Senior Security Analyst - REMOTE

S'S Healthcare

$90K — $120K *
US-AnywhereRemote in Cincinnati, OH
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Proven experience in Information Security and Cybersecurity, particularly in healthcare or TPA settings.
  • Hands-on experience with incident response, vulnerability management, and application security reviews.
  • Proficiency with SIEM platforms such as Splunk or Microsoft Sentinel.
  • Knowledge of compliance standards including HITRUST and SOC 2.
  • Experience in conducting third-party risk assessments and maintaining risk registers.
  • Strong analytical and reporting skills to translate technical findings into business insights.
  • Excellent communication skills to collaborate across diverse teams and present to executives.

Responsibilities

  • Review and investigate security incidents, including root cause analysis and post-incident reviews.
  • Drive the vulnerability management lifecycle from identification to remediation and reporting.
  • Collaborate with engineering to identify and remediate security risks in production environments.
  • Support the security program's maturation by refining tools and processes for improved security posture.
  • Ensure reliable collection of security logs into the SIEM and validate monitoring coverage.
  • Assist in internal and external audits and maintain readiness for various compliance frameworks.
  • Develop and present security metrics that align technical findings with business objectives.
  • Engage with multiple teams to support security initiatives and strategic projects.

Benefits

  • Flexible work arrangements, allowing for remote or hybrid options.
  • Opportunities for professional development and continuous learning.
  • Health and wellness resources including fitness programs and mental health support.
  • Retirement savings plan with company match initiatives.
  • Access to cutting-edge security tools and technologies.
Full Job Description
We are seeking a Senior Security Analyst to serve as a senior technical and analytical contributor across our security and risk program. This role will play a key part in incident response, vulnerability management, application and product security, governance and compliance initiatives, third-party risk management, and security data operations. The ideal candidate is experienced across both technical security operations and governance, risk, and compliance functions, with the ability to translate complex security concepts into clear, business-focused recommendations and drive continuous improvement across the organization.

Responsibilities

  • Incident Response & Security Operations: Review, investigate, and adjudicate security incidents escalated from the Security Operations Center (SOC), including triage, root cause analysis, containment, remediation, and post-incident review while partnering with the SOC to improve detection logic, escalation workflows, and operational effectiveness
  • Vulnerability Management & Application Security: Drive the vulnerability management lifecycle through identification, risk-based prioritization, remediation tracking, and reporting while coordinating penetration testing activities, supporting remediation efforts, and performing application security assessments and reviews
  • Product & Production Security: Partner with engineering teams to identify, prioritize, and remediate security risks across production environments while contributing to secure configuration standards, monitoring coverage, security best practices, and the protection of AI-enabled workloads
  • Security Program Operations: Support the ongoing maturation of the security program by improving security tools, processes, and operational capabilities while recommending enhancements that strengthen the organization's overall security posture
  • Security Data & Monitoring: Ensure complete and reliable collection of security logs and telemetry into the SIEM while supporting security data architecture decisions, onboarding new data sources, validating monitoring coverage, and identifying visibility gaps across systems and environments
  • Governance, Risk & Compliance: Support internal and external audits, including HITRUST, SOC 2, client assessments, and regulatory reviews while coordinating evidence collection, tracking remediation activities, conducting third-party risk assessments, maintaining risk registers, and supporting ongoing audit readiness
  • Reporting & Analytics: Develop, analyze, and present security and risk metrics, KPIs, KRIs, dashboards, and executive-level reporting that translate technical findings into meaningful business insights and support organizational decision-making
  • Cross-Functional Support: Partner with engineering, infrastructure, operations, compliance, risk management, and business stakeholders to support security initiatives, policy and control mapping efforts, risk remediation activities, and strategic security projects


Qualifications

  • Security Experience: Proven experience in Information Security, Cybersecurity, Security Operations, Governance Risk & Compliance (GRC), ideally within the healthcare or TPA industry
  • Technical Security Expertise: Hands-on experience with incident response, vulnerability management, penetration testing coordination, application security reviews, and security operations processes
  • Security Platforms & Tools: Experience working with SIEM platforms such as Splunk, Microsoft Sentinel, Elastic, or similar security monitoring and analytics technologies
  • Governance & Compliance Knowledge: Experience supporting security audits, assessments, and compliance frameworks including HITRUST, SOC 2, NIST, HIPAA, ISO 27001, or related standards
  • Risk Management Experience: Demonstrated experience conducting third-party and vendor risk assessments, maintaining risk registers, and supporting enterprise risk management initiatives
  • Analytical Skills: Strong analytical, reporting, and problem-solving abilities with experience translating technical findings into actionable risk assessments and business recommendations
  • Communication Skills: Excellent verbal and written communication skills with the ability to collaborate effectively across technical and non-technical teams and present information to executive leadership

Similar Jobs

More Jobs at S'S Healthcare

More Information Technology Jobs

Find similar Senior Security Analyst - REMOTE jobs: