Bloomberg

Information Security Analyst

Bloomberg$90K — $110K *
US-AnywhereRemote in United States
Education, Government & Non-Profit
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent experience
  • 3+ years in information security, risk management, or compliance
  • Familiarity with NIST and HIPAA regulations
  • Strong analytical and problem-solving skills
  • Experience with security audits or risk assessments
  • Knowledge of security technologies like encryption and firewalls
  • Ability to communicate technical information clearly and effectively

Responsibilities

  • Support research community by guiding information security matters
  • Collaborate with IT groups to enhance security measures
  • Help prepare the organization for security audits and compliance
  • Assist in assessing current security practices and identifying gaps
  • Develop and conduct training programs for security awareness
  • Review and update security policies to meet NIST requirements
  • Monitor security controls and evaluate their effectiveness

Benefits

  • Fully remote position
  • Flexible hours within 9 am PST - 5 pm PST schedule
  • Opportunity to work collaboratively with cross-functional teams
  • Engagement in cutting-edge cybersecurity practices
  • Potential for professional development through training programs
Full Job Description
Remote

Job Responsibilities
In this role, you will support the research community by providing support and guidance on information security matters. You will collaborate with local client IT groups and client Research Computing to help implement and improve security measures that meet NIST 800-171 standards.
Your main responsibilities will include helping to execute a strategy that prepares the university for an increasing number of security audits and changing regulatory requirements, particularly focusing on the Cybersecurity Maturity Model Certification (CMMC) and NIST 800-171 standards. This will involve helping to assess the university's current security practices and identifying any gaps that could affect compliance. You will assist in implementing best practices and guidelines to strengthen cybersecurity measures and support audit preparations.
You will also play a key role in developing an awareness and training program aligned with NIST to educate the organization to foster a culture of security awareness and responsibility.

Typical Activities
Assist in the preparation and implementation of the NIST readiness project, ensuring alignment with NIST frameworks and guidelines to improve the organization's security posture.
Collaborate in developing and executing a comprehensive strategy to prepare the university for security audits and regulatory requirements, with a particular focus on the Cybersecurity Maturity Model Certification (CMMC).
Support the assessment and implementation of security controls in accordance with NIST standards, assisting in identifying gaps and recommending corrective actions.
Develop and deliver an awareness and training program aligned with NIST to educate the organization.
Collaborate in the review and update of security policies and procedures to ensure they meet NIST requirements and reflect best practices in cybersecurity.
Support the monitoring of security controls and risk management practices, regularly evaluating the effectiveness of existing security measures.
Help prepare and maintain documentation related to security policies, procedures, and compliance efforts, including risk assessments and operational reports.
Collaborate with cross-functional teams, including IT, Finance, Human Resources, and Legal, to integrate information security into the organization's overall risk management program.
Keep abreast of industry trends, emerging threats, and evolving regulatory requirements to inform security practices and compliance strategies.
Perform any other related duties assigned to support the organization's information security program.

Requirements:
Minimum Education & Experience Required
You're a well-rounded, critical thinker with a bachelor's degree (or equivalent experience).
A minimum of three years of experience in information security, risk management, or compliance.

Qualifications
Experience in information security, risk management, and compliance.
Knowledge of industry standards and regulations, particularly NIST & HIPAA.
Strong analytical and problem-solving skills, with the ability to identify and assess security risks.
Exposure to security audits, risk assessments, or vulnerability assessments.
Knowledge of security technologies such as encryption, firewalls, intrusion detection systems, and SIEMs.
Experience with working as part of a team in cybersecurity, information security, assurance or related fields.
Ability to express complicated, highly technical information using accessible language, proficiently in English, to a wide variety of audiences with varying degrees of technical savviness.
Ability to stay up-to-date with the latest security threats, technologies, and industry regulations.

Bonus Points & Plusses
Knowledge of ISO 27001 and PCI DSS.
Security+ or other professional cybersecurity certifications.
Proficiency in setting up and managing a learning management system (LMS), including course creation and configuration
Prior work in a highly-regulated industry or higher education.

Notes:
9 am PST - 5 pm PST
40 hours
Remote

About Bloomberg

Bloomberg L.P. is a privately held financial, software, data, and media company headquartered in Midtown Manhattan, New York City. It was founded by Michael Bloomberg in 1981, with the help of Thomas Secunda, Duncan MacMillan, Charles Zegar, and a 12% ownership investment by Merrill Lynch. Bloomberg L.P. provides financial software tools and enterprise applications such as analytics and equity trading platform, data services, and news to financial companies and organizations through the Bloomberg Terminal (via its Bloomberg Professional Service), its core revenue-generating product. Bloomberg L.P. also includes a wire service (Bloomberg News), a global television network (Bloomberg Television), digital websites, a radio station (WBBR), subscription-only newsletters, and three magazines: Bloomberg Businessweek, Bloomberg Markets, and Bloomberg Pursuits.
Learn more about Bloomberg
Size
20,000 employees
Industry
Founded
1981

Similar Jobs

More Jobs at Bloomberg

More Education, Government & Non-Profit Jobs

Find similar Information Security Analyst jobs: