Information Technology Security & Compliance Specialist (Full-time Hybrid, Morrisville, NC Based
Listed on 2026-08-02
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Consultant
Under general supervision of the Supervisor of Network Security the IT Security & Compliance Specialist monitors and responds to IT security incidents and communicates unresolved security exposures, misuse, or noncompliance to appropriate Alliance staff. The position will also ensure IT security complies with federal, state, regulatory, customer and industry requirements, participates in investigations of suspected information security misuse, and analyzes application security needs based on the sensitivity or proprietary nature of the data and ensuring that all systems are utilized for Alliance-approved purposes only.
This is a full-time hybrid opportunity. Selected candidate must be available to report onsite to the Alliance Office in Morrisville 2 day per week for business meetings as needed. Selected candidate must reside in North Carolina.
Responsibilities & DutiesMonitor, Investigate, and Remediate cyber security incidents
- Monitor computer networks for security issues.
- Review system alerts and logs
- Investigate IT security and other cyber security incidents
- Identify and mitigate network vulnerabilities and communicate how to avoid them
- Remediate detected vulnerabilities to maintain a high-security standards
- Assist in the development of improved security measures and operate software to protect systems and information infrastructure
- Document security incidents, assess the severity, and report on remediation
- Perform scheduled maintenance audit checklist to include Security Systems (IDS, Firewalls, VPN), Anti-Malware Systems, Email Security, Log management, UBA, User account management, password management and endpoint management
- Deploy security patche
- Perform tests to uncover network vulnerabilities and remediate
- Research security enhancements and make recommendations to management
- Assist in Development of company-wide best practices for IT security
- Assist in providing and maintaining evidence for security, state, financial and compliance audits
- Provide resource assistance in the implementation of security best practices for business continuity planning, risk management, and disaster planning to senior level management and IT specialists to assist agency's development and maintenance of appropriate business continuity, risk management, and disaster plans
- Assist colleagues with installs of security software and understanding information security management
- Provide Tier 2 support
Graduation from a Community College or Technical School in an information technology related field and four (4) or more years of progressively responsible work experience in an information systems department, preferably in a healthcare or managed care environment which provided the opportunity to gain the knowledge and skills required to perform the duties of the position,
OR
Bachelor’s Degree in an information technology related field and two (2) or more years of progressively responsible work experience in an information systems department and network security, preferably in healthcare or managed care, which provided the opportunity to gain the knowledge and skills required to perform the duties of the position.
Knowledge, Skills, & Abilities- Extensive knowledge of security program development and management
- Extensive technical knowledge of mainstream operating systems and a wide range of security technologies, such as network security appliances, identity and access management systems, cryptography, anti-malware solutions, automated policy compliance, and desktop security tools
- Extensive knowledge of needs assessments development and preparation of administrative reports
- Extensive knowledge of Cybersecurity risk and mitigation strategies
- Substantial knowledge in developing, documenting, and maintaining security policies, processes, and procedures and standards, strategic planning, implementation, and maintenance of information security programs
- Substantial knowledge of technical, substantive, and methodological issues and theories to direct technical staff
- Know…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).