Info Security Analyst Ii
The Information Security Analyst II completes tasks designed to protect against unauthorized access, modification or destruction of Hackensack Meridian Health's (HMH) information assets. Junior-level position, typically assigned projects that involve some complexity. A certain degree of creativity and latitude is required.
1. Helps to manage computer security across the enterprise.
2. Tracks and monitors software viruses.
3. Administers and monitors security solutions.
4. Executes incident response strategies.
5. Contribute to security projects and participate on cross functional project teams.
6. Administers the various security tool systems. Communicates intrusions and compromises to team leaders. Ensures integrity and protection of networks. Functions as system and/or backup administrator for two or more security tools. Monitors IDS/IPS for potential, successful and unsuccessful intrusion attempts. Performs the day-to-day administration required to ensure the security tools are meeting the needs of Hackensack Meridian Health. Upgrades and/or applies patches to security tools as required.
7. Identifies both unsuccessful and successful intrusion attempts by reviewing and analyzing security events logs and event summary information. Makes recommendations to improve the functionality of the security tools to improve Hackensack Meridian Healths security posture and/or customer experience.
8. Performs customer support work and documents security incidents. Initiates service recovery when necessary. Responds to requests, adhering to established SLAs. Provides detailed explanations in Help Desk tickets to allow co-workers to follow the tickets from origination to completion. Informs user of ticket status, explains the problem and resolution in simple terms, and sets appropriate expectations with the end user. Provides advance notification to appropriate teams to advise of scheduled/unscheduled downtimes and implementation of new systems.
9. Reviews security violation reports and investigates possible security exceptions.
10. Works with end users to determine needs of individual departments, implementing policies or procedures. Works on cross-functional teams to implement security projects.
11. Monitor security and compliance trends, current events, best practices, etc.
12. A member of the HMH Incident Response Team, responding to and mitigating security incidents using established procedures and protocols. Rotating member of IT Info Security on-call team.
13. Lifts, pushes or pulls up to 25 lbs. and may sit and/or stand for long periods of time. 14. Adheres to the HMHs Organizational Competencies and Standards of Behavior.
1. Bachelors degree in IT, Computer Science, Management Information Systems or equivalent degree. Work experience may be substituted.
2. Two or more years of IT experience with at least one year of system/network security experience.
3. Experience and technical knowledge in endpoint security and protection, network security, and server security and protection.
4. Experience with supporting security policies and standards.
5. Familiar with standard concepts, practices, and procedures within IT Security.
6. Experience in large network environments with data centers and remote locations.
7. Familiarity with security regulations and standards, HIPAA/HITECH and PCI-DSS preferred.
8. Knowledge of network and web protocols (i.e. TCP/IP, UDP, IPSEC, HTTP, HTTPS, etc.)
9. Knowledge of MS Windows, Active Directory and best practice implementation methodologies.
10. Knowledge of security vulnerabilities and remediation techniques.
11. Ability to discuss security issues in understandable business terms.
12. Excellent written and verbal communication skills.
13. Strong problem-solving and analytical skills.
14. Ability to travel to other HMH locations, as needed.
As a courtesy to assist you in your job search, we would like to send your resume to other areas of our Hackensack Meridian Health network who may have current openings that fit your skills and experience.