ELLKAY

IT Security Analyst

ELLKAY

full-time

Posted on:

Origin:  • 🇺🇸 United States

Visit company website
AI Apply
Manual Apply

Salary

💰 $80,000 - $100,000 per year

Job Level

JuniorMid-Level

Tech Stack

AWSCloudCyber Security

About the role

  • Develop, maintain, and update System Security Plans (SSPs) and related security documentation in collaboration with the compliance team
  • Prepare for, participate in, and support security certification and compliance audits (e.g., CSF, HIPAA, PCI, HITRUST, SOC 1/2, NIST 800-53, GDPR)
  • Collect, coordinate, and organize evidence in support of certifications (e.g., SOC 2, HITRUST)
  • Review, analyze, and process security surveillance reports and vulnerability scan results; coordinate remediation efforts with technical teams
  • Support compliance automation initiatives and continuous monitoring activities
  • Independently manage assigned IT security projects, providing clear status reports, identifying risks, and recommending solutions for successful completion
  • Assist with internal and third-party security assessments to ensure ongoing compliance and risk mitigation

Requirements

  • Bachelor’s degree in Computer Networks & Cybersecurity, Computer Science, or related field (or equivalent experience)
  • 2+ years of experience working with IT technologies, architectures, security concepts, and industry best practices
  • Strong knowledge of information security principles, standards, tools, and methodologies
  • At least one relevant certification (Security+, CAP, CISA, CISM, or CISSP)
  • Familiarity with assessing commercial cloud environments (e.g., AWS)
  • Experience authoring or contributing to System Security Plans (SSPs) and Security Assessment Reports (SARs)
  • Experience with security certification and compliance audits (SOC 2, HITRUST, HIPAA, PCI, NIST 800-53, GDPR)
  • Strong attention to detail and effective communication with technical and non-technical stakeholders
  • Demonstrated problem-solving and analytical skills
  • Comfortable working on ambiguous and dynamic tasks in a fast-paced environment