IT Security Analyst II

Centauri Health Solutions, Inc.

Northern (KY)

Hybrid

USD 70,000 - 100,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Centauri Health Solutions, Inc. seeks an IT Security Analyst II to manage security controls, monitor incidents, and support audits including SOC and HIPAA.

You will implement security measures, perform risk assessments, and maintain security documentation while coordinating with internal teams. The candidate should have 1–3 years in IT, a Bachelor’s preferred, and experience with Windows/Linux, SIEM, DLP, and HIPAA compliance.

Qualifications

  • Bachelor’s degree preferred (MIS, CIS, or equivalent); or equivalent work experience.
  • 1-3 years’ experience in IT or a technical-related position.
  • Possess project management and presentation experience.
  • Microsoft Windows Operating Systems, Linux, and virtualization software
  • Security Information and Event Management
  • Data Loss Prevention
  • Intrusion Detection and Prevention
  • LAN/WAN experience
  • Business Office Protocol/Telephone Etiquette
  • Business processes
  • Information Technology knowledge
  • Knowledge of security frameworks (COBIT, NIST, HITRUST, HITECH)
  • Knowledge of audits (SOC, HITRUST, HIPAA)

Responsibilities

  • Coordinate and implement security measures for information systems to regulate access to computer data files and prevent unauthorized modification, destruction, or disclosure of information
  • Implement plans to safeguard computer files against accidental or unauthorized modification, destruction, or disclosure and to meet emergency data processing needs
  • Participate in risk assessments and execute tests of systems to ensure security measures perform as intended
  • Participate in the design and implementation of security solutions
  • Configure, maintain, and support EDR, SIEM, firewalls, remote access, DMZ, proxy servers, VPNs, vulnerability management, and a variety of security tools
  • Manage IDS/IPS and DLP services or software
  • Monitor system and security logs and investigate and report incidents
  • Participate in the execution and remediation of vulnerability scans
  • Participate in the development and implementation of security-related policy, usage, training and documentation
  • Knowledge of HIPAA
  • Monitor and limit use of data files and regulate access to safeguard information in computer files
  • Produce and maintain security documentation and reports
  • Help promote security awareness to ensure system security
  • Perform internal audits to ensure policies, procedures, and controls are followed
  • Drive internal audit readiness for SOC2 and HITRUST
  • Assist with client/vendor security assessments and audits

Skills

Security concepts
IT knowledge
SIEM
DLP
IDS/IPS
Windows/Linux
LAN/WAN
HIPAA knowledge

Education

Bachelor's degree preferred (MIS, CIS, or equivalent)

Tools

EDR
SIEM
Firewalls
VPNs
Vulnerability management

Job description

Your Daily Mission

The IT Security Analyst II manages systems to protect data from unauthorized users. Identifies, reports, and resolves security incidents. Knowledge of commonly-used concepts, practices, and procedures within IT and security. This position audits information systems, platforms, and operating procedures in accordance with established corporate standards for efficiency, accuracy, and security. Evaluates IT infrastructure in terms of risk to the organization and recommend controls to mitigate loss. Determines and recommends improvements in current risk management controls, system changes, or upgrades. Provides support for client/customer security assessments, pre-delegation security audits for select vendors/subcontractors, and external security/compliance assessments, certification, accreditation, and audit processes, including HITRUST, SOC, ONC, and related industry and regulatory frameworks and standards.


Who You Are


  • Bachelor’s degree preferred (MIS, CIS, or equivalent); or equivalent work experience.

  • 1-3 years’ experience in IT or a technical-related position.

  • Possess project management and presentation experience.

  • Microsoft Windows Operating Systems, Linux, and virtualization software

  • Security Information and Event Management

  • Data Loss Prevention

  • Intrusion Detection and Prevention

  • LAN/WAN experience

  • Business Office Protocol/Telephone Etiquette

  • Business processes

  • Information Technology knowledge

  • Knowledge of security frameworks (COBIT, NIST, HITRUST, HITECH)

  • Knowledge of audits (SOC, HITRUST, HIPAA)


The Reality of the Role

Serves as Security Analyst


  • Coordinate and implement security measures for information systems to regulate access to computer data files and prevent unauthorized modification, destruction, or disclosure of information

  • Implement plans to safeguard computer files against accidental or unauthorized modification, destruction, or disclosure and to meet emergency data processing needs

  • Participate in risk assessments and execute tests of systems to ensure security measures perform as intended

  • Participate in the design and implementation of security solutions

  • Configure, maintain, and support EDR, SIEM, firewalls, remote access, DMZ, proxy servers, VPNs, vulnerability management, and a variety of security tools

  • Manage IDS/IPS and DLP services or software

  • Monitor system and security logs and investigate and report incidents

  • Participate in the execution and remediation of vulnerability scans

  • Participate in the development and implementation of security-related policy, usage, training and documentation

  • Knowledge of HIPAA

  • Monitor and limit use of data files and regulate access to safeguard information in computer files

  • Produce and maintain security documentation and reports

  • Help promote security awareness to ensure system security


Internal Business Audits:


  • Perform internal audits to ensure policies, procedures, and controls are being followed and applied appropriately

  • Continually monitor the progress of internal audits and report to the Director of IT Security on audit status, challenges, potential risks, and remediation status; project manage audits to timely completion of audit deliverables through to audit closure

  • Maintain an internal audit record for audit activity, including reports, findings, recommendations, and internal corrective action plans

  • Develop a solid working knowledge of the features, functions, and applicable security standards for all Centauri products, services, and solutions

  • Drive Centauri’s internal audit function towards continuous readiness for various audit types

  • Work with internal leaders to ensure compliance and successful completion of audits such as SOC2 and HITRUST



  • Work with internal teams to assist in the completion of client audits, questionnaires, attestations, review contracts, and amendments for technical compliance

  • Maintain Centauri’s Vendor Management Program

  • Assist with pre-delegation/contract audits and annual audits as required by both Centauri and HITRUST

  • Assist with annual vendor audits and audits of potential vendors

  • Assist with client/customer security assessment/audits



  • Maintains a direct line of communication with the VP of Compliance and General Council to ensure separation of duties when auditing internal processes


Security Industry Compliance:


  • Reviews government regulations and state laws, HIPAA, and HITRUST for changes impacting our business.

  • Communicates with appropriate individuals where appropriate.

  • Manage HITRUST, SOC, and similar industry and regulatory accreditation and certification compliance assessments, prioritizing engagement tasks, including supervising the tests of business process and IT general controls, managing engagement progress and communicating

  • Assess IT security policies, procedures, and controls of business applications, networks, operating systems, and other components of technology to ensure we are meeting current standards



  • Develop a solid working knowledge of the features, functions, and applicable security standards for all Centauri products, services, and solutions

  • Develop a solid working knowledge of the features, functions, and applicable security standards for all

  • Develop strong relationships with internal teams through a comprehensive understanding of operations and communicating expectations, control needs, control exceptions, or engagement issues to the engagement team and SOC, HITRUST, and related accreditation and certification teams in a timely manner

  • Manage the day-to-day aspects of multiple, concurrent engagements, prioritizing and managing engagement tasks, communicating engagement progress to the engagement teams


Business Support:


  • Recommends improvements to policies, procedures, efficiency, and controls.

  • Drives development and annual reviews of

  • Business Impact Analysis (BIA)



  • Business Impact Analysis (BIA)

  • Business Continuity Plans (BCP)

  • Disaster Recovery Plans (DR)

  • Risk Assessment (RA)

  • Policies and Procedures

  • Other duties as assigned

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Security Analyst II
IT Security Analyst II

Clear Destination Inc. • Tempe (AZ)

On-site
USD 85,000 - 105,000
IT Security Analyst II
IT Security Analyst II

Centauri Health Solutions, Inc • United States

On-site
USD 90,000 - 120,000
Medical coverage
401(k) plan
Tuition reimbursement
+1
IT - Security Compliance Analyst II
IT - Security Compliance Analyst II

Georgia Farm Bureau • Macon (GA)

On-site
USD 70,000 - 110,000
Information Security Analyst I
Information Security Analyst I

Sonora Quest Laboratories/ Laboratory Sciences of Arizona • Phoenix (AZ)

On-site
USD 90,000 - 130,000
Senior Manager of Risk and Compliance
Senior Manager of Risk and Compliance

PTR Global • United States

On-site
USD 100,000 - 130,000
IT Risk Services Analyst
IT Risk Services Analyst

Integrated Resources Inc. • Painted Post (NY)

On-site
USD 75,000 - 100,000
IT Security Specialist
IT Security Specialist

ibex • Palestine (TX)

On-site
USD 90,000 - 130,000
Senior IT Security Analyst
Senior IT Security Analyst

TridentCare • United States

On-site
USD 110,000 - 150,000
Security Compliance Analyst III
Security Compliance Analyst III

Bridgehead IT LLC • San Antonio (TX)

On-site
USD 90,000 - 135,000
Security Compliance Analyst
Security Compliance Analyst

Managed IT & Security Provider • Alexandria (VA)

On-site
USD 75,000 - 100,000
401(k)
401(k) matching
Bonus based on performance
+3