Service Analytics/Contracts Manager

Samsung Healthcare

$80K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 2-5 years of experience in IT or information security
  • Proficient in ISO 27001 and/or CMMC frameworks
  • Strong documentation and policy writing skills
  • Familiarity with Microsoft 365 security features
  • Understanding of DLP, incident response, and disaster recovery
  • Knowledge of AI models and their organizational applications
  • Willingness to support help desk operations

Responsibilities

  • Own and maintain ISO 27001 and CMMC compliance programs
  • Manage audit readiness, evidence, and remediation tracking
  • Conduct gap assessments and risk analyses
  • Develop and maintain security policies and procedures
  • Configure and manage DLP policies across Microsoft 365
  • Monitor security alerts using SIEM tools
  • Support incident response and conduct tabletop exercises

Benefits

  • Comprehensive medical plans with high employer contribution
  • Dental plan with significant employer contribution
  • 100% company-paid vision insurance
  • Full company coverage for short/long-term disability and life insurance
  • 401k with 100% company match up to 5%
  • Access to health savings programs
  • Various supplemental insurance options
  • Generous paid time off and tuition reimbursement
Full Job Description
Information Security Analyst (GRC & Microsoft 365 Security)
  • Location: On-site in Danvers, MA


Role Description

We are seeking a junior-to-mid level Information Security Analyst to support and own key elements of our information security and compliance program, with a strong emphasis on ISO 27001 and CMMC frameworks. This role focuses on policy creation, documentation, and audit readiness while supporting operational security across Microsoft 365, DLP, and incident response.

The analyst will work closely with IT and Compliance to maintain a strong security posture and will play a key role in driving compliance initiatives, managing documentation, and coordinating security processes. This role requires a hands-on approach, including participation in help desk support and day-to-day IT security operations.

Key duties and responsibilities, other duties may be assigned:

Compliance Ownership & Governance (ISO 27001 / CMMC):
  • Own and maintain ISO 27001 and CMMC compliance programs
  • Manage evidence, remediation tracking, and audit readiness
  • Perform gap assessments and risk analyses

Policy Development & Documentation
  • Develop and maintain security policies, procedures, and runbooks
  • Ensure documentation is audit-ready and version controlled

DLP & Microsoft 365 Security
  • Configure and manage DLP policies across Microsoft 365
  • Support Microsoft Purview and identity security controls

Security Operations & SIEM:
  • Monitor alerts using SIEM tools
  • Support incident response and tabletop exercisesls

AI Policy & Usage:
  • Support the development and maintenance of an Acceptable AI Usage Policy
  • Evaluate AI models and use cases to determine appropriate application across organizational roles
  • Support tracking, logging, and governance methodologies for AI usage

Disaster Recovery:
  • Support the development and maintenance of an Acceptable AI Usage Policy
  • Evaluate AI models and use cases to determine appropriate application across organizational roles
  • Support tracking, logging, and governance methodologies for AI usage

IT Support:
    • Provide help desk support and security guidance to end users
    • Assist with day-to-day IT security operations and user education

Qualifications and Requirements:To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

Skills & Experience
  • 2-5 years of experience in IT or information security
  • Experience with ISO 27001 and/or CMMC
  • Strong documentation and policy writing skills
  • Familiarity with Microsoft 365 security
  • Understanding of DLP, incident response, and DR
  • Understanding of AI models and their use within an organization
  • Willingness to support help desk operations

Preferred Qualifications
  • Experience supporting ISO or CMMC audits
  • Familiarity with Microsoft Purview
  • Experience with SIEM tools (e.g., Microsoft Sentinel, Splunk)
  • Knowledge of NIST frameworks
  • Relevant certifications (Security+, SC-900, etc.)

Competencies
  • Strong documentation skills
  • Ownership and accountability
  • Attention to detail
  • Collaboration
  • Problem-solving
  • Customer service mindset

Physical Requirements
  • Occasionally lift and /or move up to 25 pounds
  • Frequently required to sit; use hands to finger, handle, or feel; reach with hands; and talk or hear
  • Must be able to sit for long periods of time

Benefits

We offer a comprehensive benefit package which includes:
  • Medical (Blue Benefit Administrators): 5 PPO Plans (with up to 95% employer contribution)
  • Dental (Blue Cross Blue Shield): 2 PPO Plans (with up to 80% employer contribution)
  • Vision (Blue Cross Blue Shield): 100% company paid
  • Short/Long Term Disability, Life & AD&D (The Standard): 100% company paid
  • 401k Retirement (Fidelity): 100% company match up to 5%
  • Tax Deferred Health Care Savings Programs
  • Accident Insurance, Critical Illness, Hospital Indemnity, Pet, Legal, ID Theft
  • Generous paid time off, tuition reimbursement, and more!


Similar Jobs

More Jobs at Samsung Healthcare

More Information Technology Jobs

Find similar Service Analytics/Contracts Manager jobs: