Job Closed

This listing is no longer active.

Marathon Health logo
Marathon Health

We are Marathon Health. We’re building better, together.

Security Analyst

Security AnalystSecurity AnalystFull TimeRemoteMid LevelTeam 1,001-5,000Since 2005H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

91 days ago

Salary

$75K - $90K / year

Seniority

Mid Level

Bachelor Degree2 yrs expEnglishAWS

Job Description

Security Analyst

Marathon Health

• Work closely with SOC to ensure efficient response to security tickets and incident response • Daily threat hunting and identifying potential vulnerabilities in company systems and processes • Configure and optimize security tools and software • Review daily and historical data to identify, report, and remedy vulnerabilities • Document, prioritize, and analyze security threats, incidents, and key metrics • Regular review of security logs, reports, and other information from both internal and external sources to identify and manage security risks and issues • Evaluate security controls of proposed vendor products and service providers • HITRUST, SOC2, PCI DSS assessment, remediation, documentation, and certification activities • Assist in design and execution of security related training programs and communications • Verify and monitor that laptops and other devices have the appropriate security tools installed, operating, and updated • Investigate, document, and remedy security events • Create and manage Incident Response playbooks and IT Security Procedures • Root Cause Analysis • Collaborate with cross-functional teams regarding security • Stay informed on emerging technologies and services to ensure Marathon maintains its competitive technical advantage.

Job Requirements

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, Data Science or a related field
  • 1-3 years combined experience in broader IT and Security roles or equivalent combination of education and experience
  • Security certifications related to job responsibilities are highly desirable (e.g. Sec+, CEH, CASP, CISSP)
  • Hands on experience with security event triage, Windows OS, networking, SIEM, Incident Response, Server and endpoint hardening, application security best practices
  • Specific experience with Microsoft Defender, Cisco, Meraki, Dell laptops, AWS, Salesforce, Microsoft 365, Smartsheet, and PowerShell is highly desired
  • Working knowledge of privacy and security standards (e.g., HIPAA, HITRUST, NIST)
  • Creative problem-solving skills and experience investigating suspicious activities
  • Exceptional written and verbal communication skills, with the ability to engage and collaborate across all levels of the organization
  • Demonstrated capacity to translate technical security events into clear, non-technical language for diverse audiences
  • Curious and willing to learn new skills through self-improvement
  • Collaborative mindset, with the ability to work effectively across diverse teams and stakeholders, fostering strong relationships and alignment
  • Proficiency with Microsoft Office tools, particularly strong expertise in Excel, for data analysis, reporting, and compliance.

Benefits

  • Free Marathon membership for in person and virtual care
  • Employer paid life and disability insurance
  • Choice in medical/dental plans
  • Vision
  • Employer funded HSA
  • FSA
  • Voluntary illness, accident and hospitalization plans
  • Competitive compensation
  • 401k match
  • Access to financial coaching through our Employee Assistance Program
  • Paid time off for vacation, sick leave, and more
  • Holiday schedule

Related Job Pages

More Security Analyst Jobs

MongoDB logo

Senior IRM Analyst

MongoDB

MongoDB, originally called 10gen, is a software development company. Since 2007, MongoDB has created an open-source, document-oriented database to help clients

Security Analyst91 days ago
OtherRemoteTeam 5,550Since 2008

The Information Security Risk Team at MongoDB is the operational engine of the internal and third-party risk programs. Situated within the Assurance, Risk, and Compliance (ARC) organization, the team is responsible for the "Reduction of Uncertainty" across the enterprise. We view this team as the "Operational Commander" of the risk function. The team oversees the entire lifecycle of risk identification, assessment, and treatment, ensuring that MongoDB’s leadership has a clear, quantified view of the top risks facing the organization. We are not just a compliance function; we are a "Risk Intelligence" unit that empowers the business to "Think Big" while keeping our eyes wide open to the risks we accept. As the Senior Information Risk Analyst, you will serve as the subject matter expert and primary executor of our risk function. Reporting directly to the Risk Director, you will be responsible for conducting and owning the lifecycle of internal security assessments (annual + ad-hoc), applying risk methodology, producing risk memos and working with asset/risk owners across the business that powers MongoDB’s growth. This is a pivotal moment for our Risk function as we scale operations to meet the demands of a $100B+ database market while navigating an increasingly rigorous regulatory landscape (DORA, FedRAMP, NIS2). This role can be based remotely in the United States. Responsibilities Program Maturity - Risk Assessment Methodology Implementation: Lead the strategic roadmap to integrate the risk matrix into the risk framework. - Regulatory Governance: Ensure the risk program complies with global regulations, specifically DORA (EU) regarding ICT registers and FedRAMP Rev 5 supply chain controls. Maintain the Supply Chain Risk Management (SCRM) plan and oversee strict boundary protections for the "Atlas for Government" environment - Policy & Procedure Ownership: Maintain the Information Risk Management Procedure (ISQMS), ensuring that risk identification, assessment, and treatment processes are documented, updated annually, and followed consistently across the organization Operational Execution - Experience conducting technical security risk assessments (infrastructure, cloud, application-level). Including experience in evaluating control effectiveness through technical evidence (configurations, logs, architecture diagrams) - Workflow Orchestration: Own the end-to-end risk assessment process - Inherent Risk Scoring: Validate the team’s application of the Risk Scoring formula. Apply the risk scoring formula for baseline scores based on breach history (last 12 months) and weighted impact - Ensure the risk acceptance process has the right level of information and the appropriate stakeholders - Ticket Hygiene: Actively manage the Jira backlog to prevent "frozen tickets” Monitoring and Reporting - Conduct annual enterprise security risk assessments and ad-hoc assessments as triggered by material changes, incidents, or new initiatives - Identify risk scenarios for the in-scope assets by working with the asset and risk owners - Assess the inherent risk and residual risk based on established risk assessment methodology and control assessments - Synthesize the analysis into high-quality, Risk Assessment Memos. These documents must tell a cohesive story, moving from the "Risk Statement" to the "Calculation Logic" to the final "Risk Rating" - Manage the risk acceptance process in JIRA, review for appropriateness and accuracy - Maintain the Risk Management Dashboard and report on accurate risk metrics Requirements - Professional Experience: 10+ years of experience in Information Security, Governance, Risk & Compliance (GRC) - Hands-on experience conducting enterprise-level security risk assessments end-to-end, including scoping, threat modeling, control evaluation, and executive reporting - Evaluate control effectiveness using technical evidence (configs, logs, architecture diagrams) - Perform threat modeling using established methodologies (STRIDE, MITRE ATT&CK) - Deep operational understanding of risk assessment methodologies (NIST SP 800-30) and standard control frameworks (NIST CSF, NIST SP 800-53, ISO 27001, SOC 2, SIG Core/Lite, CAIQ) - Regulatory Knowledge: Comprehensive knowledge of DORA, NIS2, FedRAMP Rev 5 (specifically Supply Chain/SCRM), GDPR, and PCI-DSS requirements - Ability to write executive-level risk reports that translate technical flaws into business risks - A strong track record of collaborating effectively across teams and levels to influence change - Education: Bachelor’s degree in a relevant field (Cybersecurity, Business, Information Systems) - Certifications: CRISC, CCSP, CISSP, CISA, relevant cloud certifications About MongoDB MongoDB is built for change, empowering our customers and our people to innovate at the speed of the market. We have redefined the database for the AI era, enabling innovators to create, transform, and disrupt industries with software. MongoDB’s unified database platform, the most widely available, globally distributed database on the market, helps organizations modernize legacy workloads, embrace innovation, and unleash AI. Our cloud-native platform, MongoDB Atlas, is the only globally distributed, multi-cloud database and is available across AWS, Google Cloud, and Microsoft Azure. With offices worldwide and over 60,000 customers, including 75% of the Fortune 100 and AI-native startups, relying on MongoDB for their most important applications, we’re powering the next era of software. Our compass at MongoDB is our Leadership Commitment, guiding how and why we make decisions, show up for each other, and win. It’s what makes us MongoDB. To drive the personal growth and business impact of our employees, we’re committed to developing a supportive and enriching culture for everyone. From employee affinity groups, to fertility assistance and a generous parental leave policy, we value our employees’ wellbeing and want to support them along every step of their professional and personal journeys. Learn more about what it’s like to work at MongoDB, and help us make an impact on the world! MongoDB is committed to providing any necessary accommodations for individuals with disabilities within our application and interview process. To request an accommodation due to a disability, please inform your recruiter. MongoDB, Inc. provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type and makes all hiring decisions without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. Req ID: 1273387742 MongoDB’s base salary range for this role is posted below. Compensation at the time of offer is unique to each candidate and based on a variety of factors such as skill set, experience, qualifications, and work location. Salary is one part of MongoDB’s total compensation and benefits package. Other benefits for eligible employees may include: equity, participation in the employee stock purchase program, flexible paid time off, 20 weeks fully-paid gender-neutral parental leave, fertility and adoption assistance, 401(k) plan, mental health counseling, access to transgender-inclusive health insurance coverage, and health benefits offerings. Please note, the base salary range listed below and the benefits in this paragraph are only applicable to U.S.-based candidates. MongoDB’s base salary range for this role in the U.S. is: $97,000—$189,000 USD

United States
$97K - $189K / year
Centric Consulting logo

IAM Analyst

Centric Consulting

A business consulting and technology solutions firm, Centric Consulting offers balanced and innovative solutions for clients in multifarious industries, such as

Security Analyst91 days ago

Role Description In this role, you will: - Perform daily IAM operational tasks including user provisioning, deprovisioning, and access modifications - Manage and fulfill IAM tickets in a timely manner, ensuring adherence to SLAs and security policies - Support organizational changes (e.g., new hires, terminations, role changes) by updating access accordingly - Process and validate role-based access requests (RBAC) to ensure appropriate access levels - Partner with business units to understand access needs and enforce least-privilege principles - Assist with access reviews, audits, and compliance-related activities - Identify and escalate access-related risks or anomalies Qualifications - 4+ years of experience in Identity & Access Management or related cybersecurity role - Hands-on experience with IAM tools such as Okta and SailPoint - Working knowledge of CyberArk for privileged access management - Strong experience with Active Directory (AD), including user/group management - Familiarity with role-based access control (RBAC) models and identity lifecycle management - Experience working with ticketing systems and handling access-related requests - Strong attention to detail and organizational skills Requirements - Experience in a regulated industry (insurance, finance, etc.) - Exposure to audit and compliance frameworks (SOX, NIST, etc.) - Basic scripting or automation experience (PowerShell, etc.) is a plus Benefits - Competitive compensation - Comprehensive and well-rounded benefits package for full-time employees - Health coverage - Wellness programs - 401K company match - Self-managed PTO - Unique incentives that celebrate accomplishments - Remote and Hybrid Work - Time Off When You Need It - Benefits That Flex - Professional Development opportunities

United States
OtherRemoteTeam 51-200

Are you looking for a company who believes in world-class employee culture and focuses on growing YOU professionally? Welcome to National Fire Experts, a leader in the property insurance intelligence industry. We are currently seeking a Part-Time Fire Investigator to join our growing team in Jonesboro, AR. The Fire Investigator is responsible for studying fire and explosion scenes. They will do all the required studies and all other work necessary to determine the cause and origin of fires and explosions. They will convey their findings and conclusions to others clearly and concisely, usually through a written report. If necessary, they will defend their opinions in a court of law. What Does National Fire Experts Offer You? - Remote Schedule - Competitive Compensation Package - Bonus Opportunity - Career Growth - A Diverse & Positive Work Environment - Professional Development - Employee Referral Bonus - Medical, Vision, and Dental Insurance Coverage - 401K with Match - HSA and HRA (Employer contributions) - Paid Parental Leave - Company Paid Life Insurance - Company Paid Short-Term and Long-Term Disability - Tuition Reimbursement - Paid Time Off and Holidays Duties and Responsibilities: - Timely field visits to loss sites to conduct cause and origin investigations. - Provides honest and unbiased analysis and consultation on various fires and explosions. - Field studies and research on a daily basis. - Must travel to perform investigations within a 100-mile radius (further when required) from the assigned office. Depending upon the workload and distance traveled, occasional overnight travel may be required. - Will have close client interaction, often dealing with sensitive and confidential information. - Writes and submits detailed and accurate reports on completed investigations in a timely manner in accordance with company guidelines. - Will communicate with National Fire Experts' customers to provide timelines and project updates on a consistent basis. - Must be willing and able to provide expert testimony and/or depositions on an as needed basis. - Must be willing to work a flexible schedule during periods of peak business demand. - Will provide excellent customer service to both the company’s internal and external customers. - Perform other duties as assigned by management. Minimum Qualifications: - Must have CFEI certification through NAFI, or CFI certification through IAAI (preferred). - Must hold or have the ability to obtain a Private Investigator License in the state(s) in which they are assigned within 60 days of employment (if applicable). - Must be familiar with NFPA 921. - Must meet all the requirements for qualification as a fire investigator per NFPA 1033. - Previous expert testimony or deposition experience highly preferred but not required. - Degree or some college coursework is preferred but not required. - Must have at least 2 years of hands on experience working in the public and/or private sectors performing fire origin and cause investigations on residential and commercial structures. - Must be well organized with the ability to deliver fast and accurate turnaround times. - Must be able to handle multiple project workload and periods of high stress, especially during times of peak business demand. - Must be hands-on and able to climb ladders and roofs, crawl in tight spaces, etc. as needed to perform investigations. - Will work projects that are assigned to them unless sufficient hazards are identified utilizing National Fire Experts' Safety Protocol guidelines and JSA’s. - Meet all standards for pre-employment physical examination. - Excellent written and verbal communication skills. - Must be team-oriented and service-oriented. - Must have a valid driver’s license with an acceptable driving record in accordance with the firm’s guidelines. - Must have superior customer service skills. - Must always conduct business in an honest and ethical fashion. - Experience with writing detailed investigation reports is highly preferred. - Must have excellent overall computer skills. - Must meet or exceed company aptitude standards regarding computer and technical proficiency. - Must have the ability to work efficiently with little or no supervision. - Must be willing to travel and/or work a flexible schedule during periods of peak demand. - Must have the willingness to work remotely and from home office. - Must have employee-provided, high-speed internet that is reliable and accessible at remote office Physical Requirements: - Frequently required to stand on one’s feet for prolonged periods of time. - Frequently required to lift and/or move objects weighing up to 100 lbs. - Frequently required to climb onto roofs, ascend/descend ladders, stairs, scaffolding, ramps, etc. - Frequently required to balance, stoop, kneel, crouch, climb, and crawl. - Frequently required to reach with hands and arms. - Frequently required to spend extended periods of time operating a motor vehicle. - Frequently required to use hands to finger, handle, or feel. To learn more about us visit https://nationalfireexperts.com/. National Fire Experts are committed to creating a diverse environment and is proud to be an equal opportunity employer. We are an E-Verify participating employer.

United States
OtherRemoteTeam 51-200

Are you looking for a company who believes in world-class employee culture and focuses on growing YOU professionally? Welcome to National Fire Experts, a leader in the property insurance intelligence industry. We are currently seeking a Part-Time Fire Investigator to join our growing team in Topeka, KS. The Fire Investigator is responsible for studying fire and explosion scenes. They will do all the required studies and all other work necessary to determine the cause and origin of fires and explosions. They will convey their findings and conclusions to others clearly and concisely, usually through a written report. If necessary, they will defend their opinions in a court of law. What Does National Fire Experts Offer You? - Remote Schedule - Competitive Compensation Package - Bonus Opportunity - Career Growth - A Diverse & Positive Work Environment - Professional Development - Employee Referral Bonus - Medical, Vision, and Dental Insurance Coverage - 401K with Match - HSA and HRA (Employer contributions) - Paid Parental Leave - Company Paid Life Insurance - Company Paid Short-Term and Long-Term Disability - Tuition Reimbursement - Paid Time Off and Holidays Duties and Responsibilities: - Timely field visits to loss sites to conduct cause and origin investigations. - Provides honest and unbiased analysis and consultation on various fires and explosions. - Field studies and research on a daily basis. - Must travel to perform investigations within a 100-mile radius (further when required) from the assigned office. Depending upon the workload and distance traveled, occasional overnight travel may be required. - Will have close client interaction, often dealing with sensitive and confidential information. - Writes and submits detailed and accurate reports on completed investigations in a timely manner in accordance with company guidelines. - Will communicate with National Fire Experts' customers to provide timelines and project updates on a consistent basis. - Must be willing and able to provide expert testimony and/or depositions on an as needed basis. - Must be willing to work a flexible schedule during periods of peak business demand. - Will provide excellent customer service to both the company’s internal and external customers. - Perform other duties as assigned by management. Minimum Qualifications: - Must have CFEI certification through NAFI, or CFI certification through IAAI (preferred). - Must hold or have the ability to obtain a Private Investigator License in the state(s) in which they are assigned within 60 days of employment (if applicable). - Must be familiar with NFPA 921. - Must meet all the requirements for qualification as a fire investigator per NFPA 1033. - Previous expert testimony or deposition experience highly preferred but not required. - Degree or some college coursework is preferred but not required. - Must have at least 2 years of hands on experience working in the public and/or private sectors performing fire origin and cause investigations on residential and commercial structures. - Must be well organized with the ability to deliver fast and accurate turnaround times. - Must be able to handle multiple project workload and periods of high stress, especially during times of peak business demand. - Must be hands-on and able to climb ladders and roofs, crawl in tight spaces, etc. as needed to perform investigations. - Will work projects that are assigned to them unless sufficient hazards are identified utilizing National Fire Experts' Safety Protocol guidelines and JSA’s. - Meet all standards for pre-employment physical examination. - Excellent written and verbal communication skills. - Must be team-oriented and service-oriented. - Must have a valid driver’s license with an acceptable driving record in accordance with the firm’s guidelines. - Must have superior customer service skills. - Must always conduct business in an honest and ethical fashion. - Experience with writing detailed investigation reports is highly preferred. - Must have excellent overall computer skills. - Must meet or exceed company aptitude standards regarding computer and technical proficiency. - Must have the ability to work efficiently with little or no supervision. - Must be willing to travel and/or work a flexible schedule during periods of peak demand. - Must have the willingness to work remotely and from home office. - Must have employee-provided, high-speed internet that is reliable and accessible at remote office Physical Requirements: - Frequently required to stand on one’s feet for prolonged periods of time. - Frequently required to lift and/or move objects weighing up to 100 lbs. - Frequently required to climb onto roofs, ascend/descend ladders, stairs, scaffolding, ramps, etc. - Frequently required to balance, stoop, kneel, crouch, climb, and crawl. - Frequently required to reach with hands and arms. - Frequently required to spend extended periods of time operating a motor vehicle. - Frequently required to use hands to finger, handle, or feel. To learn more about us visit https://nationalfireexperts.com/. National Fire Experts are committed to creating a diverse environment and is proud to be an equal opportunity employer. We are an E-Verify participating employer.

United States