Post job

Information security analyst jobs in Meridian, ID - 113 jobs

All
Information Security Analyst
Information Technology Analyst
Information Security Engineer
Senior Security Analyst
Information Systems Security Manager
Security Architect
Cyber Security Analyst
Information Security Manager
Information Security Officer
  • IT Analyst (Supply Chain) (Oracle Expert)

    OIA Global 3.9company rating

    Information security analyst job in Portland, OR

    OIA Global Since its founding in 1988, OIA Global has grown into a $1 billion world-class logistics and packaging company that employs over 1,400 professionals in 28 countries. Our knowledge, solution design experience, and installed infrastructure give our customers the confidence and capability to extend their supply chains from emerging production areas to key commercial markets. Summary: This position liaises between business and technical groups and is responsible for creating documentation to ensure ongoing communication and development is clear. This role will focus primariy on creating and deploying reports that are utilized by both internal and external stakeholders. The Analyst helps ensure technical work is properly prioritized according to the priorities set by leadership and the project manager. This role serves as a primary contact coordinating user acceptance testing before and after production releases as well as production support responsibilities. Hybrid Role: Wil be expected to work designated days in the office and others from home. Location: 2100 S River Parkway, Suite 800, Portland, OR 97201 Salary Range: $80,000 to $110,000 annually The actual pay may vary based on several factors, including professional experience, hiring location, skills, and competencies. Duties and Responsibilities: Understand and discuss technical concepts with non-technical and technical employees Participate in Agile team ceremonies Conduct unit, system, and user acceptance testing to ensure changes meet requirements Lead requirement gathering sessions with users for small projects Document use cases and technical guidelines for assigned projects Resolve maintenance projects as they arise with guidance from Senior and/or Lead Analyst Identify issue patterns and participate in root cause analysis and resolution Responsible for system monitoring, support response and support queue management for any one of OIA's applications Occasional support outside normal business hours Required Skills and Abilities: To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. Experience leveraging both agile development and waterfall release approaches Experience with LEAN or other process improvement methodologies Experience with writing Functional and System documentation Knowledge of technology, vendors, services, and methodologies to build digital offerings Able to learn how to use flowchart and diagram tools such as LucidChart Familiarity with Application Integration Preferred Familiarity with RPA, AI, ML Preferred Strong leadership, team building, communication, and customer service skills Ability to function autonomously and use good judgment in a fast-paced, global environment Ability to adapt to changing priorities, shifting needs and moderate ambiguity Knowledge of and capable to introduce new technologies to the organization Ability to develop strategies for crucial solutions for the overall success of the business Experience in data analysis and data visualization to draw business-relevant conclusions Education and Experience: 2+ years experience as a business analyst or functional analyst or a similar role Must have hands on experience with Oracle ERP Experience with Power BI, Report development and testing Must have experience with the following ERP modules - General Ledger (GL), Accounts Payable (AP), Accounts Receivable (AR) Fixed Assets (FA), Purchasing (PO), Inventory (INV), Order Management (OM) Physical Requirements: Prolonged periods of sitting at a desk and working on a computer Ability to lift to 15lbs/5 kg Minimum to no travel required The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. OIA Global is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or disability. We offer an exciting and growth-oriented work environment, and OIA employees enjoy competitive salaries and excellent benefits.
    $80k-110k yearly 1d ago
  • Job icon imageJob icon image 2

    Looking for a job?

    Let Zippia find it for you.

  • IT Risk And Security Analyst

    Teksystems 4.4company rating

    Information security analyst job in Meridian, ID

    TEKsystems is currently seeking an IT Risk and Security Analyst for 3-month contract opening located in Meridian, Idaho. There is potential for this contract to extend longer term. *This will be a hybrid remote schedule. (3 days onsite in Meridian, Idaho and 2 days work from home) * Conduct Risk Assessments * Management of IT Risk Register * Compliance and Audit * IT control compliance * Security Analysis *Description* Support engagement type activities, including managing risk, conducting risk assessments, and ensuring compliance with IT controls. Ensures appropriate treatment of risk, compliance, and assurance from internal and external perspectives. Experience: 2 years in IT Risk Management Education: Must meet one of the following: Bachelors Degree in Computer Science, Electrical Engineering, or related technical field of study or equivalent work experience* International Degree equivalency Applicable certification(s) as defined by the leader + 2 years additional experience Associates Degree in Computer Science, Electrical Engineering, or related technical field + 2 years additional experience * (Two years relevant work experience is equivalent to one-year college) *Skills* Security, Compliance, Risk analysis *Experience Level* Intermediate Level *Job Type & Location*This is a Contract position based out of Meridian, ID. *Pay and Benefits*The pay range for this position is $30.00 - $40.00/hr. Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: * Medical, dental & vision * Critical Illness, Accident, and Hospital * 401(k) Retirement Plan - Pre-tax and Roth post-tax contributions available * Life Insurance (Voluntary Life & AD&D for the employee and dependents) * Short and long-term disability * Health Spending Account (HSA) * Transportation benefits * Employee Assistance Program * Time Off/Leave (PTO, Vacation or Sick Leave) *Workplace Type*This is a fully onsite position in Meridian,ID. *Application Deadline*This position is anticipated to close on Jan 21, 2026. h4>About TEKsystems: We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company. The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law. About TEKsystems and TEKsystems Global Services We're a leading provider of business and technology services. We accelerate business transformation for our customers. Our expertise in strategy, design, execution and operations unlocks business value through a range of solutions. We're a team of 80,000 strong, working with over 6,000 customers, including 80% of the Fortune 500 across North America, Europe and Asia, who partner with us for our scale, full-stack capabilities and speed. We're strategic thinkers, hands-on collaborators, helping customers capitalize on change and master the momentum of technology. We're building tomorrow by delivering business outcomes and making positive impacts in our global communities. TEKsystems and TEKsystems Global Services are Allegis Group companies. Learn more at TEKsystems.com. The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
    $30-40 hourly 2d ago
  • Cyber Security Analyst

    Thehivecareers.Co

    Information security analyst job in Oregon

    The Cyber Security Analyst will be responsible for protecting all of the companys hardware, software, and networks from cybercriminals. The analyst's primary role will be to understand the company IT infrastructure in detail in order to detect, evaluate and respond to threats that could potentially breach the network. The Cyber Security Analyst provides specific guidance and coaching to key security areas, e.g. key and encryption, secure software development. In this capacity, a cyber security analyst is part of the proactive work to help shape the tech delivery of the organization.The successful incumbent must possess excellent analytical, communication skills and be solution oriented. RESPONSIBILITIES AND DUTIES Responsible for understanding the global threat landscape and acting on threat intelligence. Conduct cyber security incident response, following industry standards of containment, eradication, recovery and lessons learned. Manage containment and eradication of threats and remediation of environment during or after an incident, including identifying potential business impact and communication with stakeholders Manage information security-related breaches Document event analysis and write reports of incident investigations. Perform forensic analysis on threat indicators and intelligence insight and identify impact of vulnerabilities Support the tech delivery in product and services teams with expert security knowledge relevant to a specific technology area or domain (e.g. Key & encryption, secure software development) Develop the required processes and tools to support the tech delivery teams Define and develop security guardrails relevant to the tech area/domain The above responsibilities are indicative of the work required and should not be seen as an exhaustive list. KNOWLEDGE AND SKILLS Security solutions (proxy, email gateway, IDS/IPS, FW, SIEM, SOAR, EDR etc.) Cloud, key and encryption management, SDLC concepts IT and security architecture Excellent English skills, both written and spoken. QUALIFICATIONS AND EXPERIENCE BSc. in Computer Science, Computer Engineering, Mathematics, Information Security or any related field (or equivalent work experience). Minimum of 3 years experience in the field Penetration testing (OWASP, MITRE etc.) experience Cyber Security certifications (e.g. Security+, GCIA, GCIH, GREM, CISSP, CEH, GCFA) DESIRED ATTRIBUTES AND BEHAVIOURAL COMPETENCIES Apply fundamental security concepts to cyber defense and understand business and risk to guide the cyber defense day to day operations. Manage cases with enterprise SIEM or Incident Management systems Support network investigations and network monitoring in a SOC environment. Perform vulnerability assessment and penetration testing SPECIAL CONDITIONS N/A FUNCTIONAL RELATIONSHIPS External: N/A Internal: Development team, Tech Lead, CTO PERFORMANCE CRITERIA Timely delivery of agreed daily, weekly and monthly KPIs
    $86k-119k yearly est. 60d+ ago
  • Information Security Analyst I

    Beneficial State Bank 3.2company rating

    Information security analyst job in Portland, OR

    TITLE: N/A JOB CODE: FLSA: Exempt SALARY GRADE: 7 CATEGORY: Full-time UNION REPRESENTATION: NA SCHEDULE: Hybrid SUPERVISORY ROLE Y/N: 11.2025 The Information Security Analyst I plays a critical role in safeguarding the organization's systems and information assets. This position supports the development and implementation of security strategies, tools, and guidelines to protect against unauthorized access, data breaches, and system disruptions. Responsibilities include monitoring and responding to Information Security-related alerts, supporting audit and risk assessment activities, evaluating internal controls, and recommending improvements to enhance security posture. The analyst assists in migrating non-compliant environments to meet regulatory standards and ensures adherence to data protection laws and banking industry compliance requirements. This role is foundational to maintaining the confidentiality, integrity, and availability of sensitive financial data and supporting the organization's overall cybersecurity framework. ESSENTIAL DUTIES Identity and Access Management Support access provisioning, modification, and termination processes to ensure timely and secure access control. Conduct administrator activity and user access reviews across IT systems, including privileged access audits and firewall/cloud app usage monitoring. Maintain asset and access inventories, perform recurring audits of critical systems, and reconcile against endpoint and network tools. Security Monitoring and Incident Response Monitor and respond to alerts from SIEM, IDS, firewalls, and endpoint protection systems. Conduct vulnerability scans, track remediation efforts, and facilitate related meetings. Maintain readiness for incident response activation, including participation in tabletop exercises. System Administration and Tool Management Administration of cloud computing environments, conditional access, and guest provisioning following established best practices. Manage software controls, browser extensions, and patching processes. Administer security camera system and ensure system uptime. Administer Mobile Device Management system. Threat Intelligence and Continuous Improvement Stay informed on emerging threats in the banking sector and contribute to threat intelligence reporting. Research and test new security tools, controls, and AI applications to enhance the Bank's security posture. Correctly identify true and false positives in alerting systems and tune these systems for continuous improvement. Security Awareness and Training Support phishing simulations and training campaigns, track completion, and report metrics to management. Documentation and Reporting Log findings, remediation efforts, and audit results in a structured ticketing system. Assist with vendor management program administration and reporting. Data Protection and Compliance Ensure compliance with GLBA, FFIEC, and other applicable regulations through log retention, configuration management oversight, and DLP monitoring. Administer data classification tools and respond to violations involving PII or sensitive data. Audit VPN usage and test controls across email, endpoint, and network security platforms. Completes mandatory compliance training in accordance with established deadlines. The position performs duties specific to the position and other functions as assigned. ROLE COMPETENCIES/SKILLS Attention to Detail Collaboration & Communication Diversity & Inclusion Execution & Ownership Time Management Compliance Innovation Systems Thinking Data Analysis & Management Information Security Network Operations Critical Thinking Consulting Analytical Thinking ENVIRONMENT, PHYSICAL & MENTAL ACTIVITIES The incumbent is in a non-confined office-type setting in which they are free to move about at will. It may include some minor annoyances such as noise, odors, drafts, etc. For Hybrid and Remote roles, work may also be performed away from BSB worksites depending on the position and requirements. For Hybrid/Remote work, employees are required to have an environment when working at home that has a dependable, high-speed internet connection and environment conducive to frequent phone or internet calls where private, confidential or other information is not visible, able to be overheard, or physically or electronically accessible to anyone else. The incumbent in the course of performing this position spends time writing, typing, speaking, listening, lifting (up to 10 pounds), driving, carrying, seeing (such as close, color and peripheral vision, depth perception and adjusted focus), sitting, pulling, walking, standing, squatting, kneeling and reaching. The incumbent for this position may operate any or all of the following: personal computer, cellular telephone, printer, fax, and other standard office equipment. The incumbent in this position must be able to accommodate reading documents or instruments, detailed work, problem solving, customer contact, reasoning, math, language, presentations, verbal and written communication, analytical reasoning, stress, multiple concurrent tasks and constant interruptions. The work environment characteristics, physical and mental demands described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. POSITION REQUIREMENTS Minimum Qualifications Bachelor's degree in Information Technology, Cybersecurity, or a related field, or equivalent combination of education and experience. 5 years of professional experience in IT support or related technical roles. Foundational understanding of cybersecurity principles, including access control, endpoint protection, and network monitoring. Familiarity with Microsoft 365, Active Directory, and basic system administration tasks. Ability to conduct audits, manage tickets, and document findings accurately. Strong analytical and troubleshooting skills. Effective communication skills and ability to collaborate across departments. Preferred Qualifications Bachelor's degree in Information Technology, Cybersecurity, or a related field. Experience with banking industry compliance standards (e.g., GLBA, FFIEC). Hands-on experience with security tools such as SIEM, DLP, IDS/IPS, EDR, Email Filtering, and Firewalls. Exposure to vulnerability management platforms and identity/access management processes. Familiarity with Microsoft cloud services and Mobile Device Management. Experience supporting or administering phishing simulations, security awareness programs, or similar efforts. Knowledge of vendor management platforms and data classification tools. Management reserves the right to change this position description at any time according to business needs. #LI_Hybrid
    $111k-144k yearly est. 12d ago
  • Information Security Analyst

    Mid Oregon Federal Credit Union 3.5company rating

    Information security analyst job in Bend, OR

    JOB TITLE: Information Security Analyst PRIMARY FUNCTION: Responsible for protecting the confidentiality, integrity, and availability of the credit union's information systems and member data. This role monitors security tools, investigates alerts, supports compliance with regulatory requirements (NCUA, FFIEC, GLBA), and assists in the development and implementation of security policies, controls, and best practices. The Information Security Analyst works closely with IT, third-party vendors, auditors, and business units to ensure a secure operating environment for both members and staff. REQUIRED SKILLS: Ability to monitor security and incident response. Understanding of cybersecurity concepts, frameworks, and tools. Knowledge of credit union or financial industry regulatory requirements. Strong accuracy and attention to detail. Strong verbal, written, listening, and interviewing skills. Must be PC-proficient in a Windows environment. Able to utilize intranet and email, departmental software, phone, Credit Union's network, presentation software and data processing systems within area of responsibility. EXPERIENCE: Three to five years of similar or related experience. Experience managing an information security program in a regulated industry. EDUCATION: (1) A bachelor's degree, or (2) achievement of formal certifications recognized in the industry as equivalent to a bachelor's degree (e.g., information technology certifications in lieu of a degree). Preferred: Professional certifications such as CompTIA Security+, CySA+, and/or CCSK/CCSP STARTING SALARY: Depending on Experience. BENEFITS: Medical, Dental, Vision, Life/Disability/AD&D, EAP, Aflac, 401k with Matching, Paid Vacation/Sick/Float Holiday, Paid Volunteer Hours STARTING DATE: February 1, 2026 WORK LOCATION: On-site (NOT Remote) Bend, OR PROPOSED SCHEDULE: Monday thru Friday, 8:00am-5:00pm Requirements Physical Requirements: The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. While performing the duties of this Job, the employee must perform the following physical tasks. Speaking on the telephone approximately 20% percent of workday. May need to shovel snow occasionally outside the office to clear sidewalks, etc. Continuous sitting, standing, talking, and listening for extended periods of time, use of hands in repetitive tasks such as typing and writing, speaking, and hearing for interaction with members and coworkers, clarity of vision at 20 inches or less for processing of member transactions and computer usage, and memory demands in recalling Credit Union policies, services, and state and federal regulations. Occasional lifting up to 35 pounds to move supplies or office equipment, bending, squatting, or kneeling to reach supplies on ground level, reaching above shoulder level to reach supplies overhead. Work Environment: The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Employees work in an office environment with average noise levels impacted by computers, printers, scanners, phones, and other surrounding conversations. The credit union is located in Central Oregon and weather during the winter may impact travel. Seasonal fires may impact air quality. AAP/EEO Statement: Mid Oregon Credit Union is committed to building a diverse and inclusive organization, provide equal employment opportunities to all employees and applicants for employment, and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Nothing in this restricts management's right to assign or reassign duties and responsibilities to this job at any time. Mid Oregon Credit Union believes that each employee makes a significant contribution to our success. This position description is designed to outline primary duties, qualifications, and job scope, but not limit our employees nor the organization to just the work identified. It is our expectation that each employee will offer their services wherever and whenever necessary to ensure the success of the company. This Job Description is not a complete statement of all duties and responsibilities comprising the position. _________________________________________________ ________________________ Printed Employee Name Date ________________________________________________ Employee Signature
    $71k-108k yearly est. 5d ago
  • Information Security Operations Analyst

    Moda Health 4.5company rating

    Information security analyst job in Portland, OR

    Job Description Let's do great things, together! About Moda Founded in Oregon in 1955, Moda is proud to be a company of real people committed to quality. Today, like then, we're focused on building a better future for healthcare. That starts by offering outstanding coverage to our members, compassionate support to our community and comprehensive benefits to our employees. It keeps going by connecting with neighbors to create healthy spaces and places, together. Moda values diversity and inclusion in our workplace. We aim to demonstrate our commitment to diversity through all our business practices and invite applications from candidates that share our commitment to this diversity. Our diverse experiences and perspectives help us become a stronger organization. Let's be better together. Position Summary The Operations Analyst is a technical role within Moda's Information Security team and will play a vital role in keeping the organization's proprietary and sensitive information secure. This position works interdepartmentally to investigate issues, identify and correct flaws in security systems, solutions, and programs, and recommend measures to improve the company's overall security posture. Acting as a liaison between Security and IT management, the analyst assists IT strategy and architecture design from a security perspective and identifies issues, concerns, or recommendations as the organization grows its technology infrastructure and processes. This is a FT WFH position. Pay Range $70,496.52 - $91,647.55 annually (depending on experience) *This role may be classified as hourly (non-exempt) depending on the applicant's location. Actual pay is based on qualifications. Applicants who do not exceed the minimum qualifications will only be eligible for the low end of the pay range. Please fill out an application on our company page, linked below, to be considered for this position. ************************** GK=27768922&refresh=true Benefits: Medical, Dental, Vision, Pharmacy, Life, & Disability 401K- Matching FSA Employee Assistance Program PTO and Company Paid Holidays Required Skills, Experience & Education: Bachelor's or master's in Computer Science, Information Security, Cybersecurity, or a related field. 5+ years of experience as a security operations analyst or in related fields such as IT audit, enterprise risk management, penetration testing, or red team/incident response. Experience with common security tools such as SIEM platforms, EDR solutions, and cloud platforms (e.g., Microsoft Azure, Amazon AWS). Knowledge of Microsoft Azure configuration and management is highly desirable. 3+ years of experience with regulatory compliance and information security management frameworks (e.g., HIPAA, NIST, IS0 27000, or COBIT). Strong documentation and reporting skills, including the ability to record security events, investigations, and recommendations for technical and non-technical audiences. Excellent collaboration and communication skills with the ability to influence and work effectively across cross-functional teams. Industry recognized cybersecurity certification (e.g., CISSP, CISM, CompTIA Security+) preferred. Primary Functions: Defend against cybersecurity incidents and identify, analyze, communicate, and contain incidents as they occur. Monitor systems and networks for security alerts, notifications, and issues including patching and update process issues and investigate and document any security issues or events that may occur. Own and drive the investigation of security events and other cybersecurity incidents including review, triage, and response to alerts and notifications. Take a lead role in the documentation of security events and incidents and the assessment of the damage they cause. Review threat intelligence and analyze the current threat landscape and apply threat analysis to Moda's infrastructure systems and networks to identify and address vulnerabilities or exploitable attack paths. Build and drive proactive threat hunting programs including detailed threat analysis of exploitable vulnerabilities leading to actionable remediation plans. Work with IT resources and architects to develop and implement cloud security strategies to facilitate migration of key assets into a public cloud hosted environment. Advise on installation and configuration of security controls, systems, and software to protect systems and information infrastructure and recommend enhancements based on compliance requirements and industry best practices. Work with IT and Security leadership to perform tests or support external testing such as network penetration tests, vulnerability testing, and disaster response failover tests to uncover network vulnerabilities. Advise on installation and configuration of security controls, systems, and software to protect systems and information infrastructure and recommend enhancements based on compliance requirements and industry best practices. Take a proactive and operational role in creating the best practices for IT security companywide. Support cybersecurity risk assessment activities. Work with both Security and IT management to ensure security policies and goals are met in infrastructure and development contexts. Stay current on IT security trends and news including evolving standards. Collaborate and communicate effectively with cross functional colleagues at all levels. Other duties as assigned. Working Conditions: Remote office environment with extensive close PC and keyboard use, constant sitting, and frequent phone communication. Must be able to navigate multiple computer screens. A reliable, high-speed, hard-wired internet connection required to support remote or hybrid work. Must be comfortable being on camera for virtual training and meetings. Work in excess of standard workweek, including evenings and occasional weekends, to meet business need. Internally with all departments. Externally with auditors, clients, technology partners, and other various entities. Together, we can be more. We can be better. Moda Health seeks to allow equal employment opportunities for all qualified persons without regard to race, religion, color, age, sex, sexual orientation, national origin, marital status, disability, veteran status or any other status protected by law. This is applicable to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absences, compensation, and training. For more information regarding accommodations, please direct your questions to Kristy Nehler & Danielle Baker via our ***************************** email.
    $70.5k-91.6k yearly Easy Apply 13d ago
  • Information Security Analyst

    Idaho Health Insurance Exchange

    Information security analyst job in Boise, ID

    Full-time Description Information Security Analyst Reports to: Privacy and Security Officer FLSA status: Exempt This role is 100% in-office. No hybrid or remote work arrangements are available. Position Summary The Information Security Analyst (ISA) will work alongside the Privacy and Security Officer to implement and administer IT security and privacy functions across the organization Responsibilities (Position may include additional functions not listed) Primarily responsible for monitoring the IT security infrastructure, assisting with articulating technical security requirements, monitoring the effectiveness of existing IT security framework, making recommendations for enhancements, and raising the level of security awareness. Manage security information and event management (SIEM) platforms. Establish controls to support security and privacy policies/procedures and oversee their implementation. Ensure access to all information systems is controlled, both internally and externally, commensurate with the level of potential risk. Responsible for responding to information security incidents, to include coordination, root cause analysis, and other security investigation activities. Facilitate development, design, and implementation of proposed updates, enhancements and new functionality so that enterprise privacy and security is maintained. Participate in execution of IT security projects, such as risk assessments, security audits, vulnerability scans, and related. Participate in development of techniques, procedures, and utilities for improving the overall security posture of Your Health Idaho. Participate as a member of a team providing pertinent security information and input to strategic and tactical planning, initiatives and project planning. Identify emerging privacy and security practices and technologies to be assimilated, integrated, and introduced within the organization. Participate in ongoing improvements of system enhancements from an Information Security perspective. Assess new security threats and vulnerabilities and make recommendations on appropriate avoidance and mitigation strategies. Stay informed of evolving regulations, statues, threats, risks, technology, and recognized best practices and to regularly coordinate with counterparts at CMS, NIST, SANS and other privacy and security authorities. Participate in ensuring Idaho's Authority to Operate by administering Your Health Idaho's Authority to Connect (ATC) compliance package. Perform other duties as assigned. Qualifications (Required knowledge, skills, abilities, education, experience, etc.) BA/BS in computer science or business-related field or equivalent Certified Information Systems Security Professional (CISSP) certification preferred Minimum three years' related experience to include enterprise IT operations and/or privacy/security responsibilities preferred Thorough understanding of the CIA Triad (Confidentiality, Integrity, Availability) Skilled across all areas of Information Security including Operations, Physical, Network, OS, Application Security Demonstrated project management skills, vendor management, and analytical skills Ability to balance strict regulations with the ambiguity seen in fast paced operations and a start-up organization A committed team player with exceptional interpersonal, problem-solving, and communication skills with ability to develop and maintain cooperative and productive work relationships. Ability to assume responsibility and maintain confidentiality consistent with the values and integrity of YHI. Physical & Other Requirements Ability to work in an office environment. Frequent facilitation of meetings or group discussions. Ability to listen to and understand others as well as ability to give and receive instructions via telephone, electronically, face-to-face, and in writing. Must possess the ability to write and compose correspondence, memorandums, and reports manually and via computer or email. Occasional lifting or movement of materials up to 25 pounds. Availability to work additional hours or weekends as projects demand. Some travel may be required. *The functions described herein are not the only responsibilities and tasks to be performed by the individual occupying this position. The individual will be required to follow any other instructions and to perform any other job-related duties as required by his/her supervisor or manager. Requirements stated herein are minimum levels of knowledge, skills, and/or abilities to qualify for this position. To perform the responsibilities of this position successfully, the individual will possess the abilities and aptitudes to perform each task proficiently. “Ability” means to possess and apply both knowledge and skill. This includes the essential functions of the job that an incumbent must be able to perform with or without reasonable accommodation. This document does not create an employment contract, implied or otherwise. The organization maintains “at will” employment. This job description is subject to review and may be revised or updated at management's discretion. Salary Description $86,400 - 94,900
    $86.4k-94.9k yearly 5d ago
  • Sr. Security Analyst

    Maximus 4.3company rating

    Information security analyst job in Boise, ID

    Description & Requirements Maximus is seeking a qualified Sr. Technical/Security Analyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned. *This role is remote but requires working standard business hours in the US time zone of the client. This position is contingent upon award. * Essential Duties and Responsibilities: - Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary. - Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget. - Work closely with management and work groups to create and maintain work plan documents. - Track the status and due dates of projects. - Manage relationships with project staff responsible for projects. - Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed. - Facilitate regular meetings and reviews. - Adhere to contract requirements and comply with all corporate policies and procedures. Job Specific Duties and Responsibilities: -Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects. -Review project documentation and client materials and provide analysis of technical and security related topics. -Participate in client meetings and offer observations and insight on technical and security related topics. -Identify risk areas and potential problems that require proactive attention. -Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to: *System Security Plan *Plan of Action and Milestones (POA&M) *Security Assessment Plan *Risk Assessment reports *CMS ARC-AMPE forms and documentation *Data Conversion and Migration Management Plan *Deployment and/or roll-out plans -Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects. -Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues. -Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work. -Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager. -Complete project work in compliance with Maximus standards and procedures. -Support team to complete assigned responsibilities as outlined in the Project schedule. -Support all other tasks assigned by Senior Manager / Project Manager. Minimum Requirements - Bachelor's degree in related field. - 7-10 years of relevant professional experience required. - Equivalent combination of education and experience considered in lieu of degree. Job Specific Requirements: -Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required. -Bachelor's degree from an accredited college or university, or equivalent work experience. -7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry. -5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks. -Familiar with operating systems: Windows, Linux/UNIX, OS/X. -Familiar with AI tools, capabilities. -Strong command of cloud computing topics. -Strong command of agile software development practices as well as waterfall development practices. -Strong desktop software skills: proficient in MS Office, Excel, Word, Project. -Ability to explain and communicate technical subjects to non-technical audiences. -Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills. -Ability to work independently. -Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously. -Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential. -Excellent verbal and writing skills and be comfortable working with customers. -Ability to multi-task with supervision. -Self-motivated fast learner. Preferred Skills: -Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid). -Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional). EEO Statement Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics. Pay Transparency Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances. Accommodations Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************. Minimum Salary $ 120,000.00 Maximum Salary $ 140,000.00
    $92k-126k yearly est. Easy Apply 6d ago
  • Information System Security Manager

    Booz Allen Hamilton 4.9company rating

    Information security analyst job in Mountain Home Air Force Base, ID

    Key Role: Supports day-to-day technical aspects of product operational data to identify diagnostic issues in enough detail to determine if the root cause is hardware or software related. Applies specific functional, working, and general industry knowledge. Develops or contributes to solutions to a variety of problems of moderate scope and complexity. Works independently with some guidance. May review or guide the activities of more junior employees. Basic Qualifications: 5+ years of experience with cybersecurity projects and integrated systems 5+ years of experience with STIGs, NESSUS, and Vulnerability or application scanners for IA use 5+ years of experience with NIST 800-53 and RMF practices, including computer networking and operating systems administration Knowledge of NISPOM, JSIG, ICD, or eMASS Ability to generate RMF security documentation to support Interim Authorities to Test (IATTs), Authorizations to Operate (ATOs), Interconnection Security Agreements (ISAs), and Authorities to Connect (ATCs) Top Secret clearance Associate's degree Additional Qualifications: Experience with managing the authorization status of DoD RMF from step 1 through step 6 Knowledge of continuous monitoring, cyber security risk management, disaster recovery, FISMA compliance, information security architecture, information security auditing, security control assessment, threat modeling, threat management, vulnerability analysis, and vulnerability assessments DoD 8570 Security+ Certification Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; Top Secret clearance is required. Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page. Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $77,500.00 to $176,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date. Identity Statement As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud. Work Model Our people-first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely. If this position is listed as remote or hybrid, you'll periodically work from a Booz Allen or client site facility. If this position is listed as onsite, you'll work with colleagues and clients in person, as needed for the specific role. Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
    $77.5k-176k yearly Auto-Apply 53d ago
  • PERS - Information Security Analysis

    Perfecta

    Information security analyst job in Tigard, OR

    Founded in 2017 Perfecta is a division and a wholly owned subsidiary of City National Security a well known and reputed company providing IT Consulting , Staffing and Security services throughout the United States. Perfecta brings a rich experience of over 12 years in providing fully scaled IT Consulting and Staffing & Recruiting services. Perfecta brings a successful track record of delivering value based quality professional solutions at economical price to its customers across the U.S. Perfecta has successfully executed various IT and Staffing projects with its government and commercial clients and has consistently provided quality services to its customers. Job Description Part I. General Information Under this Statement of Work (SOW), the Contractor shall analyze, recommend, create working documentation, guidelines, policies, standards, instructional procedures, and conduct assessments to support the implementation of the following: • PERS Information Security Awareness and Training Program • PERS Information Security Program • Reorganization and alignment of PERS Information Security policies, standards, and procedures Part II. Work The Contractor shall comply with OPERS contractual deliverable review and approval processes by working with OPERS Quality Assurance in utilizing the Quality Checkpoint process attached to this SOW as Attachment 1. Quality Checkpoint is a Quality Assurance process to verify that major deliverables in the project have been reviewed and approved by their respective stakeholders. PERS Information Security Awareness and Training Program Contractor shall assist OPERS' CISO in the creation, documentation, and implementation of a structured Information Security Awareness and Training Program. Contractor shall work with OPERS to plan, document and implement solutions to fit the needs of OPERS. Tasks to support OPERS' Information Security Awareness and Training Program include, but not limited to: 1. Define activities to be performed to enable and implement the Security Awareness and Training Program 2. Research and document materials needed to implement the program 3. Research and document delivery methods and related activities to implement the program 4. Research, obtain stakeholder buy-in, and document a regularly occurring schedule of activities. 5. Develop content for PERS specific, role based training for data/system owners/custodians. 6. Develop content, produce materials for PERS specific training for staff. 7. Deliver Security, Awareness and Training materials, presentations, etc. to targeted audiences Reorganization of PERS Information Security policy structure In the first phase of policy, standard, procedure creation, emphasis was placed on creating required policy documentation to address HPE findings. In this second phase, the emphasis is to consolidate and reorganize the policy structure, resulting in fewer policies, and more specific requirements, based on security domains: 1. Identify and convert redundant policies to standards as appropriate 2. Align policy structure to NIST CSF domains 3. Address gaps by creating policies, standards, and procedures as identified and needed. Implementation of PERS Information Security Program Initialize and implement operation of Information Security program: 1. Conduct Third Party and Software Development Information Security assessments 2. Initialize policy exception requesting, approval, denial, and risk acceptance process. Part III. Special Considerations Contractor acknowledges and agrees that any and all information regarding OPERS installation, design, configuration, data migration will be kept confidential. Part IV. Travel and Other Expenses OPERS shall not reimburse Contractor for any expenses under this Contract. Work must be completed on-site, Tigard, OR Additional Information All your information will be kept confidential according to EEO guidelines.
    $126k-188k yearly est. 34m ago
  • Information Security Manager - INTL - UK

    Insight Global

    Information security analyst job in Medford, OR

    The Information Security Manager is responsible for designing, implementing, and enhancing a comprehensive technology compliance and risk management program to bolster the organization's security posture. This role involves continuous assessment, reporting, and improvement of technology risks and compliance activities across global operations. You will serve as a pillar of the Information Security Program by driving and managing program activities, ensuring success through collaboration with internal and external partners. In the future you will establish a team and reports, but on the forefront there will be a focus on managing third party and vendor risk with an emphasis on front end offensive security activities and conducting service provider security assessments. We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to ********************.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: **************************************************** Skills and Requirements -5+ years of experience managing an enterprise risk register -5+ years of experience managing InfoSec gathering and reporting metrics -5+ years of experience spearheading offensive security activities -5+ years of experience managing policy document and improvement -5+ years of experience implementing data retention policies -5+ years of experience managing third party risk management and cyber risk rating tools -CISSP Certification -Automotive industry experience
    $109k-157k yearly est. 60d+ ago
  • IT Risk & Security Analyst

    Manpowergroup 4.7company rating

    Information security analyst job in Meridian, ID

    Our client, a leading organization in the technology and security sector, is seeking a dedicated IT Risk & Security Analyst to join their dynamic team. As an IT Risk & Security Analyst, you will play a vital role in safeguarding the organization's digital assets by identifying vulnerabilities, assessing risks, and implementing effective mitigation strategies. The ideal candidate will demonstrate strong analytical skills, proactive problem-solving, and a commitment to maintaining high standards of security and compliance, which will align successfully within the organization. **Job Title:** IT Risk & Security Analyst **Location:** Meridian, ID (Hybrid Preferred: 3 days onsite / 2 days WFH) **What's the Job?** + Conduct comprehensive IT risk assessments to identify vulnerabilities and threats to the organization's information assets. + Manage and maintain the IT Risk Register, ensuring all entries are accurate and mitigation efforts are tracked effectively. + Ensure compliance with internal policies and external regulations by supporting risk treatment and control measures. + Participate in engagement activities to support overall risk management strategies and control frameworks. + Assist in preparing detailed reports and documentation regarding the organization's risk posture for leadership review. **What's Needed?** + Minimum of 2 years of professional experience in IT Risk Management or related field. + Degree in Computer Science, Electrical Engineering, or a related technical discipline, or equivalent experience. + Foundational understanding of IT controls, risk frameworks (e.g., NIST, ISO, COBIT), and compliance requirements. + Strong organizational skills with the ability to manage routine tasks efficiently. + Excellent communication skills for documenting risks and collaborating with technical teams. **What's in it for me?** + Opportunity to work on impactful projects within a reputable organization. + Hybrid work environment supporting work-life balance. + Engagement in a role that fosters professional growth and skill development. + Competitive hourly pay rate aligned with experience. + Potential for future opportunities within the organization. **Upon completion of waiting period, consultants are eligible for:** + Medical and Prescription Drug Plans + Dental Plan + Vision Plan + Health Savings Account + Health Flexible Spending Account + Dependent Care Flexible Spending Account + Supplemental Life Insurance + Short Term and Long Term Disability Insurance + Business Travel Insurance + 401(k), Plus Match + Weekly Pay If this is a role that interests you and you'd like to learn more, click apply now and a recruiter will be in touch with you to discuss this great opportunity. We look forward to speaking with you! **About ManpowerGroup, Parent Company of: Manpower, Experis, Talent Solutions, and Jefferson Wells.** _ManpowerGroup (NYSE: MAN), the leading global workforce solutions company, helps organizations transform in a fast-changing world of work by sourcing, assessing, developing, and managing the talent that enables them to win. We develop innovative solutions for hundreds of thousands of organizations every year, providing them with skilled talent while finding meaningful, sustainable employment for millions of people across a wide range of industries and skills. Our expert family of brands -_ **_Manpower, Experis, Talent Solutions, and Jefferson Wells_** _- creates substantial value for candidates and clients across more than 75 countries and territories and has done so for over 70 years. We are recognized consistently for our diversity - as a best place to work for Women, Inclusion, Equality and Disability and in 2023 ManpowerGroup was named one of the World's Most Ethical Companies for the 14th year - all confirming our position as the brand of choice for in-demand talent._ ManpowerGroup is committed to providing equal employment opportunities in a professional, high quality work environment. It is the policy of ManpowerGroup and all of its subsidiaries to recruit, train, promote, transfer, pay and take all employment actions without regard to an employee's race, color, national origin, ancestry, sex, sexual orientation, gender identity, genetic information, religion, age, disability, protected veteran status, or any other basis protected by applicable law.
    $67k-86k yearly est. 21d ago
  • AWS Security Architect

    Slalom 4.6company rating

    Information security analyst job in Boise, ID

    Candidates can live within commutable distance to any Slalom office in the US. We have a hybrid and flexible environment. Who You'll Work With As a modern technology company, we've never met a technical challenge we didn't like. We enable our clients to learn from their data, create incredible digital experiences, and make the most of new technologies. We blend design, engineering, and analytics expertise to build the future. We surround our technologists with interesting challenges, innovative minds, and emerging technologies. We are seeking an experienced AWS Security Architect with deep expertise in AWS cloud architecture, native & external security services, and regulatory compliance to provide advisory and delivery services aligned with the standards of a top-tier consulting firm. This role will partner with enterprise clients to design, assess, and implement secure AWS environments that meet business, compliance, and regulatory requirements. This role requires a strong blend of hands-on technical capabilities, architectural leadership, and client-facing advisory skills. As a trusted advisor, you will lead security strategy sessions, assess current cloud security postures, and deliver AWS-native and third-party solutions that align with best practices. You will work across multiple industry verticals, collaborating with engineering, security, risk, and compliance teams, and guiding clients through security transformation journeys and ensuring AWS adoption is secure, compliant, and resilient. This is a strategic technical consulting role suited for individuals who are passionate about cloud security, compliance, and helping clients adopt secure architectures in regulated environments. Key Responsibilities * Serve as a client-facing advisor, providing strategic guidance on cloud security transformation, governance, and operating models. * Lead cloud security assessments, maturity evaluations, and gap analyses, producing recommendations aligned with regulatory frameworks (e.g., NIST, ISO 27001, CIS, PCI DSS, HIPAA). * Design and implement AWS-native security architectures leveraging IAM, KMS, CloudTrail, Security Hub, GuardDuty, Macie, Detective, and Control Tower. * Establish governance, risk, and compliance (GRC) frameworks for AWS adoption, including policy-as-code and automated compliance monitoring. * Define and implement identity and access management (IAM) strategies, including federation, least privilege, and Zero Trust principles. * Guide clients in adopting secure application and data architectures, including encryption, data loss prevention, and secure API integrations. * Support incident response and forensics readiness through AWS-native logging, monitoring, and detection services. * Collaborate with DevOps and platform teams to integrate security into DevOps pipelines (DevSecOps) with automation for vulnerability management, code scanning, and compliance validation. * Collaborate with client executives to articulate cloud security roadmaps, business cases, and investment priorities. * Partner with internal teams to develop accelerators, templates, and reusable security patterns that improve time-to-value for clients. * Author client deliverables such as risk assessments, security architecture design documents, gap analyses, and roadmap plans. * Provide thought leadership via security workshops, executive briefings, and architecture reviews. * Stay current with AWS service releases, regulatory changes, and emerging cyber risks to inform recommendations. Core Qualifications * 8+ years of IT security experience with at least 4+ years focused on AWS security. * Proven consulting experience delivering security assessments, compliance programs, and cloud security roadmaps for enterprise clients. * Strong expertise in AWS security services (i.e. IAM, KMS, CloudTrail, GuardDuty, Macie, Security Hub, Detective, WAF, Shield). * Deep knowledge of cloud governance, risk management, and regulatory compliance frameworks (NIST, ISO, CIS Benchmarks, SOC 2, HIPAA, PCI DSS) and experience designing or assessing AWS environments aligned with these frameworks. * Hands-on experience embedding security into DevOps/DevSecOps pipelines and Infrastructure-as-Code (Terraform, CloudFormation, AWS CDK). * Experience designing ransomware detection, response, and business resilience strategies in AWS including backup, recovery, and isolation patterns. About Us Slalom is a fiercely human business and technology consulting company that leads with outcomes to bring more value, in all ways, always. From strategy through delivery, our agile teams across 52 offices in 12 countries collaborate with clients to bring powerful customer experiences, innovative ways of working, and new products and services to life. We are trusted by leaders across the Global 1000, many successful enterprise and mid-market companies, and 500+ public sector organizations to improve operations, drive growth, and create value. At Slalom, we believe that together, we can move faster, dream bigger, and build better tomorrows for all. Compensation and Benefits Slalom prides itself on helping team members thrive in their work and life. As a result, Slalom is proud to invest in benefits that include meaningful time off and paid holidays, parental leave, 401(k) with a match, a range of choices for highly subsidized health, dental, & vision coverage, adoption and fertility assistance, and short/long-term disability. We also offer yearly $350 reimbursement account for any well-being-related expenses, as well as discounted home, auto, and pet insurance. Slalom is committed to fair and equitable compensation practices. For this position, the target base salary pay range in the following locations: Boston, Houston, Los Angeles, Orange County, Seattle, San Diego, Washington DC, New York, New Jersey, for Consultant level is $119,000-$147,500 and for Senior Consultant level it is $136,500-$169,500 and for Principal level it is $151,000-$187,500. In all other markets, the target base salary pay range for Senior Consultant level it is $125,000-$155,500 and for Principal level it is $138,500-$172,000. In addition, individuals may be eligible for an annual discretionary bonus. Actual compensation will depend upon an individual's skills, experience, qualifications, location, and other relevant factors. The salary pay range is subject to change and may be modified at any time. We will accept applications until 3/31/2026 or until the positions are filled. We are committed to pay transparency and compliance with applicable laws. If you have questions or concerns about the pay range or other compensation information in this posting, please contact us at: ********************. EEO and Accommodations Slalom is an equal opportunity employer and is committed to attracting, developing and retaining highly qualified talent who empower our innovative teams through unique perspectives and experiences. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans' status, or any other characteristic protected by federal, state, or local laws. Slalom will also consider qualified applications with criminal histories, consistent with legal requirements. Slalom welcomes and encourages applications from individuals with disabilities. Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team or contact ****************************** if you require accommodations during the interview process.
    $151k-187.5k yearly Easy Apply 3d ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Information security analyst job in Boise, ID

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. **Responsibilities:** + **M&A Integration Execution:** Collaborate and engage with IAM Lead and other business partners on planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions. + **Design and Implement Sailpoint IIQ Solutions:** Configure and customize Sailpoint IIQ components (Lifecycel Manager, Compliance Manager etc). Also develop workflows, rules, and connectors for identity governance. + **Application integration with Sailpoint IIQ:** Integrate Sailpoint IIQ with enterprise applications, directories and cloud platforms in addition to developing and maintaining connectros for provisioning and de-provisioning. + **Sailpoint IIQ Development and Scripting:** Write and maintain BeanShell scripts, Java code and XML configurations, develop customer Sailpoint tasks and workflows. + **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications** + Experience with SailPoint IdentityIQ (IIQ) is a must + Experience with SailPoint IIQ Integrations (Workday, Active Directory/LDAP, Webservices, SCIM, JDBC, SAP) + Experience implementing Life Cycle Manager (LCM) Configuration workflow tasks that model business functions, including Lifecycle Requests (Role or Entitlement), Lifecycle Events (Joiner, Mover, or Leaver), and LCM Workflow Details (Workflows and Subprocesses) + Solid understanding of the SailPoint object model, rules, and policies + Experience with both lifecycle manager (LCM) and compliance manager (CM) modules + Knowledge of Active Directory, LDAP, Workday, and cloud platforms (GCP, MS Entra ID) is required + Proven track record of successful IAM implementations including large scale enterprise deployments. + Experience working within regulatory standards and requirements such as, SOX, HIPAA, GDPR etc. is desired. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 60d ago
  • CAF - F-15 Mission Planning Support (MPS) Information System Security Manager (ISSM) Support

    Blue Force 3.9company rating

    Information security analyst job in Mountain Home Air Force Base, ID

    BlueForce Inc is seeking Mission Planning Support (MPS) F-15 Information System Security Manager (ISSM) Support Specialists in support of the Combat Air Forces (CAF) Fighter Squadron (FS), United States Air Force Warfare Center (USAFWC) flying units, and Air Support Operations Squadrons (ASOS) in Air Combat Command (ACC). The MPS F-15 ISSM Support position will manage the security aspects of F-15 Training Systems and coordinate with designated stakeholders to ensure cybersecurity protocols of the F-15 Training Systems. Locations are Eglin AFB, FL, Mountain Home AFB, ID, Nellis AFB, NV and Seymour-Johnson AFB, NC. * Subject to Contract Award* Tasks the Contractor shall perform include, but are not limited to: * Manage the security aspects of F-15 Training Systems and support the Government with obtaining and maintaining Interim Authorities to Test (IATTs), Authorizations to Operate (ATOs), Interconnection Security Agreements (ISAs), Authorities to Connect (ATCs), and similar. * Coordinate with the F-15 Training Systems Program Office (TSPO), Air Force Life Cycle Management Center (AFLCMC) SPO Simulators Division (WNS) at Wright-Patterson Air Force Base (AFB), local Government personnel using the F-15 Training Systems, and the F-15 Training Systems prime contractor to ensure the cybersecurity of the F-15 Training Systems. * Ensure F-15 Training Systems are operated and maintained IAW security policies and procedures as required by the Joint Special Access Program (SAP) Implementation Guide (JSIG), National Industrial Security Program Operating Manual (NISPOM), and F-15 Training Systems security policy. Support the Government in ensuring F-15 Training Systems and related equipment is disposed of IAW the JSIG, NISPOM, and F-15 Training Systems security policy. * Ensure all users of F-15 Training Systems have the requisite security clearances, authorization, and need-to-know, and are aware of their security responsibilities before creating accounts and granting them access to the F-15 Training Systems. Perform validation transfers and user account terminations. * Monitor and report all security-related incidents to the local F-15 Training Devices lead, Security team, and the F-15 TSPO within 24 hours of identifying or being made aware of the incident(s). Perform necessary activities, including media control and proper storage, to prevent spillage/loss of F-15 Training Systems program information. Assist the Government in investigating the root cause incident(s) and developing Corrective Action Plan to prevent recurrence of the incident(s). * Monitor various systems in the vault to ensure connections with external systems are properly maintained, recovery processes properly restore security features, and all restored features function correctly. * Collect and review F-15 Training Systems audit, tools, and maintenance logs on a quarterly basis. Document and report any deficiencies in the logs to the F-15 TSPO. * Conduct quarterly reviews of user and equipment lists for accuracy and currency. Coordinate with the F-15 Training Systems prime contractor to rectify any discrepancies and ensure the lists accurately reflect authorized users and equipment. * Perform quarterly compliance and vulnerability scans and reviews of the F-15 Training Systems. Document all identified deficiencies and their associated system risks. Submit a report of these findings to the F-15 TSPO and the local government lead for F-15 Training Devices within five business days of completing the scan. * Perform an annual risk assessment for the F-15 Training Systems. This risk assessment shall be provided to the F-15 TSPO at least 60 calendar days prior to the end of each calendar year. * Perform an annual inventory of the F-15 Training Systems and associated sub-assemblies. Results of the inventory shall be submitted to the F-15 TSPO at least 30 calendar days prior to the end of the calendar year. * Conduct quarterly self-assessments/inspections and inform the F-15 TSPO when any authorizations/approvals are projected to expire within six months. Assist with the necessary activities to obtain new authorizations/approvals. If an expiration date is within six months of the F-15E MPS ISSM's start date, the F- 15 MPS ISSM shall inform the F-15 TSPO at least 90 calendar days prior to expiration and assist the Government in obtaining any necessary extensions and/or new authorizations/approvals. * Coordinate with the Government and the F-15 Training Systems prime contractor to support the creation, updating, and maintenance of authorization/approval packages required per the JSIG/Risk Management Framework (RMF) or the F-15 Training Systems. Ensure all information is accurate, current, complete, and submitted on time to avoid program disruptions. Conduct security surveys at subordinate facilities and gather pertinent security documentation for inclusion into system authorization/approval packages. These packages include, but are not limited to: * System Security Plan (SSP) * Plans of Actions and Milestones (POA&Ms) * Security Control Traceability Matrix (SCTM) * Continuous Monitoring Plan (CONMON) * Information Assurance Standard Operating Procedures (IASOP) * Hardware Lists * Software Lists * Support assessments of F-15 Training Systems and their locations by ensuring all necessary documentation, reports, and data are readily available to assessing officials. Assist in addressing any assessing official questions or comments. Report any identified deficiencies to the F-15 TSPO within 14 calendar days of the assessment. Work with the government to address these deficiencies and implement any required mitigation processes or procedures as directed by the assessing officials. * Review, prepare, track, and update AIS authorization packages and AIS inspections, reports, and responses. Notify the local Government F-15 Training Devices program and the F-15 TSPO (AFLCMC/WNS) when changes occur that might affect AIS authorization. Perform AIS self-inspections and provide security coordination and review of all system test plans. Identify any AIS vulnerabilities, recommend countermeasures, and support their implementation. * Review, track, and conduct AIS training. * Maintain AIS security records and prepare Co-Utilization Agreements for network nodes operating in government facilities. Ensure AIS and network nodes are operated, maintained, and disposed of IAW security policies and practices. * Prepare reports on the status of security safeguards applied to computer systems. * Support various technical review and inspection teams. * Assist Government and Contractor organizations with assessment and authorization (A&A) efforts. * Conduct vault opening or closing procedures as required.
    $91k-116k yearly est. 40d ago
  • IT Financial Analyst

    Cayuse Holdings

    Information security analyst job in Boise, ID

    **JOB TITLE:** IT Financial Analyst **CAYUSE COMPANY:** Cayuse Commercial Services, LLC **SALARY:** $28.00-$35.00/hr **EMPLOYEE TYPE:** Full-Time Hourly Non-Exempt **The Work** The IT Financial Analyst will provide day-to-day support for invoice review and approval processing. The role will also assist IT managers with other financial tasks as assigned. This position performs all duties and responsibilities in accordance with the Mission, Vision, and Core Values of Cayuse. **Responsibilities** **Key Responsibilities** + Monitor vendor invoice mailbox + Review vendor invoices + Match against contract or purchase order + Verify invoice for payment or return to vendor + Record invoice in general ledger + Notify Accounts Payable for vendor payment + Work with IT managers on other financial tasks as assigned + Respond to assigned tasks in accordance with predefined guidelines. + Other duties as assigned. **Qualifications** **Qualifications - Here's What You Need** + High school diploma or equivalent required + Two (2) to five (5) years of experience working in a finance position with focus on billing, invoicing, vendor management. + Preference with experience supporting an IT organization + Must be able to pass a background check. May require additional background checks as required by projects and/or clients at any time during employment. **Minimum Skills:** + Microsoft Office experience (Work, Excel) + Experience with JD Edwards preferred + Financial billing, accounts payable experience + General accounting + Excellent communication skills + Experience working with suppliers and third-party vendors + Ability to quickly analyze a situation and react appropriately and effectively + Effective prioritization skills + Self-starter + Financial analysis credibility and independent judgment + Able to contribute to IT financial planning and operations **Our Commitment to you / overview of benefits** + Medical, Dental and Vision Insurance; Wellness Program + Flexible Spending Accounts (Healthcare, Dependent Care, Commuter) + Short-Term and Long-Term Disability options + Basic Life and AD&D Insurance (Company Provided) + Voluntary Life and AD&D options + 401(k) Retirement Savings Plan with matching after one year + Paid Time Off **Reports to:** **Program Manager** **Working Conditions** + Professional remote office environment. + Must reside in Central or Eastern Time Zone. + Must be physically and mentally able to perform duties extended periods of time. + Ability to use a computer and other office productivity tools with sufficient speed to meet the demands of this position. + Must be able to establish a productive and professional workspace. + Must be able to sit for long periods of time looking at computer screen. + May be asked to work a flexible schedule which may include holidays. + May be asked to travel for business or professional development purposes. + May be asked to work hours outside of normal business hours. **Other Duties:** _Please note this job description is not designed to cover or contain a comprehensive list of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice._ **_Cayuse is an Equal Opportunity Employer. All employment decisions are based on merit, qualifications, skills, and abilities. All qualified applicants will receive consideration for employment in accordance with any applicable federal, state, or local law._** **Pay Range** USD $28.00 - USD $35.00 /Hr. Submit a Referral (********************************************************************************************************************************* **Can't find the right opportunity?** Join our Talent Community (********************************************************** or Language Services Talent Community (******************************************************** and be among the first to discover exciting new possibilities! **Location** _US-_ **ID** _103881_ **Category** _Accounting/Finance_ **Position Type** _Full-Time Hourly Non Exempt_ **Remote** _Yes_ **Clearance Required** _None_
    $28-35 hourly 7d ago
  • IT Agile Delivery Analyst - Meridian or Chubbuck

    ICCU

    Information security analyst job in Chubbuck, ID

    As an IT Agile Delivery Analyst your job is to plan, lead, execute and oversee the execution of technological initiatives for the credit union, with a strong focus on IT. This includes the facilitation of proper scrum processes to implement strategies that enhance the organization's technological infrastructure, improving operational efficiencies, and ensuring a seamless and innovative user experience across platforms. This role requires close collaboration with agile teams, project managers, IT product owners, IT analysts, senior leadership, and IT executives to achieve the credit union's technological goals and objectives. Duties and Responsibilities: Manage end-to-end agile delivery IT initiatives (software, infrastructure, cybersecurity, IT vendor solutions). Lead the execution of IT initiatives and ensure proper implementation and post-launch stabilization. Facilitate Agile and Scrum ceremonies, such as daily stand-ups, sprint planning, sprint reviews, and sprint retrospectives to ensure continuous improvement and collaboration. Ensure all team members involved in each IT initiative understand estimations, breaking work down into smaller tasks, and remain focused on forward progress. Keep IT initiatives on track by removing blockers that may hinder the team's ability to plan effectively or get each task complete. Assists Product in updating the Product backlog based on shifts in priorities and feedback from key decision makers. Define technical scope, goals, and deliverables in collaboration with IT product management, stakeholders, technical teams and senior management. Work closely with IT management regarding proper resource allocation. Coordinate with third party vendors to ensure execution of IT objectives. Facilitate effective communication across business line project program managers, IT, vendors, and senior leadership. Monitor and report on IT initiative progress, and effectively manage Risks, Assumptions, Issues, and Dependencies as lined out in project RAID logs. Ensure all initiatives meet regulatory requirements, information security standards, and IT governance frameworks. Manage IT initiatives throughout the Product, Project, and Development lifecycles while managing releases and maintaining proper documentation. Conduct retrospectives to capture lessons learned and ensure continuous improvement. Drive multiple IT initiatives concurrently in a fast-paced environment. Assist with writing technical policies, procedures and documentation for systems, applications, product guides, and FAQ's. Ensure compliance with objectives, organizational policies, procedures, security protocols, and regulatory standards. Other duties regarding IT initiatives as assigned. Qualifications: Bachelor's degree required, (Business, Computer Science, Computer Information Systems, or related) or equivalent experience. 2-5 years' experience in IT scrum processes required. Professional Scrum Master I preferred. Experience in a Financial Industry-related field preferred. Strong estimation, analytical, organizational, oral, and written communication skills. Willingness to work outside of normal business hours. Ability to prioritize, meet deadlines, and manage changing priorities with limited direction. Ability to always maintain the confidentiality of the Credit Union and member records. Performance Standard: High level of professionalism. Make recommendations to meet the goals and objectives of the Credit Union functions, procedures, and policies. Must have strong analytical, problem solving, conflict resolution and root cause analysis skills. Logical, process-oriented, critical thinker with a natural sense of urgency. Good interpersonal and client-handling skills with the ability to manage expectations and explain technical details. Must be willing to comply with the Bank Secrecy Act and USA Patriot Act as implemented by Idaho Central Credit Union. Physical Requirements: Perform tasks requiring manual dexterity (processing paperwork, filing, stapling, sorting, collating, typing, counting cash, etc.). Sit for extended periods of time. Lift 20-40 pounds of applicable supplies including but not limited to copy paper, cash drawers, marketing material, etc. Repetitive motion using wrists, hands, and fingers. Reach keyboards. Ability to operate basic office machines (calculator, computer, telephone, copy machine, fax machine, etc.). This role offers benefits, including: Competitive Pay Medical, Dental, & Vision Insurance Generous Paid Time Off Paid Holidays Matching 401K AND Pension Tuition Reimbursement Employee Assistance Program Employee Wellness Program Paid Group Life and Disability Insurance Awesome Culture And More The above statements reflect the general details considered necessary to describe the essential functions of the job and should not be construed as a detailed description of all the work requirements that may be inherent of the job. Must be eligible for membership at ICCU to obtain employment. ICCU is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, age, disability, protected veteran status or other characteristics protected by law.
    $60k-84k yearly est. 26d ago
  • Information Security Operations Analyst

    Moda Health 4.5company rating

    Information security analyst job in Portland, OR

    Let's do great things, together! About Moda Founded in Oregon in 1955, Moda is proud to be a company of real people committed to quality. Today, like then, we're focused on building a better future for healthcare. That starts by offering outstanding coverage to our members, compassionate support to our community and comprehensive benefits to our employees. It keeps going by connecting with neighbors to create healthy spaces and places, together. Moda values diversity and inclusion in our workplace. We aim to demonstrate our commitment to diversity through all our business practices and invite applications from candidates that share our commitment to this diversity. Our diverse experiences and perspectives help us become a stronger organization. Let's be better together. Position Summary The Operations Analyst is a technical role within Moda's Information Security team and will play a vital role in keeping the organization's proprietary and sensitive information secure. This position works interdepartmentally to investigate issues, identify and correct flaws in security systems, solutions, and programs, and recommend measures to improve the company's overall security posture. Acting as a liaison between Security and IT management, the analyst assists IT strategy and architecture design from a security perspective and identifies issues, concerns, or recommendations as the organization grows its technology infrastructure and processes. This is a FT WFH position. Pay Range $70,496.52 - $91,647.55 annually (depending on experience) *This role may be classified as hourly (non-exempt) depending on the applicant's location. Actual pay is based on qualifications. Applicants who do not exceed the minimum qualifications will only be eligible for the low end of the pay range. Please fill out an application on our company page, linked below, to be considered for this position. ************************** GK=27768922&refresh=true Benefits: Medical, Dental, Vision, Pharmacy, Life, & Disability 401K- Matching FSA Employee Assistance Program PTO and Company Paid Holidays Required Skills, Experience & Education: Bachelor's or master's in Computer Science, Information Security, Cybersecurity, or a related field. 5+ years of experience as a security operations analyst or in related fields such as IT audit, enterprise risk management, penetration testing, or red team/incident response. Experience with common security tools such as SIEM platforms, EDR solutions, and cloud platforms (e.g., Microsoft Azure, Amazon AWS). Knowledge of Microsoft Azure configuration and management is highly desirable. 3+ years of experience with regulatory compliance and information security management frameworks (e.g., HIPAA, NIST, IS0 27000, or COBIT). Strong documentation and reporting skills, including the ability to record security events, investigations, and recommendations for technical and non-technical audiences. Excellent collaboration and communication skills with the ability to influence and work effectively across cross-functional teams. Industry recognized cybersecurity certification (e.g., CISSP, CISM, CompTIA Security+) preferred. Primary Functions: Defend against cybersecurity incidents and identify, analyze, communicate, and contain incidents as they occur. Monitor systems and networks for security alerts, notifications, and issues including patching and update process issues and investigate and document any security issues or events that may occur. Own and drive the investigation of security events and other cybersecurity incidents including review, triage, and response to alerts and notifications. Take a lead role in the documentation of security events and incidents and the assessment of the damage they cause. Review threat intelligence and analyze the current threat landscape and apply threat analysis to Moda's infrastructure systems and networks to identify and address vulnerabilities or exploitable attack paths. Build and drive proactive threat hunting programs including detailed threat analysis of exploitable vulnerabilities leading to actionable remediation plans. Work with IT resources and architects to develop and implement cloud security strategies to facilitate migration of key assets into a public cloud hosted environment. Advise on installation and configuration of security controls, systems, and software to protect systems and information infrastructure and recommend enhancements based on compliance requirements and industry best practices. Work with IT and Security leadership to perform tests or support external testing such as network penetration tests, vulnerability testing, and disaster response failover tests to uncover network vulnerabilities. Advise on installation and configuration of security controls, systems, and software to protect systems and information infrastructure and recommend enhancements based on compliance requirements and industry best practices. Take a proactive and operational role in creating the best practices for IT security companywide. Support cybersecurity risk assessment activities. Work with both Security and IT management to ensure security policies and goals are met in infrastructure and development contexts. Stay current on IT security trends and news including evolving standards. Collaborate and communicate effectively with cross functional colleagues at all levels. Other duties as assigned. Working Conditions: Remote office environment with extensive close PC and keyboard use, constant sitting, and frequent phone communication. Must be able to navigate multiple computer screens. A reliable, high-speed, hard-wired internet connection required to support remote or hybrid work. Must be comfortable being on camera for virtual training and meetings. Work in excess of standard workweek, including evenings and occasional weekends, to meet business need. Internally with all departments. Externally with auditors, clients, technology partners, and other various entities. Together, we can be more. We can be better. Moda Health seeks to allow equal employment opportunities for all qualified persons without regard to race, religion, color, age, sex, sexual orientation, national origin, marital status, disability, veteran status or any other status protected by law. This is applicable to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absences, compensation, and training. For more information regarding accommodations, please direct your questions to Kristy Nehler & Danielle Baker via our ***************************** email.
    $70.5k-91.6k yearly Easy Apply 12d ago
  • Sr. Security Analyst

    Maximus 4.3company rating

    Information security analyst job in Idaho Falls, ID

    Description & Requirements Maximus is seeking a qualified Sr. Technical/Security Analyst for multiple projects, current and upcoming. The qualified candidate will be involved in technical/security planning and assessment projects with potentially multiple state agencies. The position requires the candidate to produce/review security relevant documentation, such as system security plans, POA&Ms, assessment plans, etc., produce technical/security analyses, develop estimates, review and contribute to requirements for large systems-planning efforts in the Child Support, Child Welfare and/or Integrated Eligibility public-sector domains. The individual will report directly to a Senior Manager. Maximus is a matrix-managed organization, which means the individual will have secondary reporting relationships to one or more Project Managers, depending on which projects they are assigned. *This role is remote but requires working standard business hours in the US time zone of the client. This position is contingent upon award. * Essential Duties and Responsibilities: - Collaborate with project managers on various initiatives and projects to track progress and provide support as necessary. - Support leadership in ensuring that the project is delivered to specifications, is on time, and within budget. - Work closely with management and work groups to create and maintain work plan documents. - Track the status and due dates of projects. - Manage relationships with project staff responsible for projects. - Produce regular weekly and monthly status reports that could include; work plan status, target dates, budget, resource capacity, and other reports as needed. - Facilitate regular meetings and reviews. - Adhere to contract requirements and comply with all corporate policies and procedures. Job Specific Duties and Responsibilities: -Perform duties independently under the direction of their direct manager and/or Project Managers on specific projects. -Review project documentation and client materials and provide analysis of technical and security related topics. -Participate in client meetings and offer observations and insight on technical and security related topics. -Identify risk areas and potential problems that require proactive attention. -Review and author artifacts and other project documents and identify potential gaps, inconsistencies, or other issues that may put the project at risk. Such artifacts and documents may include but are not limited to: *System Security Plan *Plan of Action and Milestones (POA&M) *Security Assessment Plan *Risk Assessment reports *CMS ARC-AMPE forms and documentation *Data Conversion and Migration Management Plan *Deployment and/or roll-out plans -Perform security assessments, lead security audit and assessment activities, and provide direct security oversight support to assigned clients and projects. -Identify and escalate to the Senior Manager / Project Manager risks, alternatives, and potential quality issues. -Attend interviews, focus groups, or other meetings necessary to gather information for project deliverables in accordance with the project scope of work. -Attend project meetings with the client, subcontractors, project stakeholders, or other Maximus Team members, as requested by the Senior Manager / Project Manager. -Complete project work in compliance with Maximus standards and procedures. -Support team to complete assigned responsibilities as outlined in the Project schedule. -Support all other tasks assigned by Senior Manager / Project Manager. Minimum Requirements - Bachelor's degree in related field. - 7-10 years of relevant professional experience required. - Equivalent combination of education and experience considered in lieu of degree. Job Specific Requirements: -Be available to work during standard client business hours. Projects may involve clients from any US time zone, so it is possible that work outside of the individual's local business hours will be required. -Bachelor's degree from an accredited college or university, or equivalent work experience. -7+ years of experience in information security, with at least 3 years of security-compliance work in a regulated industry. -5+ years of experience working with HIPAA, NIST 800-53 and/or CMS MARS-E or ARC-AMPE security frameworks. -Familiar with operating systems: Windows, Linux/UNIX, OS/X. -Familiar with AI tools, capabilities. -Strong command of cloud computing topics. -Strong command of agile software development practices as well as waterfall development practices. -Strong desktop software skills: proficient in MS Office, Excel, Word, Project. -Ability to explain and communicate technical subjects to non-technical audiences. -Ability to develop advanced concepts, techniques, and standards requiring a high level of interpersonal and technical skills. -Ability to work independently. -Good organizational skills and the ability to manage multiple tasks and deadlines simultaneously. -Strong interpersonal and team building skills, as well as an understanding of client relationship building are essential. -Excellent verbal and writing skills and be comfortable working with customers. -Ability to multi-task with supervision. -Self-motivated fast learner. Preferred Skills: -Prefer a candidate with experience in the Health & Human Services industry, which may include working with programs such as Child Support, Child Welfare, or Integrated Eligibility (SNAP, TANF, and Medicaid). -Preference for security related certifications, such as the CISSP (Certified Information Systems Security Professional). EEO Statement Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics. Pay Transparency Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances. Accommodations Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at **************************. Minimum Salary $ 120,000.00 Maximum Salary $ 140,000.00
    $86k-117k yearly est. Easy Apply 6d ago
  • Engineer, Information Security and Risk

    Cardinal Health 4.4company rating

    Information security analyst job in Boise, ID

    Cardinal Health, Inc. (NYSE: CAH) is a global healthcare services and products company. We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, physician offices and patients in the home. We are a distributor of pharmaceuticals and specialty products; a global manufacturer and distributor of medical and laboratory products; an operator of nuclear pharmacies and manufacturing facilities; and a provider of performance and data solutions. Working to be healthcare's most trusted partner, our customer-centric focus drives continuous improvement and leads to innovative solutions that improve the lives of people every day. With approximately 50,000 employees worldwide, Cardinal Health ranks among the top fifteen in the Fortune 500. **_Department Overview:_** **Information Technology** oversees the effective development, delivery, and operation of computing and information services. This function anticipates, plans, and delivers Information Technology solutions and strategies that enable operations and drive business value. **Information Security and Risk** develops, implements, and enforces security controls to protect the organization's technology assets from intentional or inadvertent modification, disclosure, or destruction. This job family develops system back-up and disaster recovery plans, conducts incident responses, threat management, vulnerability scanning, virus management and intrusion detection as well as completes risk assessments. We are seeking a highly skilled and experienced Identity and Access Management (IAM) Engineer to join our team. In this pivotal role, you will be instrumental in designing, implementing, and managing IAM solutions that secure our enterprise applications and facilitate the secure, efficient, and seamless integration of identity and access systems in context of our rapid growth through Mergers and Acquisitions. You will ensure robust access controls, streamline user experiences, and maintain operational continuity across our diverse IT landscape. The ideal candidate will have deep technical expertise in modern IAM principles, protocols and products along with strong management and communication skills. **Responsibilities:** + **Application Integration Leadership:** Lead the integration of various enterprise applications (SaaS, on-premise, custom-built) with our core IAM infrastructure, ensuring secure authentication, authorization, and user provisioning/de-provisioning. + **M&A Integration Strategy & Execution:** Lead the planning, design, and execution of IAM integration strategies for M&A activities, ensuring alignment with overall business and security objectives. This includes assessing the IAM landscapes of merging entities to identify challenges and solutions. + **Identity System Merging & Consolidation:** Manage the complex process of merging disparate identity providers, user directories (e.g., Active Directory, Azure AD, LDAP), and access management systems from acquired companies into the existing infrastructure. + **User Lifecycle Management:** Streamline and automate user provisioning, de-provisioning, and periodic access reviews for employees, contractors, and partners across all integrated systems, ensuring smooth onboarding and offboarding during M&A transitions. + **Solution Design & Implementation:** Design, implement, and maintain IAM solutions including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Privileged Access Management (PAM), and Role-Based Access Control (RBAC) frameworks. + **Security & Compliance:** Ensure IAM systems and processes comply with regulatory requirements (e.g., GDPR, HIPAA, SOX) and internal security policies, providing auditable records of access activities. Protect against data breaches by ensuring only authorized personnel can access sensitive information. + **Technical Troubleshooting & Support:** Troubleshoot, identify, and resolve technical identity and access management-related issues, providing expert support to internal teams and end-users during and after integration. + **Collaboration & Communication:** Coordinate cross-functional teams, including Information Security, IT Operations, HR, and Application Development, to ensure effective IAM implementation and seamless integration with business processes. Communicate complex security concepts to technical and non-technical stakeholders. + **Documentation & Best Practices:** Develop, review, and maintain comprehensive technical documentation, including architecture diagrams, configuration guides, and operational procedures. Stay up-to-date with IAM best practices, regulatory requirements, and security trends. **Qualifications:** + **Education:** Bachelor's degree in Computer Science, Information Technology, Information Security, or a related field, or equivalent practical experience. + **Experience:** 5+ years of progressive experience as an IAM Engineer, designing and implementing enterprise scale solutions with significant experience in supporting M&A integration projects preferred. + **Technical Expertise:** + Proficiency in directory services (e.g., Active Directory, Azure AD, LDAP). + Extensive knowledge and experience with authentication standards and technologies such as SSO (SAML, OAuth, OpenID Connect), MFA, and privileged access management (PAM). + Hands-on experience with leading IAM platforms (e.g., Okta, Microsoft Azure AD, CyberArk, ForgeRock, Ping Identity, SailPoint). + Experience with scripting languages (e.g., PowerShell, Python) for automation and integration. + Strong understanding of security principles, risk management, and access control models (e.g., RBAC). + Understanding of DevOps practices. + Familiarity with Zero Trust architecture principles. + Familiarity with AI/ML concepts and their practical application in security and risk management, especially in IAM context. + **M&A Specific Skills:** Proven track record of managing complex integration projects, including assessing existing IAM capabilities, workflow, systems, and processes of acquired entities. Ability to navigate the complexities of integrating diverse identity infrastructures. + Strong communication and interpersonal skills to collaborate effectively with various teams and stakeholders. + Detail-oriented mindset to ensure precise access control configurations and compliance. + Excellent problem-solving and analytical abilities to troubleshoot access issues and design solutions for unique business requirements + Must be a self-starter who takes full ownership of projects from inception to completion , holding oneself accountable for the security and operation integrity of IAM platform. + Ability to manage multiple priorities and meet tight deadlines in a fast-paced M&A environment. + Adaptability to stay ahead of evolving IAM technologies and security threats. **Anticipated salary range:** $94,900 - $135,600 **Bonus eligible:** No **Benefits:** Cardinal Health offers a wide variety of benefits and programs to support health and well-being. + Medical, dental and vision coverage + Paid time off plan + Health savings account (HSA) + 401k savings plan + Access to wages before pay day with my FlexPay + Flexible spending accounts (FSAs) + Short- and long-term disability coverage + Work-Life resources + Paid parental leave + Healthy lifestyle programs **Application window anticipated to close:** 12/20/2025 *if interested in opportunity, please submit application as soon as possible. The salary range listed is an estimate. Pay at Cardinal Health is determined by multiple factors including, but not limited to, a candidate's geographical location, relevant education, experience and skills and an evaluation of internal pay equity. _Candidates who are back-to-work, people with disabilities, without a college degree, and Veterans are encouraged to apply._ _Cardinal Health supports an inclusive workplace that values diversity of thought, experience and background. We celebrate the power of our differences to create better solutions for our customers by ensuring employees can be their authentic selves each day. Cardinal Health is an Equal_ _Opportunity/Affirmative_ _Action employer. All qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, ancestry, age, physical or mental disability, sex, sexual orientation, gender identity/expression, pregnancy, veteran status, marital status, creed, status with regard to public assistance, genetic status or any other status protected by federal, state or local law._ _To read and review this privacy notice click_ here (***************************************************************************************************************************
    $94.9k-135.6k yearly 60d ago

Learn more about information security analyst jobs

How much does an information security analyst earn in Meridian, ID?

The average information security analyst in Meridian, ID earns between $58,000 and $121,000 annually. This compares to the national average information security analyst range of $71,000 to $135,000.

Average information security analyst salary in Meridian, ID

$84,000
Job type you want
Full Time
Part Time
Internship
Temporary