Information Security Analyst (program)
Boston Medical Center
POSITION SUMMARY:
The Information Security Analyst will help define the future of the security and risk landscape by painting an accurate, forward-looking view and predicting the effect of new technologies and strategies. The Information Security Analyst will work as part of a high-performance team and collaborates with others in all aspects of the job.
Responsible for developing and applying IT security measures that minimize data loss potential enhance system integrity and reduce downtime. Identifies, reports, and resolves security violations. Assists in developing, implementing, and enforcing IT infrastructure security policies and standards.
This position requires excellent communication, organizational, customer service and problem solving skills. Must have the ability to analyze, summarize and present security data to technical and nontechnical audiences. A solid knowledge of information security principles and practices, user authentication mechanisms, and intranet and extranet web technology theory is needed.
Position: Information Security Analyst
Department: Information Technology
Schedule: Full Time
JOB REQUIREMENTS
EDUCATION:
Bachelor's degree in Computer Science, Information Management or other related fields is required. (May consider equivalent years of directly relevant experience for degree).
EXPERIENCE:
- A minimum of three years of experience in information security/privacy and risk management.
- Experience developing and implementing compliance monitoring processes and procedures.
- Experience with formal project planning and risk assessment methodologies.
- Demonstrated experience in data mining, analysis and report development required.
KNOWLEDGE AND SKILLS:
- Strong knowledge of information systems security concepts and current information security/privacy trends and practices.
- Knowledge of Federal and State security and privacy-related regulatory requirements.
- Excellent written and oral communication skills, inter-personal skills, and effective leadership skills to support privacy programs.
- Must be able to prepare formal reports and presentations as needed.
- Must be detailed oriented and possess the ability to prioritize tasks so work is completed in an accurate, timely manner.
- Strong business and technical skills in the planning, administration, and management of information systems, operational and technical security controls; and security risk analysis and management.
- Self-starter with the ability to work independently, prioritize, multi-task, and maintain flexibility in fast-paced, changing environment.
- Ability to confront conflict and difficult issues in a professional, assertive and proactive manner.
- Ability to build strong working relationships at all levels, internal and/or external to the organization.
- Knowledge about medical records and other medical information, patient privacy and confidentiality, and release of information.
- Academic medical center and/or health care consulting experience preferred.
- Professional certifications (CISA, CISSP, CRISC)are highly desirable.
Equal Opportunity Employer/Disabled/Veterans