-
The Phoenix Group

Security Analyst

The Phoenix Group
United States · Full-time · Associate

Title: Information Security Analyst

Office: Remote


Key Responsibilities:

  • Review, assess, profile risks, and prioritize threats and vulnerabilities, ensuring effective tracking and remediation.
  • Implement and maintain cybersecurity frameworks to ensure alignment with industry standards and regulatory requirements.
  • Analyze contractual agreements to verify compliance with established security controls and frameworks.
  • Conduct routine security assessments to confirm adherence to industry standards and regulatory guidelines.
  • Provide security awareness training to employees, fostering a culture of security and compliance throughout the organization.
  • Develop, update, and manage documentation, including security policies, procedures, and guidelines.
  • Stay informed about the latest regulatory changes, industry trends, emerging security threats, and new technologies to proactively address risks.
  • Prepare and present reports to senior leadership and stakeholders regarding information security activities, findings, and recommendations.
  • Participate in the coordination of IT’s role in the Information Security Incident Response process, ensuring ownership and tracking of all security incidents from notification through resolution.
  • Ensure compliance with technical security controls as outlined in Information Security Policies.
  • Collaborate with Information Security and Risk Management to implement technical security controls supporting security initiatives.
  • Assist with the vulnerability management program and advanced security monitoring to proactively detect and prevent security threats.


Required Qualifications:

  • Proven experience in supporting IT security operations.
  • Familiarity with standards such as ISO 27001/27002, NIST CSF 2.0, HiTrust Common Security Framework, and HIPAA Privacy and Security Regulations.
  • Proficiency with security tools like firewalls, IDS/IPS, email encryption, DLP, vulnerability scanning, penetration testing, anti-virus, and anti-spyware.
  • Ability to communicate security risks in business terms and develop practical, risk-based strategies for risk mitigation.
  • Knowledge of security frameworks and regulatory requirements (e.g., NIST, ISO 27001, CIS, SOX, GDPR, PCI-DSS).
  • Strong expertise in Incident Analysis and Response, including incident tracking, root cause analysis, and implementing process improvements.
  • Relevant certifications (e.g., CISSP, CISM, CISA, CRISC) are desirable.

Key Skills

Ranked by relevance

nist penetration testing incident response cybersecurity firewalls cissp hipaa gdpr cisa cism cis
Login to Apply
Posted
Mar 01, 2025
Type
Full-time
Level
Associate
Location
United States

Industries

Technology Information Media

Categories

Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
Amelco Limited
Related

Site Reliability Engineer

2026-04-10

Full-time
Associate
Poland
Gambling Facilities
Information Technology
View Job Details
SKLD Manpower Services
Related

Senior System Administrator

2026-04-11

Full-time
Mid-Senior
United Arab Emirates
Information Services
Information Technology
View Job Details
inhire.io
Related

Frontend Developer (React)

2026-04-11

Full-time
Mid-Senior
Poland
Software Development
Information Technology