EVOTEK, Inc. logo
EVOTEK, Inc.

EVOTEK believes that everyone has the ability to make an impact, and we are proud to be an equal opportunity employer committed to providing employment opportunity regardless of sex, race, creed, color, gender, religion, marital status, domestic partner status, age, national origin or ancestry, physical or mental disability, medical condition, sexual orientation, pregnancy, military or veteran status, citizenship status, and genetic information.

Information Security Analyst

Location

United States

Posted

4 days ago

Salary

$95K - $130K / year

Seniority

Mid Level

Job Description

Information Security Analyst

EVOTEK, Inc.

Role Description The Security Analyst is responsible for specific aspects of the security program including: - Regulatory reporting - Metrics/KPIs - Training and awareness - Security process integration - Risk management for our clients Key responsibilities include: - Protecting computer assets by establishing and enforcing system access controls; maintaining disaster preparedness. - Documenting, maintaining, and analyzing compliance with IT controls, standard procedures, and policies. - Demonstrating excellent customer service skills, building credibility and rapport with client technical teams. - Assisting in periodic information risk assessments and audits to ensure that information systems are adequately protected to meet security objectives. - Assisting in collecting security-related evidence for external audits. - Providing technical expertise during IT security incident response. - Supporting IT security inquiries from customers. - Assisting in the review of vendor IT security programs and controls. - Tracking and maintaining action plans for the resolution of issues identified during assessments and audits. - Ensuring authorized access by investigating improper access; revoking access; reporting violations; monitoring information requests by new programming; recommending improvements. - Establishing physical security by developing standards, policies, and procedures. - Advising on risk levels and security posture through a risk management framework. - Identifying business processes requiring information security integration. - Supporting the design and execution of security exercises. - Applying an analytical mindset to make sound recommendations on Operational Risk issues. - Demonstrating technical knowledge of IT security theory, technologies, policies, and practices. - Effectively negotiating or mediating issues. - Exhibiting strong written communication and documentation, and analytical reporting skills. - Having working knowledge of GRC platforms. - Possessing experience with information protection, security, risk, and compliance-related matters. - Having IT audit experience in gathering artifacts. - Utilizing persuasive communication skills necessary to collect essential information & answer questions. - Exhibiting planning and organizational skills necessary to coordinate workload around complex, multiple assignments. - Proven ability in information security principles, latest industry awareness, and current knowledge. - Knowledge of NIST (800-53, CSF) and other information security frameworks. - Knowledge of information security processes and tools. - Able to manage multiple priorities and work well under pressure. - Knowledge of data privacy regulations is a plus. Qualifications - 3+ years of experience in IT audit, information security, or information risk management with customer-facing responsibilities within the defense industry. - Policy, risk, and framework experience. - General knowledge of IT audit and assessment concepts and practices. - Proven ability in information security principles, latest industry awareness, and current knowledge. - Documentation uplift and creation. - Experience with metrics and reporting. - Comfortable and experienced with presenting. - Financial industry experience is preferred. Requirements - Salary commensurate with years of experience, technical expertise, and geographic location. - Salary range: $95,000 to $130,000. - Performance bonuses. Benefits - 100% paid medical, dental, and vision for the employee. - 401(k) with employer match. - Strong company culture. - Flexible PTO policy. - Flexible working arrangements. - Annual company overnight retreat. Company Description EVOTEK believes that everyone has the ability to make an impact, and we are proud to be an equal opportunity employer committed to providing employment opportunity regardless of sex, race, creed, color, gender, religion, marital status, domestic partner status, age, national origin or ancestry, physical or mental disability, medical condition, sexual orientation, pregnancy, military or veteran status, citizenship status, and genetic information.

Related Job Pages

More Security Analyst Jobs

Stefanini Brasil logo

Mid-level Security Analyst

Stefanini Brasil

Co-creating Solutions for a Better Future

Full TimeRemoteTeam 10,001+Since 1987H1B No Sponsor

• Operate and evolve the Vulnerability Management process, being responsible for identifying, analyzing, prioritizing, tracking and validating the remediation of vulnerabilities in IT, OT (Operational Technology) and Cloud environments. • Execute and monitor vulnerability scans on infrastructure assets, operating systems, applications, APIs, cloud environments and industrial assets. • Analyze results from Vulnerability Management tools, identifying vulnerabilities, validating false positives and supporting the definition of remediation strategies. • Classify and prioritize vulnerabilities based on risk criteria, asset criticality, business impact and exploitation potential. • Plan, coordinate and follow up on remediation actions with responsible teams, ensuring improvements in security indicators and adherence to established deadlines. • Perform technical re-validations to demonstrate the effectiveness of implemented fixes. • Support hardening initiatives, risk management and continuous improvement of the organization’s security posture. • Continuously monitor new vulnerabilities, emerging threats and risks that may impact the corporate environment. • Prepare technical reports, dashboards and executive metrics to monitor the maturity of the Vulnerability Management process. • Participate in alignment meetings with infrastructure, cloud, security, development teams and business stakeholders. • Contribute to the advancement of processes, automations and integrations related to Vulnerability Management.

Brazil
Rubrik, Inc. logo

SOC Security Analyst – FedRAMP

Rubrik, Inc.

As the pioneer in Zero Trust Data Security™, we enable cyber and operational resilience for enterprises and governments.

Full TimeRemoteTeam 1,001-5,000Since 2014H1B No Sponsor

• Monitor and respond to security alerts across Rubrik’s corporate network, endpoints, cloud, and SaaS environments. • Rapidly detect and accurately identify signs of intrusions and other malicious activity. • Manage the end-to-end incident response lifecycle, encompassing triage, deep-dive investigations, and remediation to ensure accurate identification of root causes and organizational impact. • Partner with vulnerability management, FedRAMP, and engineering teams to assess threats, prioritize vulnerabilities, and drive timely remediation efforts. • Collaborate with cross functional teams to drive resolution of events. • Contribute to overall program maturity through providing feedback and ideas to refine and improve detection capabilities and response processes. • Update and maintain accurate incident case attributes and investigation details.

United States
$111.8K - $186.2K / year
Full TimeRemoteTeam 51-200Since 1994H1B No Sponsor

• Review, investigate, and adjudicate security incidents escalated from the Security Operations Center (SOC), including triage, root cause analysis, containment, remediation, and post-incident review while partnering with the SOC to improve detection logic, escalation workflows, and operational effectiveness • Drive the vulnerability management lifecycle through identification, risk-based prioritization, remediation tracking, and reporting while coordinating penetration testing activities, supporting remediation efforts, and performing application security assessments and reviews • Partner with engineering teams to identify, prioritize, and remediate security risks across production environments while contributing to secure configuration standards, monitoring coverage, security best practices, and the protection of AI-enabled workloads • Support the ongoing maturation of the security program by improving security tools, processes, and operational capabilities while recommending enhancements that strengthen the organization's overall security posture • Ensure complete and reliable collection of security logs and telemetry into the SIEM while supporting security data architecture decisions, onboarding new data sources, validating monitoring coverage, and identifying visibility gaps across systems and environments • Support internal and external audits, including HITRUST, SOC 2, client assessments, and regulatory reviews while coordinating evidence collection, tracking remediation activities, conducting third-party risk assessments, maintaining risk registers, and supporting ongoing audit readiness • Develop, analyze, and present security and risk metrics, KPIs, KRIs, dashboards, and executive-level reporting that translate technical findings into meaningful business insights and support organizational decision-making • Partner with engineering, infrastructure, operations, compliance, risk management, and business stakeholders to support security initiatives, policy and control mapping efforts, risk remediation activities, and strategic security projects

Ohio
$120K - $140K / year
GEHA Health logo

Continuity & Security Assurance Analyst

GEHA Health

G.E.H.A (Government Employees Health Association, Inc) is a nonprofit member association that provides medical and dental benefits to more than two million federal employees and retirees, military retirees, and their families. We celebrate diversity and are committed to creating an inclusive environment for all employees. G.E.H.A has one mission: To empower federal workers to be healthy and well. We serve our members with products they value and a personalized customer experience, sustained by a nimble and efficient organization.

Full TimeRemoteTeam 1,001-5,000

Role Description The Continuity and Security Assurance Analyst supports G.E.H.A’s Cybersecurity and Information Protection (CIP) program by executing security, compliance, and business continuity initiatives. This role is responsible for: - Assessing controls - Monitoring compliance with regulatory and internal standards - Supporting audit activities - Contributing to the resilience and security posture of G.E.H.A’s systems, data, and third-party relationships Qualifications - Bachelor’s degree in Computer Science, Information Systems, or a related discipline - Three (3) or more years of experience in Information Technology, Information Security, IT Assurance, Risk Management, Governance, or Business Continuity - Equivalent combinations of education and additional experience may be considered in lieu of formal degree or certification requirements - One or more industry certifications such as: CISSP, HCISPP, CRMA, CGEIT, CRISC, CISM, CISA, CBCP, GIAC, or similar governance, risk, security, or BCDR certifications Requirements - Working knowledge of governance, risk, and compliance frameworks such as: COSO, COBIT, ITIL, ISO 31000, ISO 27002, ISO 22301, NIST CSF, NIST 800‑53, and SANS Critical Security Controls - Experience with enterprise Governance, Risk, and Compliance (GRC) platforms (e.g., Archer, MetricStream, LockPath, etc.) - Proficiency with Microsoft Office applications - Strong analytical and problem-solving skills with the ability to identify risk and recommend practical solutions - Effective written and verbal communication skills, including the ability to translate technical risks into business-focused language - Ability to build relationships, influence stakeholders, and collaborate across multiple business units and teams - Strong organizational skills with the ability to manage multiple priorities in a fast-paced environment - Customer service orientation with a focus on delivering high-quality, accurate outcomes - Effective presentation and interpersonal skills Benefits - Competitive pay/salary ranges - Incentive plan - Health/Vision/Dental benefits effective day one - 401(k) retirement plan: company match – dollar for dollar up to 4% employee contribution (pretax or Roth options) plus a 6% annual company contribution - Robust employee well-being program - Paid Time Off - Personal Community Enrichment Time - Company-provided Basic Life and AD&D - Company-provided Short-Term & Long-Term Disability - Tuition Assistance Program

United States
$75.9K - $106.9K / year