Risk Analyst I - InfoSec
Job Description
NorthEast Provider Solutions Inc. supports the Digital Transformation Information Services Information Security team with enterprise-grade security solutions, and this onsite Risk Analyst I role helps strengthen protections across networks, endpoints, cloud, email, and OT/IoT environments. You will contribute to designing, implementing, and administering security controls that improve visibility, reduce risk, and support incident readiness through clear documentation and coordinated remediation.
Location: Valhalla, NY (onsite)
Compensation: USD 100,287 - 126,083 per yearly
Why this role
- Work across a broad security stack spanning Zero Trust, SASE, network security, email security, cloud controls, and endpoint detection.
- Support security operations through alert investigation, escalation, and incident response coordination with IT and infrastructure teams.
- Contribute to risk reduction initiatives for OT/IoT/medical device security, including visibility and vulnerability identification.
Responsibilities
- Manage secure remote access solutions, including Zero Trust and SASE platforms such as ZTNA, SWG, CASB, and DLP.
- Assist in the design, implementation, and management of enterprise security solutions, including Cisco platforms Identity Services Engine (ISE) and Secure Network Analytics (Stealthwatch).
- Configure, maintain, and optimize Palo Alto Networks firewalls to enforce network security policies.
- Administer and enhance enterprise email security and filtering to reduce risk from phishing, malware, and data loss.
- Assist with cloud security controls, including policy enforcement, continuous monitoring, and compliance validation.
- Support network segmentation initiatives aligned to Zero Trust architecture principles.
- Help manage Microsoft EntraID capabilities, including Conditional Access policies and Microsoft Authenticator for MFA.
- Monitor and escalate alerts from CrowdStrike Endpoint Detection & Response.
- Support OT/IoT/medical device security initiatives to improve visibility, enable vulnerability identification, and support remediation and risk reduction.
- Investigate security alerts, support incident response activities, and coordinate remediation with IT and infrastructure teams.
- Maintain security documentation, system configurations, and operational runbooks.
Requirements
- 2-4 years of IT Infrastructure or IT Security experience.
- Hands-on Cisco security experience, including Cisco Identity Services Engine (ISE); familiarity with Cisco Secure Network Analytics (Stealthwatch) is preferred.
- Bachelor’s degree in Information Technology, Information Security, or a related/relevant discipline.
- Knowledge of computer systems and applications in meeting medical data reporting requirements.
- Knowledge of program planning and evaluation techniques.
- Ability to compile, analyze, and interpret InfoSec data and forecast trends.
- Ability to work effectively with technology and medical professionals, with strong oral and written communication.
- Proficiency with computer applications such as spreadsheets, word processing, calendar, email, and database software.
- Strong judgment, initiative, accuracy, thoroughness, and ability to meet physical demands of the position.
- Strong analytical, troubleshooting, and incident response skills.
Special requirements
- Experience designing, implementing, and maintaining Zero Trust architecture and operating principles.
- Experience with Netskope.
- Experience configuring and managing Palo Alto Networks firewalls.
- Experience with SailPoint and CyberArk.
- Experience with enterprise email security and filtering platforms.
- Strong understanding of cloud security fundamentals, including monitoring, policy enforcement, and compliance controls.
- Knowledge of network segmentation strategies and Zero Trust architecture concepts.
- Practical experience with Microsoft Purview and Microsoft Entra, including Conditional Access and Microsoft Authenticator deployment.
- Experience managing or supporting CrowdStrike.
- Familiarity with OT/IoT security platforms, preferably Claroty xDome.
- Hands-on experience with Varonis for data classification, access governance, and threat detection.
- Solid understanding of IAM principles, authentication methods (MFA, SSO), and least-privilege access.
Benefits
- Health Insurance
- Dental
- Vision
- Retirement Savings Plan
- Flexible Savings Account
- Paid Time Off
- Holidays
- Tuition Reimbursement
Technology focus
Zero Trust, SASE (ZTNA, SWG, CASB, DLP), Cisco Identity Services Engine (ISE), Cisco Secure Network Analytics (Stealthwatch), Palo Alto Networks firewalls, Microsoft EntraID (including Conditional Access and Microsoft Authenticator), CrowdStrike Endpoint Detection & Response, OT/IoT security platforms (including Claroty xDome), Netskope, SailPoint, CyberArk, Microsoft Purview, Varonis, and network segmentation aligned to Zero Trust architecture.