Sr. Cyber Security Analyst
Senior
Analytics
Cyber Security
Cybersecurity Tools
Data Platform
Data Security
Digital Marketing
Endpoint Security
Facilities Management
Identity and Access Management
Incident Response
Information Security
Information Technology (IT)
InfoSec
Log Management
Network Security
Risk Management
Security
Security Analytics
Security Engineering
Security Information And Event Management
Security Monitoring
Security Operations
Splunk Siem
Threat Actor Analysis
Threat Intelligence
Job Description
The Senior Security Analyst will develop and execute information security strategies, implement security initiatives, and support incident response activities to safeguard NOW Health Group’s information assets. The role functions as a cybersecurity authority, bridging security, IT, and business stakeholders.
Location and Schedule
Bloomingdale, IL (onsite). Some after-hours and on-call support will be required.
Compensation
USD 151,000 - 197,000 per year.
Key Responsibilities
- Collaborate with the Security team, IT leaders, organizational stakeholders, and the Head of IT to develop and execute information security strategies.
- Protect NOW Health Group’s on-premises and Coud systems, networks, and applications against security breaches.
- Serve as a technical point of contact during security incidents.
- Contain, investigate, remediate, and document information security incidents.
- Research threat actors, tactics, techniques, procedures, malware, and other Indicators of Compromise (IoC).
- Assess, monitor, and report IT vulnerabilities.
- Prepare and analyze security reports to identify trends and reinforce secure behaviors across the organization.
- Perform forensic analysis.
- Assist with developing security standards, policies, and procedures for NOW Health Group.
- Participate in management and implementation of IT projects, supporting delivery on time, on budget, and to required specifications.
- Stay current on security technologies, techniques, vendors, and provide recommendations to enhance the company’s cybersecurity posture.
- Provide mentorship and training to Security and IT teams.
Required Qualifications
- Minimum 10 years of security-specific work experience.
- Hands-on experience with security technologies including SIEM, IDPs, EDR software, proxies, and firewalls.
- Knowledge of penetration testing, network security, patch management, and methods used to identify and correct security flaws.
- Proficiency with the MITRE ATT&CK framework and threat intelligence applications.
- Ability to identify and highlight vulnerabilities in on-premises and remote networks, remediate issues, and help prevent security breaches.
- Experience with threat-led penetration testing, attack simulation, and red/blue team exercises.
- Experience managing a ticket queue while working multiple issues concurrently and providing regular updates to customers, leadership, and teammates.
- Experience using network monitoring and management tools, including network analyzers.
- Strong attention to detail, timely delivery, and a focus on meeting user requirements.
- Experience building and maintaining relationships with key business areas and platform owners to provide ongoing assurance and help identify application security risks.
- Bachelor’s degree from a four-year college or university; and at least nine years of related cybersecurity experience and/or training, or an equivalent combination of education and experience.
- Must hold at least one of: CISSP, CISM, or CompTIA Advanced Security Practitioner (CASP+).
- Good oral and written communication skills, including the ability to present information and drive adoption of security practices.
- Ability to read, analyze, apply, and improve technical SOPs.
- Ability to read and interpret documents such as procedure manuals, professional journals, operating and maintenance instructions, and safety rules.
- Strong capability to create detailed documentation to support operational efficiency.
- Analytical thinking, problem-solving, attention to detail, critical thinking, and data-driven analysis.
- Sound decision-making and troubleshooting skills, including the ability to solve complex problems using creative approaches.
Relevant Technologies
- SIEM
- IDPs
- EDR software
- Proxies
- Firewalls
- MITRE ATT&CK
- Threat intelligence applications
- Network analyzers
Education
Bachelor’s degree from a four-year college or university.
Safety Responsibility Statement
- Supports a culture of safety; follows workplace health and safety procedures.
- Responsible for safety performance in the respective area.
- Ensures implementation of, adherence to, and enforcement of workplace health and safety requirements.
- Ensures activities are completed to promote and enforce safe behaviors by supervisors and employees.
- Ensures injury prevention efforts are effectively implemented.
- Fulfills responsibilities as outlined in the company safety management plan.
Physical Demands and Work Environment
The physical demands and work environment descriptions are representative of those encountered while performing essential job functions. Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions.