Senior Information Security Analyst II

Freenome Logo

Freenome

πŸ’΅ $131k-$201k
πŸ“Remote - Worldwide

Summary

Join Freenome, a high-growth biotech company, as a Senior Information Security Analyst and play a key role in protecting our information assets. You will implement, maintain, and monitor security systems, investigate and respond to cyber incidents, and ensure compliance with relevant regulations. This remote position requires a blend of technical skills, compliance knowledge, and a proactive approach to risk mitigation. You will report to the Director of Information Security and contribute to the success of the Information Security Team. Freenome offers a competitive salary, pre-IPO equity, cash bonuses, and a full range of benefits. We are an equal-opportunity employer and value diversity.

Requirements

  • Bachelor's degree in Information Security, or a related field
  • 8+ years of experience working in Information Security
  • Current CISSP certification
  • Strong understanding of security principles, technologies, and best practices
  • At least 3 years' hands-on experience in SIEM tools implementing, operating, maintaining, and incident management in mission critical environments
  • Experience with vulnerability management and penetration testing
  • Familiarity with relevant regulations and standards (HITRUST, NIST 800-53r5, SOC 2 Type 2)
  • Strong analytical and problem-solving skills
  • Ability to work independently and as part of a team

Responsibilities

  • Implement, maintain, monitor and improve security systems (e.g., SIEM, IDS/IPS) to detect, alert and respond to security incidents
  • Conduct security investigations and perform root cause analysis
  • Ensure that incidents are correctly reported, documented, investigated and concluded in accordance with operational policies and procedures
  • Manage security events as part of security operations, responding to urgent alerts, which may include off-hours investigation activities
  • Manage and maintain security infrastructure (e.g., cloud firewalls, VPNs)
  • Perform vulnerability assessments and penetration testing
  • Excellent knowledge of Endpoint protection
  • Provide technical security expertise and guidance to other teams
  • Evaluate and recommend new security technologies and solutions
  • Provide ideas and feedback to improve the overall SOC capabilities and maturity
  • Perform all other Information Security related duties as assigned and contribute to the success of the Information Security Team
  • Participate in internal and external security audits
  • Perform regular asset, account and access reviews
  • Assist in the development, maintenance, and implementation of security policies, standards, and procedures
  • Ensure compliance with relevant regulations and standards (e.g., HITRUST, NIST 800-53r5 and SOC 2 Type 2)
  • Track and remediate compliance findings
  • Design, implement, and maintain security controls for cloud environments
  • Collaborate with IT to ensure the security of Cloud services, including virtual machines, storage, networking, and databases
  • Conduct security assessments of cloud configurations and deployments
  • Develop and maintain cloud security best practices and guidelines
  • Stay up-to-date on security best practices and emerging threats

Preferred Qualifications

  • Other Security certifications (e.g., CCSP, CCAK, CCSK, CISM, GCIH, GCIA, GSEC, Azure Security Engineer Associate, GCP Cloud Security Engineer)
  • Experience with scripting languages (e.g., Python, PowerShell, Bash)
  • In-depth knowledge of Microsoft Azure security services and best practices
  • Experience with security automation and orchestration
  • Experience with Governance, Risk, and Compliance (GRC) tools
  • Can-Do attitude
  • Knowledge and expertise in a myriad of Information Security Solutions across cloud and IT security
  • Excellent analytical, interpersonal and communication skills both oral and written
  • An unwavering personal integrity and work ethic
  • A systematic problem-solving approach, coupled with effective communication skills and a sense of ownership and drive

Benefits

  • Pre-IPO equity
  • Cash bonuses
  • Full range of medical, financial, and other benefits
  • Remote role

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.

Similar Remote Jobs