Description Your role at MOBE-This is a contract to hire opportunityThe Security Analyst leverages a blend of business and technical knowledge with strong analysis and documentation skills in support of MOBE's compliance with federal, state, industry and client security requirements. This position, which is heavy on communication, observation, interpretation and documentation, will report to the Director of Security and Compliance and work closely with the Chief Security Officer to maintain and improve MOBE's Information Security Program.
Must be authorized to work in the United States without current or future visa sponsorship. We are not able to sponsor or transfer employment visas at this time (e.g., H-1B, O-1, TN, CPT, OPT).Responsibilities - Develop, document, manage and improve security controls across MOBE departments
- Ensure compliance to security policy, standards and processes, including HIPAA and HTIRUST requirements
- Partner with business units to develop, modify and disseminate disaster recovery and business continuity work practices
- Perform user role and access reviews across all business systems, ensuring alignment with role and access matrixes.
- Conduct or assist with vendor security and risk assessments, providing recommendations to mitigate risks and manage resulting corrective action plans and projects
- Conduct or assist with internal security audits; provide recommendations to mitigate risks and manage resulting corrective action plans and projects
- Work with external auditors and internal stakeholders throughout the third-party audit process
- Assist in the development, delivery, training and administration of security awareness programs to the workforce
- Ability to provide backup administrative and user assistance with security tools, e.g. MDM, SIEM, DLP, etc.
- Support the change management process
- Other duties as assigned to help drive to our Vision, fulfill our Mission, and abide by MOBE's Guiding Principles
Position Requirements QualificationsRequired - Bachelor's degree in business, Computer Science, Engineering or related discipline or equivalent experience
- 3-5 years' relevant work experience
- Working knowledge of information security and risk frameworks gained through exposure to risk management, information technology, systems monitoring and analysis, , business operations, and business continuity
- Experience with cloud service providers and the security considerations driven by a cloud environment
- Experience with controlling access to, and security of highly sensitive data
- Business analyst and/or audit experience encompassing information technology systems and security controls
- Experience with vulnerability and penetration assessments including tracking remediation. 8
- Working knowledge of directory services, application development, and infrastructure (networks, server and end computing devices) as required to ensure compliance with information security controls
- Experience working with business units to analyze and document business processes in a way that ensures secure and compliant processes
- Familiarity with technical security toolsets, including network monitoring, SIEM, DLP, and endpoint management.
- Exposure to security concerns is driven by the adoption of artificial intelligence tools and models.
- Excellent written and verbal communication
- Experienced user of the Microsoft Office Suite.
- Project or engagement management experience with the ability to manage multiple and complex priorities across cross-functional teams
Preferred - Familiarity with regulatory and industry security requirements and frameworks including:
- Health Insurance Portability and Accountability Act (HIPAA)
- HITRUST
- NIST
- SOC 2 Type II or similar AICPA audit frameworks
- CMS
- Current CISA, CISSP or CCSFP credentials
Values - People First. We show we care because we believe in the power of human connection
- Spark Positivity. We each have the power to turn any challenge into something awesome.
- Stay Curious. We relentlessly discover and embrace new ideas to keep moving forward.
Full-Time/Part-Time Full-Time
Location Minneapolis
This position is currently accepting applications.