We are seeking a dedicated and detail-oriented Information Security Analyst to join our team in Indianapolis, IN. This role is crucial for auditing and monitoring systems containing confidential information, helping manage organizational risks, and ensuring compliance with state and federal regulations.
Responsibilities
- Audit and monitor IT systems for inefficiencies, inaccuracies, and security issues.
- Assist with the configuration of data, application, network, and IAAM logs.
- Use log reporting tools and monitor systems for security problems.
- Participate in technology audits, including planning, control analysis, testing, issue development, and reporting phases.
- Prepare for and assist with federal and state audits against DCS technology systems.
- Develop information security policies and standards in compliance with state and federal requirements and guidelines.
- Create and implement Standard Operating Procedures (SOP) for security policies.
- Recommend appropriate security safeguards for new and legacy IT systems.
- Ensure maximum utilization of computer hardware and software features to secure automated systems and associated data.
- Develop and implement procedures for using information security management software.
- Propose enhancements to information security software.
- Perform periodic audits to ensure security policies and standards are effective and followed.
- Stay updated on new laws and changes affecting privacy standards, network security, cloud security, remote access, and physical security.
- Mentor and provide guidance to new or other staff as needed.
- Perform related duties as assigned.
- Assist with other tasks as assigned.
Requirements
- Thorough knowledge of information security management tools, policies, and standards.
- Understanding of state and federal legislation and regulatory laws pertaining to information system security and privacy.
- Knowledge of software vulnerabilities, vulnerability scanning tools, and remediation.
- Familiarity with domain structures, user authentication, and digital signatures.
- Ability to develop and maintain information security standards.
- Ability to understand and apply complex computer logic to work.
- Ability to work effectively with a wide range of information technologists, including systems administrators, technical support, application development, end users, and management.
- Experience in assessing security needs of teams and assisting in their security training.
- Effective communication skills, both oral and written.
- Ability to be a team member as well as a team leader depending on the situation.
- Degree in information security or technology preferred.
- Security certification (e.g. CISSP, CRISC) required.
- Network Admin experience preferred.
Skills
- Ability to work effectively with a wide range of information technologists, including systems administrators, technical support, application development, and end users.
- Network Admin experience (1 year required).
- Security certification (e.g. CISSP, CRISC) (1 year required).
- Ability to develop and maintain information security standards (1 year required).
- Ability to understand and apply complex computer logic to work (1 year required).
- Degree in information security or technology (1 year required).
- Familiarity with cybersecurity frameworks (e.g. NIST, ISO, SOC 2, CIS, Cobit).
- Experience in computer security compliance and auditing.
- IRS, SSA computer security compliance and audit experience.
- HIPAA experience.
Additional Information
This role does not provide direct supervision to direct reports.
Work Arrangement: Hybrid schedule, Monday to Wednesday in office and Thursday to Friday remote.
Agency Interview Type: Webcam only