baselines and assist with response to deviations.
  10. Work with IT teams to solve information security system problems and issues in a timely and accurate manner.
  11. Assess emerging technologies against security architecture to determine where they fill gaps, overlap with existing solutions or extend capabilities.
  12. Participate in annual security audits, incident response exercises, security reporting, audit and compliance support.
  13. Work with the information security team to provide security incident escalation support and remediate security issues.
  14. Perform reviews and assessments of security controls before hardware/software is migrated to production.
  15. Work with business units to ensure vendors are reviewed through the vendor risk management process and are in compliance with applicable regulations and standards.
  16. Develop and maintain risk registers and other risk management documentation.
  17. Monitor and report on the effectiveness of risk mitigation strategies and plans.
  18. Support the development and testing of disaster recovery and business continuity plans.
  19. Oversee security awareness program, including phishing campaigns, periodic training and tracking compliance.
Qualifications
  1. Minimum of 5 years of experience in IT security risk management, a security operations center and/or system administration role.
  2. 3 years of experience assessing security controls and processes, vulnerabilities, regulatory and legal changes, and security standards that may impact the security of systems or data.
  3. Hands-on experience managing security and governance, risk and compliance tools.
  4. Ability to write security requirements and design documents.
  5. Experience in access control and identity management for on-premise and cloud environments.
  6. Bachelor’s degree in Computer Science, Information Systems, Network Security Engineering or related major or equivalent work experience.
  7. CISSP, CRISC, CISA or equivalent certifications would be considered an asset.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Cyber Risk Analyst [Remote]

Matlen Silver

Cincinnati

Remote

USD 65,000 - 85,000

5 days ago
Be an early applicant

Cyber Risk Analyst - Remote

501 CSAA Insurance Services, Inc.

New Jersey

Remote

USD 100,000 - 130,000

4 days ago
Be an early applicant

Junior Cyber Risk Analyst - Remote

CSAA Insurance Group, a AAA Insurer

Phoenix

Remote

USD 80,000 - 100,000

8 days ago

Cyber Threat Intelligence Analyst

Chronos Consulting

Remote

USD 80,000 - 120,000

3 days ago
Be an early applicant

Senior IT Security Risk Analyst (REMOTE)

Hanover Insurance Company

Worcester

Remote

USD 100,000 - 130,000

7 days ago
Be an early applicant

Senior Cyber Threat Intelligence Analyst

PUNCH Cyber Analytics Group

Great Falls Crossing

Remote

USD 90,000 - 130,000

11 days ago

Cyber Security Risk Analyst

Magnify

North Carolina

Remote

USD 60,000 - 80,000

30+ days ago

Cyber Risk Analyst - Remote

501 CSAA Insurance Services, Inc.

Town of Texas

Remote

USD 80,000 - 110,000

30+ days ago

Senior Risk Analyst (SQL), Account Takeover

Binance

Remote

USD 70,000 - 90,000

30+ days ago