Nightingale Education Group logo
Nightingale Education Group

Supporting group for Nightingale College, Nightingale Innovations, and Nightingale Solutions.

Senior Analyst, Cyber Security

Security AnalystSecurity AnalystFull TimeRemoteSeniorTeam 11-50H1B No SponsorCompany SiteLinkedIn

Location

Utah

Posted

7 days ago

Salary

0

Seniority

Senior

Bachelor Degree5 yrs expExperience acceptedEnglishCyber Security

Job Description

Senior Analyst, Cyber Security

Nightingale Education Group

• Support Nightingale College’s security operations and vulnerability management activities • Monitor security events and coordinate investigations and remediation • Perform vendor security assessments and manage third-party risks • Maintain assessment documentation and support reporting processes • Operate vulnerability management workflows and support access governance and security process improvement

Job Requirements

  • Bachelor’s degree in Computer Science, Information Security, Information Technology, Cybersecurity, Engineering, or related field preferred; equivalent experience may be considered
  • 5+ years of experience in cybersecurity, information technology, security operations, vulnerability management, vendor risk, access governance, or related technical risk functions preferred
  • Experience with identity and collaboration platforms, endpoint/security tools, vulnerability management tools, ticketing systems, and vendor security documentation preferred
  • Working knowledge of incident response, vulnerability remediation, third-party risk management, MFA/SSO, access controls, encryption, NIST CSF, SOC 2 reports, ISO 27001 certifications, FERPA, and GLBA concepts
  • Strong documentation, communication, analytical, stakeholder coordination, and follow-through skills.

Benefits

  • Security guidance for IT and business stakeholders
  • Support for security awareness communications when needed
  • Use of AI-enabled tools for operational decision-making and analysis
  • Create dashboards and reports for insights

Related Job Pages

More Security Analyst Jobs

Full TimeRemoteTeam 5,001-10,000H1B No Sponsor

• Work in a complementary capacity to the Security Operations Center (SOC), performing specialized handling, containment, and response activities for cyber events and incidents; • Conduct threat intelligence, Threat Hunting, and Purple Team activities to proactively identify risks and threats to the technology environment; • Perform in-depth analysis of security logs and digital forensics to investigate cyber events and incidents; • Develop and use automations with languages such as Python, PowerShell, or Bash to support detection, containment, and mitigation processes; • Periodically assess the technology environment to identify vulnerabilities and security gaps in servers, systems, and images; • Apply vulnerability remediations and hardening configurations to strengthen the security of technology assets and reduce cyber risks.

Brazil
Full TimeRemoteTeam 1,001-5,000Since 1970H1B Sponsor

• Lead detection and response for incidents affecting: Manufacturing systems (OT/ICS), Connected medical/surgical devices, Enterprise IT environments • Manage SOC operations with prioritization of IT security, production integrity, and supply chain impact • Investigate and respond to incidents involving: Intellectual property theft, Disruptions and/or ransomware affecting production lines, IT vulnerabilities • Partner with IT, production, and engineering to embed secure-by-design principles across the IT & product lifecycle • Conduct threat modeling and security risk assessments for surgical and medical devices • Support compliance with: IT security guidance, SOX, ISO27001, EU GDPR / NIS2 • Identify and remediate product vulnerabilities (secure firmware, APIs, connectivity) • Secure manufacturing environments (plants, production lines, robotics, control systems) • Lead vulnerability and patch management for industrial control systems • Reduce risk to production continuity and product integrity • Monitor threat landscape with emphasis on: Nation-state attacks targeting IP, Supply chain compromise, Medical device exploitation • Implement Zero Trust principles across corporate IT and manufacturing environments • Ensure alignment with: SOX, ISO 27001, NIST CSF / NIST 800-53, Global data protection regulations (GDPR where applicable)

Florida
$104.1K - $163.6K / year
Job Closed
Healthmap Solutions logo

Senior Cyber Security Analyst

Healthmap Solutions

Healthmap Solutions is a kidney population health management company accredited by the National Committee for Quality Assurance (NCQA). The organization uses ad

Role Description Healthmap Solutions is seeking a Senior Cyber Security Analyst to drive the day-to-day activity in our cyber engineering practice. The ideal candidate will be responsible for responding to alerts from the Security Operations Center, supporting security incidents, and driving vulnerability and patch management resolution with Infrastructure partners. The Senior Cyber Security Analyst is a critical resource responsible for protecting an organization's computer networks, systems, and data from cyber threats, breaches, and unauthorized access. - Monitoring & Detection: Continuously monitoring network traffic and system logs for suspicious activity, often using SIEM (Security Information and Event Management) tools. - Incident Response: Investigating security alerts, leading or supporting the response to breaches, and performing root-cause analysis to prevent recurrence. - Vulnerability Management: Conducting regular vulnerability scans and penetration tests to identify and patch security weaknesses before they can be exploited. - Compliance & Policy: Ensuring the organization adheres to regulatory frameworks (e.g., HIPAA, GDPR, PCI-DSS, NIST) and maintaining internal security policies. - Security Architecture: Assisting in the implementation of security measures like firewalls, VPNs, encryption, and endpoint protection software. - Communication: Acting as a bridge between technical teams and leadership by translating complex security risks into actionable business insights. - Perform other duties as assigned. Qualifications - Bachelor’s degree in cyber security (or) related degree or equivalent work experience. - 5 years’ experience in IT or security related roles. - Certified Information Security Systems Professional (CISSP) preferred. - Demonstrated competency in cloud environments. - Proficiency in network protocols (TCP/IP), operating systems (Windows/Linux), scripting (Python/PowerShell), and common security tools (Splunk, CrowdStrike, etc.). - Analytical thinking, problem-solving, strong attention to detail, and the ability to explain security concepts to non-technical stakeholders. - Performing Information Security/Information Technology risk assessments experience. - Ability to align security and compliance objectives with the broader business goals and growth strategy. - Proven track record of scaling GRC programs, often using tools like ServiceNow GRC, Archer, or OneTrust. - Knowledge of frameworks such as NIST, ISO 27001, and various regional/industry-specific regulations. Requirements - Ability to effectively prioritize and execute tasks in a high-pressure environment. - Excellent Customer service skills. - Calm and confident under pressure. - Collaboration and Conflict management. Working Conditions - All roles require: - Sitting: Ability to sit for extended periods stationary or while driving. - Dexterity/Effort: Repetitive motion for typing and/or texting; good manual dexterity for handling packages, paperwork, operation of motor vehicles and/or electronic devices. - Sense Acuity: Ability to see/read computer monitors or other electronic devices. - Additionally, on-site or at location positions (ex. Mailroom, IT or Admin) may require: - Lift/Carry/Push/Pull: Occasional movement of equipment, or materials up to 50/75 Pounds. - Bend/Twist: Occasional bending, twisting, and stooping; occasional need to kneel or crouch. - Additionally, traveling positions (ex. Field Care Navigators or Quality Practice Advisors) may require: - Sense Acuity: Ability to see/read road signs, maps, and electronic devices; good visual acuity for driving, including peripheral vision and depth perception. - Environmental: Possible exposure to travel, traffic and/or other outdoor hazards; possible exposure to various weather conditions, including extreme heat, cold, rain, and snow.

United States
Full TimeRemoteTeam 10,001+Since 1928H1B Sponsor

Role Description Join our team as a Cybersecurity Analyst, where you'll play a critical role in assessing and analyzing cybersecurity documentation for client information systems. You'll apply your scripting skills to develop and improve automations that streamline our assessment processes. Your work will align with FISMA, NIST RMF for Federal Civilian Agencies, RMF for DoD/DoW IT, FedRAMP, and departmental standards, with a primary focus on FedRAMP. - Engage directly with clients through verbal communication to perform interviews for assessments, understand their needs, and provide effective solutions. - Conduct comprehensive assessments by analyzing cybersecurity documentation and performing evidence collection, interviews, and tests to evaluate compliance with relevant standards such as FISMA, NIST RMF, and FedRAMP. - Create scripts and utilize scripting skills to automate repetitive tasks and improve the efficiency of security assessments, reporting, and evidence collection. - Conduct system and network vulnerability scanning and analysis using tools such as Nessus/ACAS, SCC, and DISA STIGs/STIG Viewer. - Prepare clear and accurate reports and documentation, with an emphasis on creating scripts to automate analysis and report generation. - Work independently or as part of a client delivery team in a fast-paced, deadline-driven, remote environment. - Travel up to 25% for client engagements as required. Qualifications - Strong verbal communication skills with the ability to articulate ideas clearly and confidently in face-to-face and phone interactions with clients. - Basic knowledge of Cloud Computing, FedRAMP, FISMA, NIST/DoD RMF, and NIST SP 800-series publications. - Demonstrable scripting skills in at least one language (e.g., Python, PowerShell, Bash) for task automation. - Beginner knowledge of testing tools such as Nessus/ACAS, SCC, DISA STIGs/STIG Viewer. - Strong organizational, planning, and attention to detail skills. - Self-motivated with a strong technical aptitude. - Must obtain a FedRAMP required (A2LA R311) industry certification within 3 months. Requirements - High School diploma, Technical Certifications, and a Bachelor's Degree in Engineering, Information Systems, Technology, or related field. - Must be a U.S. citizen with the ability to obtain a security clearance as required by our government customers. Benefits - Incentive Bonus Plans - Medical, Dental, Vision benefits - 401K with Company Match - 10 Paid Holidays - Generous Paid Time Off Packages - Employee Stock Purchase Plan - Paid Parental & Family Leave - and more! Technical Certifications - Cisco Certified Network Associate Security (CCNA Security) - Cisco Certified Network Associate Cyber Security Operations (CCNA Cyber Ops) - Cybersecurity Analyst (CySA+) - GIAC Certified Incident Handler (GCIH) - GIAC Systems and Network Auditor (GSNA) - GIAC Certified Intrusion Analyst (GCIA) - Certified Information Systems Auditor (CISA) - Certified Information System Security Professional or Associate (CISSP or Associate) - Certified Secure Software Lifecycle Professional (CSSLP) - Certified Information Systems Security Officer (CISSO) - CyberSec First Responder (CFR) - CompTIA Advanced Security Practitioner Continuing Education (CASP+) Continuing Education (CE) - CompTIA Cloud+ (Cloud+) - Global Industrial Cyber Security Professional (GICSP) - Securing Cisco® Networks with Threat Detection Analysis (SCYBER) Preferred Qualifications - 1+ years of experience in performing or participating in FISMA-based security Assessment and Authorization (A&A) activities. - Experience in creating and maintaining scripts for cybersecurity tools and processes, such as vulnerability scanning or compliance checks. - Proficiency in performing technical assessments using standard industry tools such as Nessus, DB Protect, Acunetix, and ACAS (for DoD). - Ability to identify and mitigate cyber security risks through formal assessment activities. - Experience and technical knowledge in security engineering, secure architecture development, system and network security, authentication and security protocols, applied cryptography, and application security.

United States
$75K - $85K / year