Department Overview
Information Security works to maintain the confidentiality and integrity of all company proprietary information as well as protected health information. The department works across company lines to ensure that appropriate measures are taken to maintain compliance with regulatory requirements and with generally accepted information security best practices.
Primary Responsibilities
The Senior Cybersecurity Analyst proactively manages the level of information security and technology risk in the environment. This position requires an incumbent with knowledge of the company's business functions, technology environment, vulnerability management processes, and information security posture. The incumbent uses their knowledge and experience to perform vulnerability scans using industry standard scanning tools and tracks findings through the remediation process.
Summary of Qualifications
- Bachelor's degree, preferably in Information Systems or a related field; or in lieu of a degree, 5 years' experience in Information Systems with direct experience in Information Security functions
- Minimum of 3 years of information technology experience
- Major professional certification applicable to Information Security
- Strong background in Information Technology and Information Security techniques and tools
- Excellent human relations, listening, speaking and written communication skills in order to explain and discuss technical risks in both technical and business terms
- Experience thinking logically and analytically in order to collect and analyze data in order to guide decision making
- Demonstrated and effective team leadership skills in order to lead teams, including developing control strategies, project plans, monitoring progress, and promoting quality and timeliness from the team
- Experience creating, understanding and utilizing complex processes
- Experience facilitating initiatives that challenge or change existing processes
- Certified Information Security Professional (CISSP) certification preferred
- Infrastructure vulnerability testing experience preferred
- Hands-on experience in the administration of infrastructure scanning tools such as Tenable preferred
- Hands-on experience in application scanning tools such as Netsparker, Burp Suite and Sonatype preferred
- Experience with cloud and container security preferred
Terms and Agreements
By submitting a job application, I attest that all information to the best of my knowledge is true and accurate. Furthermore, I understand that any information provided by me throughout the job application process is subject to verification including, but not limited to work experience, education, assessment (test) and interviews. We appreciate your interest in Blue Cross and Blue Shield of Alabama 'The Company'. The Company does not discriminate in hiring or employment on the basis of race, color, religion, creed, sex, sexual orientation, gender identity, national origin, age, disability, genetics, status as a disabled or protected veteran, or because of citizenship status in the case of a citizen or intending citizen. No question on this application is intended to secure information to be used for such discrimination. Blue Cross and Blue Shield of Alabama is an independent licensee of the Blue Cross and Blue Shield Association
|