Назад
Company hidden
15 часов назад

Senior Information Security Analyst (Cybersecurity)

94 400 - 129 800$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Information Security Analyst (Cybersecurity): Advising projects on security risk, policies, standards, vulnerability testing, and identity and access workflows with an accent on governance, third-party risk, compliance, and security assessments. Focus on translating technical findings into business risk, investigating security events, supporting audits, and evaluating emerging technology risks across AI, cloud, and SaaS.

Location: Bloomington, Illinois, United States; hybrid work

Salary: $94,400–$129,800 base pay annually, plus eligibility for a short-term incentive plan.

Company

hirify.global provides personal and business insurance products, retirement services, and investment services to nearly one million households.

What you will do

  • Advise projects and assessments on information security risks and requirements.
  • Research security trends and develop or maintain security policies, standards, procedures, and control documentation.
  • Monitor, alert, and respond to security events, including computer forensic and investigative activities.
  • Perform penetration and vulnerability testing, document vulnerability ratings, and communicate mitigation guidance.
  • Define and administer identity and access roles and workflows.
  • Create and present risk reports, assessment results, policies, and executive-level deliverables.

Requirements

  • 7+ years of relevant experience, or an equivalent combination of experience, education, and training.
  • Experience with information security risk assessments, control-gap analysis, mitigation recommendations, and third-party risk management.
  • Working knowledge of cybersecurity governance, risk, and compliance practices and frameworks including NIST CSF, NIST 800-53, ISO 27001, CIS Controls, PCI DSS, GLBA, HIPAA, or FFIEC guidance.
  • Experience with governance, risk, and compliance platforms, audit and regulatory examination support, evidence gathering, control mapping, and remediation tracking.
  • Ability to communicate technical security findings clearly to business stakeholders, leadership, auditors, and non-technical audiences.
  • Ability to work independently, manage multiple priorities, and collaborate with technology, business, legal, compliance, and vendor management teams.

Nice to have

  • Professional certifications such as CISSP, CISM, CRISC, CISA, Security+, or CEH.
  • Experience assessing risks related to artificial intelligence, cloud services, SaaS platforms, data protection, or other emerging technologies.

Culture & Benefits

  • Medical, dental, vision, disability, and life insurance benefits.
  • 401(k) plan with company match.
  • Opportunities for professional growth within the role or across other areas of the business.
  • Collaborative work across technology, business, legal, compliance, and vendor management functions.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →