Job Closed
This listing is no longer active.
At the Intersection of Public and Private Sectors
Information Security Analyst
Location
United States
Posted
131 days ago
Salary
0
Seniority
Senior
Job Description
Information Security Analyst
DMI (Digital Management, LLC)
• Weekly report to the CISO on the status of projects. • Attend an agreed-upon number of informational and status meetings and, when appropriate, call and lead such discussions. • Discussions may take the form of project meetings. • Discussions will include sessions with State of Vermont ISA’s, business sponsored meetings, appointments to Steering Committees, Project Management, appointed State IT Executives, Agency Program Managers, and other consultants designated by the State. • The ISA will use tools provided by the State of Vermont. These tools are: a state issued desktop or laptop computer, Microsoft Office applications, and Azure DevOps.
Job Requirements
- Experience working within a Security Framework such as NIST, CMS ARC AMPE, and IRS Publication 1075.
- Experience working within at least two Security Domains
- Security and Risk Management
- Security Architecture and Engineering
- Communications and Network Security
- Security Assessment and Testing
- Security Operations
- Excellent oral and written communication skills
- Ability to work within a team
- Ability to meet shifting deadlines
- Ability to work within a set budget
- Successful completion of a Fingerprint background investigation.
- Citizenship Status Required: H 1B.
Benefits
- Convenience/Concierge – Virtual health visits, commuter perks, pet insurance, and entertainment discounts that make life easier.
- Development – Annual performance reviews, tuition assistance, and internal career growth opportunities to help you thrive.
- Financial – Generous 401(k) matches, life and disability insurance, and financial wellness tools to support your future.
- Recognition – Annual awards, service anniversaries, referral bonuses, and peer-to-peer shoutouts that spotlight your achievements.
- Wellness – Healthcare coverage, wellness programs, flu shots, and biometric screenings to support your health.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Senior Advisor, Information Security Governance, Risk & Compliance
QuestOne Identity enables organizations of all sizes to better secure, manage, monitor, protect, and analyze information and infrastructure to help fuel innovation and drive their businesses forward. With team members around the globe, we intend to continue to grow revenues and add value to customers. Life at One Identity means collaborating with dedicated professionals with a passion for technology. When we see something that could be improved, we get to work inventing the solution. Our people demonstrate our winning culture through positive and meaningful relationships. We invest in our people and offer a series of programs that enable them to pursue a career that fulfills their potential. Our team members’ health and wellness are our priority, as well as rewarding them for their hard work.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are seeking a strategic GRC leader who can translate complex regulatory frameworks into actionable, scalable practices. This role drives continuous compliance, leads ISO 27001 and SOC 2 audits, and partners across the organization to embed security and privacy into business processes. The ideal candidate is a thought leader in compliance maturity, adept at leveraging automation and analytics to reduce risk and improve resilience. Responsibilities - Governance - Develop and maintain IT security and privacy policies aligned with global standards. - Deliver engaging compliance training (New Hire Orientation, Privileged Access, Annual Security Awareness). - Champion a culture of security and compliance across all business units. - Risk Management - Conduct enterprise-wide IT risk assessments and recommend mitigation strategies. - Mature insider threat and third-party risk programs. - Collaborate on investigations (legal hold, eDiscovery) and ensure secure data handling. - Maintain and enhance risk registers, ensuring timely reviews and updates. - Compliance - Lead audits and assessments for ISO 27001, SOC 2, and NIST CSF. - Implement and monitor controls across multiple frameworks (ISO, NIST, GDPR, SOC 2). - Stay ahead of emerging regulations (AI governance, global privacy laws). - Drive adoption and optimization of GRC platforms for automation and reporting. - Partner with IT and business teams to ensure compliance in cloud and SaaS environments. - Strategic Initiatives - Contribute to the GRC roadmap, aligning with business objectives and regulatory trends. - Leverage analytics and automation to streamline compliance processes. - Monitor emerging risks (AI, supply chain, privacy) and advise leadership on proactive measures. Qualifications - 4+ years in IT GRC, security, privacy, or audit roles. - Hands-on experience with GRC tools and frameworks (ISO, NIST CSF, GDPR, SOC 2). - Strong understanding of cloud security and SaaS compliance. - Excellent communication and stakeholder engagement skills. Preferences - Bachelor’s degree in Information Security, Risk Management, or related field. - Certifications: CISA, CRISC, CISSP, CISM, CIPP/US/EU (or ability to obtain within 12 months of hire). - Experience in control mapping and automation across frameworks. - Familiarity with AI governance and emerging regulatory requirements. Company Description One Identity enables organizations of all sizes to better secure, manage, monitor, protect, and analyze information and infrastructure to help fuel innovation and drive their businesses forward. With team members around the globe, we intend to continue to grow revenues and add value to customers. - When you join our team, you will have the opportunity to build and develop products at a scale few others can provide. - Our product portfolio serves a large base of customers, and we are addressing the strategic imperatives for enterprise businesses. - Working with some of the most talented employees the industry has to offer, we provide enhanced career opportunities for team members to learn and grow in a rapidly changing environment. Benefits - Life at One Identity means collaborating with dedicated professionals with a passion for technology. - When we see something that could be improved, we get to work inventing the solution. - Our people demonstrate our winning culture through positive and meaningful relationships. - We invest in our people and offer a series of programs that enable them to pursue a career that fulfills their potential. - Our team members’ health and wellness are our priority, as well as rewarding them for their hard work.
Information Security Analyst – Level 3
Telefónica TechWill you join the conversation? #WeAreTelefónicaTech
• Conducting Cyber Threat Modelling (CTM) exercises • NIS/NIS2 assessments and Remediation • Security Gap assessments and Remediation • Cyber Risk Management • Third Party Risk Management • Threat and Vulnerability Management • Incident Response and Management
Senior Cyber Threat Intelligence Analyst
Control RisksThe global specialist risk consultancy - Helping organisations succeed in a volatile world
• Investigate, triage, and respond to security alerts and incidents in real time. • Perform in-depth analysis of logs, network traffic, and endpoint data to identify malicious activity. • Escalate critical incidents to the Team Lead and other stakeholders with clear recommendations. • Conduct proactive threat hunting to detect anomalies, suspicious behaviors, and advanced threats. • Contribute to playbooks and use cases for emerging attack techniques. • Help optimize and tune tools including SIEM, SOAR, and EDR platforms. • Develop detection rules, automation scripts, and dashboards to enhance team efficiency. • Collaborate on the evaluation of new technologies and integrations.
• Strong understanding of SAP Authorization concept • Interface with Identity and Access Management Principles (Least privilege access, RBAC, ABAC etc) • Gather requirements to drive the creation of the ERP Security Strategy documentation • Experience working with a large, complex ERP environment with multiple landscapes and clients • Perform the configuration, build and implementation of ERP Security design, including all relevant ERP applications at the Enterprise level of RTX • Act as a liaison between IT, Internal and External Audit teams and functional business stakeholders



