Language

Senior IS Security Risk Analyst - Request #36200774

Trading
Operations
Metrics
Best Practices
Problem Solving
Life Cycle
CMS
Content Management System
Risk Analysis
Frameworks
Decision Support
Agile
Networking
Cloud Security
Amazon Web Services
NIST
Splunk
Certified Information Systems Security Professional
Information Security
Identity and Access Management
Cissp
Description:

Why should you join the BlueCross BlueShield of South Carolina family of companies? Other companies come and go, but for more than seven decades we’ve been part of the national landscape, with our roots firmly embedded in the South Carolina community. Business and political climates may change, but we’re stronger than ever. Our A.M. Best rating is A+ (Superior) — making us the only health insurance company in South Carolina with that rating. We’re the largest insurance company in South Carolina …and much more. We are one of the nation’s leading administrators of government contracts. We operate one of the most sophisticated data processing centers in the Southeast. We also have a diverse family of subsidiary companies that allows us to build on a variety of business strengths. We deliver outstanding service to our customers. If you are dedicated to the same philosophy, consider joining our team!

Job Title: Senior IS Security Risk Analyst

Position Notes:

  • Required Education: Bachelor's Degree in Computer Science, Information Technology or related degree. or 4 years of job related work experience or 2 years of job related experience plus an associate’s degree in Computer Science, Information Technology or other job related degree. 
  • Required Work Experience: 8 years of I/T experience including 6 years of IT security, risk assessment and/or compliance experience. Successful completion of BCBSSC I/S Entry Level Training Program (ELTP) may be substituted for 2 years of I/T experience.
  • Interview: Remote
  • Role: Onsite is Highly Preferred but open to Remote (Cloud Senior Security Risk Analyst)
  • Team Name: CBIC Cloud Migration 
  • Hours: 8:30 a.m. to 5 p.m. - Possible overtime, when needed to meet project timelines
  • Required Technologies: • Agile Experience • Identity and Access Management (IAM) • Proficiency with Splunk • Experience with Security Tools associated with AWS Security & Compliance Frameworks (NIST 800-53, FedRAMP)
  • Nice To Have: • FedRAMP/NIST 800-53 Compliance Frameworks • Familiarity with federal compliance standards, particularly FedRAMP and NIST 800-53, is crucial for aligning cloud security controls with CMS requirements.
     

Duties:

  • Develop strategies and approaches for business development proposals within a compliance and systems security context. Plan and perform compliance and systems security activities in alignment with contractual role. Communicate and escalate compliance and risk issues to the appropriate customer representative and/or level of management. Act as a change agent to influence I/S and corporate compliance culture in alignment with business constituency. Develop strong systems security customer business relationship. Provide expert level consultation regards contractual system security obligations, frameworks, control requirements. 
  • 20% Oversee remediation of new and outstanding issues, including Information Security Risk Exception process, across multiple business areas and security frameworks. Utilize tools to track and report on compliance posture. 
  • 20% Conduct or lead others in the procedural and operational review of internal IS security compliance standards. Oversee formal risk analysis and self-assessments to determine effectiveness of controls and ensure creation of action plans to remediate identified risks. Identify and champion efficiency improvements related to security, risk and compliance processes. Engage appropriate Client Management areas to facilitate process improvements through formal IS Methodology. 
  • 20% Lead the development, implementation and documentation of Information Security policies, procedures, processes and programs to guide IS toward continuous compliance. May conduct or lead others in the analysis and interpretation of security regulations and controls. Proactively provide strategic consulting to IS functional teams with the development, implementation, monitoring, and reporting of control processes, documentation and compliance routines for moderate to highly complex work efforts. 
  • 20% Serve as an interface with external entities for governance and compliance reviews regarding information security risk. 
  • 10% Conduct or lead others in the investigation, documentation and resolution of Information Security Incidents. Advises senior management of critical issues that may affect organization. 
  • 10% Research emerging security topics, threats and capabilities to create/update policy and governance. Engage appropriate leaders to evaluate and mitigate potential exposure. Promote organizational security awareness by developing security training, Security Council bulletins, security policies, standards and best practices, as well as delivering training to personnel. 

Required Skills and Abilities: Complete understanding of systems security business life cycle methodologies. Subject Matter Expert in both government and private risk frameworks and control implementations. Comprehensive understanding of business system security risk management, information system security and compliance practices. Demonstrate excellent analytical, problem solving, decision-making skills, interpersonal and ownership skills. Proven ability to interpret and apply knowledge of regulatory/accreditation requirements. Ability to lead others in solving problems often spanning multiple environments and business areas. Ability to effect change and bring security, risk and compliance knowledge to the organization through the use of positive influence. Understanding of infrastructure and networking architecture WANs, LANs, Internet, intranets and communication protocols. Excellent communication skills in presenting results to customer, senior management, and matrix staff both verbally and in writing. Demonstrated ability to develop metrics, perform critical analysis and develop executive decision support content. Possess excellent collaboration skills with a wide variety of internal matrix and management staff. 

Required Software and Tools: Standard office equipment. Preferred Licenses and Certificates: ISC2 Certified Information Systems Security Professional (CISSP). 

Required Education: Bachelor's Degree in Computer Science, Information Technology or related degree. or 4 years of job related work experience or 2 years of job related experience plus an associate’s degree in Computer Science, Information Technology or other job related degree. 

Required Work Experience: 8 years of I/T experience including 6 years of IT security, risk assessment and/or compliance experience. Successful completion of BCBSSC I/S Entry Level Training Program (ELTP) may be substituted for 2 years of I/T experience.

This is the pay range that Magnit reasonably expects to pay someone for this position is $50/hour - $62/hour. Benefits: Medical, Dental, Vision, 401K (provided minimum eligibility hours are met).

BlueCross is a strong supporter of our veterans, and many service men and women have joined our ranks. We’ve found the dedication, work ethic and job skills that serve well in the military excel in many of our lines of business, and we proudly have veterans filling positions in Human Resources, Information Technology, Customer Service, Operations, General Services and more. 

Through our government contracts, we also have employees serving at Shaw Air Force Base, the Naval Health Clinic in Charleston, the Naval Hospital in Beaufort and in our hometown of Columbia, S.C., at Ft. Jackson. If you are a full-time employee in the National Guard or Reserves, we will even cover the difference in your pay if you are called to active duty. If you're ready to join in a diverse company with secure, community roots and an innovative future, apply for a position now!

QUALIFICATION/ LICENSURE :
  • Work Authorization : US Citizen
  • Preferred years of experience : 1+ Years
  • Travel Required : No travel required
  • Shift timings: Not specified
Job Location columbia, South Carolina
Pay USD 50.00 - USD 62.00 Per Hour
Contract Duration 6 month(s)