The Cybersecurity Analyst operates as a cross-functional security role responsible for integrating Security Operations (SIEM/SOC), and Governance, Risk & Compliance (GRC). This role goes beyond alert monitoring and provides assistance with security strategy execution, audit leadership (SOC 1/2, HIPAA), risk management, and security decisions.
The analyst serves as a subject matter expert on threat detection and security frameworks. This position plays a critical role in aligning technical controls with regulatory requirements and business risk.
- Monitor, analyze, and respond to security alerts using SIEM, Microsoft/Azure, email protection, endpoint protection and user reports. Ensuring security incidents are properly discovered, contained, eradicated, recovered, and documented.
- Develop, tune, and maintain SIEM correlation rules, alerts, and dashboards to improve detection capabilities.
- Perform log analysis across multiple sources (e.g., endpoints, firewalls, identity providers, email systems, cloud platforms).
- Lead incident detection, triage, and response efforts across identity, endpoint, network, and cloud environments
- Leverage SIEM data for investigation, timeline reconstruction, and root cause analysis.
- Assist and coordinate external audits including SOC 1 / SOC 2 and HIPAA risk assessments.
- Ensure audit readiness and continuous compliance across all security domains.
- Develop, maintain, and enforce security policies, standards, procedures, and documentation.
- Implement, tune, and maintain enterprise risk assessments and track remediation across business units.
- Provides expertise and approval on applications and software for organization and ensures frontline processes and solutions maintains confidentiality, integrity and availability.
- Ensure authorized access protocols are followed, investigate improper access, report violations, and monitor the following logs: SIEM, On-Prem Active Directory, Azure Active Directory, and Office 365.
- Assist with risk prioritization through risk assessments.
- Ensures information security is compliant with policies, procedures, and state contracts.
- Leads security decisions of major network installations and upgrades.
- Implements cyber security strategies, solutions, and risk mitigation.
- Research emerging technologies which support IT security enhancement and development efforts
- Monitors industry websites or publications for information about patches, releases, viruses, or potential problem identification.
- Lead investigations into phishing, business email compromise, account takeovers.
- Works closely with Tier III Help Desk Technician resolving Tier III tickets.
- Develop and deliver organization-wide security awareness training.
- Lead Cybersecurity KPIs for business security posture, incident response, and user risk.
- Conduct phishing simulations and track behavioral risk metrics.
- Mentor and provide technical guidance to junior cybersecurity analysts when applicable.
- Drive continuous improvement of the security program and team capabilities.
- Implements Saint Francis Ministries policies and follow directives as required. Follows and adheres to all pertinent Saint Francis Ministries Standard Operating Procedures (SOP’s), rules, personnel policies, and procedures; related accreditation and licensure standards; and federal, state, and local rules, statutes, regulations, and contractual terms.
- Is knowledgeable of and follows all safety procedures.
- Reports unusual incidents through appropriate Risk Management, clinical and safety channels.
- Ensures clients’ rights are protected.
- Bachelor’s degree in cyber security with 1 year of Cybersecurity experience or 2 years of Cybersecurity experience with an associate degree in Cyber Security/Computer Science
- Certification (s) such as Network +, Security + or preferred but not required CySA+, PenTest+
- 2-3 years or a combination of education and experience in Cyber Security/IT. Must have experience with Microsoft Azure, Barracuda Email Protection
- Must be 21 years of age.
- Must pass a drug screen, MVR, KBI, Child Abuse and Neglect Central Registry Clearance check and an Adult Registry Check
- FBI Fingerprint check
- Lifting requirement of 50 lbs.
- Must have a valid driver’s license, acceptable driving record and reliable transportation.
Learn more about this Employer on their Career Site
