What are the responsibilities and job description for the Information Security Analyst position at Zensar Technologies?
The IT Security Analyst will demonstrate a passion for technical problem-solving and driving changes to increase the effectiveness of our tools. The IT Security Analyst will exhibit solid security systems administration and operations backgrounds along with a strong drive for results and continual improvement. Additionally, the IT Security Analyst will provide direct support to information security risk assessments and audits. As new tools and services are introduced to the Healthcare client, the IT Security Analyst will play a key role in assessing the proposed tools and services and documenting the resulting risks. The IT Security Analyst will work with the GRC team to produce evidence as required for the HITRUST, etc. audit and attestations (SOC 2 Type II).
Essential Functions :
- Develops and implements information assurance / security standards and procedures to include documentation
- Identifies and applies relevant security controls to systems based on NIST 800-53 system classification
- Identifies, reports, and resolves / mitigates security violations
- Applies know-how to government common user systems, as well as to dedicated special purpose systems requiring specialized security features and procedures
- Performs analysis, design, and development of security features for system architectures
- Analyzes and defines security requirements for computer systems which may include databases, operating systems, and access devices
- Designs, develops, engineers, and implements solutions that meet security requirements
- Provides hands-on integration and implementation of enterprise system security solutions
- Analyzes general information assurance-related technical problems and provides engineering and technical support in solving these problems
- Performs vulnerability / risk analyses of computer systems and applications during all phases of the system development life cycle
- Conduct assessments of existing IT architecture for compliance with security requirements from applicable security frameworks (such as HITRUST CSF, NIST 800-53, etc.)
- Create documentation to support information system authorization / accreditation packages
- Provides continuous monitoring support for information systems and applications.
- Develop IT architecture deliverables, specific to information security countermeasure implementations, for operational systems and systems under development
- Maintains Federal IT security policies, standards, and guidance
- Other duties as assigned
Education and Experience :
Network infrastructure (firewalls, switches, routers, DMZ, web application firewalls)