- Pengalaman
- 3+ yrs
- Gaji
- USD 95,000 – USD 130,000 / year
- Lowongan
- 1
- Diposting
- 53 menit yang lalu
- Work mode
- Bekerja dari rumah
- Eligibility
- Applicants with at least 3 years of experience in IT audit, information security, or information risk management, especially in customer-facing roles within the defense industry, are suited for this position. Background in policy, risk, and framework work is expected. Financial industry experience…
- Resume
- Required to apply
Deskripsi pekerjaan
About EVOTEK
EVOTEK positions itself as a leading provider of secure digital business enablement in North America. The company brings together expertise across data center, networking, security, cloud, and communications to deliver end-to-end digital solutions that help organizations create measurable outcomes and speed up transformation. Its workplace has been recognized repeatedly for culture and growth by multiple industry and local publications.
Role Overview
The Information Security Analyst supports core elements of the security program, including regulatory reporting, KPI and metric tracking, awareness and training initiatives, security process integration, and client risk management. The role also helps safeguard systems by supporting access control practices and disaster preparedness efforts.
Key Responsibilities
- Keep compliance records current by documenting, maintaining, and reviewing adherence to IT controls, policies, and standard procedures.
- Work effectively with client technical teams by communicating clearly and delivering strong service.
- Contribute to information risk reviews and audits to confirm systems are properly protected against security threats.
- Gather and organize evidence needed for external audit activities.
- Provide technical input and support during security incident response efforts.
- Respond to customer questions and requests related to IT security.
- Help assess vendor security programs, controls, and related practices.
- Track corrective actions from assessments and audits, and assist with remediation execution.
- Strengthen access governance by identifying improper access, removing unauthorized permissions, recording issues, and recommending improvements.
- Support the creation of physical security standards, policies, and procedures.
- Use risk management approaches to advise on security posture and risk exposure.
- Identify business processes that need information security integration.
- Assist with planning and carrying out security exercises.
Required Qualifications
- Strong analytical judgment to recommend practical solutions for operational risk concerns.
- Solid understanding of IT security concepts, technologies, policies, and best practices.
- Ability to negotiate or mediate issues professionally and effectively.
- Clear written communication, strong documentation habits, and solid analytical reporting skills.
- Working familiarity with GRC platforms.
- Background in information protection, security, risk, and compliance work.
- IT audit experience involving artifact collection.
- Persuasive communication skills for gathering information and answering stakeholder questions.
- Good planning and organizational abilities to manage multiple complex assignments.
- Current knowledge of information security principles and industry developments.
- Working knowledge of NIST 800-53, NIST CSF, and related security frameworks.
- Understanding of information security processes and tools.
- Ability to handle competing priorities and stay effective under pressure.
- Exposure to data privacy regulations is considered an advantage.
Minimum Experience
A minimum of 3 years of experience is required in IT audit, information security, or information risk management, preferably in customer-facing roles within the defense industry. Experience with policy, risk, and framework work is expected. General knowledge of IT audit and assessment methods is also required. Experience building documentation, creating reports, tracking metrics, and making presentations is expected. Financial services industry experience is preferred.
Compensation and Benefits
EVOTEK offers a salary that varies based on experience, technical capability, and location, with a stated range of USD 95,000 to 130,000 per year. The package also includes performance bonuses, fully paid medical, dental, and vision coverage for the employee, 401(k) matching, a flexible PTO policy, flexible work arrangements, a strong company culture, and an annual overnight company retreat.
Equal Opportunity Commitment
EVOTEK is committed to equal employment opportunity and considers all applicants without regard to sex, race, creed, color, gender, religion, marital status, domestic partner status, age, national origin or ancestry, physical or mental disability, medical condition, sexual orientation, pregnancy, military or veteran status, citizenship status, or genetic information.