Jobs
>
Cleveland

    IT Security Analyst II - Cleveland, United States - Medical Mutual

    Default job background
    Full time
    Description
    Job Description - IT Security Analyst II - IV Job Description IT Security Analyst II - IV Description

    Founded in 1934, Medical Mutual is the oldest and one of the largest health insurance companies based in Ohio. We provide peace of mind to more than 1.6 million Ohioans through our high-quality health, life, disability, dental, vision and indemnity plans. We offer fully insured and self-funded group coverage, including stop loss, as well as Medicare Advantage, Medicare Supplement, and individual plans.

    Medical Mutual' s status as a mutual company means we are owned by our policyholders, not stockholders, so we don't answer to Wall Street analysts or pay dividends to investors. Instead, we focus on developing products and services that allow us to better serve our customers and the communities around us and help our members achieve their best possible health and quality of life.

    This position has the option to work hybrid in Columbus, OH.

    Requires work to be performed at an onsite physical location on a regular basis (generally 3 days per week) as determined by applicable business unit unless business demands, geography or other factors require adjustments to this requirement.

    IT Security Analyst – II
    This role supports the enterprise's compliance with the HIPAA Security, SOC 2, SOC 1, and other internal audits. This individual is responsible for policies, procedures, and risk management projects. This role will fulfill these duties by collaborating with internal, IT staff, and other stakeholders to ensure compliance project deliverables are met.

    IT Security Analyst – III
    This role supports the enterprise's compliance with the HIPAA Security, SOC 2, SOC 1, and other internal audits. This individual is responsible for policies, procedures, and risk management governance (GRC). This role will fulfill these duties by collaborating with internal, IT staff, and other stakeholders to ensure compliance project deliverables are met.

    IT Security Analyst – IV
    This role provides complex analysis and accurate and timely assessment of risk metrics. Leads the enterprise's compliance with the HIPAA Security, SOC 2, SOC 1, and other internal audits. Works independently to solve problems, complete special projects, and conduct monthly activities. This individual is responsible for policies, procedures, and risk management governance. Acts as a best practice/quality resource for colleagues with less experience and guides others in resolving complex issues.

    Responsibilities

    IT Security Analyst – II
    Policy Development and Maintenance:

    • Manages and ensures Policies are in place to meet relevant federal and state laws and regulations.

    • Maintains IT Policies repository and facilitates annual review process.
    Internal/External Audit Support:

    • Assists internal and external IT audits (SOC2, HIPAA, ITCG) evidence collection.
    Risk Assessment and Prioritization:

    • Assists in the conducting of risk assessments to identify vulnerabilities within the organization and third-party products.

    • Manages Risk Register and mitigation tracking
    Reporting and Metrics:

    • Develops and reports on information security metrics.

    • Presents reports to various stakeholders

    IT Security Analyst – III
    Policy Development and Maintenance:

    • Manages and ensures Policies are in place to meet relevant federal and state laws and regulations.

    • Maintains IT Policies repository and facilitates annual review process.
    Internal/External Audit Support:

    • Assists internal and external IT audits (SOC2, HIPAA, ITCG) including engagement management and evidence collection.
    Risk Assessment and Prioritization:

    • Conduct risk assessments to identify vulnerabilities within the organization and third-party products.

    • Prioritize risks based on impact and likelihood.

    • Manages Risk Register and mitigation tracking
    Reporting and Metrics:

    • Develops and reports on information security metrics.

    • Provide insights to senior leadership regarding risk management.

    IT Security Analyst – IV
    Policy Development and Maintenance:

    • Manages policies and recommends new policies based on risk and changes in regulations or processes.

    • Develops IT Policies framework and tracking repository and leads annual review process.
    Internal/External Audit Support:

    • Leads internal and external IT audits (SOC2, HIPAA, ITCG) including engagement management and evidence collection.
    Risk Assessment and Prioritization:

    • Conduct risk assessments to identify vulnerabilities within the organization and third-party products and presents results to leadership.

    • Prioritizes risks based on impact and likelihood and facilitates risk tolerance decisions by management.

    • Manages Risk Register and mitigation tracking
    Reporting and Metrics:

    • Develops information security metrics and recommendations based on identified risks.

    • Provide insights to senior leadership regarding risk management.

    Qualifications

    Qualifications

    IT Security Analyst – II
    Education and Experience:

  • Bachelor's Degree - Information Technology or related field or the equivalent combination of education and experience.
  • 3 years relevant IT experience.
  • Professional Certification(s):

  • Certified in Risk and Information Systems Control (CRISC) preferred.
  • Certified Information Systems Security Professional(CISSP) preferred.
  • Technical Skills and Knowledge:

  • Intermediate understanding of current technical architecture including but not limited to server, network, application firewall.
  • IT Security Analyst – III
    Education and Experience:

  • Bachelor's Degree - Information Technology or related field or the equivalent combination of education and experience.
  • 5 years relevant IT experience.
  • Professional Certification(s):

  • Certified in Risk and Information Systems Control (CRISC) Preferred.
  • Certified Information Systems Security Professional(CISSP) Preferred.
  • Technical Skills and Knowledge:

  • Intermediate Understanding of current technical architecture including but not limited to server, network, application firewall.
  • IT Security Analyst – IV
    Education and Experience:

  • Bachelor's Degree - Information Technology or related field or the equivalent combination of education and experience.
  • 7 Years Relevant IT Experience.
  • Professional Certification(s):

  • Certified in Risk and Information Systems Control (CRISC) Preferred.
  • Certified Information Systems Security Professional(CISSP) Preferred.
  • Technical Skills and Knowledge:

  • Advanced Understanding of current technical architecture including but not limited to server, network, application firewall.
  • About Medical Mutual:

    Medical Mutual's status as a mutual company means we are owned by our policyholders, not stockholders, so we don't answer to Wall Street analysts or pay dividends to investors. Instead, we focus on developing products and services that allow us to better serve our customers and the communities around us.

    There's a good chance you already know many of our Medical Mutual customers. As the official insurer of everything you love, we are trusted by businesses and nonprofit organizations throughout Ohio to provide high-quality health, life, disability, dental, vision and indemnity plans. We offer fully insured and self-funded group coverage, including stop loss, as well as Medicare Advantage, Medicare Supplement and individual plans. Our plans provide peace of mind to more than 1.2 million Ohioans.

    We're not just one of the largest health insurance companies based in Ohio, we're also the longest running. Founded in 1934, we're proud of our rich history with the communities where we live and work.

    We maintain a drug-free workplace and perform pre-employment substance abuse and nicotine testing.

    Primary Location

    :US-OH-Dublin

    Other Locations

    :US-OH-Brooklyn

    Work Locations

    :Dublin545 Metro Place SouthSuite 430Dublin43017

    Job

    :7 - General Staff

    Organization

    :IT Infrastructure

    Schedule

    :Regular

    Shift

    :Standard

    Employee Status

    :Individual Contributor

    Job Type

    :Full-time

    Job Level

    :Day Job

    Job Posting

    :Apr 15, 2024, 5:21:21 PM

  • Cleveland-Cliffs Inc

    Security Analyst

    5 days ago


    Cleveland-Cliffs Inc Cleveland, United States

    Cleveland-Cliffs Steel has an immediate opening for a dedicated and detail-oriented Program Analyst in our Security Department in Cleveland-Cliffs HQ, based in Cleveland, Ohio. The ideal candidate will have a passion for leveraging data analytics to improve security protocols, id ...

  • Cleveland-Cliffs Inc

    Security Analyst

    2 weeks ago


    Cleveland-Cliffs Inc Cleveland, United States

    Cleveland-Cliffs Steel has an immediate opening for a dedicated and detail-oriented Program Analyst in our Security Department in Cleveland-Cliffs HQ, based in Cleveland, Ohio. The ideal candidate will have a passion for leveraging data analytics to improve security protocols, id ...


  • MCPc Cleveland, United States

    Company Description · Fortress Security Risk Management is a nationally recognized full-spectrum cybersecurity firm dedicated to protecting its clients from the financial, operational, and emotional ravages of cybercrime. Headquartered in Cleveland, OH, Fortress primarily has a ...


  • ReliabilityFirst Corporation Cleveland, United States

    About RF: · ReliabilityFirst Corporation is a regulator focused on the reliability and security of the electric grid. ReliabilityFirst's mission is to preserve and enhance the reliability, security, and resilience of the Bulk Power System across 13 states and the District of Colu ...


  • ReliabilityFirst Cleveland, United States

    About RF: · ReliabilityFirst Corporation is a regulator focused on the reliability and security of the electric grid. ReliabilityFirsts mission is to preserve and enhance the reliability, security, and resilience of the Bulk Power System across 13 states and the District of Colu ...


  • ReliabilityFirst Cleveland, United States

    About RF: · ReliabilityFirst Corporation is a regulator focused on the reliability and security of the electric grid. ReliabilityFirst's mission is to preserve and enhance the reliability, security, and resilience of the Bulk Power System across 13 states and the District of Colu ...


  • MCPc Holdings, Inc. Cleveland, United States

    Fortress Security Risk Management is a nationally recognized full-spectrum cybersecurity firm dedicated to protecting its clients from the financial, operational, and emotional ravages of cybercrime. Headquartered in Cleveland, OH, Fortress primarily has a regional footprint but ...


  • ReliabilityFirst Cleveland, United States

    About RF: · Do not wait to apply after reading this description a high application volume is expected for this opportunity. · ReliabilityFirst Corporation is a regulator focused on the reliability and security of the electric grid. ReliabilityFirst's mission is to preserve and ...


  • CGI Technologies and Solutions, Inc. Cleveland, United States

    Application Security Analyst - Hybrid · Category: Cyber Security · Main location:, Various · Alternate Location(s): United States, North Carolina, Raleigh · United States, Ohio, Cleveland · Position ID: J · Employment Type: Full Time · Position Description: · CGI has an immediat ...


  • The Sherwin-Williams Company Cleveland, United States

    Strategy & Planning Participate in the planning and designing of enterprise security architecture, under the direction of the IT Lead Security Analyst, where appropriate. · Participate in the creation of enterprise security documents (policies, standards, baselines, guidelines, ...


  • Exodus Integrity Services Cleveland, United States

    Exodus Integrity Services, Inc is a rapidly expanding technology company headquartered in Northeast Ohio. EIS provides quality services to our clients by instilling honesty, commitment, and hard work to find the most qualified candidates to fill each opportunity.Currently, we are ...


  • CGI Technologies and Solutions, Inc. Cleveland, United States

    Application Security Analyst - Hybrid · Category: Cyber Security · Main location: United States, Various · Alternate Location(s): United States, North Carolina, Raleigh · United States, Ohio, Cleveland · Position ID: J · Employment Type: Full Time · Position Description: · CGI h ...

  • TalentBurst

    Info Security Analyst

    2 weeks ago


    TalentBurst Cleveland, United States

    Job Title: Info Security Analyst · Position is 100% Remote · Duration of assignment until for now. · Start date is · Job Description: · The ideal candidate for this position has an in-depth knowledge of security and technology, with strong understanding of risk management. The ...


  • The Sherwin-Williams Company Cleveland, United States

    Strategy & Planning · Participate in the planning and designing of enterprise security architecture, under the direction of the IT Lead Security Analyst, where appropriate. · Participate in the creation of enterprise security documents (policies, standards, baselines, guideline ...


  • Sherwin-Williams Cleveland, United States

    Job Description · Strategy & PlanningParticipate in the planning and designing of enterprise security architecture, under the direction of the IT Lead Security Analyst, where appropriate. · Participate in the creation of enterprise security documents (policies, standards, baseli ...


  • Exodus Integrity Services Cleveland, United States

    Exodus Integrity Services, Inc is a rapidly expanding technology company headquartered in Northeast Ohio. EIS provides quality services to our clients by instilling honesty, commitment, and hard work to find the most qualified candidates to fill each opportunity.Currently, we are ...


  • RightTalents LLC Cleveland, United States

    Job Description: · The ideal candidate for this position has an in-depth knowledge of security and technology, with strong understanding of risk management. The candidate must be able to make decisions based on prior experience in a large enterprise environment and their solid u ...


  • RightTalents LLC Cleveland, United States

    Job Description: · The ideal candidate for this position has an in-depth knowledge of security and technology, with strong understanding of risk management. The candidate must be able to make decisions based on prior experience in a large enterprise environment and their solid ...


  • RightTalents LLC Cleveland, United States

    Job Description: · The ideal candidate for this position has an in-depth knowledge of security and technology, with strong understanding of risk management. The candidate must be able to make decisions based on prior experience in a large enterprise environment and their solid un ...


  • True North Consultants Cleveland, United States

    The Senior Information Security Analyst will have responsibility for executing and contributing to cyber-and information security programs. · What you'll do: · Participate in executing parts of the Division Information Security Plan. You will interface with Division and Global T ...