Sr. Information Security Analyst
Job Description
The Sr. Information Security Analyst role at Comcast Corporation focuses on using AI-enabled automation to build scalable security data pipelines, dashboards, and reporting. The position brings multiple security data domains into trusted reporting workflows to centralize risk visibility across FreeWheel and Comcast.
Location and Schedule
Chicago, IL (onsite). The role requires regular, consistent, and punctual attendance, with the ability to work nights and weekends as needed due to variable schedules.
Compensation
The salary range is USD 107,243 - 160,865 per year. The Illinois pay range is listed as $107,243.85 - $160,865.77. Most non-sales positions are eligible for a Bonus, and Comcast provides best-in-class benefits to eligible employees.
Role Responsibilities
- Design, build, and maintain automated security data pipelines, ETL processes, data models, dashboards, and reporting solutions that consolidate information across teams and data sources.
- Administer, optimize, and support Splunk Enterprise, including SmartStore, and Splunk Enterprise Security for security analytics, reporting, and operational visibility.
- Develop centralized security reporting spanning cloud security, application security, asset management, artificial intelligence, vulnerability management, compliance, and related security domains.
- Partner with security, engineering, product, infrastructure, governance, risk, and compliance teams to define reporting requirements, authoritative data sources, metrics, and data-quality controls.
- Create executive, operational, and compliance dashboards that translate complex security data into actionable insights, trends, risks, and remediation priorities.
- Define and evolve severity and priority models, remediation service-level agreements, exception criteria, and escalation paths for findings and vulnerabilities.
- Monitor remediation performance and support adherence to agreed service-level agreements across engineering groups using transparent metrics and stakeholder follow-through.
- Integrate Cyber Asset Attack Surface Management (CAASM) and related asset inventory data to improve asset coverage, ownership, exposure visibility, and risk prioritization.
- Automate recurring compliance reporting and evidence collection while maintaining traceability, accuracy, appropriate access controls, and audit readiness.
- Evaluate data gaps, duplicate or conflicting records, pipeline failures, and reporting inconsistencies, coordinating corrective actions with source-system owners.
- Support security analytics and reporting for public cloud environments, with emphasis on AWS services, security telemetry, asset context, and control status.
- Communicate recommendations, tradeoffs, dependencies, and risk clearly to technical and non-technical stakeholders across FreeWheel and Comcast.
- Exercise independent judgment and discretion in matters of significance.
- Perform other duties and responsibilities as assigned.
Required Qualifications
- Experience with business intelligence, security reporting, dashboards, ETL, data integration, and data pipeline technologies.
- Hands-on experience with Splunk Enterprise and Splunk Enterprise Security; Splunk SmartStore experience is preferred in addition to other similar technologies.
- Proven experience using AI tools for development and other security workflows.
- Experience integrating data from multiple teams and source systems into a centralized security reporting or analytics platform.
- Experience with security compliance reporting, control evidence, metrics, and audit-support processes.
- Experience with CAASM, attack surface management, asset inventory, exposure management, or comparable security data platforms.
- Demonstrated ability to define severity and priority models and remediation service-level agreements, with the ability to influence engineering teams to meet them.
- Working knowledge of cybersecurity concepts including vulnerabilities, findings, controls, asset ownership, risk, and remediation workflows.
- Excellent written and verbal communication skills across a wide range of stakeholders at FreeWheel and Comcast.
- Familiarity with public cloud security and AWS is preferred.
- Ability to manage multiple priorities, solve ambiguous data problems, and deliver reliable reporting with limited supervision.
Technologies
- Splunk Enterprise
- Splunk SmartStore
- Splunk Enterprise Security
- ETL
- Cyber Asset Attack Surface Management (CAASM)
- AWS
Skills
- Information Security
- Problem Solving
- Collaboration
- Security Operations
Experience and Education
- Relevant work experience: 7-10 years
- Education: Bachelor's Degree
Work Principles
- Understand and apply Operating Principles in day-to-day work.
- Own the customer experience by prioritizing customers and enabling seamless digital options.
- Know your stuff through enthusiasm for learning, using, and advocating for technology, products, and services.
- Win as a team by collaborating and remaining open to new ideas.
- Participate in the Net Promoter System by joining huddles, making call backs, and elevating opportunities to improve.
- Drive results and growth.
- Support a culture of inclusion.
- Do what is right for customers, investors, communities, and each other.
Disclaimer: This information is designed to indicate the general nature and level of work performed and is not intended to be a comprehensive inventory of duties, responsibilities, and qualifications.