Source description
About the role
Role Overview: As an Information Security Analyst at PrismHR, you will be responsible for improving the overall security posture of the organization. You will evaluate, test, and document security solutions and controls while working closely with other security team members to remediate risks and ensure business innovation. Your role will require continual adaptation to stay ahead of cyber attackers and stay updated on the latest infiltration methods. Your passion for security and rigor will play a crucial role in protecting the business. Key Responsibilities: - Assist with security configuration standards for systems and business applications. - Serve as a member of the information security team to support change management processes. - Participate in technical and non-technical projects requiring information security oversight to ensure compliance with policies, procedures, and standards. - Aid in incident monitoring and incident response (IR) in partnership with the security operations center (SOC) teams. - Maintain vendor management standards, questionnaires, and documentation for regulatory compliance. - Interface with internal and external stakeholders for risk assessments. - Recommend new security approaches and business process changes that support existing security controls without impeding business innovation. Qualifications Required: - At least 6-8 years of information security experience in incident response and system monitoring and analysis. - Experience with compliance requirements (GLBA, PCI, HIPAA, SOX, etc.). - Ability to effectively communicate business risk related to information security. - Experience in conducting risk assessments to protect the business and comply with laws. - Knowledge of multiple computing platforms, networks, cloud platforms (Azure, AWS, Google Cloud), and threat intelligence. - Experience working with Managed Security Service Providers (MSSPs). - Bachelor's degree in computer science, information assurance, information systems/technology or 4 years of demonstrated direct experience. - Certification in Cybersecurity Analysis, Incident Response, or Risk Management desired. Additional Company Details: PrismHR is a fast-paced SaaS company providing customers with a cloud-based payroll software application and professional services including system implementation consulting, custom configurations, and training. The company is committed to diversity, equity, and inclusion, creating an inclusive environment that values individuals' talents and empowers them to reach their fullest potential. PrismHR encourages applicants from all backgrounds and is committed to equal employment opportunities, prohibiting unlawful discrimination based on various factors. Privacy Policy: For information about how PrismHR collects and uses personal information, please refer to the privacy statement available on their website. The company provides reasonable accommodation for qualified individuals with disabilities and disabled veterans in job application procedures. If you require accommodation due to a disability, you can contact PrismHR via email provided on their website. Role Overview: As an Information Security Analyst at PrismHR, you will be responsible for improving the overall security posture of the organization. You will evaluate, test, and document security solutions and controls while working closely with other security team members to remediate risks and ensure business innovation. Your role will require continual adaptation to stay ahead of cyber attackers and stay updated on the latest infiltration methods. Your passion for security and rigor will play a crucial role in protecting the business. Key Responsibilities: - Assist with security configuration standards for systems and business applications. - Serve as a member of the information security team to support change management processes. - Participate in technical and non-technical projects requiring information security oversight to ensure compliance with policies, procedures, and standards. - Aid in incident monitoring and incident response (IR) in partnership with the security operations center (SOC) teams. - Maintain vendor management standards, questionnaires, and documentation for regulatory compliance. - Interface with internal and external stakeholders for risk assessments. - Recommend new security approaches and business process changes that support existing security controls without impeding business innovation. Qualifications Required: - At least 6-8 years of information security experience in incident response and system monitoring and analysis. - Experience with compliance requirements (GLBA, PCI, HIPAA, SOX, etc.). - Ability to effectively communicate business risk related to information security. - Experience in conducting risk assessments to protect the business and comply with laws. - Knowledge of multiple computing platforms, networks, cloud platforms (Azure, AWS, Google Cloud), and threat intellige
More at PrismHR