Shirley Ryan AbilityLab is the global leader in physical medicine and rehabilitation for adults and children with the most severe, complex conditions. By joining our team, you’ll be part of our life-changing mission and vision. You’ll contribute to an innovative, multifaceted culture that is second to none — one that embraces collaboration, excellence, discovery and compassion. You’ll play a role in something that’s never been done before as we integrate science and clinical care to help patients achieve better, faster outcomes — as we Advance Human Ability, together.
Job Description Summary
The Lead IT Security Analyst is a leader of the IT Security Operations team who works closely with the other members of the team to deliver a comprehensive information security program and safeguards Shirley Ryan AbilityLab’s valuable information assets. The Lead IT Security Analyst holds a high level of expertise in multiple security focus areas, and works actively to disseminate that knowledge to the team.
The lead analyst works with other IT teams to effectively manage, monitor, and deploy technical controls to meet specific security requirements and follows defined processes and standards to ensure that security configurations are enforced and maintained. Where the Lead Analyst identifies opportunities for process improvements, they communicate them to management, propose changes, and implement them.
In a demanding 24x7x365 healthcare environment, this position requires a high degree of initiative and hands-on technical knowledge, an up-to-date understanding of the latest security threats and technologies, familiarity with core security frameworks, commitment to ongoing and continuous improvement of security personnel, processes, and technology, as well as a professional demeanor and collaboration skill set.
The IT Security Analyst will demonstrate Shirley Ryan AbilityLab Core Attributes (Communication, Accountability, Flexibility/Adaptability, Judgment/Problem Solving, Customer Service) and Core Values (Hope, Compassion, Discovery, Collaboration, and Commitment to Excellence) while fulfilling job duties.
Job Description
The Lead IT Security Analyst:
Administers IT and OT systems relevant to security operations for all on-premises, hosted, and cloud infrastructure, storage, applications, systems, and networks.
Cultivates knowledge of organizational policy and standards as they pertain to security and works to ensure that security operations are rooted in and aligned with policy, as well as promoting awareness of and adherence to policy among their own team and others. Where gaps in policy and standards are identified, the lead security analyst drafts proposed additions based on industry frameworks and best practices.
Performs continuous monitoring of security solutions including but not limited to antivirus, encryption, endpoint detection and response, Security Incident and Event Management (SIEM), privileged access management, vulnerability management, threat intelligence, data loss prevention (DLP), and intrusion detection & prevention. Where gaps in detection or response capabilities are identified, the lead security analyst researches, evaluates, deploys or develops, and operationalizes new technologies to address them.
Identifies security incidents in the course of monitoring; collaborates with internal and external teams to execute incident response procedures related to containment and eradication; and provides guidance to internal teams to recover from such incidents.
Provides emergency, after-hours and weekend support on a rotational basis to respond to priority issues that occur outside of the normal business hours.
Executes and proposes improvements to detailed and accurate documentation and procedures related to operational security practices and processes. Ensures users, service delivery and systems will adhere to documented standards. Where gaps in process are identified, the lead security analyst develops, implements, and trains team members on new solutions.
Takes a leading role in conducting security awareness training and phishing simulations, and remains informed on industry trends and threat intelligence to ensure the organization is prepared to confront relevant threats.
Provides direction to and collaborates with other teams regarding strategic and tactical operational security initiatives relating to identity and access management.
Works closely with team members from IT, other business units, and vendors to ensure new systems, applications, subscriptions, services, and processes meet secure configuration and vulnerability management requirements.
Evaluates vendor security assessments, coordinates periodic internal and external security audits and assists in the development and implementation of post-audit mitigation plans.
Builds formal and informal relationships within SRAlab and among business partners and customers to improve the effectiveness of IT Security Operations. Collaborates with all IT teams and promotes ongoing and continuous security improvements, and serves as a primary point of contact for security concerns
Performs all other duties that may be assigned in the best interest of the Shirley Ryan AbilityLab.
Reporting Relationships
Reports to Manager of IT Security Operations
Knowledge, Skills & Abilities Required
A minimum of seven (7) years progressive experience working in Information Technology with at least five (5) years of direct experience in systems security administration, systems audit, or security compliance. Knowledge of security for operational technology a plus.
Robust and hands-on experience administering various security solutions, including antivirus, Security Incident and Event Management (SIEM), encryption, endpoint detection and response, data loss prevention (DLP), intrusion detection & prevention, systems patching, vulnerability management, and threat intelligence.
Advanced knowledge and understanding of security configurations and monitoring for Microsoft directory services (on-premise and cloud); Windows, Mac, and Linux OS; logging and monitoring; user access management; principles of perimeter-based and zero-trust architecture; network communication protocols; etc.
Must understand information security concepts, protocols, industry best practices and strategies. Knowledge of industry regulatory requirements and experience working with internal and external security audit staff as well as remediation practices is required.
High degree of initiative and commitment to ongoing and continuous security improvements, a professional demeanor and collaborative spirit to execute projects and complete tasks proficiently.
Effective communication and meticulous documentation skills required with a strong ability to develop and present comprehensive security reports to different audiences.
Familiarity and knowledge of core security frameworks: HIPAA (Healthcare Insurance Portability and Accountability Act), NIST (National Institute of Standards and Technology), HITRUST (Health Information Trust Alliance), ISO 27000 Series (International Organization of Standardization), etc.
Active CISSP certification and maintenance required. Additional healthcare environment experience and IT security certifications are a plus.
Skillful in delivery of superior customer service.
General understanding of Cerner and Financial Systems and their integration a plus.
Ability to transport and move PCs, printers, and related hardware weighing up to 30 pounds.
Working Conditions
The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not intended to be construed as an exhaustive list of all responsibilities, duties and skills required of personnel so classified.
Pay and Benefits*:
Pay Range:
$82,300.00 - $136,700.00
Benefits:
Shirley Ryan AbilityLab offers a comprehensive benefits program that is competitive with our industry peers in our geographic locations: https://www.sralab.org/benefits
Benefits and benefits’ eligibility can vary by position. Actual compensation will be determined by equity and qualifications of the role.
Equal Employment Opportunity Employer
Shirley Ryan AbilityLab is an Equal Employment Opportunity Employer. All applicants will be afforded equal employment opportunity without discrimination because of race, color, religion, sex, marital status, national origin or ancestry, citizenship status, age, disability, sexual orientation, gender identity, genetic information, military status, order of protection status, unfavorable discharge from military service, or any other characteristics protected by law.
EEO is the Law | EEO is the Law - Know Your Rights | View our Full Policy
Shirley Ryan AbilityLab is an Affirmative Action Employer as required by law.