At WellStar, we all share common goals. That’s what makes us so successful – and such an integral part of our communities. We want the same things, for our organization, for our patients, and for our colleagues. As the most integrated healthcare provider in Georgia, this means we pride ourselves on investing in the communities that we serve. We continue to provide innovative care models, focused on improving quality and access to healthcare.
The Sr. Information Security Analyst functions as an information security subject matter expert supporting
all aspects of WellStar with their knowledge and skills. The individual is experienced in many areas of the
information security domains, and is able to conduct risk assessments, develop appropriate risk
responses, and monitor the environment for change. The individual needs to have the capability to
participate in several projects and tactical initiatives related to enterprise security, manage critical
relationships with key stakeholders and vendors, drive process improvements for the information security
program, and review risks assessments for potential security exposures. The Senior Analyst is also
expected to mentor others interested in information security.
This position will be responsible for performing vulnerability scans, analyzing and reporting associated vulnerabilities to key stakeholders for remediation. Must be able to provide management with vulnerability assessments and briefings to advise them of critical and high-risk vulnerabilities that may impact WellStar operations.
Perform compliance scanning to analyze configurations and make recommendations of hardening configurations for Windows operating systems including servers, endpoints, VDI and thin clients.
Provide vulnerability metrics and summary reports to key stakeholders on a weekly basis.
Perform vulnerability management system administration functions, as required.
Experience with Rapid7 InsightVM or Nexpose preferred.
Required Minimum Education : Bachelor’s degree or four years additional experience
Required Minimum Experience : 5 or more years in information security, IT audit or a related field.
Required Minimum Certification : CISSP, CISM, CISA, HCISPP, CPHIMS, CAHIMS, CRISC, GIAC or any other
equivalent security certification
Required Minimum Skills :
• Analytical, verbal and written communication
• Strong attention to details and accuracy
• Excellent problem solving and decision making skills
• Project management concepts
• Ability to perform risk management and risk assessments
• Incident response planning and execution
• Ability to effectively work on multiple projects or tasks simultaneously
• Subject matter expertise in at least one of the following: Security awareness, threat assessments, identity
management/RBAC, endpoint security, and data loss prevention
• Strategic planning and the development of supporting policies and procedures
• Knowledge of the HIPAA Security Rule, PCI DSS, NIST or ISO 27000 ½
• Healthcare privacy or security related certification
• PMP certification
• Experience working in a healthcare setting
• Experience with HIPAA or the HiTrust framework
Join us for outstanding benefits and development opportunities. We also offer state-of-the-art technology, professional support and advancement, and colleagues that rank amongst the best in the country. The WellStar culture of caring has also been nationally recognized three years in a row by Fortune Magazine as one of the “100 Best Companies to Work For”. Step up to your potential. Find out more and apply today.
WellStar is an equal opportunity/affirmative action employer. All applicants are considered without regard to race, color, religion, sex, age, national origin, disability, veteran status or any status which is protected by local, state or federal law.
FacilityWellStar Shared Services
CategoryInformation Systems and Technology
|Location:||United States Georgia Atlanta|
|Salary:||Highly Competitive USD per year|
Healthcare and Medical
IT & Telecommunications
PLEASE! No enquiries from Recruitment Agencies or Headhunters.
Only direct applications will be considered.