AVP Senior Information Security Analyst

Pgm Tek
New York, NY

Summary:

This is a full-time position for a Senior Information Security Analyst (“Security Analyst”) within the

Information Security team that participates in all aspects of information security.

The Security Analyst shall act as a risk manager with the responsibility for identifying, acting on and

escalating risks and is held strictly accountable for the failure to discharge their information security

duties. The employee shall also be responsible for demonstrating risk awareness by following all security

policies, procedures and internal controls in the daily routine.

Ability to make decisions and influence decisions in the areas of risk management and compliance are

key to the role. The Security Analyst will ensure that policy and compliance documentation, requirements

and controls are properly and timely identified, mapped, tracked, reviewed, and reported for the

organization to increase security posture.

In this role he will work closely with other members of the Security Team and IT Infrastructure Teams to

manage and support security administration tasks and security projects.

Requirements

Responsibilities:

SOC Operations (to include SIEM, SOAR, EDR, Threat Intelligence)- Perform initial triage of security

alerts and escalate real alerts; make recommendations to refine SIEM correlation rules and gather

intelligence from open source and vendor threat sources.

Root Cause Investigations & Incident Response Playbooks - Includes maintaining and updating the

IR Handbook using lessons learned from past incidents and assisting with documenting root cause

reports and tracking post-incident action items.

Log Collection & Forensic Analysis - Verify log capture across critical security tools and maintain

logging infrastructure dashboard and alert on missing logs.

Security Architecture Strategies- Maintain inventory of security tools and document security control

coverage across the environment.

DLP & Insider Threat Monitoring - Monitor DLP alert queues and escalate violations to management;

assist in analyzing data movement patterns for potential insider threats.

Penetration Testing & Tabletop Exercises- Document results from pen tests and track remediation

progress; coordinate logistics for tabletop exercises (scheduling, note-taking).

Vulnerability Management & Patching SLAs- Track patching compliance and generate weekly

reports; assist in validating vulnerability remediation efforts.

Attack Surface Monitoring & Threat Modeling - Monitor the asset inventory for continuous updates

and assist in threat modeling sessions by documenting identified risks. Baseline Configuration Compliance - Track deviations from approved baselines and escalate

compliance violations; maintain a database of baseline configurations for quick reference.

Asset Management for Security Tools, Hardware, Software- Maintain asset tracking logs for

security tools and their deployment status; assist in decommissioning outdated security software.

Audit Support / Remediation Efforts- support internal audit activities, assess current cybersecurity

controls in place, and drive remediation efforts for identified findings.

Risk Reporting- identifying, tracking, analyzing, and reporting key risk indicators (KRIs). Help provide

actionable insights to enhance our cybersecurity risk management and informed decision-making.

Education and Experience Requirements:

At least 3 years managing information security governance, risk, and compliance.

Bachelor’s degree in information technology or security discipline (e.g. cybersecurity) or related

work experience.

Industry recognized security certifications are a plus but not required (e.g. CISSP, CISA, CISM, CEH,

etc.)

Skills and Knowledge:

Demonstrated knowledge of industry authoritative sources such as NIST Cybersecurity

Framework, SOC2 and ISO standards, FFIEC framework and NYDFS-Part 500 regulations.

Experience with Splunk Cloud, Qualys, Spirion, Trellix, PAM, Tufin or similar information security tool is

preferred.

Excellent written and verbal communication and presentation skills; Good command of spoken and

written English.

Interpersonal and collaborative skills; and the ability to communicate information risk-related

concepts to technical as well as nontechnical audiences .

Skilled at planning, tracking plans, working cross department to review risks, controls and processes,

and gathering and organizing documentation and test results.

Self-directed, works with minimal guidance, and recognizes when guidance needed Ability to cope

with pressure and responsibility.

This job description is not limited to the responsibilities listed and the incumbent may be requested to perform

other relevant duties as required by business needs.

Posted 2025-08-20

Recommended Jobs

Medical Consultant (Psychiatrist) (New York)

TieTalent
New York, NY

Join to apply for the Medical Consultant (Psychiatrist) role at TieTalent 3 days ago Be among the first 25 applicants Join to apply for the Medical Consultant (Psychiatrist) role at TieTalent …

View Details
Posted 2025-08-19

Founding Engineer Backend

Shadow
Syracuse, NY

At Shadow, we’re building the end-to-end data platform for crypto. Blockchain networks are the next evolution of the Internet, yet it’s much too difficult to work with onchain data today. We’re ta…

View Details
Posted 2025-08-20

GARAGE - Seasonal Sales Associate - Smith Haven Mall

GRG USA LLC
Lake Grove, NY

Overview: We are a global fashion digital retailer with the Garage and Dynamite brands at the heart of our success. With over to 300 stores in Canada and the U.S., and more than 4,000 people, we have…

View Details
Posted 2025-07-29

MyCity QA Test Automation Engineer - Specialist 2

K Systems Solutions
Brooklyn, NY

Client Name: City of New York Start Date: July 07, 2025 End Date: July 05, 2026 Contract Length (in weeks): 52 weeks S COPE OF SERVICES The successful candidate will serve as …

View Details
Posted 2025-08-20

Software Engineer

Shiftsmart
Syracuse, NY

Why Shiftsmart We’re building the Amazon of labor. We’re a labor platform pairing end-to-end workforce management technology with a rapidly growing global network of 4M flexible workers (ranked #3 …

View Details
Posted 2025-08-20

Primary Care Physician

Oak Street Health
Brooklyn, NY

Description Title: Primary Care Physician Location:New York, NY-For a list of all applicable centers, see https://www.oakstreethealth.com/locationsBase Salary (before bonuses):$240,000 - $263,00…

View Details
Posted 2025-08-06

Rheumatologist - Optum, NY (Plainview)

Optum
Plainview, NY

Optum NY, (formerly Optum Tri-State NY) is seeking a patient-centric Rheumatologist to join our team in Lake Success, NY. Optum is a clinician-led care organization that is changing the way clinic…

View Details
Posted 2025-08-19

Per Diem Shift Supervisor, The Landing Family Shelter

CAMBA
East Elmhurst, NY

Job Description Job Description Who We Are:  CAMBA is a community of staff, volunteers, clients, donors, neighbors and partners who work together to build an inclusive New York City, where all ch…

View Details
Posted 2025-07-29

Senior Project Manager - Workplace Services

Cresa
New York, NY

Job Description Job Description At Cresa, we believe our clients deserve better. A better space to work, create, build, grow. A better outcome for their people and organization. A better partner …

View Details
Posted 2025-07-28

New York Emergency Medicine Travel Physician

New York Emergency Medicine Facilities
Buffalo, NY

Build your emergency medicine (EM) career in New York (NY) as a member of our EM physician HIT Team! Join TeamHealth as a regional traveler in Western NY, working across several of our premier locati…

View Details
Posted 2025-08-10