Solutions for a world at risk™
Senior Information Security Analyst – Internal Review
Location
India
Posted
71 days ago
Salary
0
Seniority
Senior
Job Description
Senior Information Security Analyst – Internal Review
Milliman
• Review the security controls in place at Milliman global office locations to ensure implementation is in place • Conduct security reviews remotely through video calls or in-person visits to the office being assessed • Prepare comprehensive assessment reports detailing findings and actionable recommendations for IT support and senior management • Oversee remediation efforts, track progress, and follow up with practice offices where ISRs have been conducted • Support and maintain aggregate risk reporting to be delivered to the CISO, CIO, and Audit Committee
Job Requirements
- 7+ years of experience in information technology, information security, and/or information technology/security audit roles
- Bachelor's degree in Computer Science or Cyber Security (or equivalent years of relevant professional hands-on work experience)
- Excellent English verbal and written communication skills
- Experience with information security frameworks and standards, including ISO 27001/2, NIST SP 800-53, and compliance requirements such as HIPAA and HITRUST, GDPR, as well as industry frameworks like SOC 2 and COBIT
- Ability to interpret information security data and processes to identify potential compliance issues
- Strong technical knowledge of information systems and their security areas such as networking, operating systems, and identity access management
- Advanced skills in Microsoft Office applications (e.g., O365, Word, Excel, PowerPoint)
- Decision-making and problem-solving skills
Benefits
- Professional development
- Travel opportunities
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Pay: $110,000.00 - $130,000.00 per year Job description: OSINT/PAI Targeting Analyst Constellation is seeking multiple Open-Source Intelligence (OSINT)/Publicly Available Information (PAI) Targeting Analysts to support the Department of Homeland Security. Individual compensation will be commensurate with experience, ranging from the Journeyman level to Senior OSINT/PAI Analyst roles for those with exceptional, demonstrated expertise. The OSINT/ PAI Analyst will research and analyze information from commercial and law enforcement databases and other publicly accessible, internet-based, open-source, and social media platforms to support investigations for the purposes of national security and public safety. Analysts will contribute to and produce briefings and reports that include key targeting data and analytical insights. Key Responsibilities: - Conduct OSINT/PAI intelligence analysis to assess threats, risks, and opportunities impacting national security or organizational objectives - Analyze open source, classified, and proprietary data to identify trends, patterns, and emerging threats - Develop and deliver high-quality intelligence reports, assessments, and briefings for senior leadership - Utilize advanced analytical methodologies, data modeling, and intelligence tools to enhance analytical accuracy - Ability to work in a remote team environment and communicate effectively with team members to complete an analytical caseload - Ability to work under strict timelines Required Qualifications: - Bachelor’s degree and minimum 3-5 years of experience in OSINT/PAI exploitation, targeting, and lead generation supporting U.S. law enforcement agencies, DoD, or IC - Ability to obtain and maintain DHS Suitability - Possess deep analytical and cyber expertise including proficiency with specialized investigative tools and datasets - Proven ability to utilize a variety of OSINT tools for collection and analysis as well as manually researching U.S. public records - Strong critical thinking, written, and verbal communication skills, with experience producing and delivering intelligence products - Ability to work in a remote work schedule. Desired Qualifications: - Active or Former government clearance or DHS suitability - Native or proficient in foreign languages and cultural/area knowledge to include Spanish, Arabic, Pashto/Dari Completion of an accredited OSINT course, e.g. OS-301, OS-302 (U.S. Army), ONI OSINT Fundamentals, DIA BOTC, FBI OS-01 or commercial equivalents such as CASO and SANS SEC497 - Degree in Intelligence Studies, International Relations, Political Science, Security Studies, or a related field Job Type: Full-time Work Location: Remote Benefits: - 401(k) - 401(k) matching - Dental insurance - Employee assistance program - Flexible schedule - Flexible spending account - Health insurance - Life insurance - Paid time off - Professional development assistance - Vision insurance Application Question(s): - This position requires U.S. citizenship. Are you a U.S. citizen currently residing in the U.S.? - How many years of experience you have with Open-Source Intelligence Analysis (OSINT)? - Do you have a DHS or DOD clearance? Education: - Bachelor's (Preferred) Experience: - Intelligence analysis: 4 years (Preferred)
Benefits: - Company car - Free uniforms - Opportunity for advancement - Paid time off - Profit sharing - Training & development About the Role: Join FlyLock Security Solutions as an Access Control Technician and play a critical role in safeguarding our clients' assets. We are looking for motivated individuals who are passionate about security technology and delivering exceptional service in the vibrant community of South Central Omaha. Responsibilities: - Install, configure, and maintain access control systems for residential and commercial properties. - Troubleshoot and resolve technical issues related to security hardware and software. - Conduct site assessments to determine security needs and recommend appropriate solutions. - Provide on-site training and support to clients on system usage and best practices. - Collaborate with team members to ensure timely project completion and customer satisfaction. - Maintain accurate records of installations, repairs, and service requests. - Stay updated on industry trends and emerging technologies in access control systems. Requirements: - High school diploma or equivalent; technical certification in security systems preferred. - 2+ years of experience in access control installation and maintenance. - Strong knowledge of electronic security systems and networking principles. - Valid driver's license and reliable transportation for travel to job sites. - Excellent problem-solving skills and attention to detail. - Ability to work independently and as part of a team in a fast-paced environment. - Strong communication skills and a customer-focused attitude. About Us: FlyLock Security Solutions has been a trusted provider of security services in Omaha, NE for over a decade. Our commitment to innovation and customer satisfaction has earned us a loyal client base, and our employees enjoy a supportive work environment that encourages growth and professional development. This is a remote position.
Information Security Analyst II
CSGCSG delivers innovative customer engagement solutions that help you acquire, monetize, engage and retain customers.
• Monitor, respond, and work to resolution alerts from security tools such as endpoint detection and response (EDR), email security, firewall, security event and information management (SIEM), IPS/IDS, Application Firewall, malware, change detection (FIM), user behavioral analytics, rogue wireless network alerts, and security system health monitoring. • Participate in the organization's incident response plan and perform incident reporting on an as needed basis. • Experience in incident response, to include evidence collection and preservation, timelining activities, and conducting technical interviews. • Experience with automated workflow tools and Strong analytical and problem-solving skills; Python experience a plus. • Collaborate with team members and assist in developing and implementing SOC IR strategies, along with refining and testing incident response playbooks and procedures. • Coordinate with internal and external stakeholders during incidents. • Stay updated on emerging cybersecurity threats and trends. • Perform security engineering tasks as required to include alert tuning, system maintenance, determining and capturing key information feeds, etc. • Participate and fulfill requests from audit, compliance, and regulatory functions, including and not limited to Payment Card Industry (PCI) Data Security Standard (DSS), Sarbanes-Oxley (SOX), emerging state and Federal privacy laws, and general security auditing. • Must be able to work outside normal business hours when needed in order to perform diagnosis and/or implementation of product releases or changes so that normal business workflow is not interrupted. • This position requires domestic and/or international travel of up to 5%.
Cybersecurity Analyst III
New American FundingA leading national mortgage banker and direct mortgage lender, New American Funding specializes in personalized home loans. Founded in 2003, the company was established by Rick and
Overview Position: Sr. Cybersecurity Analyst Salary: Starting at $124,400/year+ D.O.E *Actual compensation may vary from posting based on geographic location, work experience, education, and/or skill level. Location: Santa Ana, CA (on-site preferred; open to remote candidates located beyond a 31-mile radius) Position Summary: The Sr. Cybersecurity Analyst leads the protection of enterprise systems, networks, and data through advanced monitoring, detection, analysis, and response to security events. This role provides technical leadership to the security operations team, mentors junior analysts, collaborates with engineers, IT, and DevOps teams, and contributes to strategic improvements in threat detection, incident response, and overall security posture in a fast-paced, evolving environment. The position emphasizes hands-on expertise in SOC tools, proactive threat hunting, and team guidance to maintain a resilient defensive capability. *Disclaimer: Identity Verification checks are in place throughout the Candidate journey to prevent candidate fraud Responsibilities Monitoring & Detection - Oversee and perform advanced monitoring of alerts from SIEM, EDR/XDR, IDS/IPS, firewalls, and other security platforms. - Lead triage, escalation decisions, and quality assurance for security events across the team. - Develop, tune, and maintain detection rules; lead proactive threat hunting programs to uncover hidden threats. - Analyze security telemetry trends to identify emerging attack patterns and refine detection strategies. Incident Response Leadership - Lead investigations of complex suspicious activity, conduct in-depth root cause analysis, and coordinate multi-team response efforts. - Direct containment, eradication, and recovery during security incidents; serve as primary escalation point for major events. - Oversee documentation of incidents, findings, lessons learned, and corrective actions in incident management systems. - Develop, refine, and maintain incident response playbooks, procedures, and post-incident review processes. Automation and Integration - Develop scripts and automate routine security tasks using Python, PowerShell, or Bash to improve efficiency. - Collaborate with DevOps to embed security controls in systems, applications, and cloud environments. Mentorship and Collaboration - Mentor and develop junior security analysts and team members through technical guidance, training, and knowledge sharing. - Partner with IT, DevOps, and business teams to implement security best practices across the organization. - Lead or support company-wide cybersecurity awareness initiatives, including phishing simulations and training programs. Thought Leadership - Stay current with emerging threats, attack vectors, defensive techniques, and threat intelligence sources. - Share insights with the team and leadership to drive proactive security enhancements. - Contribute to security program strategy, tool evaluations, and process optimization. Qualifications - Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related discipline (or equivalent work experience). - 4–7+ years of experience in IT security, SOC operations, incident response, or related technical roles (with at least 2 years in a senior or lead capacity preferred). - Strong hands-on experience with SIEM platforms, EDR/XDR, vulnerability scanners, firewalls, and endpoint protection tools. - In-depth knowledge of networking protocols, operating systems (Windows/Linux), authentication mechanisms, and cloud security principles (AWS, Azure, O365). - Excellent analytical, troubleshooting, and problem-solving skills. - Proven ability to lead investigations, mentor team members, and communicate effectively with technical and non-technical stakeholders. - Attention to detail and demonstrate performance under pressure in high-stakes security situations. Education, Experience, and Certifications: - Security certifications such as CompTIA Security+, CySA+, CASP+, CEH, GCIH, GCIA, CISSP, or equivalent. - Scripting proficiency (Python, PowerShell, Bash) for automation, analysis, and orchestration. - Prior experience leading SOC operations, incident response teams, threat hunting programs, or shift supervision. - Familiarity with threat intelligence platforms and frameworks (e.g., MITRE ATT&CK). - Exposure cloud security tools and DevSecOps practices. Key Competencies - Exceptional analytical and strategic problem-solving ability. - Strong leadership and mentorship skills with a team-oriented mindset. - Ability to prioritize tasks, enforce procedures, and make sound decisions in high-pressure environments. - Commitment to continuous learning and passion for threat intelligence and advancing security operations. Work Authorization: Must be able to verify identity and employment eligibility to work in the U.S. This position does not offer visa sponsorship. Other Duties: This job profile is not intended to be an all-inclusive list of job duties and responsibilities, as one may perform additional related duties as assigned in order to meet the needs of the organization. Physical Demands: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions. Must be able to lift up to ten pounds. Primary functions require sufficient physical ability and mobility to work in an office setting; to stand or sit for prolonged periods of time; to occasionally stoop, bend, kneel, crouch, reach, and twist; to lift, carry, push, and/or pull light to moderate amounts of weight; to operate office equipment requiring repetitive hand movement and fine coordination including use of a keyboard; and to verbally communicate to exchange information. VISION: See in the normal visual range with or without correction. HEARING: Hear in the normal audio range with or without correction. Pay Transparency Disclosure: If based in New American Funding’s offices, this role has the annual base salary range stated below. Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location. The listed range is a guideline, and the range for this role may be modified. For roles that are available to be filled remotely, the pay range is localized according to employee work location by a factor of between 80% and 100% of range. Please discuss your specific work location with your recruiter for more information. New American Funding offers competitive package of additional benefits, including health, dental & vision, retirement with company contribution, parental leave , mental health & wellness benefits, and generous PTO. New American Funding also offers sales incentive pay for most sales roles and an annual bonus plan for eligible non-sales roles. New American Funding’s compensation and benefits are subject to change and may be modified in the future. [EOE/M/F/D/V. Drug-free workplace.] #LI-JS3 #REMOTE



