Senior Security Analyst - REMOTE

S'S Healthcare

$90K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Proven experience in Information Security, Cybersecurity, Security Operations, GRC, preferably in healthcare or TPA industry
  • Hands-on experience in incident response, vulnerability management, and application security reviews
  • Familiar with SIEM platforms like Splunk or Microsoft Sentinel for security monitoring
  • Knowledge of compliance frameworks including HITRUST, SOC 2, NIST, and HIPAA
  • Experience in conducting third-party risk assessments and maintaining risk registers
  • Strong analytical and reporting skills to translate technical findings into business insights
  • Excellent communication skills for collaboration across diverse teams and leadership

Responsibilities

  • Review and investigate security incidents, partnering with SOC for operational improvements
  • Drive the vulnerability management lifecycle, including risk-based prioritization and remediation
  • Collaborate with engineering to address security risks across production environments
  • Enhance security tools and processes to improve the overall security program
  • Ensure reliable collection of security data for SIEM and identify visibility gaps
  • Support compliance audits, including HITRUST and SOC 2, and track remediation efforts
  • Develop and present security metrics and reports to facilitate informed decision-making
  • Work cross-functionally with teams to support security initiatives and risk management endeavors

Benefits

  • Opportunities for career development and professional growth
  • Collaborative work environment with cross-functional teams
  • Access to the latest security tools and technologies
  • Flexible working arrangements to promote work-life balance
  • Health and wellness programs to support employee wellbeing
  • Involvement in strategic projects with high impact on organizational security posture
Full Job Description
We are seeking a Senior Security Analyst to serve as a senior technical and analytical contributor across our security and risk program. This role will play a key part in incident response, vulnerability management, application and product security, governance and compliance initiatives, third-party risk management, and security data operations. The ideal candidate is experienced across both technical security operations and governance, risk, and compliance functions, with the ability to translate complex security concepts into clear, business-focused recommendations and drive continuous improvement across the organization.

Responsibilities

  • Incident Response & Security Operations: Review, investigate, and adjudicate security incidents escalated from the Security Operations Center (SOC), including triage, root cause analysis, containment, remediation, and post-incident review while partnering with the SOC to improve detection logic, escalation workflows, and operational effectiveness
  • Vulnerability Management & Application Security: Drive the vulnerability management lifecycle through identification, risk-based prioritization, remediation tracking, and reporting while coordinating penetration testing activities, supporting remediation efforts, and performing application security assessments and reviews
  • Product & Production Security: Partner with engineering teams to identify, prioritize, and remediate security risks across production environments while contributing to secure configuration standards, monitoring coverage, security best practices, and the protection of AI-enabled workloads
  • Security Program Operations: Support the ongoing maturation of the security program by improving security tools, processes, and operational capabilities while recommending enhancements that strengthen the organization's overall security posture
  • Security Data & Monitoring: Ensure complete and reliable collection of security logs and telemetry into the SIEM while supporting security data architecture decisions, onboarding new data sources, validating monitoring coverage, and identifying visibility gaps across systems and environments
  • Governance, Risk & Compliance: Support internal and external audits, including HITRUST, SOC 2, client assessments, and regulatory reviews while coordinating evidence collection, tracking remediation activities, conducting third-party risk assessments, maintaining risk registers, and supporting ongoing audit readiness
  • Reporting & Analytics: Develop, analyze, and present security and risk metrics, KPIs, KRIs, dashboards, and executive-level reporting that translate technical findings into meaningful business insights and support organizational decision-making
  • Cross-Functional Support: Partner with engineering, infrastructure, operations, compliance, risk management, and business stakeholders to support security initiatives, policy and control mapping efforts, risk remediation activities, and strategic security projects


Qualifications

  • Security Experience: Proven experience in Information Security, Cybersecurity, Security Operations, Governance Risk & Compliance (GRC), ideally within the healthcare or TPA industry
  • Technical Security Expertise: Hands-on experience with incident response, vulnerability management, penetration testing coordination, application security reviews, and security operations processes
  • Security Platforms & Tools: Experience working with SIEM platforms such as Splunk, Microsoft Sentinel, Elastic, or similar security monitoring and analytics technologies
  • Governance & Compliance Knowledge: Experience supporting security audits, assessments, and compliance frameworks including HITRUST, SOC 2, NIST, HIPAA, ISO 27001, or related standards
  • Risk Management Experience: Demonstrated experience conducting third-party and vendor risk assessments, maintaining risk registers, and supporting enterprise risk management initiatives
  • Analytical Skills: Strong analytical, reporting, and problem-solving abilities with experience translating technical findings into actionable risk assessments and business recommendations
  • Communication Skills: Excellent verbal and written communication skills with the ability to collaborate effectively across technical and non-technical teams and present information to executive leadership

Similar Jobs

More Jobs at S'S Healthcare

More Information Technology Jobs

Find similar Senior Security Analyst - REMOTE jobs: