Information security analyst jobs in Guaynabo, PR - 38 jobs
All
Information Security Analyst
Information Technology Analyst
Security Engineer
Information Security Engineer
Securities Analyst
Cyber Security Analyst
Information Technology Security Manager
Senior Security Analyst
Senior Security Engineer
Senior Security Analyst
Capgemini Holding Inc. 4.5
Information security analyst job in Guaynabo, PR
Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way you'd like, where you'll be supported and inspired by a collaborative community of colleagues around the world, and where you'll be able to reimagine what's possible. Join us and help the world's leading organizations unlock the value of technology and build a more sustainable, more inclusive world.
The Senior SecurityAnalyst supports the governance of service provider activities in the enterprise security program, monitoring and escalating problems and providing information on security issues. Undertakes security assurance and audit activities to ensure compliance and to identify risks and opportunities. Provides information to senior managers and executives to ensure that they are aware of any security-related risks or opportunities. Provides subject matter expertise, consultancy and training in security-related matters. Must be able to function in a fast-paced, multi-vendor outsourced environment, facilitating conference calls among other subject matter experts and the client.
Your Responsibilities:
Handles monthly reporting duties for the Information Risk Management team;
Facilitates audit planning and audit remediation activities of the service providers, leading calls and documenting and reporting progress;
Has familiarity with Security technologies and controls; Expertise not required, but ability to escalate to more senior subject matter experts is important.
Develops work plans to structure solutions and communications;
Able to involve client and vendor staff appropriately in resolving Security problems;
Participates effectively within the business' Security governance framework;
Tracks the corrective and preventive actions being taken to improve Security to closure.
Possess strong communication skills to communicate technical and security risk information to management.
Your Experience:
Ability to self-manage with little interaction from other management staff.
Flexible and able to adapt to manage a fast-changing environment.
Ability to solve complex issues and provide recommendations and advice regarding remediations.
Security architecture, security software, or security policy experience
Ability to organize agendas, lead conference calls, and track action items to completion.
Security and Audit certifications such as SSCP, CISSP, CISA, CISM, CGEIT, CRISC, Security + are preferred.
Job Description - Grade Specific
The base compensation range for this role in the posted location is: $65,586-121,980.
Capgemini provides compensation range information in accordance with applicable national, state, provincial, and local pay transparency laws. The base compensation range listed for this position reflects the minimum and maximum target compensation Capgemini, in good faith, believes it may pay for the role at the time of this posting. This range may be subject to change as permitted by law.
The actual compensation offered to any candidate may fall outside of the posted range and will be determined based on multiple factors legally permitted in the applicable jurisdiction.
These may include, but are not limited to: Geographic location, Education and qualifications, Certifications and licenses, Relevant experience and skills, Seniority and performance, Market and business consideration, Internal pay equity.
It is not typical for candidates to be hired at or near the top of the posted compensation range.
In addition to base salary, this role may be eligible for additional compensation such as variable incentives, bonuses, or commissions, depending on the position and applicable laws.
Capgemini offers a comprehensive, non-negotiable benefits package to all regular, full-time employees. In the U.S. and Canada, available benefits are determined by local policy and eligibility and may include:
* Paid time off based on employee grade (A-F), defined by policy: Vacation: 12-25 days, depending on grade, Company paid holidays, Personal Days, Sick Leave
* Medical, dental, and vision coverage (or provincial healthcare coordination in Canada)
* Retirement savings plans (e.g., 401(k) in the U.S., RRSP in Canada)
* Life and disability insurance
* Employee assistance programs
* Other benefits as provided by local policy and eligibility
Important Notice: Compensation (including bonuses, commissions, or other forms of incentive pay) is not considered earned, vested, or payable until it becomes due under the terms of applicable plans or agreements and is subject to Capgemini's discretion, consistent with applicable laws. The Company reserves the right to amend or withdraw compensation programs at any time, within the limits of applicable legislation.
Disclaimers
Capgemini is an Equal Opportunity Employer encouraging inclusion in the workplace. Capgemini also participates in the Partnership Accreditation in Indigenous Relations (PAIR) program which supports meaningful engagement with Indigenous communities across Canada by promoting fairness, accessibility, inclusion and respect. We value the rich cultural heritage and contributions of Indigenous Peoples and actively work to create a welcoming and respectful environment. All qualified applicants will receive consideration for employment without regard to race, national origin, gender identity/expression, age, religion, disability, sexual orientation, genetics, veteran status, marital status or any other characteristic protected by law.
This is a general description of the Duties, Responsibilities and Qualifications required for this position. Physical, mental, sensory or environmental demands may be referenced in an attempt to communicate the manner in which this position traditionally is performed. Whenever necessary to provide individuals with disabilities an equal employment opportunity, Capgemini will consider reasonable accommodations that might involve varying job requirements and/or changing the way this job is performed, provided that such accommodation does not pose an undue hardship. Capgemini is committed to providing reasonable accommodation during our recruitment process. If you need assistance or accommodation, please reach out to your recruiting contact.
Please be aware that Capgemini may capture your image (video or screenshot) during the interview process and that image may be used for verification, including during the hiring and onboarding process.
Click the following link for more information on your rights as an Applicant in the United States. **************************************************************************
Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs. It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem.
$65.6k-122k yearly 14d ago
Looking for a job?
Let Zippia find it for you.
Cyber Security Analyst
Kelly Services 4.6
Information security analyst job in Manat, PR
**At Kelly** ** ** **Science, Engineering, Technology & Telecom (SETT), we're passionate about helping you find a job that works for you. How about this one?** We're seeking for a Cyber SecurityAnalyst to work in the north region, in PR. With us, it's all about finding the job that's just right.
**This job might be an outstanding fit if you have:**
+ Bachelor's degree in Cybersecurity, Computer Science or Engineering.
+ Certifications such as CISSP, CISM, GICSP, CRISC, is a plus.
+ 6+ years of experience in cybersecurity, OT security, or cyber resiliency, with at least 3 years in a manufacturing or critical infrastructure setting.
+ Strong understanding of OT/ICS environments, pharmaceutical manufacturing systems, and automation technologies.
Job summary: The Cyber SecurityAnalyst will play a pivotal role in safeguarding company's operational technology (OT) and industrial control systems within manufacturing, focusing on risk assessment, threat monitoring, and incident response. Collaborate with cross-functional teams to implement security measures and ensure compliance with industry standards. Conduct vulnerability assessments and provide cybersecurity guidance to support secure deployment of new technologies.
**What happens next**
Once you apply, you'll proceed to next steps if your skills and experience look like a good fit. But don't worry-even if this position doesn't work out, you're still in our network. That means all our recruiters will have access to your profile, expanding your opportunities even more.
Helping you discover what's next in your career is what we're all about, so let's get to work. Apply today!
As part of our promise to talent, Kelly supports those who work with us through a variety of benefits, perks, and work-related resources. Kelly offers eligible employees voluntary benefit plans including medical, dental, vision, telemedicine, term life, whole life, accident insurance, critical illness, a legal plan, and short-term disability. As a Kelly employee, you will have access to a retirement savings plan, service bonus and holiday pay plans (earn up to eight paid holidays per benefit year), and a transit spending account. In addition, employees are entitled to earn paid sick leave under the applicable state or local plan. Click here (********************************************************************* for more information on benefits and perks that may be available to you as a member of the Kelly Talent Community.
Why Kelly Technology?
Looking to put your tech expertise to work on today's most intriguing, innovative, and high-visibility projects? By partnering with Kelly Technology, you'll gain direct connections to top companies around the globe. Our team creates expert talent solutions to solve the world's most critical challenges. In a world where change is the only constant, our extensive network of industry relationships and IT market expertise help you take your skills exactly where you want to go. We're here to help you gain experience, make an impact, and grow your tech career.
About Kelly
Work changes everything. And at Kelly, we're obsessed with where it can take you. To us, it's about more than simply accepting your next job opportunity. It's the fuel that powers every next step of your life. It's the ripple effect that changes and improves everything for your family, your community, and the world. Which is why, here at Kelly, we are dedicated to providing you with limitless opportunities to enrich your life-just ask the 300,000 people we employ each year.
Kelly is committed to providing equal employment opportunities to all qualified employees and applicants regardless of race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, age, marital status, pregnancy, genetic information, or any other legally protected status, and we take affirmative action to recruit, employ, and advance qualified individuals with disabilities and protected veterans in the workforce. Requests for accommodation related to our application process can be directed to the Kelly Human Resource Knowledge Center. Kelly complies with the requirements of California's state and local Fair Chance laws. A conviction does not automatically bar individuals from employment. Kelly participates in E-Verify and will provide the federal government with your Form I-9 information to confirm that you are authorized to work in the U.S.
Kelly Services is proud to be an Equal Employment Opportunity and Affirmative Action employer. We welcome, value, and embrace diversity at all levels and are committed to building a team that is inclusive of a variety of backgrounds, communities, perspectives, and abilities. At Kelly, we believe that the more inclusive we are, the better services we can provide. Requests for accommodation related to our application process can be directed to Kelly's Human Resource Knowledge Center. Kelly complies with the requirements of California's state and local Fair Chance laws. A conviction does not automatically bar individuals from employment.
$56k-79k yearly est. 4d ago
Security Analyst 4
Oracle 4.6
Information security analyst job in San Juan, PR
Oracle Cloud Infrastructure (OCI) Hardware team is seeking a highly driven hardware/firmware security expert at the Principal Engineer level to participate in organizational wide Security Assurance program while also remaining involved in technical security reviews and having the opportunity to work on code level security. All engineering teams at Oracle are required to follow
security best practices on how to make smart choices that build security into our products and services. These Oracle Software Security Assurance Standards (OSSA) and Oracle Hardware Security Assurance (OHWSA) standards provide guidance cross the entire lifecycle of component selection / in-take, product design, development, testing, release/deployment, and vulnerability/patch management. The OCI Hardware Development team provides the AI, GPUs, components of Oracle's AI hardware platform hardware and firmware used in Oracle Cloud and in Oracle Engineered Systems including Oracle Exadata. The OCI Hardware organization you will join has delivered the first and second generation of Oracle cloud platforms and is working to build the next generation of cloud
and enterprise systems, with record breaking-performance, security, and world class quality using the latest and greatest merchant silicon and technologies.
Job Summary:
As a part of the OCI Hardware/Firmware Security team the candidate will work closely with the team's Chief Security Architect. The role is focused on managing and participating in all aspects of the OCI Release Management (ORM); Oracle's Hardware Security Assurance (OSSA); Oracle Hardware/Software Security Vendor Intake program and Manage HW/FW security vulnerabilities end to end - from triage to mitigation planning and rollout to customer messaging as wells as opportunities to work on security projects and initiatives defined by the Chief Security Architect. The scope spans both hardware and firmware, Oracle internal teams as well as external partners and extends from Oracle team education and support, to performing technical security and process reviews and to ensuring that Oracle's partners understand Oracle's security requirements for the future. Design, develop, troubleshoot and debug software programs for databases, applications, tools, networks etc.
**Responsibilities**
Responsibilities:
o Monitor vendor embargoed advisories (Intel, AMD, NVIDIA, ARM, etc.), VINCE, and other sources for hardware and firmware vulnerabilities.
o Perform risk analysis and threat modeling to triage applicability and risk of vulnerabilities to Oracle hardware products and platforms.
o Drive and track mitigation of vulnerabilities across various OCI teams and stakeholders through rollout.
o Communicate risk and mitigation plan to internal teams, leadership, and customers through legally approved messaging.
o Familiarity with python in order to run internal tools that aid with vul mgmt.
o Helping engineering teams plan for security reviews of the HW/FW technologies which are being considered for use
o Ensuring that teams create the required materials for
Inbound HW/FW security reviews
Inbound third party software security reviews
Product release security reviews
o Performing these security reviews
o Tracking the progress of individual reviews and producing reports
o Identifying and driving improvements to the processes
o Working with the Hardware Chief Security Architect and virtual security team and key internal partners
o Working with Oracle's 3rd party ecosystem to communicate Oracle's hardware security requirements and assess present adoption and future compliance
o Acting as a technical security resource for Oracle's 3rd party ecosystem
o Developing tools as-needed to support the process
o Opportunities to work on code level assessment partnering with the Core Firmware Engineering team
o Opportunities to be involved with Architectural Risk Analysis and threat analysis
Required Qualifications:
o B.S. in Computer Science, Computer Engineering, or related field
o 7+ years in the field of software engineering and/or security
o Experience in security analysis/assessments and the ability to audit security or forensic reports
o Expertise across secure firmware/software development lifecycle e.g. component security reviews, static and dynamic analysis tools
o Highly motivated, with a sense of urgency and ability to deliver multiple tasks under time-frame pressure
o Big problem solver, who can be both strategic and able to dive into details as needed
o Capable of working independently
o Experience with understanding, analyzing, and communicating hardware security vulnerabilities, attacks, and research to engineering communities and audiences
o Comfortable dealing with ambiguity and ability to adapt to changing environment and needs
o Excellent written and oral communication skills
o Experience with the architecture, design, and implementation of modern server platform hardware & firmware
o Programming experience (C/C++, Linux Programming, bash, Python, Java)
Disclaimer:
**Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.**
**Range and benefit information provided in this posting are specific to the stated locations only**
US: Hiring Range in USD from: $96,800 to $223,400 per annum. May be eligible for bonus and equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC4
**About Us**
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
$51k-77k yearly est. 60d+ ago
Cyber Security Analyst
Weil Group 3.4
Information security analyst job in Manat, PR
We may have a potential need for a Cyber SecurityAnalyst. Education: Bachelor's degree in Cybersecurity, Computer Science, Engineering Certifications such as CISSP, CISM, GICSP, CRISC, is a plus Experience: 6+ years of experience in cybersecurity, OT security, or cyber resiliency, with at least 3 years in a manufacturing or critical infrastructure setting.
Strong understanding of OT/ICS environments, pharmaceutical manufacturing systems, and automation technologies
*Weil Group is proud to be an Equal Employment Opportunity Employer.*
$50k-68k yearly est. 5d ago
ISO Security Analyst
Popular Inc. 4.5
Information security analyst job in San Juan, PR
Company: Popular Workplace Type: Hybrid ISO SecurityAnalyst Job Type Full Time General Description Support the SecOps unit in safeguarding our organization's IT infrastructure. This role involves monitoring systems for security threats, analyzing potential risks, and contributing to the development of security measures.
Essential Duties and Responsibilities
* Monitor and analyze security alerts and logs to detect potential threats.
* Assist in incident response activities, including initial investigation and documentation.
* Support the maintenance and enhancement of security tools and technologies.
* Collaborate with multiple teams to implement security best practices and solutions.
* Participate in security awareness initiatives and help educate staff on security protocols.
* Stay informed on the latest cybersecurity trends and threat intelligence.
* Help ensure compliance with relevant security policies and regulatory requirements.
* Discuss and follow up on the action plans to address any recommendations from the assessments with appropriate business units.
* Responsible for triage, ensure complete documentation, and adherence to the Standard for all Security Exceptions and support requests submitted.
* Prepare metrics and reports related to security assessments.
* Other duties and responsibilities.
Education:
Bachelor's degree in Computer Engineering, Computer Science, Information Systems/Technology, or a related field.
Experience:
Two (2) years of related experience in informationsecurity or cybersecurity ensuring the security of all information pertinent to the company.
Certifications/Licenses
Certifications are highly desirable but not required.
* CompTIA SEC+
* ISC2 SSCP
Knowledge, Skills and Abilities (KSA's)
* Strong business acumen: ability to understand the needs and concerns of business stakeholders and colleagues and respond promptly and effectively to stakeholder requests. An ability to conduct analysis of work procedures and business results and recommend changes to improve the effectiveness of the business' management.
* Strong technical acumen: knowledge of Cyber Security, InformationSecurity, and Information Technology concepts. Strong knowledge of processes, controls, efficiency metrics and reporting concepts. Ability to write technical instructions using programs and technology. Robust knowledge of applicable local and federal laws, regulations, and guidelines.
* Communication skills: effectively interact with internal and external stakeholders. Ability to foster trusting relationships with colleagues and clients. Highly develop written and verbal communications skills in English. Presents numerical data effectively. Superior communication and interpersonal skills. Excellent report-writing and presentation skills. Polished in preparing presentations, executive summaries, and business reports in English for executive audiences.
* Analytical skills: Stays focused on main issues, prevents irrelevant issues or distractions from interfering with timely completion of assignments. Collects, research and complements data; Synthesizes complex or diverse information. Demonstrates attention to detail; Applies design principles; Generate creative solutions. Strong quantitative, research and analytical skills. Experience with data analysis, persuasive and informative writing, workload management, and process management.
* Problem Solving: Identifies and resolves problems in a timely manner; Develops alternative solutions.
* Project Management: Ability to prioritize and work with multiple projects and tasks with minimum supervision; self-direct and task switch between strategic and tactical initiatives regularly. Capacity to achieve results according to plan ensuring the expected quality. Excellent organization capacity to define priorities, meet deadlines, and flexible to change. Knowledge of project coordination, identification of business needs, work plan, budget control, time management, resource allocation, team management and status reports. Must demonstrate leadership, logic, and reasoning skills. Strong understanding of Agile methodologies, particularly Scrum or Kanban.
* Operational/Regulations Processes: Knowledge of budget administration, resources allocation, organization's policies, and regulations. Ability to establish, conduct and track operational processes properly.
* Computer and Technological Skills: Proficient in MSO 365. Experience with data management tools such as: Power Pivot and Power BI, among others, is desired. Ability to achieve results by providing innovative ways of working with operational and technological considerations.
Region Locations
Puerto Rico
Work Schedule
Hybrid
Values
Passion for People
Succeed Together
Own Every Moment
Build the Future
Additional Requirements
The information provided here is only a general guide as to the nature of the position and does not constitute an exact description of the goals, tasks, duties and responsibilities of the position. The specific details of each position are described in the employee's performance evaluation.
Important:The candidate must provide evidence of academic preparation or courses related to the job posting, if necessary.
Important: The candidate must provide evidence of academic preparation or courses related to the job posting, if necessary.
ABOUT US
Popular is Puerto Rico's leading financial institution and have been evolving since it was founded over a century ago. From a small bank it has developed into a large corporation that offer a wide variety of services and financial solutions to our customers, with presence in the United States, the Caribbean and Latin America.
As employees, we are dedicated to making our customers dreams come true by offering financial solutions in each stage of their life. Our extensive trajectory demonstrates the resiliency and determination of our employees to innovate, reach for the right solutions and strongly support the communities we serve; therefore, we value their diverse skills, experiences and backgrounds.
We reaffirm our commitment to always offer essential financial services and solutions for our customers and communities, including during emergency situations and/or natural disasters. Popular's employees are considered essential workers, whose role is critical in the continuity of these important services even under such circumstances. By applying to this position, you acknowledge that Popular may require your services during and immediately after any such events.
If you have a disability or need more information about requesting an accommodation, please contact us at ***************************. This email inbox is monitored for such types of requests only. All information you provide will be kept confidential and will be used only to the extent required to provide needed exemptions or reasonable accommodations. Any other correspondence will not receive a response.
Are you ready for a rewarding career?
Popular is an Equal Opportunity Employer
Learn more about us at *************** and keep updated with our latest job postings at *********************
Connect with us!
LinkedIn | Facebook | Twitter | Instagram
If you are a California resident, please click here to learn more about your privacy rights.
$55k-77k yearly est. 7d ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Information security analyst job in San Juan, PR
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**InformationSecurity and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
**Responsibilities:**
+ **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions.
+ **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance.
+ **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning.
+ **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows.
+ **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including InformationSecurity, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications**
+ Experience with SailPoint IdentityIQ (IIQ) is a must
+ Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP)
+ Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses)
+ Solid understanding of the SailPoint object model, rules, and policies
+ Experience with both lifecycle manager (LCM) and compliance manager (CM) modules
+ Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required
+ Proven track record of successful IAM implementations including large scale enterprise deployments.
+ Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 60d ago
IT Information Security Manager
Island Finance 3.9
Information security analyst job in San Juan, PR
Company: Island Finance
With over 66 years of service, Island Finance LLC is the largest financial institution in Puerto Rico. It serves over 70,000 clients, with consumer loans and a variety of financial products and services. Also, it has a comprehensive distribution network with 46 branches, a call center, and an advanced Internet banking service available through **********************
Island Finance is not only a Financial Company committed to the future of Puerto Rico, but also works every day to offer the highest quality of service and is the one who has reached out to thousands of clients when they have needed it most, in addition to maintaining a positive and dynamic work environment with a team committed to offering the best.
We are the Financial Company of the 21st century, with over five decades helping you realize your dreams. Because there is one thing that does not change and that is that sixty-five years later we are here...
We deeply appreciate your support and reaffirm our commitment. That's why with us... ¡¡Yes, you can!!
General Job Summary
Accountable for defining, executing, and maturing the institution's enterprise cybersecurity program, protecting the confidentiality, integrity, and availability of information and critical services. Leads governance, risk, and compliance (GRC), cloud security (OCI/AWS), security operations (SIEM/EDR/DLP), identity and access management (IAM/PAM), incident response, and business continuity-ensuring financial‑sector regulatory compliance and safeguarding sensitive client and investor data.
Essential functions:
People, Strategy, Governance, and Risk (GRC)
Manage the InformationSecurity Unit, through defining the strategy, the team roles, responsibilities, development, performance objectives, and metrics for high-level execution.
Define the cybersecurity strategy and roadmap based on NIST CSF / ISO 27001 / COBIT, with KPIs/OKRs, budget, and executive metrics.
Establish and maintain policies, standards, and procedures (access, encryption, data classification/retention, secure SDLC, third parties, DR/BCP).
Drive integrated risk management: risk register, periodic assessments, risk appetite, treatment plans, and reporting to Risk Committee/Executive leadership.
Regulatory Compliance and Privacy - Financial Sector
Ensure compliance with GLBA, FFIEC, PCI DSS, SOX‑ITGC, ISO 27001, OCIF/FDIC guidelines, and privacy frameworks (GDPR/CCPA, as applicable).
Coordinate internal/external audits and regulatory exams; remediate findings and evidence controls, documentation, and metrics.
Govern third parties and critical vendors (TPRM): due diligence, security/SLA clauses, SOC 1/2 reviews, escalations, and continuity.
Security Architecture and Operations
Design and implement Zero Trust architectures, segmentation, SASE/CASB, WAF, encryption in transit and at rest, KMS/HSM, and centralized telemetry.
Govern the security stack (e.g., SIEM, EDR, DLP, EPP, Microsoft Defender, Fortinet, email security, MDM) and automation (SOAR) to reduce MTTR.
Lead vulnerability and patch management (e.g., Qualys): continuous scanning, risk‑based prioritization (CVSS/EPSS), remediation SLAs, and validation.
Coordinate penetration tests/Red Team and hardening aligned to CIS/NIST benchmarks.
Cloud Security (OCI / AWS)
Design and operate security in OCI and AWS: CSPM, cloud IAM, secure networks (VPC/VNet), container security, secrets/keys, logging, and alerting.
Ensure VPN/SD‑WAN connectivity and edge controls, with event logging and detections centralized in the SIEM.
Identity and Access (IAM/PAM)
Govern SSO, MFA, RBAC/ABAC, the joiner‑mover‑leaver lifecycle, access reviews, and
PAM (privileged accounts), integrating AD/Azure AD and cloud directories.
Enforce segregation of duties (SoD) and least privilege across all critical systems.
Incident Response, Continuity, and Resilience
Maintain the IRP (Incident Response Plan) with playbooks and SOC runbooks; coordinate with Legal/Communications and regulatory notification as required.
Lead digital forensics, root‑cause analysis, and lessons learned with improvement plans.
Co‑lead BCP/DR with Technology and Operations: BIA, RTO/RPO, and periodic multi‑site/multi‑region exercises (on‑prem/cloud).
Other important duties and responsibilities of the position
Business Continuity
Vendor & Cost Management
Documentation & Continuous Improvement (BAU)
Leadership, Team, and Vendors
Requirements
Bachelor's degree in engineering (Computer/Telecommunications/Electrical) or Computer Science, or equivalent experience.
7-10+ years in cybersecurity/GRC/architecture, with 3+ years leading security or SOC teams.
Experience in financial services and regulated environments; direct interaction with auditors and regulators.
Implementation of NIST CSF/ISO 27001, PCI DSS, and cloud‑security practices (OCI/AWS).
Comprehensive and balanced knowledge base that spans technical expertise, business acumen, and leadership skills to manage the organization's strategic security posture effectively.
Bilingual (Spanish and English).
Customer-focused and service-oriented.
Strong verbal, written, and negotiation skills to retain the existing customer base.
SIEM, EDR, DLP, SOAR, IAM/PAM, data governance, encryption, WAF, CSPM, SASE/CASB, DevSecOps, and secure SDLC.
Networks and perimeter controls; Zero Trust, segmentation, VPN/SD‑WAN.
Incident handling and forensics; vulnerability platforms (e.g., Qualys).
Fortinet NSE 4/7 or higher; Cisco CCNA/CCNP; CompTIA Network+/Security+; ITIL v4 Foundation.
Cloud certifications with networking emphasis: AWS (Advanced Networking/SAA), OCI (Networking/Architecture).
Certifications (preferred/strong)
CISSP (strong), CISM/CRISC, ISO 27001 Lead Implementer/Lead Auditor, CCSP (cloud).PCI‑ISA/PCIP, GIAC (GCIH/GCIA/GPEN), AWS Security Specialty / OCI Architect/Professional, ITIL v4.
Competency
Executive communication and leadership; stakeholder management and cross‑functional influence.Critical thinking, risk‑based prioritization, results orientation; bilingual Spanish/English.
Conditions
Availability for on‑call duties and off‑hours incident handling; travel to branches as needed.Successful background check per internal and regulatory policies.Island Finance is an Equal Opportunity Employer
Learn more about us at Island Finance and keep updated with our latest job postings at Island Finance Empleos
Connect with us!
Linkdnl | Facebook
$79k-93k yearly est. Auto-Apply 2d ago
IT Financial Analyst
Cayuse Holdings
Information security analyst job in San Juan, PR
**JOB TITLE:** IT Financial Analyst **CAYUSE COMPANY:** Cayuse Commercial Services, LLC **SALARY:** $28.00-$35.00/hr **EMPLOYEE TYPE:** Full-Time Hourly Non-Exempt **The Work** The IT Financial Analyst will provide day-to-day support for invoice review and approval processing. The role will also assist IT managers with other financial tasks as assigned.
This position performs all duties and responsibilities in accordance with the Mission, Vision, and Core Values of Cayuse.
**Responsibilities**
**Key Responsibilities**
+ Monitor vendor invoice mailbox
+ Review vendor invoices
+ Match against contract or purchase order
+ Verify invoice for payment or return to vendor
+ Record invoice in general ledger
+ Notify Accounts Payable for vendor payment
+ Work with IT managers on other financial tasks as assigned
+ Respond to assigned tasks in accordance with predefined guidelines.
+ Other duties as assigned.
**Qualifications**
**Qualifications - Here's What You Need**
+ High school diploma or equivalent required
+ Two (2) to five (5) years of experience working in a finance position with focus on billing, invoicing, vendor management.
+ Preference with experience supporting an IT organization
+ Must be able to pass a background check. May require additional background checks as required by projects and/or clients at any time during employment.
**Minimum Skills:**
+ Microsoft Office experience (Work, Excel)
+ Experience with JD Edwards preferred
+ Financial billing, accounts payable experience
+ General accounting
+ Excellent communication skills
+ Experience working with suppliers and third-party vendors
+ Ability to quickly analyze a situation and react appropriately and effectively
+ Effective prioritization skills
+ Self-starter
+ Financial analysis credibility and independent judgment
+ Able to contribute to IT financial planning and operations
**Our Commitment to you / overview of benefits**
+ Medical, Dental and Vision Insurance; Wellness Program
+ Flexible Spending Accounts (Healthcare, Dependent Care, Commuter)
+ Short-Term and Long-Term Disability options
+ Basic Life and AD&D Insurance (Company Provided)
+ Voluntary Life and AD&D options
+ 401(k) Retirement Savings Plan with matching after one year
+ Paid Time Off
**Reports to:** **Program Manager**
**Working Conditions**
+ Professional remote office environment.
+ Must reside in Central or Eastern Time Zone.
+ Must be physically and mentally able to perform duties extended periods of time.
+ Ability to use a computer and other office productivity tools with sufficient speed to meet the demands of this position.
+ Must be able to establish a productive and professional workspace.
+ Must be able to sit for long periods of time looking at computer screen.
+ May be asked to work a flexible schedule which may include holidays.
+ May be asked to travel for business or professional development purposes.
+ May be asked to work hours outside of normal business hours.
**Other Duties:** _Please note this job description is not designed to cover or contain a comprehensive list of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice._
**_Cayuse is an Equal Opportunity Employer. All employment decisions are based on merit, qualifications, skills, and abilities. All qualified applicants will receive consideration for employment in accordance with any applicable federal, state, or local law._**
**Pay Range**
USD $28.00 - USD $35.00 /Hr.
Submit a Referral (*********************************************************************************************************************************
**Can't find the right opportunity?**
Join our Talent Community (********************************************************** or Language Services Talent Community (******************************************************** and be among the first to discover exciting new possibilities!
**Location** _US-_
**ID** _103881_
**Category** _Accounting/Finance_
**Position Type** _Full-Time Hourly Non Exempt_
**Remote** _Yes_
**Clearance Required** _None_
$28-35 hourly 7d ago
Senior PKI Security Engineer
Eliassen Group 4.7
Information security analyst job in San Juan, PR
**Anywhere** **Type:** Contract **Category:** Security **Industry:** Financial Services **Workplace Type:** Remote **Reference ID:** JN -012026-105045 **Shortcut:** ********************************** + Description + Recommended Jobs
**Description:**
_Remote_
Our client is a large financial institution distinguished by its use of modern cloud technologies, mobile platforms, and agile delivery at enterprise scale. The organization promotes ownership, collaboration, and a balanced work environment while investing in continuous innovation. It seeks professionals who can navigate complex technology and business contexts and deliver secure, customer-centric solutions.
_We can facilitate w2 and corp-to-corp consultants. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance._
Rate: $55.00 to $65.00/hr. w2
**Responsibilities:**
+ Participate or lead complex or high severity troubleshooting and incident problem resolutions with infrastructure teams or vendors.
+ Analyze, design, and implement PKI, certificate, and security solutions.
+ Translate business needs into technology solutions for internal customers.
+ Lead or contribute to projects involving PKI, certificates, and security.
+ Monitor the PKI and certificate incident queue and resolve issues of all levels.
+ Create, review, approve, and implement changes to PKI and certificate environments.
+ Analyze current PKI and certificate environments to identify challenges and develop improvements.
+ Act as PKI and certificate lead on complex incidents, changes, or upgrades.
+ Represent the crypto services team on global incident management calls with technical teams, customers, or vendors.
+ Analyze data, identify trends, and facilitate root cause analysis with service improvement opportunities.
+ Participate in capacity planning, performance monitoring, and maintenance to ensure high availability and proactive improvement.
+ Apply DevOps principles within PKI operations and engineering.
+ Lead periodic disaster recovery exercises for PKI and certificates.
+ Participate in an off-hours on-call rotation.
+ Communicate technical issues and challenges to technical and non-technical audiences.
**Experience Requirements:**
+ At least 4 years of information technology experience.
+ At least 2 years of hands-on experience with PKI.
+ Experience with operational support and implementation of enterprise-level PKI and certificate solutions preferred.
+ Experience leading technical teams or projects preferred.
+ Strong understanding of DevOps principles preferred.
+ Python or other programming or scripting language experience preferred.
+ AWS Certification preferred.
+ 3+ years of PKI experience preferred.
+ Understanding of ITIL principles preferred.
**Education Requirements:**
+ High School Diploma, GED, or equivalent certification.
+ Bachelor's degree in Computer Science, Information Systems, or Engineering preferred.
+ AWS Certification.
+ ITIL-related knowledge or certification preferred.
**_Recruitment Transparency Notice_**
**_Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial intelligence (AI) tools as part of its initial application screening process. You may receive email and SMS notifications from the Eliassen Virtual Recruiting Team (_** **_noreply@eliassen.com_** **_, ************* inviting you to complete a brief voice screening as part of your application process. These tools assist our hiring teams in different ways, including but not limited to, assistance in reviewing application materials to help identify candidates whose qualifications most closely match the requirements of the position. All AI-assisted evaluations and responses are reviewed by human recruiters before any hiring decisions are made. The use of AI in our process is intended to support fairness, efficiency, and consistency, and Eliassen Group takes measures to prevent bias or discrimination in connection with its hiring practices. By proceeding, you acknowledge, agree, and consent to Eliassen Group's use of these tools, including AI tools, as part of the application and hiring process._**
_Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range._
_W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality._
_Please be advised- If anyone reaches out to you about an open position connected with Eliassen Group, please confirm that they have an Eliassen.com email address and never provide personal or financial information to anyone who is not clearly associated with Eliassen Group. If you have any indication of fraudulent activity, please contact_ _********************_ _._
_About Eliassen Group:_
_Eliassen Group is a leading strategic consulting company for human-powered solutions. For over 30 years, Eliassen has helped thousands of companies reach further and achieve more with their technology solutions, financial, risk & compliance, and advisory solutions, and clinical solutions. With offices from coast to coast and throughout Europe, Eliassen provides a local community presence, balanced with international reach. Eliassen Group strives to positively impact the lives of their employees, clients, consultants, and the communities in which they operate._
_Eliassen Group is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status._
_Don't miss out on our referral program! If we hire a candidate that you refer us to then you can be eligible for a $1,000 referral check!_
$55-65 hourly 4d ago
Cloud Security Engineer
Ford Motor Company 4.7
Information security analyst job in San Juan, PR
We are the movers of the world and the makers of the future. We get up every day, roll up our sleeves and build a better world -- together. At Ford, we're all a part of something bigger than ourselves. Are you ready to change the way the world moves?
The Enterprise Cyber Security Cloud Security team is responsible for working with other security and cloud services teams to ensure alignment and collaboration in securing Ford's public cloud infrastructure. The teams work closely together to identify security gaps in the cloud environments and address them.
The Cloud Security team is responsible for identifying, evaluating, and recommending cloud security tools and functions to enhance security around Ford's public cloud. The team is also responsible for developing and managing the following Security Services in Ford's public cloud environments:
- Cloud Security Automation Development
- GCP/Azure Security Compliance
- GCP VPC Service Control
- GCP Cloud Armor/ Azure WAF
**What you'll do...**
+ Partner with other Cloud Security team members to identify and develop automation for security related workflows and audits (VPC SC, DLP, Exceptions, Org Policy, etc..).
+ Lead evaluation and develop an understanding of tools needed to address security gaps.
+ Lead/Collaborate with EPEO Services teams on security gap remediation.
**You'll have...**
+ Bachelor's degree in Computer Science, Information Technology or related OR a combination of education and experience
+ 5+ years of scripting and automation experience
+ Proven experience in developing and implementing automation using scripting languages such as
+ Python, PowerShell, or Go, particularly for API integrations, security tool orchestration, and custom audit scripts.
+ Solid understanding and practical experience with Git and GitHub for version control, collaborative development, and security automation pipeline management.
+ Familiarity with CI/CD pipelines and automated deployment tools (e.g., Jenkins, Azure DevOps, GitHub Actions) to integrate security automation into the software development lifecycle.
+ Knowledge of Infrastructure-as-Code (IaC) principles and tools like Terraform.
+ Strong knowledge of security best practices and guidelines (at the enterprise-level) related to GCP and Azure Cloud deployments as well as common web application frameworks
+ Understand the functionality and secure usage of various GCP services: VPCs, IAM, security groups, compute engine, cloud storage, Security Command Center, VPC Service Control, Cloud DLP and Cloud Armor
+ Customer focused and strong team orientation
+ Self-starter and fast-learner
+ Strong communication and interpersonal skills
+ Strong problem solving and Analytical/Reasoning skills
+ Strong drive for results and ability to work independently
+ Demonstrated commitment to quality and project timing
+ Familiarity with the agile project planning process and use of Rally.
+ Document processes & procedures and developing other documentation.
**Even better, you may have...**
+ Understand the functionality and secure usage of various Azure services: Virtual Machines, Virtual Networks, Azure Active Directory, App Services, Azure SQL Databases, Storage Accounts, Kubernetes, Containers, Key vaults.
You may not check every box, or your experience may look a little different from what we've outlined, but if you think you can bring value to Ford Motor Company, we encourage you to apply!
As an established global company, we offer the benefit of choice. You can choose what your Ford future will look like: will your story span the globe, or keep you close to home? Will your career be a deep dive into what you love, or a series of new teams and new skills? Will you be a leader, a changemaker, a technical expert, a culture builder...or all of the above? No matter what you choose, we offer a work life that works for you, including:
- Immediate medical, dental, vision and prescription drug coverage
- Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
- Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
- Vehicle discount program for employees and family members and management leases
- Tuition assistance
- Established and active employee resource groups
- Paid time off for individual and team community service
- A generous schedule of paid holidays, including the week between Christmas and New Year's Day
- Paid time off and the option to purchase additional vacation time.
For a detailed look at our benefits, click here:
*******************************
This position is a range of salary grades 7-8.
Visa sponsorship is not available for this position.
SOUTHEAST MI RESIDENTS: This role is posted as remote unless you reside within 50 miles of Dearborn, MI-in which case we request on-site presence up to 4 days a week.
Candidates for positions with Ford Motor Company must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of hire.
We are an Equal Opportunity Employer committed to a culturally diverse workforce. All qualified applicants will receive consideration for employment without regard to race, religion, color, age, sex, national origin, sexual orientation, gender identity, disability status or protected veteran status. In the United States, if you need a reasonable accommodation for the online application process due to a disability, please call **************.
\#LI-Remote
**Requisition ID** : 54783
$69k-96k yearly est. 6d ago
Application Security Engineer (AppSec)
Zenus Bank
Information security analyst job in San Juan, PR
About Zenus
Zenus' mission is to facilitate banking beyond borders. Operating in over 150 countries, we enable people and businesses to open a US bank account online, without the need to be a US citizen, resident, or a company registered in the US - opening up the security, stability and freedom of US banking to the world. As a signatory of the UN's Principles for Responsible Banking, we are committed to making finance fair.
Our state-of-the-art technology, exclusive partnerships and proprietary processes are now being made available via our embedded banking services to enable other businesses to create new financial service experiences for their customers.
Headquartered in San Juan, Puerto Rico, we have a diverse and inclusive team.
About the role
The Application Security Engineer (AppSec) is responsible for ensuring the security of applications, APIs, and software components throughout the software development lifecycle.
Operating within the SecOps domain and reporting to the InformationSecurity Officer (ISO), the AppSec role focuses on secure design, code-level security, vulnerability identification, and controlled offensive testing, ensuring that applications meet organizational security standards before and after deployment.
This role owns what is built securely, not cloud platform configuration or CI/CD automation.
This position is hybrid, requiring on-site presence with a schedule of:
3 days on-site
2 days remote
Responsibilities & duties:
Perform application security testing, including SAST, SCA, and DAST analysis.
Execute internal manual penetration testing of applications and APIs on a quarterly basis, within approved scope.
Conduct threat modeling for new applications and significant changes.
Identify, analyze, and document application-level vulnerabilities and security weaknesses.
Work directly with development teams to support secure remediation and secure coding practices.
Define and maintain secure coding standards aligned with OWASP Top 10 and OWASP API Top 10.
Validate that security findings are properly remediated before release.
Maintain vulnerability tracking and reporting in Archer or approved systems.
Support ISO during audits and security assessments by providing application security evidence.
What you need for this role:
3+ years of experience in application security, secure software development, or ethical hacking.
Strong knowledge of secure coding principles and common application vulnerabilities.
Hands-on experience with SAST, DAST, and SCA tools.
Experience performing manual application and API penetration testing.
Familiarity with REST APIs, authentication mechanisms, and authorization models.
Understanding of CI/CD pipelines from a security testing perspective.
Strong documentation and vulnerability reporting skills.
$52k-78k yearly est. 25d ago
IT Security Analyst
Pharmpix
Information security analyst job in Guaynabo, PR
The IT SecurityAnalyst plays a key role in safeguarding the organization's digital assets and ensuring information systems' confidentiality, integrity, and availability. In addition to monitoring, analyzing, and responding to security incidents and threats, the position oversees access control measures and manages permissions for the organization's corporate domain and applications. Collaborating with cross-functional teams, the IT SecurityAnalyst assesses risks, implements security controls, and ensures compliance with industry standards and regulations.
ESSENTIAL ROLES AND RESPONSIBILITIES
User Account Management : Configure and manage user accounts, permissions, and access rights within the organization's IT systems, applications, and network resources.
Access Control Inventory: Maintain a comprehensive inventory of all user permissions granted across various IT systems, applications, and network resources.
Compliance Support: Support compliance efforts by ensuring user permissions management practices align with regulatory requirements, industry standards, and internal policies.
Security Monitoring: Monitor security event logs, alerts, and notifications generated by security systems such as SIEM, IDS/IPS, and endpoint protection solutions.
Incident Detection and Investigation: Detect, analyze, and investigate security incidents and anomalies identified through monitoring activities.
Threat Intelligence : Utilize threat intelligence feeds to stay ahead of emerging threats and provide actionable recommendations for risk mitigation strategies.
Security Controls Implementation : Support implementing security controls, policies, and procedures.
Remediation Planning : Assist in implementing remediation plans based on findings from various security assessments.
Risk Mitigation : Based on data analysis, research, and emerging technologies, provide recommendations for mitigating informationsecurity risks and improving security controls.
Collaboration : Collaborate closely with team members to solve security-related issues and improve overall security posture.
Other Responsibilities : Perform other job-related duties as assigned.
EDUCATION & PROFESSIONAL EXPERIENCE
Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.
2-4 years of hands-on experience in IT Security roles.
Experience with security tools such as SIEM, Firewalls, Endpoint Protection Solutions, and permission management.
Experience working in a highly regulated industry. (preferred)
LICENSURE / CERTIFICATION
Technical certifications such as Security+, CySA+, Network+ or equivalent are preferred.
PROFESSIONAL COMPETENCIES
Skills:
Excellent problem-solving and analytical skills with the ability to diagnose and resolve technical issues.
Strong communication and interpersonal skills to provide effective technical support and collaborate with stakeholders.
Ability to manage multiple tasks, prioritize, and meet deadlines in a dynamic environment.
Strong, structured, process-driven, and analytical skills.
Demonstrate skills in building relationships within departments and between departments.
Good research skills.
Knowledge:
Familiarity with IT Security frameworks (e.g., NIST CSF, CIS Controls)
Proficiency in Microsoft Office: Excel, Word, Access, and Microsoft Outlook.
Excellent knowledge of Customer Service best practices.
Strong knowledge of computer hardware, software, and networking principles.
Technical research and development knowledge are desired.
Fluency in spoken and written Spanish and English.
Abilities:
Understand existing and emerging technologies.
Understand business practices, approaches, organization, politics, and culture.
Demonstrate ability to work under pressure with compressed deadlines and multiple deliverables.
Demonstrated ability to communicate ideas clearly and concisely to leadership.
Ability to work well as a member of a team or alone.
Willingness to take ownership of problems and follow through to completion.
Ability to prioritize and manage time.
Arrive at work promptly and consistently.
Proven ability to work in an ambiguous environment and collaborate across multiple areas to achieve a common business objective.
PHYSICAL AND MENTAL DEMANDS
The physical demands described here represent those that an employee must meet to perform the essential functions of this job successfully. While performing the duties of this job, the employee is regularly required to talk or hear, sit, stand, and walk.
The position requires that the weight be lifted, and force is exerted up to 50 pounds.
Reasonable accommodation may be made to enable individuals with disabilities to perform essential functions.
ENVIRONMENTAL AND WORKING CONDITIONS
This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets, and fax machines. Require evening or weekend work.
PharmPix is an Equal Employment Opportunity Employer Minorities / Females / Disable / Veterans
$38k-53k yearly est. Auto-Apply 60d+ ago
IT Security Analyst
Tpis
Information security analyst job in Guaynabo, PR
The IT SecurityAnalyst plays a key role in safeguarding the organization's digital assets and ensuring information systems' confidentiality, integrity, and availability. In addition to monitoring, analyzing, and responding to security incidents and threats, the position oversees access control measures and manages permissions for the organization's corporate domain and applications. Collaborating with cross-functional teams, the IT SecurityAnalyst assesses risks, implements security controls, and ensures compliance with industry standards and regulations.
ESSENTIAL ROLES AND RESPONSIBILITIES
User Account Management: Configure and manage user accounts, permissions, and access rights within the organization's IT systems, applications, and network resources.
Access Control Inventory: Maintain a comprehensive inventory of all user permissions granted across various IT systems, applications, and network resources.
Compliance Support: Support compliance efforts by ensuring user permissions management practices align with regulatory requirements, industry standards, and internal policies.
Security Monitoring: Monitor security event logs, alerts, and notifications generated by security systems such as SIEM, IDS/IPS, and endpoint protection solutions.
Incident Detection and Investigation: Detect, analyze, and investigate security incidents and anomalies identified through monitoring activities.
Threat Intelligence: Utilize threat intelligence feeds to stay ahead of emerging threats and provide actionable recommendations for risk mitigation strategies.
Security Controls Implementation: Support implementing security controls, policies, and procedures.
Remediation Planning: Assist in implementing remediation plans based on findings from various security assessments.
Risk Mitigation: Based on data analysis, research, and emerging technologies, provide recommendations for mitigating informationsecurity risks and improving security controls.
Collaboration: Collaborate closely with team members to solve security-related issues and improve overall security posture.
Other Responsibilities: Perform other job-related duties as assigned.
EDUCATION & PROFESSIONAL EXPERIENCE
Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.
2-4 years of hands-on experience in IT Security roles.
Experience with security tools such as SIEM, Firewalls, Endpoint Protection Solutions, and permission management.
Experience working in a highly regulated industry. (preferred)
LICENSURE / CERTIFICATION
Technical certifications such as Security+, CySA+, Network+ or equivalent are preferred.
PROFESSIONAL COMPETENCIES
Skills:
Excellent problem-solving and analytical skills with the ability to diagnose and resolve technical issues.
Strong communication and interpersonal skills to provide effective technical support and collaborate with stakeholders.
Ability to manage multiple tasks, prioritize, and meet deadlines in a dynamic environment.
Strong, structured, process-driven, and analytical skills.
Demonstrate skills in building relationships within departments and between departments.
Good research skills.
Knowledge:
Familiarity with IT Security frameworks (e.g., NIST CSF, CIS Controls)
Proficiency in Microsoft Office: Excel, Word, Access, and Microsoft Outlook.
Excellent knowledge of Customer Service best practices.
Strong knowledge of computer hardware, software, and networking principles.
Technical research and development knowledge are desired.
Fluency in spoken and written Spanish and English.
Abilities:
Understand existing and emerging technologies.
Understand business practices, approaches, organization, politics, and culture.
Demonstrate ability to work under pressure with compressed deadlines and multiple deliverables.
Demonstrated ability to communicate ideas clearly and concisely to leadership.
Ability to work well as a member of a team or alone.
Willingness to take ownership of problems and follow through to completion.
Ability to prioritize and manage time.
Arrive at work promptly and consistently.
Proven ability to work in an ambiguous environment and collaborate across multiple areas to achieve a common business objective.
TPIS is an Equal Employment Opportunity Employer Minorities / Females / Disable / Veterans
$38k-53k yearly est. Auto-Apply 16d ago
IT Security Analyst
Pharmpix Corporation
Information security analyst job in Guaynabo, PR
The IT SecurityAnalyst plays a key role in safeguarding the organization's digital assets and ensuring information systems' confidentiality, integrity, and availability. In addition to monitoring, analyzing, and responding to security incidents and threats, the position oversees access control measures and manages permissions for the organization's corporate domain and applications. Collaborating with cross-functional teams, the IT SecurityAnalyst assesses risks, implements security controls, and ensures compliance with industry standards and regulations.
ESSENTIAL ROLES AND RESPONSIBILITIES
User Account Management : Configure and manage user accounts, permissions, and access rights within the organization's IT systems, applications, and network resources.
Access Control Inventory: Maintain a comprehensive inventory of all user permissions granted across various IT systems, applications, and network resources.
Compliance Support: Support compliance efforts by ensuring user permissions management practices align with regulatory requirements, industry standards, and internal policies.
Security Monitoring: Monitor security event logs, alerts, and notifications generated by security systems such as SIEM, IDS/IPS, and endpoint protection solutions.
Incident Detection and Investigation: Detect, analyze, and investigate security incidents and anomalies identified through monitoring activities.
Threat Intelligence : Utilize threat intelligence feeds to stay ahead of emerging threats and provide actionable recommendations for risk mitigation strategies.
Security Controls Implementation : Support implementing security controls, policies, and procedures.
Remediation Planning : Assist in implementing remediation plans based on findings from various security assessments.
Risk Mitigation : Based on data analysis, research, and emerging technologies, provide recommendations for mitigating informationsecurity risks and improving security controls.
Collaboration : Collaborate closely with team members to solve security-related issues and improve overall security posture.
Other Responsibilities : Perform other job-related duties as assigned.
EDUCATION & PROFESSIONAL EXPERIENCE
Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.
2-4 years of hands-on experience in IT Security roles.
Experience with security tools such as SIEM, Firewalls, Endpoint Protection Solutions, and permission management.
Experience working in a highly regulated industry. (preferred)
LICENSURE / CERTIFICATION
Technical certifications such as Security+, CySA+, Network+ or equivalent are preferred.
PROFESSIONAL COMPETENCIES
Skills:
Excellent problem-solving and analytical skills with the ability to diagnose and resolve technical issues.
Strong communication and interpersonal skills to provide effective technical support and collaborate with stakeholders.
Ability to manage multiple tasks, prioritize, and meet deadlines in a dynamic environment.
Strong, structured, process-driven, and analytical skills.
Demonstrate skills in building relationships within departments and between departments.
Good research skills.
Knowledge:
Familiarity with IT Security frameworks (e.g., NIST CSF, CIS Controls)
Proficiency in Microsoft Office: Excel, Word, Access, and Microsoft Outlook.
Excellent knowledge of Customer Service best practices.
Strong knowledge of computer hardware, software, and networking principles.
Technical research and development knowledge are desired.
Fluency in spoken and written Spanish and English.
Abilities:
Understand existing and emerging technologies.
Understand business practices, approaches, organization, politics, and culture.
Demonstrate ability to work under pressure with compressed deadlines and multiple deliverables.
Demonstrated ability to communicate ideas clearly and concisely to leadership.
Ability to work well as a member of a team or alone.
Willingness to take ownership of problems and follow through to completion.
Ability to prioritize and manage time.
Arrive at work promptly and consistently.
Proven ability to work in an ambiguous environment and collaborate across multiple areas to achieve a common business objective.
PHYSICAL AND MENTAL DEMANDS
The physical demands described here represent those that an employee must meet to perform the essential functions of this job successfully. While performing the duties of this job, the employee is regularly required to talk or hear, sit, stand, and walk.
The position requires that the weight be lifted, and force is exerted up to 50 pounds.
Reasonable accommodation may be made to enable individuals with disabilities to perform essential functions.
ENVIRONMENTAL AND WORKING CONDITIONS
This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets, and fax machines. Require evening or weekend work.
PharmPix is an Equal Employment Opportunity Employer Minorities / Females / Disable / Veterans
$38k-53k yearly est. Auto-Apply 60d+ ago
Security Engineer (Epic) - San Juan, PR
Unitedhealth Group Inc. 4.6
Information security analyst job in San Juan, PR
Optum Insight is improving the flow of health data and information to create a more connected system. We remove friction and drive alignment between care providers and payers, and ultimately consumers. Our deep expertise in the industry and innovative technology empower us to help organizations reduce costs while improving risk management, quality and revenue growth. Ready to help us deliver results that improve lives? Join us to start Caring. Connecting. Growing together.
As an Epic Security Engineer within the Identity Access Operations team, you will play a critical role in managing user access across both Epic applications and enterprise systems. You will oversee automated and manual provisioning processes, ensure compliance with organizational and regulatory requirements, and collaborate with technical, clinical, and operational stakeholders to maintain a secure and efficient access environment. Your responsibilities will include administering Epic Security structures such as templates, roles, security classes, and provider records, while also supporting enterprise identity operations.
Primary Responsibilities:
* Work with Optum Connect/OITPS Leaders to understand and define the Manual Access Provisioning objectives, commitments, roadmaps specific to each client as well as under managed services (shared teams)
* Review and process access requests from users and departments. Validate the accuracy and completeness of request information
* Ensure compliance with access control policies and procedures. Coordinate with relevant stakeholders to obtain necessary approvals
* Manage access rights and privileges, including role-based access control (RBAC) and attribute-based access control (ABAC)
* Review, validate, and process Epic access requests, ensuring accuracy and alignment with clinical, operational, and technical workflows
* Create, modify, and retire Epic user access leveraging EMP, SER, ECL, LRP, and department-level configurations
* Apply and maintain Epic user templates, roles, and security classes to ensure consistent Least Privilege access across the organization
* Collaborate with Epic application teams to understand module-specific access requirements.
* Conduct Epic access audits to identify unused entitlements, access drift, or misaligned permissions
* Ensure compliance with internal access control policies and external regulations. Identify and address potential security risks related to access provisioning. Provide guidance and training to users and departments on access management best practices
* Collaborate with IT teams, business units, and security departments to understand their access requirements
* Build and maintain positive relationships with stakeholders. Provide timely and accurate information on access provisioning activities
* Mentor a team of analysts, providing guidance, support. Assign tasks, monitor progress, and ensure deadlines are met. Foster a collaborative and productive work environment
* Conduct in-depth data analysis to uncover insights and support decision-making. Utilize advanced analytical techniques and tools to extract meaningful information from large datasets
* ENGLISH PROFICIENCY ASSESSMENT WILL BE REQUIRED AFTER APPLICATION*
You'll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.
Required Qualifications:
* 5+ years of IAM experience with hands-on Epic Security provisioning and administration
* Proven solid understanding of IAM principles, especially in healthcare environments
* Experience with Epic modules, security classes, roles, templates, SER/EMP management, and access troubleshooting
* Experience with various identity and access management tools and systems
* Proven excellent organizational and time management skills
* Proven excellent problem-solving and analytical skills
* Proven solid communication and interpersonal skills
* Proficiency in data analysis tools and techniques (e.g., SQL, Python, R, Excel)
* Fully Bilingual Spanish/English proficiency
* Reside in Puerto Rico
Preferred Qualifications:
* Certifications in identity and access management or security
* Experience with automated provisioning tools and workflows
* Proven knowledge of industry standards and regulations related to access management (e.g., GDPR, HIPAA)
At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.
UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.
UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.
$62k-73k yearly est. 12d ago
Principal Security Analyst
Oracle 4.6
Information security analyst job in San Juan, PR
Develops and executes programs and processes to reduce informationsecurity risk and strengthen Oracle's security posture. **Responsibilities** Supports the strengthening of Oracle's security posture, focusing on one or more of the following: risk management; regulatory compliance; threat and vulnerability management; incident management and response; security policy development and enforcement; privacy; informationsecurity education, training and awareness (ISETA); digital forensics and similar focus areas.
Risk Management: Brings advanced level skills to assess the informationsecurity risk associated with existing and proposed business operational programs, systems, applications, practices and procedures in very complex, business-critical environments. May conduct and document very complex informationsecurity risk assessments. May assist in the creation and implementation of security solutions and programs.
Regulatory Compliance: Brings advanced level skills to manage programs to establish, document and track compliance to industry and government standards and regulations, e.g. ISO-27001, PCI-DSS, HIPAA, FedRAMP, GDPR, etc. Researches and interprets current and pending governmental laws and regulations, industry standards and customer and vendor contracts to communicate compliance requirements to the business. Participates in industry forums monitoring developments in regulatory compliance.
Threat and Vulnerability Management: Brings advanced level skills to research, evaluate, track, and manage informationsecurity threats and vulnerabilities in situations where in-depth analysis of ambiguous information is required.
Incident Management and response: Brings advanced level skills to respond to security events, identifying possible intrusions and responding in line with Oracle incident response playbooks. May operate as Incident Commander on serious incidents.
Digital Forensics: Brings advanced level skills to conduct data collection, preservation and forensic analysis of digital media independently, where an advanced understanding of forensic techniques is required.
Other areas of focus may include duties providing advanced level skills and knowledge to manage InformationSecurity Education, Training and Awareness programs. In a Corporate Security role, may manage the creation, review and approval of corporate informationsecurity policies.
Mentors and trains other team members.
Compiles information and reports for management.
Disclaimer:
**Certain US customer or client-facing roles may be required to comply with applicable requirements, such as immunization and occupational health mandates.**
**Range and benefit information provided in this posting are specific to the stated locations only**
US: Hiring Range in USD from: $104,200 to $223,400 per annum. May be eligible for bonus and equity.
Oracle maintains broad salary ranges for its roles in order to account for variations in knowledge, skills, experience, market conditions and locations, as well as reflect Oracle's differing products, industries and lines of business.
Candidates are typically placed into the range based on the preceding factors as well as internal peer equity.
Oracle US offers a comprehensive benefits package which includes the following:
1. Medical, dental, and vision insurance, including expert medical opinion
2. Short term disability and long term disability
3. Life insurance and AD&D
4. Supplemental life insurance (Employee/Spouse/Child)
5. Health care and dependent care Flexible Spending Accounts
6. Pre-tax commuter and parking benefits
7. 401(k) Savings and Investment Plan with company match
8. Paid time off: Flexible Vacation is provided to all eligible employees assigned to a salaried (non-overtime eligible) position. Accrued Vacation is provided to all other employees eligible for vacation benefits. For employees working at least 35 hours per week, the vacation accrual rate is 13 days annually for the first three years of employment and 18 days annually for subsequent years of employment. Vacation accrual is prorated for employees working between 20 and 34 hours per week. Employees working fewer than 20 hours per week are not eligible for vacation.
9. 11 paid holidays
10. Paid sick leave: 72 hours of paid sick leave upon date of hire. Refreshes each calendar year. Unused balance will carry over each year up to a maximum cap of 112 hours.
11. Paid parental leave
12. Adoption assistance
13. Employee Stock Purchase Plan
14. Financial planning and group legal
15. Voluntary benefits including auto, homeowner and pet insurance
The role will generally accept applications for at least three calendar days from the posting date or as long as the job remains posted.
Career Level - IC4
**About Us**
As a world leader in cloud solutions, Oracle uses tomorrow's technology to tackle today's challenges. We've partnered with industry-leaders in almost every sector-and continue to thrive after 40+ years of change by operating with integrity.
We know that true innovation starts when everyone is empowered to contribute. That's why we're committed to growing an inclusive workforce that promotes opportunities for all.
Oracle careers open the door to global opportunities where work-life balance flourishes. We offer competitive benefits based on parity and consistency and support our people with flexible medical, life insurance, and retirement options. We also encourage employees to give back to their communities through our volunteer programs.
We're committed to including people with disabilities at all stages of the employment process. If you require accessibility assistance or accommodation for a disability at any point, let us know by emailing accommodation-request_************* or by calling *************** in the United States.
Oracle is an Equal Employment Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability and protected veterans' status, or any other characteristic protected by law. Oracle will consider for employment qualified applicants with arrest and conviction records pursuant to applicable law.
$51k-77k yearly est. 5d ago
Engineer, Information Security and Risk
Cardinal Health 4.4
Information security analyst job in San Juan, PR
Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500.
**_Department Overview:_**
**Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value.
**InformationSecurity and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments.
Lead IAM work for new customer onboardings and migrations. Collaborate with CAH Account Management, Application Teams, and Customers to design, implement, and test federated SSO solution based on customer login requirements. Provide technical guidance and act as primary point of contact for business partners and customer related to IAM work for onboarding. Additional responsibilities include supporting application integrations and enhancing SSO self service application onboarding.
**Responsibilities:**
+ **Customer Onboarding IAM Efforts - Strategy & Execution :** Lead the planning, design, and execution for Customer Onboarding via federated SSO, ensuring alignment with overall business and security objectives. This includes assessing multiple Cardinal Health e-commerce applications, understanding login requirements for new/existing customers, designing, testing and implementing solutions etc to ensure top notch user login experience and enhancing Cardinal Health's security posture.
+ **Collaboration & Communication:** Coordinate cross-functional teams, including Customer Business and IT teams, Cardinal Health's Account Management/Sales and Application teams, InformationSecurity and others to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical internal and external stakeholders.
+ **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning.
+ **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions.
+ **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC) frameworks.
+ **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration.
+ **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends.
**Qualifications:**
+ **Education:** Bachelor's degree in Computer Science, Information Technology, InformationSecurity, or a related field, or equivalent practical experience.
+ **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred.
+ **Technical Expertise:**
+ Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA
+ Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP).
+ Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint).
+ Strong understanding of security principles, risk management, and access control models (e.g., RBAC).
+ Familiarity with Zero Trust architecture principles.
+ Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context.
+ Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders.
+ Detail-oriented mindset to ensure precise access control configurations and compliance.
+ Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements
+ Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform.
+ Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment.
**Anticipated salary range:** $94,900 - $135,600
**Bonus eligible:** No
**Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being.
+ Medical, dental and vision coverage
+ Paid time off plan
+ Health savings account (HSA)
+ 401k savings plan
+ Access to wages before pay day with my FlexPay
+ Flexible spending accounts (FSAs)
+ Short- and long-term disability coverage
+ Work-Life resources
+ Paid parental leave
+ Healthy lifestyle programs
**Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible.
The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity.
_Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._
_Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._
_To read and review this privacy notice click_ here (***************************************************************************************************************************
$94.9k-135.6k yearly 60d ago
IT Security Analyst
Pharmpix
Information security analyst job in Guaynabo, PR
Job Description
The IT SecurityAnalyst plays a key role in safeguarding the organization's digital assets and ensuring information systems' confidentiality, integrity, and availability. In addition to monitoring, analyzing, and responding to security incidents and threats, the position oversees access control measures and manages permissions for the organization's corporate domain and applications. Collaborating with cross-functional teams, the IT SecurityAnalyst assesses risks, implements security controls, and ensures compliance with industry standards and regulations.
ESSENTIAL ROLES AND RESPONSIBILITIES
User Account Management: Configure and manage user accounts, permissions, and access rights within the organization's IT systems, applications, and network resources.
Access Control Inventory: Maintain a comprehensive inventory of all user permissions granted across various IT systems, applications, and network resources.
Compliance Support: Support compliance efforts by ensuring user permissions management practices align with regulatory requirements, industry standards, and internal policies.
Security Monitoring: Monitor security event logs, alerts, and notifications generated by security systems such as SIEM, IDS/IPS, and endpoint protection solutions.
Incident Detection and Investigation: Detect, analyze, and investigate security incidents and anomalies identified through monitoring activities.
Threat Intelligence: Utilize threat intelligence feeds to stay ahead of emerging threats and provide actionable recommendations for risk mitigation strategies.
Security Controls Implementation: Support implementing security controls, policies, and procedures.
Remediation Planning: Assist in implementing remediation plans based on findings from various security assessments.
Risk Mitigation: Based on data analysis, research, and emerging technologies, provide recommendations for mitigating informationsecurity risks and improving security controls.
Collaboration: Collaborate closely with team members to solve security-related issues and improve overall security posture.
Other Responsibilities: Perform other job-related duties as assigned.
EDUCATION & PROFESSIONAL EXPERIENCE
Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.
2-4 years of hands-on experience in IT Security roles.
Experience with security tools such as SIEM, Firewalls, Endpoint Protection Solutions, and permission management.
Experience working in a highly regulated industry. (preferred)
LICENSURE / CERTIFICATION
Technical certifications such as Security+, CySA+, Network+ or equivalent are preferred.
PROFESSIONAL COMPETENCIES
Skills:
Excellent problem-solving and analytical skills with the ability to diagnose and resolve technical issues.
Strong communication and interpersonal skills to provide effective technical support and collaborate with stakeholders.
Ability to manage multiple tasks, prioritize, and meet deadlines in a dynamic environment.
Strong, structured, process-driven, and analytical skills.
Demonstrate skills in building relationships within departments and between departments.
Good research skills.
Knowledge:
Familiarity with IT Security frameworks (e.g., NIST CSF, CIS Controls)
Proficiency in Microsoft Office: Excel, Word, Access, and Microsoft Outlook.
Excellent knowledge of Customer Service best practices.
Strong knowledge of computer hardware, software, and networking principles.
Technical research and development knowledge are desired.
Fluency in spoken and written Spanish and English.
Abilities:
Understand existing and emerging technologies.
Understand business practices, approaches, organization, politics, and culture.
Demonstrate ability to work under pressure with compressed deadlines and multiple deliverables.
Demonstrated ability to communicate ideas clearly and concisely to leadership.
Ability to work well as a member of a team or alone.
Willingness to take ownership of problems and follow through to completion.
Ability to prioritize and manage time.
Arrive at work promptly and consistently.
Proven ability to work in an ambiguous environment and collaborate across multiple areas to achieve a common business objective.
PHYSICAL AND MENTAL DEMANDS
The physical demands described here represent those that an employee must meet to perform the essential functions of this job successfully. While performing the duties of this job, the employee is regularly required to talk or hear, sit, stand, and walk.
The position requires that the weight be lifted, and force is exerted up to 50 pounds.
Reasonable accommodation may be made to enable individuals with disabilities to perform essential functions.
ENVIRONMENTAL AND WORKING CONDITIONS
This job operates in a professional office environment. This role routinely uses standard office equipment such as computers, phones, photocopiers, filing cabinets, and fax machines. Require evening or weekend work.
PharmPix is an Equal Employment Opportunity Employer Minorities / Females / Disable / Veterans
$38k-53k yearly est. 26d ago
IT Tech Analyst
Zenus Bank
Information security analyst job in San Juan, PR
We are seeking an IT Tech Analyst with a strong technical background and problem-solving skills to support, maintain, and enhance our IT infrastructure and applications. This role will involve working with various technologies to ensure optimal system performance, security, and user support. The ideal candidate will be passionate about technology, eager to learn, and capable of adapting to new tools and methodologies.
Responsibilities:
Provide technical support and troubleshooting for IT systems, applications, and networks.
Monitor system performance, identify issues, and implement solutions to maintain high availability and efficiency.
Collaborate with development teams to deploy, maintain, and enhance software applications.
Assist in managing cloud-based solutions and on-premises IT infrastructure.
Ensure IT security compliance by implementing and maintaining security protocols and best practices.
Document technical processes, configurations, and troubleshooting guides for future reference.
Analyze business needs and recommend IT solutions to optimize workflows and improve productivity.
Participate in system upgrades, migrations, and integration projects.
Work closely with cross-functional teams to support IT initiatives and drive innovation.
Stay updated with emerging technologies and industry best practices.
Qualifications and Requirements
Bachelor's degree in Information Technology, Computer Science, or a related field (or equivalent experience).
Fully bilingual (English & Spanish) or native English speaker.
3+ years of experience in IT support, system administration, or a related technical role.
Strong knowledge of operating systems (Windows, Linux, mac OS) and troubleshooting techniques.
Experience with cloud platforms, preferably Azure (Azure Virtual Machines, Azure Active Directory, Azure Functions).
Understanding of networking principles (TCP/IP, VPNs, firewalls, DNS, DHCP).
Familiarity with IT security protocols, endpoint protection, and compliance standards.
Experience with IT service management (ITSM) tools and ticketing systems.
Strong analytical and problem-solving skills with attention to detail.
Ability to work independently and efficiently under minimal supervision.
Knowledge of scripting languages (PowerShell, Python, or Bash) is a plus.
Experience with IT automation, monitoring tools, and CI/CD pipelines is a plus.
Prior experience in financial or banking IT environments is a plus.
$38k-53k yearly est. 60d+ ago
Security Engineer (Epic) - San Juan, PR
Unitedhealth Group 4.6
Information security analyst job in San Juan, PR
Optum Insight is improving the flow of health data and information to create a more connected system. We remove friction and drive alignment between care providers and payers, and ultimately consumers. Our deep expertise in the industry and innovative technology empower us to help organizations reduce costs while improving risk management, quality and revenue growth. Ready to help us deliver results that improve lives? Join us to start **Caring. Connecting. Growing together.**
As an Epic Security Engineer within the Identity Access Operations team, you will play a critical role in managing user access across both Epic applications and enterprise systems. You will oversee automated and manual provisioning processes, ensure compliance with organizational and regulatory requirements, and collaborate with technical, clinical, and operational stakeholders to maintain a secure and efficient access environment. Your responsibilities will include administering Epic Security structures such as templates, roles, security classes, and provider records, while also supporting enterprise identity operations.
**Primary Responsibilities:**
+ Work with Optum Connect/OITPS Leaders to understand and define the Manual Access Provisioning objectives, commitments, roadmaps specific to each client as well as under managed services (shared teams)
+ Review and process access requests from users and departments. Validate the accuracy and completeness of request information
+ Ensure compliance with access control policies and procedures. Coordinate with relevant stakeholders to obtain necessary approvals
+ Manage access rights and privileges, including role-based access control (RBAC) and attribute-based access control (ABAC)
+ Review, validate, and process Epic access requests, ensuring accuracy and alignment with clinical, operational, and technical workflows
+ Create, modify, and retire Epic user access leveraging EMP, SER, ECL, LRP, and department-level configurations
+ Apply and maintain Epic user templates, roles, and security classes to ensure consistent Least Privilege access across the organization
+ Collaborate with Epic application teams to understand module-specific access requirements.
+ Conduct Epic access audits to identify unused entitlements, access drift, or misaligned permissions
+ Ensure compliance with internal access control policies and external regulations. Identify and address potential security risks related to access provisioning. Provide guidance and training to users and departments on access management best practices
+ Collaborate with IT teams, business units, and security departments to understand their access requirements
+ Build and maintain positive relationships with stakeholders. Provide timely and accurate information on access provisioning activities
+ Mentor a team of analysts, providing guidance, support. Assign tasks, monitor progress, and ensure deadlines are met. Foster a collaborative and productive work environment
+ Conduct in-depth data analysis to uncover insights and support decision-making. Utilize advanced analytical techniques and tools to extract meaningful information from large datasets
*****ENGLISH PROFICIENCY ASSESSMENT WILL BE REQUIRED AFTER APPLICATION*****
You'll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.
**Required Qualifications:**
+ 5+ years of IAM experience with hands-on Epic Security provisioning and administration
+ Proven solid understanding of IAM principles, especially in healthcare environments
+ Experience with Epic modules, security classes, roles, templates, SER/EMP management, and access troubleshooting
+ Experience with various identity and access management tools and systems
+ Proven excellent organizational and time management skills
+ Proven excellent problem-solving and analytical skills
+ Proven solid communication and interpersonal skills
+ Proficiency in data analysis tools and techniques (e.g., SQL, Python, R, Excel)
+ Fully Bilingual Spanish/English proficiency
+ Reside in Puerto Rico
**Preferred Qualifications:**
+ Certifications in identity and access management or security
+ Experience with automated provisioning tools and workflows
+ Proven knowledge of industry standards and regulations related to access management (e.g., GDPR, HIPAA)
_At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission._
_UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations._
_UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment._
$62k-73k yearly est. 12d ago
Learn more about information security analyst jobs
How much does an information security analyst earn in Guaynabo, PR?
The average information security analyst in Guaynabo, PR earns between $38,000 and $89,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.
Average information security analyst salary in Guaynabo, PR