Salary: $34.16 - $54.57 per hour, depending on qualifications
Schedule: Monday through Friday, 8am to 4:30pm
The Information Security Analyst I is an information security professional responsible for comprehensive planning, design, evaluation, and implementation of security procedures which safeguard the confidentiality, integrity, and availability of systems and data.
Essential Job Functions: - Reviews and performs basic to moderately complex procedures necessary to ensure the safety of information and to protect systems from intentional or inadvertent access, modification, disruption, or destruction.
- Recognizes and identifies potential areas where existing data security policies and procedures require change, or where new policies and procedures need to be developed related to firewalls, intrusion detection, vulnerability scanning, host operating systems, or network devices.
- Performs and contributes to risk assessments.
- Maintains awareness of emerging threats and trends within Information Security.
- Acts as a trusted advisor to clients/staff about information security.
- Characterizes and analyzes network traffic to identify anomalous activity and potential threats to network resources.
- Ensures that cybersecurity-enabled products or other security control technologies reduce identified risk to an acceptable level.
- Assists in the assessment of new information technology solutions requested by the organization to ensure solutions meet both El Rio information technology and information security standards.
- Documents and escalates incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment.
- Provides daily summary reports of network events and activity relevant to cyber defense practices.
- Uses cyber defense tools for continual monitoring and analysis of system activity to identify potentially malicious activity.
- Participates in providing community stakeholders and management with security risk assessments and security briefings to advise them of issues that may affect business outcomes.
- Assesses adequate access controls based on principles of least privilege and need-to-know.
- Works with stakeholders to resolve computer security incidents and vulnerability compliance.
- Demonstrates skill in reading, interpreting, writing, modifying, and executing simple scripts on systems.
- Must be able to communicate technical information to less technical or non-technical audiences.
- Contributes to team effort; complies with all facility policies and procedures including but not limited to those addressing HIPAA and Compliance.
- May be required to receive advanced training and obtain related certifications.
- Maintains a clean, safe, and hygienic work environment in compliance with all Policies and Procedures including but not limited to work areas, workstations, examination rooms, hand washing, infection prevention and control etc. for this position
- Demonstrates an understanding of and proficiency with the application of all compliance and reporting requirements respective to Joint Commission Certification (JCC) standards.
Minimum Education and Experience: - Associates degree in Information Technology, Business, Computer Science, Finance or a related field from an accredited college or university or;
- Five (5) years' of relevant work experience.
If applicable, equivalent combination of education and experience may be considered, and must be directly related to the functions and responsibilities of the job.
Required Licenses, Certifications, and Registrations: - Employees in this position are required to have reliable transportation that can meet any operational reassignments of the organization during the workday. If an employee is driving during work hours, the employee is required to possess a valid driver's license and must comply with Arizona vehicle insurance requirements.
- CompTIA Security+ certification, or comparable industry certification.
Preferred Education, Experience, Skills, Abilities: - Bachelor's Degree in Information Technology, Information Security or related field from an accredited college or university
- Security certification(s), e.g., CISA, CISM, GIAC, CISSP
- Bilingual (English/Spanish) with the ability to speak, read and write in both languages