Security Analyst
firstPRO is seeking a skilled Security Analyst for our client located in Center City, Philadelphia. This is a hybrid, contract-to-hire role, so candidates will need to be commutable to Philadelphia to be considered. Compensation for this role is up to $45/hr., based on experience.
Responsibilities:
- Ensure all company security policies and procedures, including incident response and disaster recovery, are documented and up to date with PCI and HIPAA compliance standards.
- Engage with business units that are affected by the security policy and inform staff of the security guidelines established by the company.
- Set up training seminars at dictated cadences to ensure all employees are aware of company policies and any relevant changes.
- Assist the company trainer in creating a robust security training platform.
- Responsible for having all documentation prepared in anticipation of quarterly and annual audits.
- Organize and facilitate risk management meetings on schedule cadence and as relevant topics arise.
- Conduct internal and external security audits.
- Conduct vulnerability testing and risk analysis.
- Document all relevant incidents that affect business operations and provide postmortem and monthly reports to business.
- Act as key contact for questions or concerns regarding company initiatives around security compliance and business processes.
- Ensure all external vendors provide pertinent documentation necessary for the company to remain compliant and that all documentation is up to date.
- Develop company-wide best practices for IT security.
- Analyzing security incidents & breaches to identify the root cause.
- Perform additional responsibilities as they arise.
Requirements:
- Bachelor's Degree or equivalent work experience required.
- 3+ years of relevant security experience.
- 2-3 years of business analyst/business process re-engineering experience (preferred).
- Information Security Certification (preferred).
- Network and System Administration Experience (preferred).
- Strong business process documentation skills.
- Strong communication skills.
- Experience with Microsoft security tools (Ex. Endpoint Management, Defender, etc.)
- Experience with utilizing network scanning tools (Tenable, Nessus, etc.
- Ability to work in a fast-paced environment with changing business needs.
- Ability to communicate professionally to vendors and external resources.
- Strong ability to work on multiple projects/initiatives at the same time.