DescriptionThe Information Security Analyst Application Protection will assist in secure software development lifecycle activities and operations. Examples include the following:
- Assist Information Technology teams in applying secure coding practices and adhering to organizational policies and standards throughout the development lifecycle.
- Perform application vulnerability scans; support data collection analysis and reporting to aid in risk reduction.
- Support exception management processes related to vulnerability and application protection policies to ensure timely remediation and tracking.
- Contribute to the maintenance and improvement of secure development lifecycle procedures in collaboration with IT and Security stakeholders.
- Assist with Application Security Posture Management (ASPM) activities through data gathering and reporting.
Serves as a liaison between technology and the business including various oversight committees. The Information Security Analyst understands the following: Industry standard information security concepts Organizational Change Management Project Management and Business Analysis. The Information Security Analyst has basic experience and is building skills in: Integrating multiple disciplines (e.g. business / systems process analysis data analysis data informatics risk management regulatory requirements and technology) for strategic and operational planning. Applying problem-solving methods planning techniques continuous improvement project management and analytical tools and methodologies to achieve Mayo goals. Conducting information security assessments. Collaborating with others to address security questions and responding to customer inquiries. Ensuring appropriate treatment of cyber security risk and monitoring compliance to Mayos Information Security policies processes and procedures. Creating supporting and evaluating security prototypes. Administering Information Security processes and tools that enable the organization to operate effectively and efficiently. Creating coordinating conducting and/or evaluating training courses within pertinent subject domain. Drafting policies processes and procedures. âManaging a varied workload of projects with multiple priorities. Staying current on information security technology and healthcare trends and institutional changes. Developing interpersonal skills to include presentation negotiation influencing team facilitation and written communications. Effectively managing time. Additional qualifications may apply (see additional experience and/or qualifications).
Mayo Clinic will not sponsor or transfer visas for this position including F! OPT STEM.
QualificationsMasters degree in applicable field and 2 years experience or Bachelors degree in applicable field and 4 years experience. Pertinent fields of study and experience includes (but is not limited to) the following: information security operational analysis process change electronic systems implementation leadership systems analysis and project management with broad-based key enterprise initiatives.
Required Experience:
IC
DescriptionThe Information Security Analyst Application Protection will assist in secure software development lifecycle activities and operations. Examples include the following:Assist Information Technology teams in applying secure coding practices and adhering to organizational policies and stand...
DescriptionThe Information Security Analyst Application Protection will assist in secure software development lifecycle activities and operations. Examples include the following:
- Assist Information Technology teams in applying secure coding practices and adhering to organizational policies and standards throughout the development lifecycle.
- Perform application vulnerability scans; support data collection analysis and reporting to aid in risk reduction.
- Support exception management processes related to vulnerability and application protection policies to ensure timely remediation and tracking.
- Contribute to the maintenance and improvement of secure development lifecycle procedures in collaboration with IT and Security stakeholders.
- Assist with Application Security Posture Management (ASPM) activities through data gathering and reporting.
Serves as a liaison between technology and the business including various oversight committees. The Information Security Analyst understands the following: Industry standard information security concepts Organizational Change Management Project Management and Business Analysis. The Information Security Analyst has basic experience and is building skills in: Integrating multiple disciplines (e.g. business / systems process analysis data analysis data informatics risk management regulatory requirements and technology) for strategic and operational planning. Applying problem-solving methods planning techniques continuous improvement project management and analytical tools and methodologies to achieve Mayo goals. Conducting information security assessments. Collaborating with others to address security questions and responding to customer inquiries. Ensuring appropriate treatment of cyber security risk and monitoring compliance to Mayos Information Security policies processes and procedures. Creating supporting and evaluating security prototypes. Administering Information Security processes and tools that enable the organization to operate effectively and efficiently. Creating coordinating conducting and/or evaluating training courses within pertinent subject domain. Drafting policies processes and procedures. âManaging a varied workload of projects with multiple priorities. Staying current on information security technology and healthcare trends and institutional changes. Developing interpersonal skills to include presentation negotiation influencing team facilitation and written communications. Effectively managing time. Additional qualifications may apply (see additional experience and/or qualifications).
Mayo Clinic will not sponsor or transfer visas for this position including F! OPT STEM.
QualificationsMasters degree in applicable field and 2 years experience or Bachelors degree in applicable field and 4 years experience. Pertinent fields of study and experience includes (but is not limited to) the following: information security operational analysis process change electronic systems implementation leadership systems analysis and project management with broad-based key enterprise initiatives.
Required Experience:
IC
View more
View less