Information Security Analyst
Job in
New York, New York County, New York, 10261, USA
Listed on 2026-02-16
Listing for:
Building Service 32BJ Benefit Funds
Full Time
position Listed on 2026-02-16
Job specializations:
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Network Security
Job Description & How to Apply Below
Job Summary
Under the supervision of the Manager, Information Security, the Information Security Analyst is responsible to plan and carry out security measures to protect Funds’ computer networks, systems, and digital and physical technology assets. Performs assessments, develops and implements information security policies, procedure, and guidelines. Works inter-departmentally to identify and correct flaws in the Funds’ security systems, solutions, and applications while recommending specific measures that can improve the Funds’ overall security posture.
Essential Duties and Responsibilities- Provide guidance and expertise in the field of risk management regarding the protection and security of digital assets in the cloud and on premise.
- Design and develop Information Security Architectures to prevent unauthorized access to our information and data breaches.
- Develop and implement information security policies and procedures; develops security guidelines and safe practices for Funds’-wide computing and networking systems, and maintain the documentation.
- Manage, maintain and monitor security technologies such as vulnerability scanning solutions, IDS/IPS, anti-virus technologies, DLP capabilities, SIEM technologies, host forensics and malware analysis, web application firewalls and proxy solutions.
- Manage real time threat detention technologies to identify and quarantine threats, Monitor Endpoint Security Alerts and take corrective action.
- Minimize security threats by examining governance, technology infrastructure, and facilities to identify security deficiencies, using risk analysis and follow up with corrective action plan.
- Monitor internal control systems to ensure appropriate access levels are maintained, protect against unauthorized system access, modification and destruction.
- Review security related reports, logs and occurrences; escalate issues and initiate security response procedures.
- Create and review vulnerability reports, track compliance with vulnerability management policies, and escalate.
- Research and evaluate emerging technologies in support of security technology enhancements, propose technical solutions to management, to address security weaknesses and coordinate with relevant stakeholders to implement.
- Reviews, updates, and enforces data security practices within the organization; tests for exposures to ensure adherence to guidelines and procedures, and works with platform experts to implement remedial measures as appropriate.
- Tests security controls and manages the associated remediation of any deficiencies as needed.
- Assess security information, triaging and responding to security events, identify false positives, and conduct correlation analysis across numerous internal and external data sources while prioritizing information security incidents.
- Perform Project Management tasks for security initiatives /projects.
- Manage incident-handling processes, which include implementation of containment, protection, and remediation activities.
- Coordinates the handling and resolution of security incidents, to include system intrusions and abuse, and acts as a primary point of contact.
- Develop responses to internal & external audits, penetration tests and vulnerability assessments.
- Support Information Security training and awareness by providing ideas and content, assist HR with employee security awareness education and training.
- Manage multiple priorities and deadlines concurrently.
- Provide support after hours, on weekends and through on-call rotation.
- Performs other duties as assigned.
- To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required.
- Minimum 4 years in Information Security, or IT OPS management and systems administration with at least 2 years specific to IT Security;
- Strong knowledge of Information Security design, principles, and processes;
Experience in writing and /maintaining information security policies, standards, and guidelines; - Demonstrated ability to monitor and audit network security systems such as Firewalls,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×