Information security analyst jobs in Beaufort, SC - 20 jobs
All
Information Security Analyst
Security Engineer
Cyber Security Engineer
Information Systems Security Officer
Information Technology Analyst
Cyber Security Analyst
Information Security Director
Data Security Analyst
Securities Analyst
Information Assurance
Entry Level Healthcare IT Analyst
Optimum Healthcare It 4.3
Information security analyst job in Charleston, SC
Start Your Career in Healthcare Information Technology Today!
Getting your first job can be difficult when employers want experience, but to gain that experience, you need your first job. We bridge the gap between your education and professional career by helping you gain the experience and training you need within the Healthcare Information Technology Industry.
Optimum Healthcare IT is looking for recent college graduates with an interest in moving into the Healthcare IT Industry. Our Optimum CareerPath training program will equip you with the tools needed for your success as a Healthcare IT Analyst.
Healthcare IT Analyst Job Responsibilities:
· The Healthcare IT Analyst will have primary responsibility for the design, build/configuration, testing, validation, documentation, and ongoing support for the Healthcare applications.
· This position will implement, administer, and support assigned systems under the guidance of senior members of the team.
· The position will have a good understanding of healthcare organizations, ancillary systems, and health system operations.
· Analyze and document user requirements, procedures, and problems to automate or improve existing systems. Review system capabilities, workflow, and scheduling limitations.
· Document workflows, configure and/or build activities, change management adherence, end-user notifications, training information, and status reporting in the appropriate system.
· Develop, document, and revise system design procedures, test procedures, and quality standards.
· Expand or modify the system to serve new purposes or improve workflows.
· Review and analyze the system and performance indicators to locate problems and correct errors. Escalate problems and issues to the appropriate staff to ensure timely resolution.
· Coordinate projects, schedule, and facilitate meetings as necessary to complete assignments.
· Technical and functional analyst support of systems that may include Electronic Health Records platforms (Epic, Cerner), IT Project Management, ERP Systems (Workday, Oracle, PeopleSoft, UKG), ITSM applications (ServiceNow), data and analytics applications (Tableau, PowerBI), cloud deployments (GCP, Azure, AWS), and other digital platforms and services.
Requirements:
· Bachelor's Degree
· US work authorization (This position is not open to any H1B /F1/ H-4 EAD OPT/STEM degrees)
· Excellent communication skills (verbal and written)
· Ability to exercise tact and good interpersonal skills
· Superb analytical and time management skills required
· Self-starter, self-motivated, high level of initiative
· Result-focused, ability to solve complex problems and resolve conflicts in a timely manner
· Internships or research project work are highly desired in a healthcare setting
· Understanding of how data works and looks, coming from different formats, is preferred
· Ability to travel during the training program if necessary
$57k-78k yearly est. 2d ago
Looking for a job?
Let Zippia find it for you.
Computer Security Analyst
Haynes 4.5
Information security analyst job in Charleston, SC
, Inc. Haynes Inc, continues to partner with Department of State (DoS) in Charleston, SC. Our 80+ employees. support the DoS Comptroller and Global Financial Services (CGFS) Center in the areas of: Global Compensation, Information Systems Security (ISSO), and Global Financial Operations. We serve the U.S. Foreign Service, Department of State Civil Service, Foreign Service Retirees, Embassies, and Overseas U.S. Agencies reaching 180 countries and 140 currencies. Haynes, Inc. provides services in: Accounting, Administration, Budget, Travel, Vouchering, Accounts Receivables, Reconciliation, Systems Analysis, Information Systems, Computer Security, Payroll and Compensation, Treasury, Payroll Customer Service, Training, Audits, and Paralegal Analysis.
Haynes, Inc. provides our employee family a robust benefits package including: 11 paid Federal holidays, generous Employer Match on your 401k, Paid Time Off, Medical/Dental/Vision Insurance, Flexible Spending Accounts, Life Insurance, Disability, Tuition Reimbursement, free Professional Development & Training Program with 9000+ courses, and more! We thrive on providing a good work/life balance and in creating an inclusive culture where employees feel valued, appreciated, and are rewarded for top performance!
Department - Information Systems Security Office (ISSO) in Comptroller and Global Financial Services (CGFS)
Description - Will be further updated soon.
The Computer SecurityAnalyst supports the CGFS data processing infrastructure by insuring full compliance with all DoS Information Systems Security guidelines and policies regarding hardware, software and telecommunications security. The analyst provides for the (1550) functions including access management, continual monitoring of network and application software activity, including vulnerability assessments, user activity and attempted network penetration.
Provides assistance on matters pertaining to informationsecurity on Department of State and other U.S. Government agency automated information systems and supporting communications infrastructures, both classified and unclassified, at domestic and at overseas locations; generates detailed draft reports analyzing the physical, administrative, systemic and technical security posture of installations; and makes recommendations to reduce or eliminate security vulnerabilities or risks.
Education Requirements: A four year degree is preferred. Technical certification in computer systems security is preferred. Experience in computer security is necessary in areas such as intrusion detection, vulnerability assessments, risk assessments, access management, network monitoring or network diagnostics. Experience with network environments and/or computer security policies and guidelines is a plus.
Requirements:
Security + certification
Preferred:
Comp TA (a nice to have)
Work Schedule
To be hired, the candidate must reside in the state of South Carolina. This position supports a government contract and is subject to the government agency rules and management.
Work hours are on site 40 hours per week between the hours of 6:15 am - 6:00 pm. Core working hours are 9:00 am - 3:00 pm. Work Schedule is defined based on the work requirements of our client's division, Global Financial Services. The contract has a non-compensated, 45-minute lunch Monday through Friday.
Typically, one year of service in the current job is desired prior to moving into a different job on this contract.
Haynes, Inc is an Equal Opportunity Employer. We do not discriminate against any employee
or applicant for employment because of race, color, religion, gender, national origin, age, marital status, disability, veteran status, sexual orientation, or other protected status in any of the terms or conditions of employment.
$64k-81k yearly est. 23d ago
Cyber Sec Analyst - ISSO
Scientific Research Corporation 4.5
Information security analyst job in North Charleston, SC
The SRC Navy Cryptologic Systems (NCS) Directorate supports a number of US Navy Programs, including the Cryptologic Carry-On Program (CCOP), Ships' Signals Exploitation Equipment (SSEE) Program, and Distributed Common Ground System -- Navy (DCGS-N). We specialize in engineering support, software development, integration, testing, technical writing, Cybersecurity (administration, policy and engineering), production, technical support, warehousing, drafting, repair and management. As an NCS Information Systems Security Officer (ISSO), this position is responsible for supporting the information system owner to complete security assessment, continuous monitoring, and configuration management responsibilities of NCS. Responsibilities include, but are not limited to:
Performing monthly compliance assessments using tools, such as Assured Compliance Assessment Solution (ACAS), Collaborative Computing Security Services (CS2) audit files, Secure Content Automation Protocol (SCAP), and McAfee Virus Scan Enterprise, reviewing, documenting, and maintaining all results
Verifying patches and virus definitions to the systems using existing automated tools
Adhering to predefined configuration management and change management policies and procedures for
authorizing software prior to its implementation on systems
Ensuring that audit trails (system logs) are reviewed as required; audit records will be maintained for future reference
Assessing NCS family of systems in accordance with NIST, NSA and NAVINTEL IA guidance
Recommending authorization of systems to the Designated Authorizing Official (DAO) as a certified
trusted agent
Reporting security incidents in accordance with the command's incident response plan
Ensuring systems are operated, used, maintained, and disposed of in accordance with all applicable security policies and practices
#LI-LL1
Requirements
Must possess an active Top Secret clearance
A minimum of five (5) years of cybersecurity experience
Must currently hold a DoD 8570-compliant IAT II certification (SSCP or Security+CE with appropriate
CE/OS certificate), and IAM II certification (CAP or CASP CE) or be able to obtain within six months
CE/OS certificate may include Windows or Linux
Experience creating complete ATO packages using Risk Management Framework process
Experience with eMASS, SSPs, POA&Ms, VRAM, ACAS/Nessus, XACTA, SCAP, SCC Tool, Benchmarks, and
STIG Viewer
Successfully complete a NCIS Polygraph within one year of employment
Developed communication skills and the ability to express thoughts and ideas clearly and concisely
Be a team player, dedicated to program support, capable of multitasking and working several
complex and diverse tasks with simultaneous or near simultaneous deadlines
Be a self-starter who is accountable and requires minimal direction and supervision
Be open to new and innovative ideas
Must be able to be appointed ISSO for NCS systems within six months of employment
Desired Skills
Bachelor's degree in information systems, computer science, or similar
AWS Certified Cloud Practitioner
Ability to create and modify authorization boundary and data flow diagrams using Microsoft Visio
Knowledge of container security, ability to assess container hardening per NIST 800-190, experience assessing container hosting environments, and knowledge of container and code analysis tools such as JFrog Xray, Trivy, and SonarQube
Knowledge of GovCloud, Navy Cloud policies and DISA Cloud Computing Security Requirements Guide
Experience in a Linux environment is preferred
Experience with WSUS, YUM
Clearance Information
SRC IS A CONTRACTOR FOR THE U.S. GOVERNMENT. THIS POSITION WILL REQUIRE U.S. CITIZENSHIP AS WELL AS A U.S. GOVERNMENT SECURITY CLEARANCE AT THE TOP SECRET / SCI LEVEL with CI POLY ELIGIBILITY
Travel Requirements
Up to 20% travel may be required
About Us
Scientific Research Corporation is an advanced information technology and engineering company that provides innovative products and services to government and private industry, as well as independent institutions. At the core of our capabilities is a seasoned team of highly skilled engineers and scientists with multidisciplinary backgrounds. This team is challenged daily to provide cutting edge technology solutions to our clients.
SRC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with a company match, life insurance, vacation and sick paid time off accruals starting at 10 days of vacation and 5 days of sick leave annually, 11 paid holidays, tuition reimbursement, and a work environment that encourages excellence and more. For positions requiring a security clearance, selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
EEO
Scientific Research Corporation is an equal opportunity employer that does not discriminate in employment.
All qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other protected characteristic under federal, state or local law.
Scientific Research Corporation endeavors to make ************** accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact *************** for assistance. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.
$57k-73k yearly est. Auto-Apply 14d ago
Cyber Security Analyst
Vets Hired
Information security analyst job in North Charleston, SC
PRIMARY DUTIES & RESPONSIBILITIES:
Conducts regular risk assessments to identify potential vulnerabilities and threats within the AWS IL5 environment
Develops strategies for risk mitigation and implements necessary controls to address identified risks
Maintains a risk register documenting identified risks and corresponding mitigation actions
Ensures AWS configurations align with IL5 security requirements, including encryption, access controls, and network segmentation
Implements and enforces compliance with relevant security standards and regulations, such as NIST SP 800-53 and DoD IL5 requirements
Monitors AWS configurations for deviations from security baselines and promptly remediates any non-compliant settings
Implements strong IAM policies to enforce least privilege access across AWS resources
Regularly reviews IAM roles and permissions to ensure alignment with the principle of least privilege
Enables multi-factor authentication (MFA) for privileged accounts and sensitive operations
Deploys robust monitoring tools to detect unauthorized access attempts, suspicious activities, and security breaches
Establishes incident response procedures to promptly respond to security incidents and minimize their impact
Conducts post-incident reviews to identify lessons learned and improves incident response processes
Implements encryption mechanisms to protect data at rest and in transit within the AWS IL5 environment
Regularly reviews encryption policies and key management practices to ensure effectiveness
Provides regular security training and awareness programs to AWS IL5 users and administrators
Educates users about common cyber threats, phishing attacks, and best practices for secure usage of AWS resources
Encourages a culture of security awareness and proactive risk mitigation among all stakeholders
Conducts periodic security assessments and audits to evaluate the effectiveness of cyber security controls
Identifies areas for improvement and implement enhancements to strengthen the security posture of the AWS IL5 Cloud SCCA
Stays abreast of emerging cyber threats, vulnerabilities, and industry best practices to adapt security measures accordingly
Travels approximately 3-4 days a quarter, as required
DESIRED SKILLS & REQUIREMENTS:
RMF experience
USMC Cyber experience
SAFe (Scaled Agile Framework) experience
Working Place: North Charleston, South Carolina, United States Company : Scientific Research Corporation
$64k-87k yearly est. 60d+ ago
Cyber Security Engineer
Atlas Executive Consulting
Information security analyst job in Charleston, SC
Are you searching for an opportunity to take your career to the next level? Ignite Digital Services is a fast-growing digital transformation company serving the national security sector. Our small business applies data science, program management and technical domain expertise to help clients implement data-driven approaches that maximize operational efficiencies.
We've redefined what it means to be a leader in our industry by creating and maintaining effective and rewarding working relationships with our clients, partners and internal team members. Our company culture is built upon a team-based approach, which offers continuous opportunities for personal growth and innovation, while providing unmatched value to our clients.
Perks of Working at Ignite Digital Services:
* Competitive pay and benefits, including PTO
* Education stipends and referral bonuses
* Compelling work with the U.S. federal government
* Strong emphasis on volunteer and community engagement
* Opportunity to shape the future of our industry
* Supportive colleagues and management who invest in your growth
Ignite Digital, has an exciting opportunity for a Principal, Cyber Security Engineer in Charleston, SC to support our client engagements within the federal government. The ideal candidate is a self-starter with strong cybersecurity skills and a strong work ethic. This position serves an important role in supporting a DevSecOps software development program and producing business process improvements. The individual will implement state-of-the-art best cybersecurity practices to ensure software code meets rigorous security audits and testing.
Responsibilities:
* Evaluate, develop, and implement cybersecurity code review solutions within current business processes to optimize efficiencies in collaboration with software developers.
* Identify methods to collect, analyze, and manage data with the goal of making recommendations to accelerate the Risk Management Framework process within a DevSecOps environment.
* Conducts vulnerability testing and scanning, incident response, disaster recovery, and business continuity planning and provides analytical support for security policy development and analysis.
* Evaluated incident response procedures and capabilities through Red Team exercises.
* Exploited system and network vulnerabilities and misconfigurations for the purpose of gathering data from target or adversary automated information systems or networks and to enable operations and intelligence collection capabilities.
* Monitored, analyzed, and detected Cyber events and incidents within information systems and networks.
* Planned, implemented, managed, monitored and upgraded security measures for the protection of the organizations data, systems and networks.
* Developed security assessment plans for systems, including the objectives, scope, schedule, required documentation, possible risks, and other logistical items for security assessments; developed cloud service provider testing approach from security perspective.
* Evaluate the performance and applicability of software code review tools against customer and client requirements
* Foster collaborative business relationships with stakeholders, business partners, and team members
* Assist in the training and development of the command workforce to increase the ability to produce secure software code
Minimum Qualifications:
* Ability to obtain a DoD security clearance
* Bachelor of Science Degree in Engineering, Computer Science or Information Systems
* Fifteen (15) years in cyber security to include: Maintained the informationsecurity activities to preserve the availability, integrity, and confidentiality of information resources in compliance with applicable security policies and standards.
* Experience performing cybersecurity requirements definition, security risk assessment, systems analysis, systems design, security test and evaluation, certification and accreditation, and systems hardening.
* Demonstrated experience supporting Risk Management Framework (RMF)/ FedRAMP system certification.
* Demonstrated ability to take initiative and work independently and quickly transition to reassess priorities.
* Must have Security+ certification
Preferred Qualifications:
* Active DoD security clearance
* Knowledge of the system development life cycle, software project management approaches and requirements, design and test techniques including experience working in a DevOps/DevSecOps delivery environment
* Experience in mentoring/training/coaching others in technical concepts
* Adapts quickly to new situations, is willing to learn new technologies and works well in a team environment, leading individual projects without the need for supervision
* Ability to obtain a DoD Government Security Clearance is mandatory for this position*
Salary: $150k+ to align with education, certification, & experience
Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
Ignite Digital Services is a Small Business committed to providing exceptional service to government agencies at competitive prices. The capabilities and experience of our staff and our extensive industry relationships distinguish Ignite Digital Services among government contractors.
Equal Opportunity Employer/Veterans/Disabled
For individuals who would like to request an accommodation, please visit ********************** (CA) or ********************** (SC) or contact Human Resources. Ignite Digital Services will not make any posting or employment decision that does not comply with applicable laws relating to labor and employment, equal employment opportunity, employment eligibility requirements or related matters. Nor will Ignite Digital Services require, in a posting or otherwise, U.S. citizenship or lawful permanent residency in the U.S. as a condition of employment except as necessary to comply with law, regulation, executive order, or federal, state, or local government contract.
OFCCP'S Pay Transparency Rule
EEO is the Law Poster
Create a Job Alert
Interested in building your career at Ignite Digital Services? Get future opportunities sent straight to your email.
Create alert
$150k yearly 60d+ ago
Cyber Security Engineer
Ignite Digital Services
Information security analyst job in Charleston, SC
Are you searching for an opportunity to take your career to the next level? Ignite Digital Services is a fast-growing digital transformation company serving the national security sector. Our small business applies data science, program management and technical domain expertise to help clients implement data-driven approaches that maximize operational efficiencies.
We've redefined what it means to be a leader in our industry by creating and maintaining effective and rewarding working relationships with our clients, partners and internal team members. Our company culture is built upon a team-based approach, which offers continuous opportunities for personal growth and innovation, while providing unmatched value to our clients.
Perks of Working at Ignite Digital Services:
Competitive pay and benefits, including PTO
Education stipends and referral bonuses
Compelling work with the U.S. federal government
Strong emphasis on volunteer and community engagement
Opportunity to shape the future of our industry
Supportive colleagues and management who invest in your growth
Ignite Digital, has an exciting opportunity for a Principal, Cyber Security Engineer in Charleston, SC to support our client engagements within the federal government. The ideal candidate is a self-starter with strong cybersecurity skills and a strong work ethic. This position serves an important role in supporting a DevSecOps software development program and producing business process improvements. The individual will implement state-of-the-art best cybersecurity practices to ensure software code meets rigorous security audits and testing.
Responsibilities:
Evaluate, develop, and implement cybersecurity code review solutions within current business processes to optimize efficiencies in collaboration with software developers.
Identify methods to collect, analyze, and manage data with the goal of making recommendations to accelerate the Risk Management Framework process within a DevSecOps environment.
Conducts vulnerability testing and scanning, incident response, disaster recovery, and business continuity planning and provides analytical support for security policy development and analysis.
Evaluated incident response procedures and capabilities through Red Team exercises.
Exploited system and network vulnerabilities and misconfigurations for the purpose of gathering data from target or adversary automated information systems or networks and to enable operations and intelligence collection capabilities.
Monitored, analyzed, and detected Cyber events and incidents within information systems and networks.
Planned, implemented, managed, monitored and upgraded security measures for the protection of the organizations data, systems and networks.
Developed security assessment plans for systems, including the objectives, scope, schedule, required documentation, possible risks, and other logistical items for security assessments; developed cloud service provider testing approach from security perspective.
Evaluate the performance and applicability of software code review tools against customer and client requirements
Foster collaborative business relationships with stakeholders, business partners, and team members
Assist in the training and development of the command workforce to increase the ability to produce secure software code
Minimum Qualifications:
Ability to obtain a DoD security clearance
Bachelor of Science Degree in Engineering, Computer Science or Information Systems
Fifteen (15) years in cyber security to include: Maintained the informationsecurity activities to preserve the availability, integrity, and confidentiality of information resources in compliance with applicable security policies and standards.
Experience performing cybersecurity requirements definition, security risk assessment, systems analysis, systems design, security test and evaluation, certification and accreditation, and systems hardening.
Demonstrated experience supporting Risk Management Framework (RMF)/ FedRAMP system certification.
Demonstrated ability to take initiative and work independently and quickly transition to reassess priorities.
Must have Security+ certification
Preferred Qualifications:
Active DoD security clearance
Knowledge of the system development life cycle, software project management approaches and requirements, design and test techniques including experience working in a DevOps/DevSecOps delivery environment
Experience in mentoring/training/coaching others in technical concepts
Adapts quickly to new situations, is willing to learn new technologies and works well in a team environment, leading individual projects without the need for supervision
*Ability to obtain a DoD Government Security Clearance is mandatory for this position*
Salary: $150k+ to align with education, certification, & experience
Applicants selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
Ignite Digital Services is a Small Business committed to providing exceptional service to government agencies at competitive prices. The capabilities and experience of our staff and our extensive industry relationships distinguish Ignite Digital Services among government contractors.
Equal Opportunity Employer/Veterans/Disabled
For individuals who would like to request an accommodation, please visit ********************** (CA) or ********************** (SC) or contact Human Resources. Ignite Digital Services will not make any posting or employment decision that does not comply with applicable laws relating to labor and employment, equal employment opportunity, employment eligibility requirements or related matters. Nor will Ignite Digital Services require, in a posting or otherwise, U.S. citizenship or lawful permanent residency in the U.S. as a condition of employment except as necessary to comply with law, regulation, executive order, or federal, state, or local government contract.
OFCCP'S Pay Transparency Rule EEO is the Law Poster
$150k yearly Auto-Apply 5d ago
Data Security & Governance Analyst
City of Savannah (Ga 3.8
Information security analyst job in Savannah, GA
The City of Savannah is seeking a highly skilled and forward-thinking Data Security and Governance Analyst to serve as a key architect of the City's data protection, compliance, and governance framework. This role is critical to safeguarding City data assets while enabling secure, compliant, and responsible use of emerging technologies.
The new Data Security and Governance Analyst will be a data security and management expert who will lead the implementation, configuration, and operational management of a governing solution such as Microsoft Purview, with a strong focus on establishing data access policies and safeguards to ensure secure and compliant use of AI-powered tools and other data archival technologies across the organization. This position will play a vital role in advancing the organizations cybersecurity efforts by implementing and managing policies, procedures and controls to protect data confidentiality, identity and availability and to ensure that security policies align with organizational goals to provide the ability for accurate data-driven decisions.
The ideal candidate will have deep expertise in Microsoft 365 compliance tools, data loss prevention (DLP), information protection, and role-based access control (RBAC). This role is critical to protecting City data as well as the vast digital City archives.
We offer great pay, excellent benefits to include medical, dental, and vision plans, life insurance,employee/spouse/child supplemental life insurance, short-term disability, tuition reimbursement,wellness programs, deferred compensation plan (457 B), pension plan, flexible spending account,home purchase assistance and 12 paid holidays!
Women, Minorities, and Veterans Are Encouraged to Apply
* Design and implement Microsoft Purview Information Protection policies to classify and label data (e.g., Public, Confidential, Restricted).
* Establish and maintain sensitivity labels, retention policies, and ata classification schemas for Copilot and broader M365 usage.
* Define Copilot guardrails, ensuring that AI-generated content does not expose unauthorized data.
* Monitor data access patterns and manage data access controls.
* Investigate anomalies using tools such as Purview Audit and Microsoft Defender for Cloud Apps.
* Implement Data Loss Prevention (DLP) policies to prevent oversharing of sensitive information internally and externally.
* Manage compliance portals, configure Microsoft Purview roles and permissions, and coordinate with security teams for ongoing audits.
* Provide documentation, training, and support to ensure department-wide adoption of best practices for AI governance.
* Stay current with Microsoft Purview roadmap and evolving features related to AI and data security.
* Identifies, assesses and mitigates risks relate to data security and governance and works with ITS Security Team to access and remediate potential data breaches and unauthorized access.
* Implement processes and controls to ensure data accuracy, completeness and consistency.
* Collaborates with stakeholders throughout the CoS to ensure effective data governance practices and enforcement
* Performs other related duties and responsibilities as required.
Bachelor's degree from an accredited college or university and/or four (5) years of professional Data Security and Governance experience; or any equivalent combination of education, training and experience provides the requisite knowledge, skills and abilities.
* 3-5 years of experience administering Microsoft 365 compliance and security tools.
* Proven experience with Microsoft Purview, Information Protection, and Data Loss Prevention.
* Familiarity with Microsoft Copilot, its data architecture, and how it interfaces with M365 workloads.
* Strong understanding of data governance frameworks, zero-trust security, and least-privilege access models.
* Experience with NIST, CJIS, and HIPAA data compliance standards.
* Knowledge of relevant regulations and industry standards.
* Strong understanding of data security and governance principles and practices.
* Good interpersonal skills with department office staff.
* Work management skills related to managing fast-paced working environments
PREFERRED QUALIFICATIONS:
* Microsoft Certified: Information Protection and Compliance Administrator Associate (SC-400)
* Microsoft Certified: Cybersecurity Architect Expert
* Experience with technology projects
* Demonstrably high standards in a fast-paced work environment
* Able to work with an appropriate sense of urgency
* Understanding the concepts of the PMI model for project management
Work Location: 1000 Business Center Drive, Suite 120 Work Hours: 8 am - 5 pm, Monday - Friday
Background investigation, including supervised drug screen, post offer/pre-employment medical screen; and verification of education, certifications, and licenses required prior to employment
* Excellent verbal and written communication skills
* Consistently strive to demonstrate the IT Values within various City departments.
* Strong understanding of Cybersecurity and data management principles.
$56k-71k yearly est. 17d ago
Director of Information Security Assurance
HCA 4.5
Information security analyst job in Charleston, SC
is incentive eligible. Introduction Do you have the career opportunities as a Director of InformationSecurity Assurance you want with your current employer? We have an exciting opportunity for you to join HCA Healthcare which is part of the nations leading provider of healthcare services, HCA Healthcare.
Benefits
HCA Healthcare offers a total rewards package that supports the health, life, career and retirement of our colleagues. The available plans and programs include:
* Comprehensive medical coverage that covers many common services at no cost or for a low copay. Plans include prescription drug and behavioral health coverage as well as free telemedicine services and free AirMed medical transportation.
* Additional options for dental and vision benefits, life and disability coverage, flexible spending accounts, supplemental health protection plans (accident, critical illness, hospital indemnity), auto and home insurance, identity theft protection, legal counseling, long-term care coverage, moving assistance, pet insurance and more.
* Free counseling services and resources for emotional, physical and financial wellbeing
* 401(k) Plan with a 100% match on 3% to 9% of pay (based on years of service)
* Employee Stock Purchase Plan with 10% off HCA Healthcare stock
* Family support through fertility and family building benefits with Progyny and adoption assistance.
* Referral services for child, elder and pet care, home and auto repair, event planning and more
* Consumer discounts through Abenity and Consumer Discounts
* Retirement readiness, rollover assistance services and preferred banking partnerships
* Education assistance (tuition, student loan, certification support, dependent scholarships)
* Colleague recognition program
* Time Away From Work Program (paid time off, paid family leave, long- and short-term disability coverage and leaves of absence)
* Employee Health Assistance Fund that offers free employee-only coverage to full-time and part-time colleagues based on income.
Learn more about Employee Benefits
Note: Eligibility for benefits may vary by location.
Our teams are a committed, caring group of colleagues. Do you want to work as a(an) Director of InformationSecurity Assurance where your passion for creating positive patient interactions is valued? If you are dedicated to caring for the well-being of others, this could be your next opportunity. We want your knowledge and expertise!
Job Summary
The Director of InformationSecurity Assurance (DISA) leads the Information Protection & Security (IPS) program for their assigned area of responsibility, including: driving consistency and visibility of risk management activities; working with key stakeholders to protect patients and prevent data loss; and partnering with leadership to reduce or eliminate risky workforce behaviors. This role is responsible for helping business and IT leadership, as well as the colleagues, comply with IPS requirements while meeting patient care and business needs.
This position oversees the assessment of controls and works with appropriate leadership to ensure any deficiencies are addressed. They manage operational processes that monitor and respond to potential security events. They are also responsible for the planning, communication, and/or oversight of IPS initiatives, to ensure consistent program implementation and efficient resource use. This role requires extensive focus on building and expanding relationships with key stakeholders such as business and IT leadership; workforce members; physicians; local IT teams; business owners; vendors; and other people and entities who support IPS objectives and activities. DISAs may have management responsibility for one or more staff members, who are each responsible for an assigned aspect of IPS program as defined by the DISA. The DISA must have a combination of skills including strong written and verbal communication skills, interpersonal skills, and the ability to influence, guide, and/or lead others necessary to accomplish IPS goals.
This role will function as the Business InformationSecurity Officer (BISO) fort the South Atlantic Divisions acute care hospitals.
Major Responsibilities
Risk Management
* Implement and manage risk management activities to facilitate effective, efficient, and standardized approach to align with the IPS program
* Identify, establish, and maintain strategic relationships with key stakeholders to help accomplish IPS objectives.
* Lead their IPS risk management program, using corporate-provided tools and templates, to assure the presence and effectiveness of administrative, technical, and physical controls.
* Partner with appropriate leadership -- including Facility Privacy Officials (FPO), Ethics & Compliance Officers (ECO), IT Directors, and physical security leaders -- to respond timely to time-sensitive information requests, by providing evidence of security controls.
* Guide risk-based decisions by appropriate decision-makers that focus on preventing or correcting identified security risks through implementation of reasonable controls.
* Provide leadership and oversight for acquisition or divestiture due diligence efforts
* Represent IPS needs in local strategic planning, budgeting, and work prioritization.
* Collaborate with other IPS leaders to ensure consistency of IPS program and solutions.
Issues Tracking and Resolution
* Manage operational processes that monitor and respond to potential security threats.
* Partner with corporate departments and/or external entities (e.g., law enforcement) as required to facilitate rapid response to security events.
* Partner with HR Director, FPO, Legal, and ECO on cross-disciplinary incident investigation and reporting.
* Partner with IT colleagues to assure ongoing maturity of IT operational security controls.
* Lead follow-up education and consultation activities for workforce members with risky behaviors and/or behaviors that violate IPS policies and standards.
Execution
* Round on leadership and colleagues to build relationships necessary to influence decisions that protect the company and educate workforce on how to reduce or eliminate risky behaviors.
* Lead and coordinate the implementation and adoption of process and technology changes necessary to support IPS program goals and strategic objectives.
* Oversee processes for review and approval of security exception requests.
Vendor Systems Security
* Ensure proper vendor contracts and security terms are in place for systems, devices, and services.
* Partner with appropriate business and IT leadership to help ensure systems, services, and devices receive appropriate assessments and remediation as part of local on-boarding processes.
* Partner with business and IT leadership to ensure proper controls are in place for existing vendor-maintained solutions.
Communication
* Coordinate with local HR and training departments to ensure that periodic workforce training includes company-required IPS content.
* Facilitate, and lead where appropriate, proactive IPS communication and awareness activities.
Staff Development
* Recruit and manage IPS staff.
* Ensure appropriate training and development programs are utilized to attract, retain, and develop personnel required to support the IPS program.
* Participate in succession planning activities.
Education & Experience:
* Bachelors degree Required
* Masters degree Preferred
* 7+ years of experience in a relevant field Required
* 7+ years of experience in security risk management, informationsecurity domains, and/or hospital operations. Preferred
* 3+ years of experience in management Required
Licenses, Certifications, & Training:
* CISSP, CISA, HCISPP, CHC, CHPC, CHSP, CISM or other relevant certifications in informationsecurity or privacy preferred
Additional Information:
* Must live in or be willing to relocate to the Greater Charleston, SC area
* Up to 50% of travel withing the South Atlantic Division and Corporate Headquarters located in Nashville, TN
HCA Healthcare has been recognized as one of the Worlds Most Ethical Companies by the Ethisphere Institute more than ten times. In recent years, HCA Healthcare spent an estimated 3.7 billion in cost for the delivery of charitable care, uninsured discounts, and other uncompensated expenses.
"Bricks and mortar do not make a hospital. People do."- Dr. Thomas Frist, Sr.
HCA Healthcare Co-Founder
If you are looking for an opportunity that provides satisfaction and personal growth, we encourage you to apply for our Director of InformationSecurity Assurance opening. We promptly review all applications. Highly qualified candidates will be contacted for interviews. Unlock the possibilities and apply today!
We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
$94k-111k yearly est. 60d+ ago
Information System Security Officer
Ifas LLC
Information security analyst job in Charleston, SC
The U.S. Department of State (DoS), Comptroller and Global Financial Services (CGFS), Chief Information Officer, Information Systems Security Office (CGFS/CIO/ISSO) requires the contractor to provide analytical and coordination support in the Information Systems Security Office (ISSO) as a SecurityAnalyst in applying interrelationships of multiple Cybersecurity specialties; IT architecture; new IA developments and applications; emerging technologies and their applications to business processes; IT security concepts, standards, and methods; project management principles and methods.
Minimum Requirements
Four-year degree in computer science, business, or closely related area.
Technical certification in computer systems security and a minimum of 5 years' experience in intrusion detection, vulnerability assessments, and network diagnostics.
Experience with DoS computer security policies and guidelines.
Security+ certification is required; CompTIA+ certification is preferred.
Job Responsibilities
CGFS Charleston ISSO Information Assurance and Risk Management Framework (RMF).
User creation and conditional email assignment of user and administrative accounts on CGFS General Support Systems.
Active role in network and systems design to ensure that appropriate systems security policies and procedures are contemplated and introduced into designs at the outset.
Assess breaches of security to determine their impact on system operations and the confidentiality, integrity, and reliability of the information stored and manipulated within the system. Applies findings to the development of corrective measures and user awareness.
Creation and maintenance of users for CGFS Financial Applications.
Creation and updating of Treasury Keys for supported applications.
Storing and distribution of classified peripheral devices.
Creation and maintenance of network drive folder file permissions.
Documenting visiting Government and Non-Government visitor's laptops.
Support internal and external access management audits.
Create and maintain ISO 9001 documentation for engineering and access management efforts Ability to communicate technical as well as non-technical information clearly, both orally and in writing.
Brief and maintain documentation for all users on automated information systems (AIS).
SharePoint development and maintenance.
Provide tier III support for all Information Systems Security.
Create, modify, and delete user accounts on automated information systems.
Security Clearance Requirement
All contractors supporting this Department must be able to either possess or obtain a security clearance of “Top Secret/SCI.”
Important note to consider
: A Secret Clearance will open a lot of other doors for your career in the Government to include possibilities of being hired directly.
Work Schedule
The employee will work an 8-hour shift between the hours of 6:15 am to 6:00 pm with a non-compensated 45-minute lunch (See your Project Manager for work schedule and department policies). Additional hours may be required and must be authorized by your Project Manager and DoS Management. This position requires 5 days on-site.
Software Systems Utilized:
Basic knowledge and experience with Windows 2012/2016/or future elaborations Server network environment.
Basic knowledge and experience on personal computers running Windows 10 or future elaborations workstation in a Windows network environment.
Experience with PC workstation operations including word processing, spreadsheets, and electronic mail, as well as knowledge of Windows 10 or future elaborations system internals such as the registry.
Ability to communicate technical as well as non-technical information clearly, both orally and in writing.
Formal Job-Specific Training Requirements:
IA 201 - Information Assurance for System Administrators
Our Most Successful Employees in this Position Demonstrate:
An understanding of the mission and business functions of the organization.
An ability to build relationships with key personnel who have authority or ability to ensure compliance with security laws, regulations, guidance, and requirements.
An ability to troubleshoot issues while maintaining appropriate operational security posture.
$60k-82k yearly est. Auto-Apply 60d+ ago
Information System Security Officer
IFAS LLC
Information security analyst job in Charleston, SC
Job Description
The U.S. Department of State (DoS), Comptroller and Global Financial Services (CGFS), Chief Information Officer, Information Systems Security Office (CGFS/CIO/ISSO) requires the contractor to provide analytical and coordination support in the Information Systems Security Office (ISSO) as a SecurityAnalyst in applying interrelationships of multiple Cybersecurity specialties; IT architecture; new IA developments and applications; emerging technologies and their applications to business processes; IT security concepts, standards, and methods; project management principles and methods.
Minimum Requirements
Four-year degree in computer science, business, or closely related area.
Technical certification in computer systems security and a minimum of 5 years' experience in intrusion detection, vulnerability assessments, and network diagnostics.
Experience with DoS computer security policies and guidelines.
Security+ certification is required; CompTIA+ certification is preferred.
Job Responsibilities
CGFS Charleston ISSO Information Assurance and Risk Management Framework (RMF).
User creation and conditional email assignment of user and administrative accounts on CGFS General Support Systems.
Active role in network and systems design to ensure that appropriate systems security policies and procedures are contemplated and introduced into designs at the outset.
Assess breaches of security to determine their impact on system operations and the confidentiality, integrity, and reliability of the information stored and manipulated within the system. Applies findings to the development of corrective measures and user awareness.
Creation and maintenance of users for CGFS Financial Applications.
Creation and updating of Treasury Keys for supported applications.
Storing and distribution of classified peripheral devices.
Creation and maintenance of network drive folder file permissions.
Documenting visiting Government and Non-Government visitor's laptops.
Support internal and external access management audits.
Create and maintain ISO 9001 documentation for engineering and access management efforts Ability to communicate technical as well as non-technical information clearly, both orally and in writing.
Brief and maintain documentation for all users on automated information systems (AIS).
SharePoint development and maintenance.
Provide tier III support for all Information Systems Security.
Create, modify, and delete user accounts on automated information systems.
Security Clearance Requirement
All contractors supporting this Department must be able to either possess or obtain a security clearance of “Top Secret/SCI.”
Important note to consider
: A Secret Clearance will open a lot of other doors for your career in the Government to include possibilities of being hired directly.
Work Schedule
The employee will work an 8-hour shift between the hours of 6:15 am to 6:00 pm with a non-compensated 45-minute lunch (See your Project Manager for work schedule and department policies). Additional hours may be required and must be authorized by your Project Manager and DoS Management. This position requires 5 days on-site.
Software Systems Utilized:
Basic knowledge and experience with Windows 2012/2016/or future elaborations Server network environment.
Basic knowledge and experience on personal computers running Windows 10 or future elaborations workstation in a Windows network environment.
Experience with PC workstation operations including word processing, spreadsheets, and electronic mail, as well as knowledge of Windows 10 or future elaborations system internals such as the registry.
Ability to communicate technical as well as non-technical information clearly, both orally and in writing.
Formal Job-Specific Training Requirements:
IA 201 - Information Assurance for System Administrators
Our Most Successful Employees in this Position Demonstrate:
An understanding of the mission and business functions of the organization.
An ability to build relationships with key personnel who have authority or ability to ensure compliance with security laws, regulations, guidance, and requirements.
An ability to troubleshoot issues while maintaining appropriate operational security posture.
$60k-82k yearly est. 9d ago
Cyber Engineer III
ITC Defense Corp
Information security analyst job in Charleston, SC
Location: Charleston, SC Cyber Engineer III Overview: ITC Defense is seeking to hire a Cyber Engineer III in support of U.S. Navy /Air Force CYP (Child Youth Programs) CCTV Lifecycle Support Service program. Responsibilities:
Design, implement, and maintain security controls and architectures across networks, systems, and applications in alignment with NIST, ISO 27001, CIS, and Zero Trust principles.
Evaluate, integrate, and manage security tools and technologies, including SIEM, SOAR, EDR, IDS/IPS, DLP, and IAM solutions.
Lead or support advanced threat detection, incident response, forensic analysis, and remediation activities.
Conduct threat modeling, security design reviews, and root cause analysis for new and existing systems.
Perform system security assessments, risk analyses, and vulnerability management, including remediation tracking.
Coordinate and validate penetration testing efforts and report on security metrics and risk posture.
Support compliance, audit, and ATO activities (e.g., NIST 800-53, NIST 800-171, CMMC, FedRAMP).
Develop, maintain, and improve security documentation, policies, procedures, and incident response playbooks.
Other duties as assigned.
Minimum Qualifications:
Master's degree in Cybersecurity, Computer Engineering, Electrical Engineering, Electronics Engineering, or Mathematics with a concentration in Computer Science (or equivalent).
Minimum of ten (10) years of demonstrated experience preparing, implementing, and ensuring compliance with cybersecurity policies and standards.
DoD 8570.1M-compliant certification at one or more of the following levels, as required by PWS tasking:
Information Assurance Management (IAM) Level I
Information Assurance Technical (IAT) Level I
Information Assurance System Architect and Engineer (IASAE) Level I
Experience supporting Assessment and Authorization (A&A) activities, including planning, implementation, and ongoing compliance.
Experience designing, upgrading, monitoring, and maintaining cybersecurity measures to improve cyber defense and ensure network resiliency.
Proven experience assessing cybersecurity vulnerabilities, performing risk analysis, and developing and implementing remediation or risk mitigation strategies.
Experience ensuring security controls are in place to protect digital files and electronic infrastructure.
Experience responding to and reporting on cybersecurity incidents and security breaches.
Preferred Qualifications:
Experience with NIST, CMMC, Zero Trust, and cloud security frameworks (AWS, Azure, GCP).
Hands-on expertise with security tools (SIEM, SOAR, EDR, IDS/IPS, DLP, IAM) and vulnerability management.
Strong analytical, problem-solving, and critical-thinking skills to assess risks and develop solutions.
Excellent communication, collaboration, and mentoring abilities for cross-functional teams.
Why work at ITC Defense:
Employer Supplemented Health Insurance
Employer Paid Dental and Vision Insurance
Employer Paid Life and AD&D Insurance
3% Biweekly 401(k) Contribution
Paid Time Off
Tuition and Certification Reimbursement
Competitive Salaries with Performance Incentives
A positive working environment with supportive teammates and leadership
ITC Defense Corp. is committed to creating a diverse environment and is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or protected veteran status. U.S. Citizenship is required for most positions. This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. Duties, responsibilities and activities may change, or new ones may be assigned at any time with or without notice. Employment with ITC is at-will. For further information on our equal opportunity protections as part of the employment process, please see **************************************************************** and ***********************************************************************************************
ACCESSIBILITY- Candidates must be able to perform the essential functions of the position satisfactorily and that, if requested, reasonable accommodation may be made to enable employees with disabilities to perform the essential functions of their job, absent undue hardship. If you are a qualified individual with a disability or a disabled veteran, you have the right to request a reasonable accommodation for purposes of participating in the application/selection process with ITC. Please refer to our website ************************** for further information on all our EEO/VEVRAA policies.
Thank you for your interest in ITC Defense!
Powered by JazzHR
jPDNgXKqeE
$74k-101k yearly est. 28d ago
Cyber Engineer III
ITC Defense
Information security analyst job in Charleston, SC
Cyber Engineer III Overview: ITC Defense is seeking to hire a Cyber Engineer III in support of U.S. Navy /Air Force CYP (Child Youth Programs) CCTV Lifecycle Support Service program. Responsibilities:
Design, implement, and maintain security controls and architectures across networks, systems, and applications in alignment with NIST, ISO 27001, CIS, and Zero Trust principles.
Evaluate, integrate, and manage security tools and technologies, including SIEM, SOAR, EDR, IDS/IPS, DLP, and IAM solutions.
Lead or support advanced threat detection, incident response, forensic analysis, and remediation activities.
Conduct threat modeling, security design reviews, and root cause analysis for new and existing systems.
Perform system security assessments, risk analyses, and vulnerability management, including remediation tracking.
Coordinate and validate penetration testing efforts and report on security metrics and risk posture.
Support compliance, audit, and ATO activities (e.g., NIST 800-53, NIST 800-171, CMMC, FedRAMP).
Develop, maintain, and improve security documentation, policies, procedures, and incident response playbooks.
Other duties as assigned.
Minimum Qualifications:
Master's degree in Cybersecurity, Computer Engineering, Electrical Engineering, Electronics Engineering, or Mathematics with a concentration in Computer Science (or equivalent).
Minimum of ten (10) years of demonstrated experience preparing, implementing, and ensuring compliance with cybersecurity policies and standards.
DoD 8570.1M-compliant certification at one or more of the following levels, as required by PWS tasking:
Information Assurance Management (IAM) Level I
Information Assurance Technical (IAT) Level I
Information Assurance System Architect and Engineer (IASAE) Level I
Experience supporting Assessment and Authorization (A&A) activities, including planning, implementation, and ongoing compliance.
Experience designing, upgrading, monitoring, and maintaining cybersecurity measures to improve cyber defense and ensure network resiliency.
Proven experience assessing cybersecurity vulnerabilities, performing risk analysis, and developing and implementing remediation or risk mitigation strategies.
Experience ensuring security controls are in place to protect digital files and electronic infrastructure.
Experience responding to and reporting on cybersecurity incidents and security breaches.
Preferred Qualifications:
Experience with NIST, CMMC, Zero Trust, and cloud security frameworks (AWS, Azure, GCP).
Hands-on expertise with security tools (SIEM, SOAR, EDR, IDS/IPS, DLP, IAM) and vulnerability management.
Strong analytical, problem-solving, and critical-thinking skills to assess risks and develop solutions.
Excellent communication, collaboration, and mentoring abilities for cross-functional teams.
Why work at ITC Defense:
Employer Supplemented Health Insurance
Employer Paid Dental and Vision Insurance
Employer Paid Life and AD&D Insurance
3% Biweekly 401(k) Contribution
Paid Time Off
Tuition and Certification Reimbursement
Competitive Salaries with Performance Incentives
A positive working environment with supportive teammates and leadership
ITC Defense Corp. is committed to creating a diverse environment and is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or protected veteran status. U.S. Citizenship is required for most positions. This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. Duties, responsibilities and activities may change, or new ones may be assigned at any time with or without notice. Employment with ITC is at-will. For further information on our equal opportunity protections as part of the employment process, please see **************************************************************** and ***********************************************************************************************
ACCESSIBILITY- Candidates must be able to perform the essential functions of the position satisfactorily and that, if requested, reasonable accommodation may be made to enable employees with disabilities to perform the essential functions of their job, absent undue hardship. If you are a qualified individual with a disability or a disabled veteran, you have the right to request a reasonable accommodation for purposes of participating in the application/selection process with ITC. Please refer to our website ************************** for further information on all our EEO/VEVRAA policies.
Thank you for your interest in ITC Defense!
$74k-101k yearly est. Auto-Apply 27d ago
Security Engineer - Secure Software Development
Sedgwick 4.4
Information security analyst job in Charleston, SC
By joining Sedgwick, you'll be part of something truly meaningful. It's what our 33,000 colleagues do every day for people around the world who are facing the unexpected. We invite you to grow your career with us, experience our caring culture, and enjoy work-life balance. Here, there's no limit to what you can achieve.
Newsweek Recognizes Sedgwick as America's Greatest Workplaces National Top Companies
Certified as a Great Place to Work
Fortune Best Workplaces in Financial Services & Insurance
Security Engineer - Secure Software Development
Security Engineer - Secure Software Development
**PRIMARY PURPOSE OF THE ROLE:** To manage the implementation of security measures to protect company data, networks, and computer systems. To focus on executing security fundamentals for threat detection, investigation, and response efforts.
**ARE YOU AN IDEAL CANDIDATE?** We are looking for enthusiastic candidates who thrive in a collaborative environment, who are driven to deliver great work, are customer-oriented and are naturally empathetic.
**ESSENTIAL RESPONSIBLITIES MAY INCLUDE**
+ Engineers, implements and monitors security measures for the protection of computer systems, networks and information.
+ Identifies and defines system security requirements.
+ Designs computer security architecture and develops detailed cyber security designs.
+ Prepares and documents standard operating procedures and protocols.
+ Configures and troubleshoots security infrastructure devices.
+ Develops technical solutions and new security tools to assist in mitigating security vulnerabilities and automating repeatable tasks.
+ Leads IT groups and business units as necessary in troubleshooting compatibility issues between security tools and business or productivity programs.
+ Performs analysis of suspected malicious code and other software or programs and provides written or verbal analysis to management.
+ Analyzes client and customer needs as required and provides clear and concise reports to leadership.
+ Works closely with management on assigned projects from inception through implementation ensuring adequate internal communication and user involvement is maintained.
**QUALIFICATIONS**
Eight (8) years of encryption technologies/algorithms, digital forensics, network topologies, and access controls experience or equivalent combination of educated and experience required.
**Skills & Knowledge**
+ Knowledge of TCP/IP services
+ Knowledge of audit and compliance
+ Knowledge of vulnerability management
+ Knowledge of penetration testing
+ Knowledge of various operating systems
+ Knowledge of desktop productivity software
+ Knowledge of Carbon Black Protection
+ Knowledge of Symantec Endpoint Protection and host data loss prevention
+ Knowledge of information technology security frameworks
+ Excellent oral and written communication skills, including presentation skills
+ PC literate, including Microsoft Office products
+ Analytical and interpretive skills
+ Strong organizational skills
+ Excellent interpersonal skills
+ Ability to create and complete comprehensive, accurate and constructive written reports
+ Ability to work in a team environment
+ Ability to meet or exceed Performance Competencies
**Proficient in Snyk for Application Security:** Demonstrated expertise in integrating Snyk into CI/CD pipelines to proactively identify and remediate vulnerabilities in open-source dependencies, container images, and infrastructure as code. Skilled in leveraging Snyk's developer-first tools to maintain secure codebases, enforce security policies, and ensure compliance with industry standards. Experienced in configuring automated scans, interpreting results, and collaborating with development teams to implement effective remediation strategies, contributing to a robust DevSecOps culture.
**TAKING CARE OF YOU**
+ Career development and promotional growth opportunities
+ A diverse and comprehensive benefits offering including medical, dental vision, 401K, PTO and more
\#LI-TS1
Work environment requirements for entry-level opportunities include -
Physical: Computer keyboarding
Auditory/visual: Hearing, vision and talking
Mental: Clear and conceptual thinking ability; excellent judgement and discretion; ability to meet deadlines
Travels as required
The statements contained in this document are intended to describe the general nature and level of work being performed by a colleague assigned to this description. They are not intended to constitute a comprehensive list of functions, duties, or local variances. Management retains the discretion to add or to change the duties of the position at any time.
Sedgwick is an Equal Opportunity Employer and a Drug-Free Workplace.
**If you're excited about this role but your experience doesn't align perfectly with every qualification in the job description, consider applying for it anyway! Sedgwick is building a diverse, equitable, and inclusive workplace and recognizes that each person possesses a unique combination of skills, knowledge, and experience. You may be just the right candidate for this or other roles.**
**Sedgwick is the world's leading risk and claims administration partner, which helps clients thrive by navigating the unexpected. The company's expertise, combined with the most advanced AI-enabled technology available, sets the standard for solutions in claims administration, loss adjusting, benefits administration, and product recall. With over 33,000 colleagues and 10,000 clients across 80 countries, Sedgwick provides unmatched perspective, caring that counts, and solutions for the rapidly changing and complex risk landscape. For more, see** **sedgwick.com**
$78k-100k yearly est. 60d+ ago
Security Engineer
Barndoor Ai 4.1
Information security analyst job in Charleston, SC
Who we are We help enterprises unlock the future of AI, and realize untapped potential through a thoughtful approach to access, security, and scalability. We're a growing startup at the forefront of enterprise GenAI infrastructure. We are building a next-generation platform that empowers enterprises to securely adopt and manage advanced AI workflows. We know that successful technology adoption hinges on secure and appropriate access. Our founding team helped shape past technology revolutions - from pioneering secure API Management during the rise of mobile apps to driving enterprise AI adoption across Fortune 100 enterprises.
At the core of all we do is our team. We're made up of builders, creators, and curious minds, on a mission to make AI safer, more responsible. Just as we are thoughtful about our products, we're thoughtful about how we build teams and our culture. We believe with each addition to the team, culture can be enhanced. Take a look at what we value in our About Barndoor page. If this speaks to you, we'd love to hear from you!
How you'll make an impact Security is foundational to everything we build. As our core Security Engineer, you will directly continue to shape the architecture, policies, and culture that scale our secure software. The systems you design will enable our customers-enterprises with complex regulatory and operational needs-to safely deploy AI-powered agents at scale. Your work won't just prevent breaches-it will enable trust, unlock innovation, and differentiate our platform in the market.
What You'll Be Working OnWhile all roles have fluidity, here's a sense of some of what you might work on at any given time.
Core responsibilities and role responsibilities include:
Responsibilities
Audit and strengthen OAuth 2.0 and OIDC token flows across internal proxies, the control plane, and third-party integrations
Identify and mitigate common and emerging threats in delegated authentication workflows
Review and co-design REST, WebSocket, and streaming APIs with strong boundaries, secure defaults, and least-privilege access models
Help define system boundaries for multi-agent, multi-tenant orchestration
Integrate and tune automated CVE, SCA, and IaC scanning tools into CI/CD pipelines
Convert security findings into high-signal engineering tickets with practical remediation paths
Lead lightweight, iterative threat models for new features and services
Define internal security baselines and policies, and mentor others to promote a strong security culture
Favor automation-friendly controls over burdensome manual security processes
Contribute to compliance initiatives such as SOC 2 and ISO 27001, supporting scalable security programs
Leverage deep expertise in OAuth 2.0/OIDC with real-world experience securing authentication flows in production systems
Design secure APIs, review system architectures, and implement scalable authentication and authorization models
Apply hands-on experience with supply chain and container security tools such as Trivy, Snyk, Grype, and Terraform scanning
Demonstrate familiarity with modern identity platforms like Auth0, Okta, and Keycloak, and with Zero Trust models
Requirements
5+ years in application or platform security roles, ideally in high-growth SaaS or cloud-native environments.
Deep expertise in OAuth 2.0/OIDC, including real-world experience securing auth flows in production systems.
Strong track record designing secure APIs, reviewing system architectures, and implementing scalable authN/authZ models.
Hands-on experience with supply chain and container security tools (e.g., Trivy, Snyk, Grype, Terraform scanning).
Familiarity with modern identity platforms (Auth0, Okta, Keycloak) or Zero Trust models.
Proven success contributing to SOC 2, ISO 27001, and overall compliance programs.
Experience working with AI/ML platforms or agent-based architectures.
Comfortable collaborating with infrastructure, product, and legal teams to align security priorities with company goals.
Passion for mentorship, documentation, and building a strong security culture without over-engineering.
Soft Skills That Matter Here
Startup Agility: You thrive in fast-paced, evolving environments and are quick to take initiative without waiting for perfect clarity.
Ownership Mentality: You see a gap and step in-you don't wait to be told what needs securing, you go find it.
Collaborative Spirit: You work well across functions-engineering, product, sales, and beyond-to elevate the entire team's security awareness.
Pragmatic Mindset: You balance ideal security outcomes with real-world constraints, always looking for simple, sustainable solutions.
Mentorship and Influence: You uplift teammates by sharing knowledge and helping others build security into their everyday thinking.
Travel RequirementsTeam connection is an important part of our culture. With a remote-friendly structure, we do require that our team be available to travel for in-person collaboration sessions and meetings. Some roles may have more travel than others. Typical team meetups are every 6-8 weeks, however, this may vary depending on team and business needs. We work to plan out our travel schedules in advance to give as much notice as possible.
Equal Opportunity EmployerWe celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate based on race, color, ancestry, national origin, citizenship, religion or creed, sex (including pregnancy, childbirth, and related conditions), sexual orientation, gender identity or expression, age, marital status, veteran status, disability, genetic information, or any other legally protected status. We believe that diverse teams build better products, and we strive to ensure that our hiring, development, and advancement practices are fair, equitable, and welcoming for everyone.
$81k-112k yearly est. Auto-Apply 60d+ ago
IT Security Analyst
Hyundai Mobis
Information security analyst job in Savannah, GA
We are seeking a seasoned IT SecurityAnalyst to support the design, implementation, and optimization of our regional security environment at Hyundai MOBIS Corporate Center America (MCCA) supporting our operations across the United States, Canada, Mexico, and Brazil. This position supports designing and implementations region-specific security frameworks by translating global headquarters standards into locally compliant IT guidelines, leads comprehensive risk assessments and incident response efforts to identify vulnerabilities, prioritize threats, and minimize business impact. This job position will be within MOBIS Corporate Center America.
Responsibilities
(To perform within this position successfully, the incumbent must be able to perform each essential duty satisfactorily. Other duties may be assigned.)
Act as Liaison for global IT Security Initiatives:
Evaluate existing and planned security solutions for effectiveness, manageability, and compliance with regulations
Translate global headquarters standards and roadmaps into optimized regional IT guidelines
Coordinate and support headquarters-led security audits across the Americas to assess and strengthen the region's security posture.
Advise stakeholders on new initiatives and existing environments to ensure alignment with local regulatory requirements
Security Risk Management:
Collaborate with security operation teams during security incident to minimize business impact
Conduct comprehensive physical security architecture reviews to identify gaps and develop risk management plans.
Partner with business and IT leaders to identify and prioritize critical functions, aligning mitigation strategies with organizational objectives.
Maintain and update the security risk register, track remediation efforts, and drive closure of outstanding risk items.
Operational Excellence:
Assess regional IT physical security maturity and implement continuous improvement initiatives
Collaborate with Site Reliability Engineering and IT Infrastructure to maximize service availability and resilience
Assist defining and advocating regional IT security KPIs based on global metrics and local priorities
Support implementation of physical security solutions for new business entities
Supervisory Responsibilities:
No
Qualifications
(The requirements listed below are representative of the knowledge, skills, and/or ability required and preferred for this position.)
Required Education & Experience:
Bachelor's degree in computer science, Information Technology, or a related field.
5+ years of experience as an IT security engineer or similar role in a corporate environment (automotive industry preferred).
2+ years of physical security management
2+ years of project management experience
Required Knowledge, Skills, & Abilities:
Excellent verbal and written communication skill in English
Ability to learn and adopt complex technology concepts and solutions
Hands-on expertise with physical security infrastructure (CCTV, NVR, badge systems).
Deep understanding of security frameworks and standards, such as NIST CSF, ISO/IEC 27001, CIS Controls
Hands-on experience with security technologies such as SIEM, IDS/IPS, firewalls, and vulnerability management tools
Strong knowledge of network design and protocols, including routing, switching, and firewall technologies
Proven track record of maintaining compliance with global and local regulations in relation to security
Preferred Education & Experience:
Master's degree in a relevant technical or business discipline
Bilingual speaker (English and Korean) is preferred.
$66k-94k yearly est. Auto-Apply 60d+ ago
Information Assurance (ISSO)
Scientific Research Corporation 4.5
Information security analyst job in North Charleston, SC
Scientific Research Corporation is seeking a qualified Information System Security Officer (ISSO) to support Department of Defense (DoD) cybersecurity initiatives. The ISSO will play a critical role in maintaining system accreditation, ensuring compliance with federal security standards, and safeguarding mission-critical assets in secure cloud and enterprise environments.
Job Duties:
Maintaining system Authority to Operate (ATO) by executing all requirements under the NIST Risk Management Framework (RMF); Including conducting annual security control assessments and reviews, documenting findings, and implementing corrective actions for identified vulnerabilities
Managing and maintaining system documentation and security artifacts within the Enterprise Mission Assurance Support Service (eMASS)
Developing and updating the System Security Plan (SSP) and other required cybersecurity documentation; and monitoring emerging threats and vulnerabilities to recommend and implement security enhancements that mitigate risk
#LI-SF1
FILLING THIS POSITION IS CONTINGENT UPON FUNDING
Requirements
Proven experience with DoD cybersecurity standards and RMF processes
Proficiency in eMASS and SSP development
Strong analytical, documentation, and communication skills
Ability to work independently and collaboratively in high-security environments
Desired Skills
CISSP (Certified Information Systems Security Professional)
CAP (Certified Authorization Professional)
Security+ (CompTIA)
CISM (Certified InformationSecurity Manager)
CEH (Certified Ethical Hacker)
Master's Degree in Engineering, Computer Science or related technical field, a minimum of twelve years' experience including five years of leadership roles or an equivalent combination of education and experience
Clearance Information
SRC IS A CONTRACTOR FOR THE U.S. GOVERNMENT, THIS POSITION WILL REQUIRE U.S. CITIZENSHIP AS WELL AS, A U.S. GOVERNMENT SECURITY CLEARANCE AT THE SECRET LEVEL WITH TOP SECRET ELIGIBILITY
Travel Requirements
None
About Us
Scientific Research Corporation is an advanced information technology and engineering company that provides innovative products and services to government and private industry, as well as independent institutions. At the core of our capabilities is a seasoned team of highly skilled engineers and scientists with multidisciplinary backgrounds. This team is challenged daily to provide cutting edge technology solutions to our clients.
SRC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with a company match, life insurance, vacation and sick paid time off accruals starting at 10 days of vacation and 5 days of sick leave annually, 11 paid holidays, tuition reimbursement, and a work environment that encourages excellence and more. For positions requiring a security clearance, selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
EEO
Scientific Research Corporation is an equal opportunity employer that does not discriminate in employment.
All qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other protected characteristic under federal, state or local law.
Scientific Research Corporation endeavors to make ************** accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact *************** for assistance. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.
$51k-70k yearly est. Auto-Apply 33d ago
Director of Information Security Assurance
HCA Healthcare 4.5
Information security analyst job in Charleston, SC
is incentive eligible. **Introduction** Do you have the career opportunities as a Director of InformationSecurity Assurance you want with your current employer? We have an exciting opportunity for you to join HCA Healthcare which is part of the nation's leading provider of healthcare services, HCA Healthcare.
**Benefits**
HCA Healthcare offers a total rewards package that supports the health, life, career and retirement of our colleagues. The available plans and programs include:
+ Comprehensive medical coverage that covers many common services at no cost or for a low copay. Plans include prescription drug and behavioral health coverage as well as free telemedicine services and free AirMed medical transportation.
+ Additional options for dental and vision benefits, life and disability coverage, flexible spending accounts, supplemental health protection plans (accident, critical illness, hospital indemnity), auto and home insurance, identity theft protection, legal counseling, long-term care coverage, moving assistance, pet insurance and more.
+ Free counseling services and resources for emotional, physical and financial wellbeing
+ 401(k) Plan with a 100% match on 3% to 9% of pay (based on years of service)
+ Employee Stock Purchase Plan with 10% off HCA Healthcare stock
+ Family support through fertility and family building benefits with Progyny and adoption assistance.
+ Referral services for child, elder and pet care, home and auto repair, event planning and more
+ Consumer discounts through Abenity and Consumer Discounts
+ Retirement readiness, rollover assistance services and preferred banking partnerships
+ Education assistance (tuition, student loan, certification support, dependent scholarships)
+ Colleague recognition program
+ Time Away From Work Program (paid time off, paid family leave, long- and short-term disability coverage and leaves of absence)
+ Employee Health Assistance Fund that offers free employee-only coverage to full-time and part-time colleagues based on income.
Learn more about Employee Benefits (**********************************************************************
**_Note: Eligibility for benefits may vary by location._**
Our teams are a committed, caring group of colleagues. Do you want to work as a(an) Director of InformationSecurity Assurance where your passion for creating positive patient interactions is valued? If you are dedicated to caring for the well-being of others, this could be your next opportunity. We want your knowledge and expertise!
**Job Summary**
The Director of InformationSecurity Assurance (DISA) leads the Information Protection & Security (IPS) program for their assigned area of responsibility, including: driving consistency and visibility of risk management activities; working with key stakeholders to protect patients and prevent data loss; and partnering with leadership to reduce or eliminate risky workforce behaviors. This role is responsible for helping business and IT leadership, as well as the colleagues, comply with IPS requirements while meeting patient care and business needs.
This position oversees the assessment of controls and works with appropriate leadership to ensure any deficiencies are addressed. They manage operational processes that monitor and respond to potential security events. They are also responsible for the planning, communication, and/or oversight of IPS initiatives, to ensure consistent program implementation and efficient resource use. This role requires extensive focus on building and expanding relationships with key stakeholders such as business and IT leadership; workforce members; physicians; local IT teams; business owners; vendors; and other people and entities who support IPS objectives and activities. DISAs may have management responsibility for one or more staff members, who are each responsible for an assigned aspect of IPS program as defined by the DISA. The DISA must have a combination of skills including strong written and verbal communication skills, interpersonal skills, and the ability to influence, guide, and/or lead others necessary to accomplish IPS goals.
This role will function as the Business InformationSecurity Officer (BISO) fort the South Atlantic Division's acute care hospitals.
**Major Responsibilities**
**Risk Management**
+ Implement and manage risk management activities to facilitate effective, efficient, and standardized approach to align with the IPS program
+ Identify, establish, and maintain strategic relationships with key stakeholders to help accomplish IPS objectives.
+ Lead their IPS risk management program, using corporate-provided tools and templates, to assure the presence and effectiveness of administrative, technical, and physical controls.
+ Partner with appropriate leadership -- including Facility Privacy Officials (FPO), Ethics & Compliance Officers (ECO), IT Directors, and physical security leaders -- to respond timely to time-sensitive information requests, by providing evidence of security controls.
+ Guide risk-based decisions by appropriate decision-makers that focus on preventing or correcting identified security risks through implementation of reasonable controls.
+ Provide leadership and oversight for acquisition or divestiture due diligence efforts
+ Represent IPS needs in local strategic planning, budgeting, and work prioritization.
+ Collaborate with other IPS leaders to ensure consistency of IPS program and solutions.
**Issues Tracking and Resolution**
+ Manage operational processes that monitor and respond to potential security threats.
+ Partner with corporate departments and/or external entities (e.g., law enforcement) as required to facilitate rapid response to security events.
+ Partner with HR Director, FPO, Legal, and ECO on cross-disciplinary incident investigation and reporting.
+ Partner with IT colleagues to assure ongoing maturity of IT operational security controls.
+ Lead follow-up education and consultation activities for workforce members with risky behaviors and/or behaviors that violate IPS policies and standards.
**Execution**
+ Round on leadership and colleagues to build relationships necessary to influence decisions that protect the company and educate workforce on how to reduce or eliminate risky behaviors.
+ Lead and coordinate the implementation and adoption of process and technology changes necessary to support IPS program goals and strategic objectives.
+ Oversee processes for review and approval of security exception requests.
**Vendor Systems Security**
+ Ensure proper vendor contracts and security terms are in place for systems, devices, and services.
+ Partner with appropriate business and IT leadership to help ensure systems, services, and devices receive appropriate assessments and remediation as part of local on-boarding processes.
+ Partner with business and IT leadership to ensure proper controls are in place for existing vendor-maintained solutions.
**Communication**
+ Coordinate with local HR and training departments to ensure that periodic workforce training includes company-required IPS content.
+ Facilitate, and lead where appropriate, proactive IPS communication and awareness activities.
**Staff Development**
+ Recruit and manage IPS staff.
+ Ensure appropriate training and development programs are utilized to attract, retain, and develop personnel required to support the IPS program.
+ Participate in succession planning activities.
**Education & Experience:**
+ Bachelor's degree Required
+ Master's degree Preferred
+ 7+ years of experience in a relevant field Required
+ 7+ years of experience in security risk management, informationsecurity domains, and/or hospital operations. Preferred
+ 3+ years of experience in management Required
**Licenses, Certifications, & Training:**
+ CISSP, CISA, HCISPP, CHC, CHPC, CHSP, CISM or other relevant certifications in informationsecurity or privacy preferred
**Additional Information:**
+ Must live in or be willing to relocate to the Greater Charleston, SC area
+ Up to 50% of travel withing the South Atlantic Division and Corporate Headquarters located in Nashville, TN
HCA Healthcare has been recognized as one of the World's Most Ethical Companies by the Ethisphere Institute more than ten times. In recent years, HCA Healthcare spent an estimated $3.7 billion in cost for the delivery of charitable care, uninsured discounts, and other uncompensated expenses.
"Bricks and mortar do not make a hospital. People do."- Dr. Thomas Frist, Sr.
HCA Healthcare Co-Founder
If you are looking for an opportunity that provides satisfaction and personal growth, we encourage you to apply for our Director of InformationSecurity Assurance opening. We promptly review all applications. Highly qualified candidates will be contacted for interviews. **Unlock the possibilities and apply today!**
We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
$94k-111k yearly est. 60d+ ago
Information System Security Officer
Ifas LLC
Information security analyst job in Charleston, SC
Department
$60k-82k yearly est. Auto-Apply 60d+ ago
Security Engineer
HCA 4.5
Information security analyst job in Charleston, SC
Introduction Experience the HCA Healthcare difference where colleagues are trusted, valued members of our healthcare team. Grow your career with an organization committed to delivering respectful, compassionate care, and where the unique and intrinsic worth of each individual is recognized. Submit your application for the opportunity below: Security Engineer HCA Healthcare. This is a hybrid position and requires three days per week in the Division office and/or closest HCA Hospital within the Division.
HCA Healthcare offers a total rewards package that supports the health, life, career and retirement of our colleagues. The available plans and programs include:
* Comprehensive medical coverage that covers many common services at no cost or for a low copay. Plans include prescription drug and behavioral health coverage as well as free telemedicine services and free AirMed medical transportation.
* Additional options for dental and vision benefits, life and disability coverage, flexible spending accounts, supplemental health protection plans (accident, critical illness, hospital indemnity), auto and home insurance, identity theft protection, legal counseling, long-term care coverage, moving assistance, pet insurance and more.
* Free counseling services and resources for emotional, physical and financial wellbeing
* 401(k) Plan with a 100% match on 3% to 9% of pay (based on years of service)
* Employee Stock Purchase Plan with 10% off HCA Healthcare stock
* Family support through fertility and family building benefits with Progyny and adoption assistance.
* Referral services for child, elder and pet care, home and auto repair, event planning and more
* Consumer discounts through Abenity and Consumer Discounts
* Retirement readiness, rollover assistance services and preferred banking partnerships
* Education assistance (tuition, student loan, certification support, dependent scholarships)
* Colleague recognition program
* Time Away From Work Program (paid time off, paid family leave, long- and short-term disability coverage and leaves of absence)
* Employee Health Assistance Fund that offers free employee-only coverage to full-time and part-time colleagues based on income.
Learn more about Employee Benefits
Note: Eligibility for benefits may vary by location.
We are seeking a Security Engineer for our team to ensure that we continue to provide all patients with high quality, efficient care. Did you get into our industry for these reasons? We are an amazing team that works hard to support each other and are seeking a phenomenal addition like you who feels patient care is as meaningful as we do. We want you to apply!
Job Summary and Qualifications
The IPS Security Engineer will support Division and Facility Network/System Engineers and Administrators by analyzing a wide range of applications, network configurations, and security architectures to ensure the security, integrity, and regulatory compliance of critical information transmitted or stored within the enterprise. Their role is to facilitate the discovery of information and IT-related risks, apply critical thinking to assumptions and develop the right security position/priorities that: first, attain compliance; second, address the material risks to the company while allowing the business to attain its objectives. This position blends cybersecurity engineering with system infrastructure expertise to support risk management, threat mitigation, infrastructure reliability, and compliance with IT and security standards.
The IPS Security Engineer will work across multiple domains of informationsecurity (i.e. Security and Risk Management, Asset Security, Security Architecture and Engineering, Network Security, Identity and Access Management, Security Assessment and Testing, and Security Operations), providing consultation, assessments, and security/technical guidance to business units and IT teams.
Major Responsibilities:
* Risk Management and Security Consulting
* Serves as an internal informationsecurity consultant to the enterprise while balancing the needs of the business.
* Research and recommend solutions that meet security standards while ensuring functionality for business continuity.
* Drive and manage execution of corrective actions to address deficiencies identified during risk assessments.
* Translate security standards and regulatory requirements into actionable technical and business requirements.
* Lead and support the IPS program by assessing new applications and technologies and ensuring they are implemented in accordance with company standards
* Partner with appropriate stakeholders on vulnerability remediation
* Engage in Architecture Review Committee discussions to identify and address Third Party solution variance from company standards
* Support, coordinate, and manage incident response and investigation activities
* Evaluate and recommend security solutions that balance risk mitigation with business functionality
* Drive ongoing compliance with IPS policies, standards, and operational procedures
* Serve as an internal security consultant across business units
* Manage operational processes that monitor and respond to potential security threats
Security Engineering & Architecture
* Evaluate new and proposed security technologies and assist in their integration
* Assist in the design and implementation of secure network, application, and system architectures.
* Partner with IT colleagues to assure ongoing maturity of IT operational security controls.
* Participate in the development and testing of disaster recovery and contingency plans
* Security Operations and Threat Management
* Partner with corporate and local departments as required to facilitate rapid response to cybersecurity events.
* Maintain awareness of emerging threats, vulnerabilities, and mitigation techniques.
* Oversee processes for review and approval of security exception requests.
Vendor Systems Security
* Partner with appropriate business and IT leadership to help ensure systems, services, and devices receive appropriate assessments and remediation as part of local on-boarding processes.
* Partner with business and IT leadership to ensure proper controls are in place for existing vendor-maintained solutions.
* Performs other duties as assigned
* Practices and adheres to the "Code of Conduct" philosophy and "Mission and Value Statement."
Education & Experience:
* Bachelors degree required
* Masters degree preferred
* 3+ years of experience in a relevant field required
* 3+ years of experience in security risk management, informationsecurity domains, and/or hospital operations preferred, or equivalent combination of education and/or experience
Licenses, Certifications, & Training:
* CISSP, CISA, CISM, CCNA, MCSA or other relevant certifications in network administration or informationsecurity preferred
Required Knowledge, Skills, Abilities, Behaviors:
* Knowledge of supported operating systems (Windows server and VMware ESX), utilities, vendor products, applicable programming languages and scripting, diagnostic techniques, applicable communications protocols, applicable hardware configurations
* Must have 1+ years of experience in deploying technically complex infrastructure computing solutions across platforms and components.
* Knowledge of virtual technology, such as, Citrix, VMWare ESX, IBM LPARs, VIO servers, and micro partitions.
* Knowledge of OS environment running one or more databases including SQL, Oracle, DB2.
* Experience in one or more of the following: NetBackup, Data Domain, or CommVault
* Applicable communication protocols and hardware configurations
* Statistical and analytical tools for systems monitoring
* Working knowledge of informationsecurity concepts, including risk management, engineering, networking, and cloud.
* Understanding of cloud fundamentals and concepts, as well as experience with a popular cloud provider, like Microsoft, Google, or Amazon.
* Excellent written and oral skills
* Demonstrates a high degree of initiative, dependability, and the ability to work with minimal supervision.
* Possesses a sense of responsibility and accountability - one who takes ownership and initiative.
* Creative thinker, always looking for a "better way" to deliver value; not stopped or discouraged by adversity.
* Maintains professional demeanor, appearance, and positive attitude.
* Adaptable and flexible, with the ability to handle ambiguity and sometimes changing priorities.
Travel Required
* The job may require 10-15% travel. (Mostly within the Division)
HCA Healthcare has been recognized as one of the Worlds Most Ethical Companies by the Ethisphere Institute more than ten times. In recent years, HCA Healthcare spent an estimated 3.7 billion in cost for the delivery of charitable care, uninsured discounts, and other uncompensated expenses.
"There is so much good to do in the world and so many different ways to do it."- Dr. Thomas Frist, Sr.
HCA Healthcare Co-Founder
If you find this opportunity compelling, we encourage you to apply for our Security Engineer opening. We promptly review all applications. Highly qualified candidates will be directly contacted by a member of our team. We are interviewing - apply today!
We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
$77k-92k yearly est. 60d+ ago
Security Engineer
HCA Healthcare 4.5
Information security analyst job in Charleston, SC
**Introduction** Experience the HCA Healthcare difference where colleagues are trusted, valued members of our healthcare team. Grow your career with an organization committed to delivering respectful, compassionate care, and where the unique and intrinsic worth of each individual is recognized. Submit your application for the opportunity below:Security EngineerHCA Healthcare. **This is a hybrid position and requires three days per week in the Division office and/or closest HCA Hospital within the Division.**
HCA Healthcare offers a total rewards package that supports the health, life, career and retirement of our colleagues. The available plans and programs include:
+ Comprehensive medical coverage that covers many common services at no cost or for a low copay. Plans include prescription drug and behavioral health coverage as well as free telemedicine services and free AirMed medical transportation.
+ Additional options for dental and vision benefits, life and disability coverage, flexible spending accounts, supplemental health protection plans (accident, critical illness, hospital indemnity), auto and home insurance, identity theft protection, legal counseling, long-term care coverage, moving assistance, pet insurance and more.
+ Free counseling services and resources for emotional, physical and financial wellbeing
+ 401(k) Plan with a 100% match on 3% to 9% of pay (based on years of service)
+ Employee Stock Purchase Plan with 10% off HCA Healthcare stock
+ Family support through fertility and family building benefits with Progyny and adoption assistance.
+ Referral services for child, elder and pet care, home and auto repair, event planning and more
+ Consumer discounts through Abenity and Consumer Discounts
+ Retirement readiness, rollover assistance services and preferred banking partnerships
+ Education assistance (tuition, student loan, certification support, dependent scholarships)
+ Colleague recognition program
+ Time Away From Work Program (paid time off, paid family leave, long- and short-term disability coverage and leaves of absence)
+ Employee Health Assistance Fund that offers free employee-only coverage to full-time and part-time colleagues based on income.
Learn more about Employee Benefits (**********************************************************************
**_Note: Eligibility for benefits may vary by location._**
We are seeking a Security Engineer for our team to ensure that we continue to provide all patients with high quality, efficient care. Did you get into our industry for these reasons? We are an amazing team that works hard to support each other and are seeking a phenomenal addition like you who feels patient care is as meaningful as we do. We want you to apply!
**Job Summary and Qualifications**
The IPS Security Engineer will support Division and Facility Network/System Engineers and Administrators by analyzing a wide range of applications, network configurations, and security architectures to ensure the security, integrity, and regulatory compliance of critical information transmitted or stored within the enterprise. Their role is to facilitate the discovery of information and IT-related risks, apply critical thinking to assumptions and develop the right security position/priorities that: first, attain compliance; second, address the material risks to the company while allowing the business to attain its objectives. This position blends cybersecurity engineering with system infrastructure expertise to support risk management, threat mitigation, infrastructure reliability, and compliance with IT and security standards.
The IPS Security Engineer will work across multiple domains of informationsecurity (i.e. Security and Risk Management, Asset Security, Security Architecture and Engineering, Network Security, Identity and Access Management, Security Assessment and Testing, and Security Operations), providing consultation, assessments, and security/technical guidance to business units and IT teams.
**Major Responsibilities:**
+ Risk Management and Security Consulting
+ Serves as an internal informationsecurity consultant to the enterprise while balancing the needs of the business.
+ Research and recommend solutions that meet security standards while ensuring functionality for business continuity.
+ Drive and manage execution of corrective actions to address deficiencies identified during risk assessments.
+ Translate security standards and regulatory requirements into actionable technical and business requirements.
+ Lead and support the IPS program by assessing new applications and technologies and ensuring they are implemented in accordance with company standards
+ Partner with appropriate stakeholders on vulnerability remediation
+ Engage in Architecture Review Committee discussions to identify and address Third Party solution variance from company standards
+ Support, coordinate, and manage incident response and investigation activities
+ Evaluate and recommend security solutions that balance risk mitigation with business functionality
+ Drive ongoing compliance with IPS policies, standards, and operational procedures
+ Serve as an internal security consultant across business units
+ Manage operational processes that monitor and respond to potential security threats
**Security Engineering & Architecture**
+ Evaluate new and proposed security technologies and assist in their integration
+ Assist in the design and implementation of secure network, application, and system architectures.
+ Partner with IT colleagues to assure ongoing maturity of IT operational security controls.
+ Participate in the development and testing of disaster recovery and contingency plans
+ Security Operations and Threat Management
+ Partner with corporate and local departments as required to facilitate rapid response to cybersecurity events.
+ Maintain awareness of emerging threats, vulnerabilities, and mitigation techniques.
+ Oversee processes for review and approval of security exception requests.
**Vendor Systems Security**
+ Partner with appropriate business and IT leadership to help ensure systems, services, and devices receive appropriate assessments and remediation as part of local on-boarding processes.
+ Partner with business and IT leadership to ensure proper controls are in place for existing vendor-maintained solutions.
+ Performs other duties as assigned
+ Practices and adheres to the "Code of Conduct" philosophy and "Mission and Value Statement."
**Education & Experience:**
+ Bachelor's degree required
+ Master's degree preferred
+ 3+ years of experience in a relevant field required
+ 3+ years of experience in security risk management, informationsecurity domains, and/or hospital operations preferred, or equivalent combination of education and/or experience
**Licenses, Certifications, & Training:**
+ CISSP, CISA, CISM, CCNA, MCSA or other relevant certifications in network administration or informationsecurity preferred
**Required Knowledge, Skills, Abilities, Behaviors:**
+ Knowledge of supported operating systems (Windows server and VMware ESX), utilities, vendor products, applicable programming languages and scripting, diagnostic techniques, applicable communications protocols, applicable hardware configurations
+ Must have 1+ years of experience in deploying technically complex infrastructure computing solutions across platforms and components.
+ Knowledge of virtual technology, such as, Citrix, VMWare ESX, IBM LPARs, VIO servers, and micro partitions.
+ Knowledge of OS environment running one or more databases including SQL, Oracle, DB2.
+ Experience in one or more of the following: NetBackup, Data Domain, or CommVault
+ Applicable communication protocols and hardware configurations
+ Statistical and analytical tools for systems monitoring
+ Working knowledge of informationsecurity concepts, including risk management, engineering, networking, and cloud.
+ Understanding of cloud fundamentals and concepts, as well as experience with a popular cloud provider, like Microsoft, Google, or Amazon.
+ Excellent written and oral skills
+ Demonstrates a high degree of initiative, dependability, and the ability to work with minimal supervision.
+ Possesses a sense of responsibility and accountability - one who takes ownership and initiative.
+ Creative thinker, always looking for a "better way" to deliver value; not stopped or discouraged by adversity.
+ Maintains professional demeanor, appearance, and positive attitude.
+ Adaptable and flexible, with the ability to handle ambiguity and sometimes changing priorities.
**Travel Required**
+ The job may require 10-15% travel. (Mostly within the Division)
HCA Healthcare has been recognized as one of the World's Most Ethical Companies by the Ethisphere Institute more than ten times. In recent years, HCA Healthcare spent an estimated $3.7 billion in cost for the delivery of charitable care, uninsured discounts, and other uncompensated expenses.
"There is so much good to do in the world and so many different ways to do it."- Dr. Thomas Frist, Sr.
HCA Healthcare Co-Founder
If you find this opportunity compelling, we encourage you to apply for our Security Engineer opening. We promptly review all applications. Highly qualified candidates will be directly contacted by a member of our team. **We are interviewing - apply today!**
We are an equal opportunity employer. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
$77k-92k yearly est. 60d+ ago
Learn more about information security analyst jobs
How much does an information security analyst earn in Beaufort, SC?
The average information security analyst in Beaufort, SC earns between $55,000 and $106,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.
Average information security analyst salary in Beaufort, SC