×
Register Here to Apply for Jobs or Post Jobs. X

Information Security Analyst

Job in Northern, Floyd County, Kentucky, USA
Listing for: Dana-Farber Cancer Institute
Full Time position
Listed on 2026-09-10
Job specializations:
  • IT/Tech
    Information Security & Data Protection, Cybersecurity
Salary/Wage Range or Industry Benchmark: 76300 - 92100 USD Yearly USD 76300.00 92100.00 YEAR
Job Description & How to Apply Below
Location: Northern

The Information Security Analyst is a key team member in Dana-Farber Cancer Institute’s Information Security program. Reporting to the AVP, Information Security Officer, the Analyst supports day-to-day program operations, including routine security investigations, risk management support, training and awareness, and policy maintenance. The Analyst works closely with Information Services teams and other stakeholders to support information security objectives.

Located in Boston and the surrounding communities, Dana-Farber Cancer Institute is a leader in life changing breakthroughs in cancer research and patient care. We are united in our mission of conquering cancer, HIV/AIDS, and related diseases. We strive to create an inclusive, diverse, and equitable environment where we provide compassionate and comprehensive care to patients of all backgrounds, and design programs to promote public health particularly among high-risk and underserved populations.

We conduct groundbreaking research that advances treatment, we educate tomorrow's physician/researchers, and we work with amazing partners, including other Harvard Medical School-affiliated hospitals.

Primary Duties and Responsibilities

  • Monitor and triage the Information Security team mailbox and ticket queue; respond to workforce inquiries, route/escalate as needed, and document, update, and close tickets in accordance with team procedures and SLAs.
  • Conduct routine information security investigations at the direction of the AVP, Information Security Officer, including documentation, fact-finding, analysis, and summary reporting.
  • Assist with risk management activities such as surveys, assessments, inventories, and gap analyses against established security and privacy standards.
  • Support planning, execution, documentation, and follow-up for Information Security projects, audits, and workplans; compile status updates and final summaries for stakeholders.
  • Assist with third-party/vendor risk management activities, including coordinating evidence collection, completing assessments, and tracking periodic review activities.
  • Support development, review, and maintenance of Information Security policies and procedures; respond to routine requests for policy interpretation and guidance.
  • Contribute to security awareness and education efforts, including developing and delivering department-specific training and partnering with Communications to promote awareness initiatives.

Knowledge,

Skills and Abilities

  • Ability to maintain confidentiality and handle sensitive patient, employee, and organizational information with discretion.
  • Familiarity with healthcare security/privacy requirements (e.g., HIPAA/HITECH and applicable state privacy requirements) and general compliance concepts.
  • Familiarity with security frameworks and control concepts (e.g., NIST CSF and basic NIST control principles) and how they apply to policies and assessments.
  • Strong analytical and problem-solving skills; ability to gather facts, identify patterns/trends, and elevate issues appropriately.
  • Strong documentation skills, including producing clear investigation notes, assessment results, training materials, and stakeholder-ready summaries.
  • Effective communication skills, including the ability to explain policies and security concepts to non-technical audiences and collaborate across teams.
  • Strong organizational and time-management skills; ability to manage multiple requests, meet deadlines, and track work to completion.

Minimum Job Qualifications

  • High school diploma/GED required.
  • 3 years of information security, privacy, risk, audit, or related experience required.
  • 3 years supporting security programs in a healthcare or other regulated environment preferred.
  • Security+ or equivalent Information Security certification strongly preferred.

License/Certification/Registration

Required:

None

Supervisory Responsibilities: No

Patient Contact: No

Special

Working Conditions:

  • On call requirements

At Dana-Farber Cancer Institute, we work every day to create an innovative, caring, and inclusive environment where every patient, family, and staff member feels they belong. As relentless as we are in our mission to reduce the burden of cancer for all, we are committed to having faculty and staff who offer multifaceted experiences. Cancer knows no boundaries and when it comes to hiring the most dedicated and compassionate professionals, neither do we.

If working in this kind of organization inspires you, we encourage you to apply.

Dana-Farber Cancer Institute is an…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary