Workday Security Analyst
Location
United States
Posted
1 day ago
Salary
0
Seniority
Mid Level
Job Description
Workday Security Analyst
Lineage
Role Description We are seeking a self-driven, detail-oriented, and experienced Workday Security Analyst to support, maintain, and enhance the security framework of the Lineage Workday platform. This role is responsible for the analysis, design, implementation, and ongoing maintenance of security configurations across the Workday platform supporting Financial Management and HR domains. The ideal candidate will ensure compliance with internal policies and external regulatory requirements while optimizing system access and security architecture and maintaining the integrity and confidentiality of the Workday environment. Essential Job Duties & Responsibilities: - Security Design & Implementation: - Architect and deliver scalable, enterprise-grade security frameworks across Workday’s HR and Finance modules aligning business objectives and security best practices. - Security Configuration & Administration: - Lead the configuration and administration of Workday security, including, but not limited to: - Domain security policies - Business process security policies - Role-based security groups - User-based security groups - Intersection and constrained security groups - Segregation of duties (SoD) - Tenant level security architecture - Authentication and authorization concepts - Security inheritance and propagation - Security Architecture & Optimization: - Continuously assess and mature the Workday security architecture by identifying gaps, reducing complexity and implementing improvements that enhance scalability, performance, and least-privilege access. - Authentication & Integration Security: - Design and manage secure authentication frameworks, including OAUTH, SAML, Step-Up, Whitelisting, Single Sign-On (SSO), ensuring seamless and secure integrations across enterprise systems. - Issue Resolution & Operational Excellence: - Serve as a subject matter expert in troubleshooting and resolving complex security issues, ensuring timely resolution while maintaining system integrity and business continuity. - Provisioning and deprovisioning users - Managing role assignments - Security group maintenance - Troubleshooting access issues - Creating and modifying security configurations - Supporting tenant refreshes and migrations - Running security audits - Managing emergency access procedures - Continuous Improvement & Release Management: - Proactively monitor Workday releases and emerging capabilities, assessing impact and driving adoption of new features to enhance security posture and operational efficiency. - User Access & Provisioning Governance: - Establish and optimize user access governance, partnering with Finance, HR, IT, and business stakeholders to design efficient provisioning workflows. - Plan, coordinate, and execute biannual User Access Reviews (UAR) with a focus on audit readiness and risk reduction. - Compliance, Risk & Audit Leadership: - Drive compliance with regulatory and internal control frameworks (e.g., SOX, GDPR) by designing effective controls, supporting audits, managing evidence collection, and leading remediation efforts to address identified risks. - Documentation & Security Governance: - Develop and maintain comprehensive, audit-ready documentation of security models, standards, policies, and procedures, ensuring transparency and consistency across the organization. - Security Roadmap & Strategy: - Define and execute a forward-looking Workday security roadmap that leverages new platform capabilities, enforces least-privilege access, and aligns with evolving organizational and regulatory requirements. Qualifications - Bachelor's degree in IT or related discipline - 3–5 years of hands-on experience with Workday Security (Pro certification a plus) - Experience working directly with internal controls and auditors to support audit requests - Proven experience designing and implementing security architectures - Experience with SoD, SOX compliance, User Access Reviews (UAR), and GDPR initiatives - Strong knowledge of authentication methods, including OAUTH, SAML, SSO and tenant level security configurations - Supporting large global organizations with complex security framework and scaling for growth Benefits - Safe, stable, reliable work environments - Medical, dental, and basic life and disability insurance benefits - 401k retirement plan - Paid time off - Annual bonus eligibility - A minimum of 7 holidays throughout the calendar year
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
• Analyzing vulnerabilities by extracting findings from platforms like Wiz, Vulcan, Grype, and Tenable, while quantifying infrastructure impact for prioritization. • Creating AI automations streamlining security operations: auto-triaging and containing SIEM while prioritizing vulnerability data from integrated tools effectively. • Engineering tools for signal quality by designing correlation searches, refining detection rules, and automating SOAR playbooks to reduce false positives efficiently. • Ensuring remediation governance by creating tickets, assigning owners, enforcing deadlines, and verifying fixes through rescans and evidence collection thoroughly. • Creating visibility and KPIs by managing dashboards tracking vulnerabilities, remediation speed, SLA adherence, MTTR/MTTD, patch age, and risk trends. • Monitoring SIEM telemetry, triaging alerts, containing and eradicating threats, and leading root-cause analysis alongside post-mortem evaluations. • Strengthening controls by mapping emerging TTPs (MITRE ATT&CK) to defenses, recommending detections, and implementing safeguards across cloud, container, and on-prem environments.
• Run FedRAMP Continuous Monitoring (ConMon) processes and ensure successful monthly reviews with ExtraHop and agency stakeholders; manage asset inventory, vulnerability scan findings, and the Plan of Action & Milestones (POA&M) document • Manage vulnerability detection and response pipelines, including tools, reporting and tracking • Lead the vulnerability management lifecycle: triage, reporting, coordination with system owners, and remediation tracking • Develop and provide vulnerability findings and responses for internal and external stakeholders, including customers • Collaborate with the Director of Product Security to handle customer and pre-sales security inquiries • Assist in addressing compliance requirements for various standards, (e.g., CSA STAR, ISO 27001, DoDIN APL, NIAP, FIPS, CMMC, IL4), supporting gap assessments and facilitating audits (including coordinating evidence collection and submission) • Develop a product security compliance roadmap and coordinate key activities across the organization to achieve milestones • Collaborate with Product Security team members to develop and improve standards, policies, procedures, documentation, and training • Work with security information & event management (SIEM) tooling and other systems to perform security investigations • Perform and/or lead security incident response activities • Participate in an on-call rotation with occasional after-hours paging to review carefully prioritized security detections
Information Security Analyst
MachinifyMachinify focuses on providing machine learning solutions to businesses and was created to help companies integrate artificial intelligence into everyday practices. The company pro
Role Description At Machinify, we’re building a robust security program to protect our clients’ sensitive healthcare data and maintain the highest standards of information security. As part of the Security team, you will play a central role in managing our security assurance operations — helping ensure that customer requests, audit activities, and compliance processes run smoothly and efficiently. This is an entry-level role suited for someone detail-oriented, hardworking, and intellectually curious. A background in cybersecurity is helpful but not required. We’ll consider candidates with experience in business operations, finance, accounting, or related fields who demonstrate strong organizational instincts and a commitment to doing things right. What You’ll Do - Security Assurance Operations (60% of role) - Own the intake process for security assurance requests: review incoming tickets, triage and prioritize work, assign tasks to the appropriate team members, and track requests to resolution. - Resolve routine and straightforward security inquiries and questionnaire items independently. - Communicate clearly with internal stakeholders and customers throughout the assurance process, setting expectations and providing status updates. - Respond to customer security questionnaires and audit requests with accuracy and timeliness, escalating complex items as appropriate. - Maintain the security documentation repository and ensure materials are current and accessible. - Support customer-facing security calls and presentations alongside senior team members. - Audit and Compliance Support (25% of role) - Assist with HITRUST r2 and SOC 2 audit preparation and evidence collection. - Help coordinate audit activities across internal teams, tracking open items and deadlines. - Support access review processes and other recurring compliance activities. - Assist with security policy and procedure maintenance. - General Security Program Support (15% of role) - Track and report on security metrics and assurance request status. - Support vendor risk assessment activities. - Assist with security awareness efforts and documentation as needed. - Participate in security incident response when needed. Qualifications - Bachelor’s degree in Information Security, Business, Operations, Finance, Accounting, or a related field, or equivalent work experience. - Strong attention to detail and follow-through — you catch things others miss and see tasks through to completion. - Excellent written and verbal communication skills, including comfort communicating with external clients. - Ability to manage multiple concurrent requests and prioritize effectively in a fast-paced environment. - Strong problem-solving orientation; you approach unfamiliar situations with curiosity and good judgment. - Proficiency with productivity and work-tracking tools (ticketing systems, spreadsheets, document management). Requirements - 1–2 years of experience in operations, compliance, audit support, finance, or a related field. - Exposure to information security concepts, frameworks (NIST, HITRUST, SOC 2), or HIPAA compliance. - Experience in healthcare, healthcare technology, or working with regulated data environments. - Familiarity with GRC or security assurance workflows. Benefits - Work from anywhere in the US! Machinify is digital-first. - Top Medical/Dental/Vision offerings. - FSA/HSA. - Tuition reimbursement. - Competitive salary, 401(k) with company match. - Additional health and wellness benefits and perks. - Flexible and trusting environment where you’ll feel empowered to do your best work.
Analista de Segurança III
Teltec SolutionsTransforming your business in the face of the challenges of the digital economy with experience, competence, and innovat
• Apoiar a equipe comercial na qualificação, apresentação e proposição de soluções de segurança que sejam aderentes a necessidade dos clientes; • Realizar adoção de soluções de segurança implantadas, potencializando o benefício das soluções para os clientes; • Desenvolver projetos técnicos detalhados, prezando pela aderência e adequação às características de cada cliente; • Realizar a implantação de soluções de segurança no ambiente dos clientes de acordo com boas práticas recomendadas e procedimentos internos da Teltec; • Executar atividades corretivas ou evolutivas no ambiente de infraestrutura dos clientes; • Documentar atividades e trabalhos realizados nos projetos durante a fase comercial e após a implantação dos projetos; • Realizar treinamentos técnicos orientados a soluções específicas dos clientes; • Atender solicitações técnicas de 3º nível originadas pelo Service desk; • Promover conhecimento aos analistas, transferindo e multiplicando seu conhecimento e experiência dentro da equipe.



