The Security Analyst Associate reflects the mission vision and values of NM adheres to the organizations Code of Ethics and Corporate Compliance Program and complies with all relevant policies procedures guidelines and all other regulatory and accreditation standards.
Northwestern Medicine Information Services drives innovative highvalue solutions to transform health care.
We are committed to supporting the relentless pursuit of better medicine by providing exceptional service to our patients and guests as well as internal clients across the organization. To ensure excellence our team goes to extraordinary lengths to ensure that our systems work together seamlessly.
Northwestern Medicine understands that technology plays an integral role in shaping the future of health care. Information Services strategically supports the organization by:
- Leveraging AI automation and rollout of advanced cyber controls that support digital transformation strategies
- Implementing advanced technologies in clinical and administrative areas
- Furthering development of the end user support model to help enhance modern infrastructure
Responsibilities:
- Help in alerts investigation generated by security controls. Implement provided recommendations to improve detection capability accuracy.
- Participate in the optimization of incident response standards and procedure to increase the organizations cyber resiliency.
- Analyze the enterprise information security environment and identify potential gaps in the security measures to safeguard valuable information assets.
- Help identify evaluate and report on information security risks.
- Collaborate with vendors and internal departments to make recommendations to optimize performance of security controls.
- Collaborate with network and technology support teams to enhance and improve security processes and documentation.
- Participate in the evaluation and assessment of information security vulnerabilities solutions and organizational posture.
- Stays current with security technologies and threats to contextualize the events observed in the environment.
- Assist in providing initial assessment of impact severity for IT security incidents and executing the appropriate response.
- Investigates any fraud and other computer issues.
- Perform daily operational tasks required for the department to protect NMs assets. Tasks range from (but are not limited to):
- Analyze security alerts
- Maintain endpoint protection infrastructure
- Facilitate risk evaluation related to vulnerability assessment findings and coordinate risk treatment
Qualifications :
Required:
- 02 Years of Experience
- Working knowledge of the following subjects:
- Network (protocols topologies TCP/IP)
- Security controls (proxies IPS IDS Firewall and packet analyzers)
- Systems (Windows Linux/UNIX)
- Software development (development / scripting languages)
- Incident Response
- Threat and Vulnerability Management
- Working knowledge of Security Standards/Controls specified under various IT governance and
- compliance models (NIST HIPAA PCI ISO 27001&27002 ITIL).
- Excellent problemsolving skills
- Demonstrated timely task completion involving solid organizational skills task tracking followup and productive peer interaction.
- Excellent verbal and written communication skills.
Preferred:
- Bachelors degree preferred or equivalent combination of education and experience
- Certification or courses: Security GSEC GCWN GCED or CEH a plus.
Additional Information :
Northwestern Medicine is an affirmative action/equal opportunity employer and does not discriminate in hiring or employment on the basis of age sex race color religion national origin gender identity veteran status disability sexual orientation or any other protected status.
Remote Work :
No
Employment Type :
Fulltime