Healthcare | Compliance | Cloud | Enterprise Security
We are seeking a Senior Information Security Analyst to support security governance, compliance, and operational security delivery across large, regulated healthcare and government client environments. This is a senior, client-facing role responsible for ensuring regulatory compliance, security operations excellence, and secure delivery of enterprise systems and cloud platforms.
The Senior Information Security Analyst will operate as a trusted security advisor, interacting at a managerial level with client Information Governance and IT Security leadership while supporting audit readiness, risk management, and security operations.
Key Responsibilities
Client Advisory & Stakeholder Engagement
- Act as a security subject matter expert and liaison between technical and non-technical stakeholders
- Interact and influence at a managerial level within client organizations (Information Governance, IT Security, Compliance)
- Translate security, regulatory, and technical requirements into business-aligned solutions
- Support client adoption of secure, compliant technology solutions
Governance, Risk & Compliance
- Support HIPAA Privacy & Security Rule compliance programs
- Support NIST 800-53 Moderate baseline control implementation and assessment
- Maintain and support Account Security Plans
- Manage security risk and exception tracking
- Ensure implementation of security policies, standards, and regulatory controls
- Support audit preparation, facilitation, and remediation activities
Security Operations & Incident Management
- Lead or support security operational governance activities
- Support multi-vendor and third-party security services
- Manage, track, and report security incidents
- Escalate incidents with Security Incident Response teams
- Support vulnerability management and remediation tracking
- Ensure operational compliance with contractual SLAs and security tooling
Delivery Excellence & Reporting
- Support delivery excellence across security tooling and operations
- Prevent non-performance and non-compliance contractual penalties
- Deliver security metrics, dashboards, and executive reporting
- Support supplier security relationship management
Qualifications & Experience
- 9+ years of experience in enterprise information security roles
- Experience supporting large, complex IT systems and/or AWS cloud environments
- Strong experience with HIPAA, healthcare security, and regulated environments
- Experience working with NIST 800-53 Moderate baseline environments
- Experience classifying data using FIPS 199 (PII, PHI, FTI)
- Experience supporting security policy, standards, and control frameworks
- Experience with vulnerability management, security monitoring, and incident response
- Experience supporting security programs in healthcare and government environments
Education & Certifications
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Business Administration, Public Policy, or Law
- CISSP or CISM required