Job Closed

This listing is no longer active.

Seneca Holdings logo
Seneca Holdings

Seneca Holdings is the investment arm of the Seneca Nation.

Security Analyst

Security AnalystSecurity AnalystOtherRemoteMid LevelTeam 501-1,000H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

112 days ago

Salary

0

Seniority

Mid Level

Bachelor Degree2 yrs expEnglish

Job Description

Security Analyst

Seneca Holdings

• Assist the FSO & AFSO with day-to-day security operations through the following tasks: • Provide initial security indoctrination briefings, debriefings, and annual refresher briefings. • Assist with preparing/maintaining manuals, Standard Operating Procedures (SOPs), System Security Plans (SSPs), Insider Threat Program Manual, and other required documents as well as ensuring full compliance to National Industrial Security Program Operating Manual (NISPOM) and other government and company policies. • Ensure compliance with government regulations and company policies regarding security clearances and classified information handling. • Maintain employee security files. • Security Team Liaison to Board Managers • Conduct New Hire Orientation • Support and participate in annual security self-assessments as well as DCSA Security Reviews. • Assist the Information Security team with day-to-day security operations such as: • Evaluate and validate identified vulnerabilities, distinguishing true positives from false positives and assessing potential business impact. • Prioritize remediation efforts based on risk severity, exploitability, asset criticality, and threat intelligence. • Collaborate with system owners and IT teams to communicate findings, recommend remediation actions, and track progress through closure. • Monitor threat intelligence sources to stay informed about emerging vulnerabilities, zero‑day exploits, and industry security trends. • Maintain and enhance vulnerability management processes, including scanning schedules, reporting workflows, and remediation SLAs. • Develop and deliver clear reporting, dashboards, and metrics for leadership, compliance teams, and technical stakeholders. • Support compliance and audit activities, ensuring vulnerability management practices align with frameworks such as NIST, CIS, ISO 27001, or regulatory requirements. • Stay informed about changes in security regulations and industry best practices. • Other security-related duties as assigned.

Job Requirements

  • Bachelor’s degree in related discipline (preferred)
  • Two (2) or more years of directly related experience preferably in a government or DOD environment.
  • Knowledge of security regulations, including the NISPOM.
  • Experience with Non-possessing and Possessing facilities, preferred.
  • Knowledge and experience in SCIF security measures and policies/procedures, is preferred.
  • Strong attention to detail and organizational skills and commitment to quality customer service.
  • Excellent communication and interpersonal abilities.
  • Ability to work independently and handle confidential information with discretion.
  • Must have excellent working knowledge of Microsoft applications: Excel, Word, PowerPoint.
  • Experience in working with government agencies.

Benefits

  • comprehensive medical and dental care
  • matching 401K
  • paid time off
  • flexible spending accounts
  • disability coverage
  • other benefits that help provide financial protection for you and your family.

Related Job Pages

More Security Analyst Jobs

CaseWorthy, Inc. logo

Senior Cybersecurity Analyst

CaseWorthy, Inc.

Better Data & Client Management For Whole Person Care

Security Analyst112 days ago
OtherRemoteTeam 51-200H1B No Sponsor

• Conduct regular security assessments and audits of systems and networks to identify vulnerabilities and risks. • Monitor and analyze security threats and incidents and provide recommendations for remediation. • Assist with the implementation of internal controls to maintain compliance with regulatory and statutory security frameworks (e.g., NIST, SOC 2, HITRUST). • Collaborate with other IT teams to ensure security is integrated into all aspects of the company's technology infrastructure. • Develop and implement security policies and procedures. • Participate in incident response and disaster recovery planning. • Stay up to date with the latest security threats, trends, and technologies, and make recommendations to improve our security posture. • Research/evaluate emerging cyber security threats and ways to manage them. • Plan for disaster recovery and create contingency plans in the event of any security breaches. • Test and evaluate security products. • Design new security systems or upgrade existing ones. • Use advanced analytic tools to determine emerging threat patterns and vulnerabilities. • Engage in 'ethical hacking', for example, simulating security breaches. • Identify potential weaknesses and implement measures, such as firewalls and encryption. • Monitor identity and access management, including monitoring for abuse of permissions by authorized system users. • Consult with stakeholders in relation to cyber security issues and provide future recommendations. • Generate reports for both technical and non-technical staff and stakeholders. • Maintain an information security risk register and assist with internal and external audits relating to information security. • Assist with the creation, maintenance, and delivery of cyber security awareness training for colleagues. • Performs other related duties as assigned.

United States
$90K - $125K / year
Job Closed
Highmark Health logo

Information Security Analyst – Intermediate

Highmark Health

Creating remarkable health experiences, freeing people to be their best.

Security Analyst112 days ago
OtherRemoteTeam 10,001+Since 1852H1B Sponsor

• Move beyond traditional CVSS-based patching to prioritize actionable resolutions • Serve as a detective for the attack surface, correlating data to identify critical assets • Perform rapid risk assessments of newly acquired infrastructure • Support the end-to-end remediation pipeline within ServiceNow SecOps • Proactively manage the team's RAID Log and escalate blockers • Act as a bridge between Security and IT Operations to prioritize security tasks • Monitor the efficacy of scanning agents to ensure visibility across environments

Louisiana + 4 moreAll locations: Louisiana | North Carolina | Maryland | Pennsylvania | Washington
$67.5K - $126K / year
Job Closed
Crisis24 logo

Case Manager, Threat Assessment and Management

Crisis24

Crisis24 is a global, AI-enhanced provider of travel risk management, mass communications, critical event management, crisis-security consulting, personal protection solutions and global medical concierge capabilities. We operate at the intersection of precision, discretion, and elite readiness. Delivering world-class security solutions to high-profile clients, executives, and organizations across the globe. Our Threat Assessment and Management Division provides consultation and training. We deliver our services with discretion and care, allowing our clients to make informed decisions with confidence.

Security Analyst113 days ago
OtherRemoteTeam 1,001-5,000

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description This role involves assessing and managing threat assessment cases with the oversight of a senior leader on complex cases. - Assess and manage threat assessment cases (i.e., executive/public figure pursuit, workplace violence, domestic violence). - Analyze investigative and OSINT findings in the development of management plans. - Write reports and communicate with Executive Protection teams and clients on inappropriate communications and threats directed to public figures and C-suite executives. - Assist in training Analysts and approving Analyst reports. - Conduct threat assessment trainings for clients on threat assessment topics. - This role requires after-hours on-call availability, including nights, weekends, and holidays as needed. - While a fully remote position in the U.S., the position may require up to 10 percent travel. Qualifications - 5+ years of experience in the threat assessment field. - Bachelor’s degree in a related field, such as Psychology or Criminal Justice, preferred. - Strong writing and communication skills. - Ability to multi-task with little supervision in a fast-paced environment required. - Ability to work independently and as a member of a team required. - Previous experience conducting OSINT or overseeing OSINT analysts a plus. - Previous experience working at (or consulting to) a corporation in threat assessment, OSINT, investigations, etc. and/or working with Executive Protection teams a plus. Requirements - Integrity and unwavering discretion on confidential issues. - Curiosity with excellent writing and communication skills. - Comfortable with different challenges and working on urgent projects in a fast-paced environment. - Detail-oriented and driven to deliver the best product to clients in a timely manner. - Excel at delivering written and verbal reports to clients and enjoy training and mentoring staff. Company Description Crisis24 is a global, AI-enhanced provider of travel risk management, mass communications, critical event management, crisis-security consulting, personal protection solutions and global medical concierge capabilities. - We operate at the intersection of precision, discretion, and elite readiness. - Delivering world-class security solutions to high-profile clients, executives, and organizations across the globe. - Our Threat Assessment and Management Division provides consultation and training. - We deliver our services with discretion and care, allowing our clients to make informed decisions with confidence.

United States
Job Closed
SupportYourApp logo

Information Security Risk Specialist

SupportYourApp

Support-as-a-Service that helps companies scale faster by taking care of their customers’ needs.

Security Analyst113 days ago
ContractRemoteTeam 1,001-5,000H1B No Sponsor

Role Description Ми шукаємо Information Security Risk Specialist, який прагне застосувати свої знання з інформаційної безпеки, отримати досвід роботи у міжнародній IT-компанії, взаємодіяти з командою та партнерами з усього світу, а також брати участь у цікавих та складних проектах у сфері інформаційної безпеки разом з нашою Security командою. З нами ти зможеш займатися: - Управлінням ризиків постачальників: - Проведення перевірок безпеки постачальників; - Пошук та збір інформації з відкритих джерел (OSINT); - Ведення та актуалізація реєстрів оцінки ризиків. - Комунікацією: - Опрацювання запитів від інших підрозділів та клієнтів; - Участь у заповненні та обробці клієнтських анкет з інформаційної безпеки відповідно до міжнародних стандартів (ISO 27001, SOC 2, NIST); - Залучення до первинного перегляду договорів із клієнтами (DPA/MSA) для виявлення розбіжностей між внутрішніми процесами компанії та вимогами клієнтів. - Забезпеченням відповідності пристроїв вимогам інформаційної безпеки: - Моніторинг, аналіз та перевірка доказів (логи, скріншоти) для підтвердження відповідності пристроїв співробітників вимогам безпеки; - Комунікація з користувачами для усунення невідповідностей вимогам безпеки; - Ведення реєстру затверджених пристроїв. - Документацією та операційною діяльністю: - Створення та оновлення внутрішніх інструкцій, процедур і матеріалів бази знань з інформаційної безпеки. - Підвищенням обізнаності співробітників з питань інформаційної безпеки: - Участь у фішингових симуляціях; - Допомога у підготовці матеріалів та листів з інформаційної безпеки для співробітників. - Інцидентами: - Первинна обробка інцидентів безпеки: збір доказів, базове розслідування та координація комунікації між залученими сторонами. Qualifications - Розуміння принципів інформаційної безпеки (Confidentiality, Integrity, Availability); - Розуміння вимог найбільш поширених стандартів інформаційної безпеки та законодавства у сфері безпеки й захисту персональних даних; - Аналітичне мислення та здатність працювати з документацією, даними та інцидентами безпеки; - Розвинені soft skills: комунікаційні навички, грамотна комунікація, уважність до деталей і точність, самоорганізація та вміння працювати з дедлайнами; - Рівень англійської мови B1–B2. Benefits - Надання послуг у бізнес-години; - Унікальні артпростори в Києві на ст. м. Васильківська або можливість співпраці у віддаленому форматі; - Комунікація, заснована на довірі, та відсутність трекерів активності; - Гармонія між проєктною завантаженістю та особистим часом, а також – внутрішня медична політика; - Креативна спільнота і культура, орієнтована на людей та взаємний фідбек; - Привабливі винагороди за запрошення друзів; - Конкурентна компенсація в USD; - Оплачуваний онбординг і доступ до корпоративної бібліотеки.

Worldwide
Job Closed