Information Security Analyst
Job in
Livingston, Park County, Montana, 59047, USA
Listed on 2025-12-22
Listing for:
Livingston HealthCare
Full Time
position Listed on 2025-12-22
Job specializations:
-
IT/Tech
Cybersecurity, Information Security, Security Manager, Network Security
Job Description & How to Apply Below
Responsible for monitoring, assessing, and enhancing the security posture of Livingston Health Care’s information systems, networks, and data assets. This role ensures that the organization’s security controls, compliance obligations, and risk management practices align with healthcare regulatory requirements, industry frameworks, and internal security policies. The analyst collaborates with IT, clinical, administrative, and third-party partners to identify threats, respond to security incidents, and implement proactive measures to protect the confidentiality, integrity, and availability of systems supporting patient care.
Schedule:- 1.0
FTE (40 hours) - Mon-Fri
- Occasional After-Hours or Weekend Work
- $28.37/hr + DOE
- Robust Benefits Package
Security Monitoring and Incident Response
- a. Monitor security tools, alerts, logs, and system events to identify potential threats or anomalous activity.
- Lead or support security incident response activities, including triage, containment, eradication, recovery, documentation, and post-incident review.
- Coordinate with internal teams and external partners (e.g., Microsoft 365, security vendors) to validate and remediate alerts.
- Conduct regular vulnerability scans, review results, and collaborate with system owners to prioritize remediation.
- Maintain vulnerability management processes and track remediation activities across enterprise assets.
- Support risk assessments, control evaluations, and mitigation planning.
- Assist in maintaining compliance with regulatory standards including HIPAA and HiTech.
- Contribute to the development, review, and enforcement of information security policies, procedures, and standards.
- Participate in internal and external audits by providing evidence, documentation, and technical explanations.
- Review new software, devices, integrations, and cloud services for security risks prior to implementation.
- Assess vendor security posture and ensure appropriate safeguards in Business Associate Agreements.
- Support configuration hardening, endpoint security, and secure deployment practices.
- Assist with administration and review of identity and access controls across systems, including Microsoft 365 and on-premises resources.
- Support data loss prevention (DLP), email security, encryption, and privileged access management efforts.
- Monitor access logs and conduct periodic access audits.
- Contribute to the development and delivery of security awareness programs, phishing simulations, and targeted training initiatives.
- Provide guidance to staff on secure practices and emerging threats.
- Assist with deployment and management of enterprise security tools such as EDR, SIEM, DLP, vulnerability scanners, and MFA solutions.
- Maintain security documentation, asset inventories, and operational records.
- Collaborate with IT Operations on patch management, endpoint configuration, and network security improvements.
- Assists with the production of accurate and timely Information Security risk exposure reports.
- Facilitates the preparation of the annual Security Risk Assessment.
- Maintains professional and technical knowledge in field of expertise.
- Ensures that newly proposed Information Technology complies with Information Security requirements
- Bachelor’s degree in Information Security, Information Technology, Computer Science, or related field; or equivalent combination of education and experience.
- Minimum 2–4 years of experience in information security, IT infrastructure, or system administration roles; healthcare experience preferred.
- Working knowledge of cybersecurity principles, security operations, and threat landscapes.
- Familiarity with HIPAA Security Rule, and healthcare regulatory environments.
- Hands-on experience with tools such as EDR/XDR, SIEM, vulnerability scanners, and Microsoft 365 security capabilities.
- Strong analytical, investigative, and technical problem-solving skills.
- Ability to communicate security concepts clearly to both technical and non-technical audiences.
- Ability to manage competing priorities and adapt to rapidly changing threats
QUALIFICATIONS:
- Security-related certifications such as Security+, CySA+, SSCP, CEH, or similar.
- Higher-level certifications (e.g., CISSP, CISM) are advantageous but not required.
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×