Information Security Analyst II
1199SEIU Family of Funds
β’
New York, NY
Company
1199SEIU Family of Funds
Location
New York, NY
Type
Full Time
Job Description
Requisition #:
7184
# of openings:
1
Employment Type:
Full time
Position Status:
Permanent
Category:
Non-Bargaining
Workplace Arrangement:
Hybrid
Fund:
1199SEIU National Benefit Fund
Job Classification:
Exempt
Responsibilities
β’ Reporting into the Chief Information Officer (CIO) Team with a mindset and focus on Development Security Operations, imbedding security throughout the Systems Development Life Cycle (SDLC), providing advice on regulations as they apply to security in application development, expert in application security principles, risks, attacks, and resources such as Open Web Application Security Project (OWASP)
β’ Lead CIO team member responsible for tools related to dynamic scans, static source code reviews, and application penetration testing e.g. BlackDuck, WhiteHat, Veracode, Nexpose, Wiz
β’ Advisor on application development architectures, platforms, methodologies, and supporting operations
β’ Advisor on web proxies, web application firewalls, and vulnerability assessment tools
β’ Provide consultation services to business units, Project Management Office (PMO), and developers during the early phases to ensure secure application design.
β’ Perform ongoing consultative analytical tasks in partnership with Information Technology (IT) to ensure the upmost security in in-house developed applications, mobile applications, and third-party applications
β’ Plan, test, and deploy security controls to augment Quality Assurance (QA) and Change Management functions
β’ Contribute to the incident response analysis including updates to related documentation i.e. policies, standards, guidelines, procedures, and escalation processes
β’ Participate in developing data protection controls in general
β’ Perform additional duties and projects as assigned by management
Qualifications
β’ Bachelorβs degree in Information Security or equivalent years of experience required
β’ Minimum three (3) years Risk Management experience required in an Information Technology environment or related discipline (Information Security, Business Continuity Management or Compliance)
β’ Certified Information Systems Security Professional (CISSP) certification preferred; SANS and other Information Security related certification a plus
β’ Network and Endpoint security experience required; IDS, IPS, ATP, Malware defenses and monitoring experience
β’ Demonstrated experience with firewall and system configuration and event log monitoring required
β’ Knowledge and experience with common information security management frameworks, such as International Standards Organization (ISO) 17799/27001 and the IT Infrastructure Library (ITIL), Control Objectives for Information and Related Technology (CobiT) and National Institute of Standards and Technology (NIST) frameworks
β’ Excellent troubleshooting and analytical thinking skills
β’ Superb communication, interpersonal skills and collaborative skills a must
β’ Self-directed, self-starter, and motivated with the ability to work with minimal supervision
β’ Availabletoworkeveningsandweekendsasneeded
Apply Now
Back to Job Listings
β€οΈAdd To Job List
Company Info
View Company Reviews
Date Posted
03/29/2025
Views
0
Neutral
Subjectivity Score: 0
Similar Jobs
OB/GYN Physician Full-time, Morristown, New Jersey - Unified Women's Healthcare
Views in the last 30 days - 0
View DetailsClinical Track, Assistant/Associate Professor, Urology - Tulane University School of Medicine
Views in the last 30 days - 0
View DetailsPhysician – Obstetrician/Gynecologist – Night Hospitalist – Cooperstown, NY - Bassett Healthcare Network
Views in the last 30 days - 0
View DetailsOperating Room Aide/ Night Shift - United Health Services
Views in the last 30 days - 0
View Details