Security Analyst
Chicago, IL, United States
Northwestern Memorial Healthcare
Northwestern Medicine is a leader in quality healthcare and service, bringing together faculty, physicians and researchers to support and advance that care through leading-edge treatments and breakthrough discoveries.Company Description
At Northwestern Medicine, every patient interaction makes a difference in cultivating a positive workplace. This patient-first approach is what sets us apart as a leader in the healthcare industry. As an integral part of our team, you'll have the opportunity to join our quest for better healthcare, no matter where you work within the Northwestern Medicine system. At Northwestern Medicine, we pride ourselves on providing competitive benefits: from tuition reimbursement and loan forgiveness to 401(k) matching and lifecycle benefits, we take care of our employees. Ready to join our quest for better?
Job Description
The Security Analyst reflects the mission, vision, and values of NM, adheres to the organizations Code of Ethics and Corporate Compliance Program, and complies with all relevant policies, procedures, guidelines and all other regulatory and accreditation standards.
Responsibilities:
- Investigate alerts generated by security controls.
- Implement/provide recommendations to improve detection capability accuracy.
- Participate to the development/optimization of incident response standards and procedure to increase the organizations cyber resiliency.
- Coach and mentor junior resources.
- Analyze the enterprise information security environment and recommend security measures to safeguard valuable information assets.
- Help identify, evaluate, and report on information security risks.
- Collaborate with vendors and internal departments to recommendations to optimize performance of security controls.
- Collaborate with network and technology support team to enhance and improve security processes and documentation.
- Regularly evaluate and assess information security vulnerabilities, solutions, and organizational posture.
- Stays current with security technologies and threats in order to contextualize the events observed in the environment.
- Assist in providing initial assessment of impact severity for IT security incidents and executing the appropriate response.
- Investigates any fraud and other computer issues.
- Perform daily operational tasks required for the department to protect NM's assets. Tasks range from (but are not limited to):
- Analyze security alerts
- Maintain endpoint protection infrastructure
- Facilitate risk evaluation related to vulnerability assessment findings and coordinate risk treatment
AA/EOE
Qualifications
Required:
- Bachelors degree or equivalent work experience
- Two or more years of professional IT experience, including Cyber Security
- Working knowledge of the following subjects:
- Network (protocols, topologies)
- Security controls (proxies, IPS, IDS, Firewall and packet analyzers)
- Systems (Windows, Linux/UNIX)
- Software development (development / scripting langages)
- Incident Response
- Threat and Vulnerability Management
- Experience and knowledge of at least two of the major security vendors relevant to the position.
- Working knowledge of Security Standards/Controls specified under various IT governance and compliance models (NIST, HIPAA, PCI, ISO 27001&27002, ITIL).
- Excellent problem solving skills
- Demonstrated timely task completion involving solid organizational skills, task tracking, follow-up, and productive peer interaction.
- Excellent verbal and written communication skills.
Preferred:
- Certification or courses: Associate of (ISC)/CISSP, GSEC, GCWN, GCED or CEH a plus
Additional Information
Northwestern Medicine is an affirmative action/equal opportunity employer and does not discriminate in hiring or employment on the basis of age, sex, race, color, religion, national origin, gender identity, veteran status, disability, sexual orientation or any other protected status.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: CEH CISSP Compliance Firewalls GCED Governance GSEC HIPAA IDS Incident response IPS ISO 27001 ITIL Linux NIST Scripting UNIX Vulnerabilities Vulnerability management Windows
Perks/benefits: Career development Team events
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Analyste CERT / Incident Responder junior (H/F) jobs
- Open SOC Analyst jobs
- Open Senior Cybersecurity Engineer jobs
- Open Analyste CERT / Incident Responder senior (H/F) jobs
- Open Electronic Warfare Advanced Tactical Trainer jobs
- Open IT Security Analyst jobs
- Open Information Security Officer jobs
- Open Senior Information Security Engineer jobs
- Open Consultant SOC / CERT H/F jobs
- Open Cyber Security Specialist jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Security Operations Engineer jobs
- Open Staff Product Security Engineer jobs
- Open Senior SOC Analyst jobs
- Open Product Security Engineer jobs
- Open Staff Security Engineer jobs
- Open Staff Information Security Engineer jobs
- Open o365 Security Architect jobs
- Open Infosec Risk Manager jobs
- Open Cybersecurity Consultant jobs
- Open Chief Information Security Officer jobs
- Open Fortinet Firewall Engineer jobs
- Open Cyber Security Architect jobs
- Open Ingénieur DevSecops H/F jobs
- Open Application security-related jobs
- Open Risk assessment-related jobs
- Open Network security-related jobs
- Open SaaS-related jobs
- Open Governance-related jobs
- Open Pentesting-related jobs
- Open Java-related jobs
- Open Analytics-related jobs
- Open ISO 27001-related jobs
- Open Clearance-related jobs
- Open Vulnerability management-related jobs
- Open CISM-related jobs
- Open Security assessment-related jobs
- Open DevOps-related jobs
- Open APIs-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open Malware-related jobs
- Open Splunk-related jobs
- Open Kubernetes-related jobs
- Open CISA-related jobs
- Open DevSecOps-related jobs
- Open Terraform-related jobs
- Open IDS-related jobs
- Open GDPR-related jobs