In this hands-on role, the incumbent must make well executed judgments in developing and deploying solutions as a part of Application Security & Cloud Security. Sr. Information Security Analyst – Application & Cloud Security About Satellite Healthcare Satellite Healthcare is more than simply a dialysis company. Since our founding in 1974, we have become the industry’s leader in personalized quality care: 70% of our centers earn 4- and 5-star ratings from Medicaid and Medicare.gov, far ahead of all other providers. Our success in caring for patients can be attributed to our mission, our not-for-profit structure, and our people. Together, they create a powerfully patient-centered organization. Our mission is clear: to make life better for people living with kidney disease. Because we are a non-profit, we can pursue that mission with all our resources, united by our passion for patient care. As part of our commitment to continuous improvement, Satellite Research explores new ways to elevate the effectiveness and delivery of dialysis therapy. And Satellite Wellbound is leading the industry in home dialysis because better outcomes and quality of life are our highest priority. We are also substantial contributors to community and philanthropic kidney initiatives. Across our organization, we share a single mission – to make life better for those living with kidney disease. Watch our video to learn more about our mission. About the Role The Sr. Information Security Analyst – Application & Cloud Security, supports the organization’s overall Cybersecurity posture and culture. The Sr. Information Security Analyst will require both strong technical and interpersonal skills to effectively analyze information systems, research and validate alerts, and operate security tools for monitoring Satellite Healthcare environment. In this hands-on role, the incumbent must make well executed judgments in developing and deploying solutions as a part of Application Security & Cloud Security. This individual will be required to coordinate with members of other internal IT teams, service vendors, and stakeholder groups to ensure the efficient, timely delivery of security recommendations. Responsibility - Evaluate/assess Application Security Architecture and suggest recommendations. Provide best practices.
- Prepare Threat Models for Application security and recommend mitigations.
- Support administration of local and vendor managed security solutions for Satellite Healthcare environments
- Analyze security threats, vulnerability assessments, and audit results to recommend security solutions that enable business objectives.
- Work with Application Engineering teams to ensure public cloud applications are designed and implemented with necessary security controls.
- Work with the Application Engineering teams to ensure Static Application Security Testing is performed as part of CI/CD. Provide guidance on remediation.
- Conduct Dynamic Application Security Testing. Review findings and engage Application Engineering teams for remediation.
- Provide security information assurance subject matter expertise support throughout the SDLC.
- Review and improve Access Management & Controls.
- Collaborate with other teams to support response efforts to security-related findings or concerns.
- Report on incident response metrics and provide assessment reports.
- Continuously improve the organization’s security stance and framework.
- Develop and maintain Security Best Practices Center of Excellence Portal
- Assist with the organization’s security awareness training program.
- Recommend and participate in the design and implementation of standards, tools, and methodologies.
- Work with Security Operations Center to analyze and respond to alerts from automated logging, monitoring tools. Review and update the incident response and disaster recovery plans as needed
- Maintain up-to-date knowledge of the Information security industry, including awareness of new or revised security solutions and improved security processes.
- Keep a keen watch for new vulnerabilities and exploits and execute documented incident response procedures to deal with them.
Minimum Qualifications Any combination of education and experience that would likely provide the required knowledge, skills, and abilities as well as possession of any required licenses or certifications is qualifying - Strong knowledge of industry standards and best practices for Information Security
- Ability to set and manage priorities judiciously
- Excellent written and oral communication skills
- High Emotional Intelligence (interpersonal skills)
Experience: - 5-7 years of experience working in IT
- 3-5 years of experience in Information Security.
- Familiar with OWASP Top 10 and CIS 20
- Familiar with Threat Modeling tools/process
- Familiar with SAST and DAST tools/process
- Familiar with Identity and Access Management, IGA, PAM
- Familiar with DevSecOps, CI/CD
- Familiar with security best practices of public cloud (Azure or AWS)
- Familiar with NIST SP 800-53, CSF, RMF
- Experience managing security service providers to complete regular duties
Education: - B.S. degree in Computer Science or related technical discipline
License/Certifications: - Certifications such as CISSP, CCSP desired
Satellite Healthcare, Inc. is an equal opportunity employer. Satellite Healthcare, Inc. does not discriminate in employment on account of race, color, religion, national origin, citizenship status, ancestry, age, sex (including sexual harassment), sexual orientation, marital status, physical or mental disability, military status or unfavorable discharge from military service. Satellite Healthcare, Inc. offers a drug free work environment. About You Making life better for those with kidney disease is a mission you can embrace fully and passionately. You want to learn about your patients beyond just their time in treatment. You know the value of compassion, commitment and especially collaboration. You believe in continuous improvement as a way of looking at everything. You pursue goals with determination and build long and productive professional relationships. What You Will Gain Relationships: You will work directly with a multi-disciplinary team who are just as passionate as you about making a difference in others’ lives. You will also work alongside leaders who believe leading means serving; they support you in providing care that is unsurpassed in our industry. Impact: The care you provide will enable our patients to live a better life that meets their needs holistically. Growth: A Satellite career offers a lot of challenges, but also the support and leadership to learn and grow from each one. Here, the paths you find for fulfilling your aspirations don’t need to be linear if that’s your choice. With everything Satellite is doing to be a force for progress in the industry, you have many options before you. Satellite Healthcare, Inc. is an equal opportunity employer. Satellite Healthcare, Inc. does not discriminate in employment on account of race, color, religion, national origin, citizenship status, ancestry, age, sex (including sexual harassment), sexual orientation, marital status, physical or mental disability, military status or unfavorable discharge from military service. Satellite Healthcare, Inc. offers a drug free work environment. |