Security Analyst II
Technoviz
Benefits:
Competitive salary
Opportunity for advancement
Training & development
|
POSITION SUMMARY –Security Analyst II (Compliance)
Under the general supervision of the GRC Manager, this position serves as a Security Analyst responsible for supporting a wide range of compliance and cybersecurity functions across the Wisconsin Department of Correction (DOC). Core responsibilities include providing risk assessment and/or compliance support. Taking part in or leading audits, submitting findings, analyzing risks for specific areas, monitoring corrective actions, and drafting risk reports with metric charts and ongoing effort accountability. This position assesses, documents, and provides guidance to other IT staff and non-IT areas on how to align IT operational and technology processes based on information technology risk assessments and/or with regulatory compliance/audit functions. This position will also provide support in detecting, analyzing, and responding to cybersecurity threats, participating in forensic investigations, and contributing to ongoing vulnerability management efforts. The role may also include supporting cloud security initiatives, assisting with tabletop exercises, and developing security response procedures.
The incumbent will work collaboratively with internal stakeholders across DOC, as well as external partners including the Department of Administration’s Division of Enterprise Technology (DOA/DET). The role will utilize a variety of enterprise security tools and platforms.
This position may be assigned to focus areas such as incident response, phishing mitigation, threat detection, security awareness, vulnerability scanning, or forensic analysis, depending on organizational needs. The analyst will represent the DOC Information Security Section (ISS) team in technical discussions, project work, and collaborative efforts to improve DOC’s cybersecurity posture.
The position requires strong communication and problem-solving skills, the ability to work independently on complex tasks, and a commitment to upholding the security and privacy standards of DOC. Clients and collaborators include information technology (IT) staff, application developers, infrastructure teams, business units, vendor, and external governmental partners. The work environment is dynamic, requiring adaptability, initiative, and a proactive mindset.
This position shall comply with the Department’s administrative rules and the agency’s policies and procedures including those related to the Department's overall Reentry philosophy of using evidence-based strategies, practices and programs which target an offender’s individual criminogenic needs and risk level.
Top Skills & Years of Experience: At least 5 year's of experience required in the following:
-
Understanding of NIST Cybersecurity Framework, NIST RMF, and other common security standards.
-
Experience and working knowledge of common security frameworks and control theories to include current applicable NIST, CJIS, and ISO standards
-
Experience with creating and leading discussions around the implementation and artifact collection of NIST 800-53 controls
-
Proficiency in triaging and analyzing cybersecurity alerts using enterprise technologies and tools.
-
Familiarity with phishing mitigation strategies and email threat analysis.
-
Incident Response Forensics and Remediation (i.e. Crowdstrike, Sandbox evaluation & detonation, Phish evaluation, Malicious Website and Malicious Intent Identification)
-
Customer service as it pertains to security incident management and communication with end user about dangerous behavior.
-
Excellent technical writing and documentation skills, including incident reports and playbook development.
-
Ability to work independently and as part of a distributed team to achieve shared objectives.
Nice to have skills:
-
Capability to tune and optimize SIEM rules and detection logic to reduce noise and improve fidelity.
-
Strong interpersonal communication skills with the ability to explain complex topics to non-technical audiences.
-
Experience working as a team member on projects to improve business needs.
-
Experience supporting endpoint, network, and cloud-based security controls in large-scale environments.
-
Demonstrated ability to adapt to emerging threats, technologies, and evolving operational needs.
Hybrid Remote: Remote daily work with the ability to report to Madison Office for training or when required for emergency situations. Must be a WI resident. No relocation allowed. Position will be 100% remote after training.
Required Skills
5+ years of experience applying NIST Cybersecurity Framework, NIST RMF, and other common security standards
5+ years of experience in development, approval, and implementation of security documents (policies, standards, etc.)
5+ years of experience in triaging and analyzing cybersecurity alerts.
Preferred Skills
5+ years of experience in technical writing and documentation skills, including incident reports and playbook development.
5+ years of experience in phishing mitigation strategies and email threat analysis.
5+ years of experience supporting endpoint, network, and cloud-based security controls in large-scale environments.
TIME % GOALS AND WORKER ACTIVITIES
60% A. Support cybersecurity policy execution, operational standards, and
governance activities.
A1. Review policy, procedures, controls, and standards to ensure DOC and regulatory standards are met.
A2. Address compliance issues with IT security standards; identifying deficiencies and recommending control and risk mitigation measures.
A3. Review documentation to ensure it meets standards and applicable regulatory requirements, standards, or industry best practices.
A4. Assist with the creation of new and updates to policy, process, and technical controls to determine if they are sufficient and functioning as intended.
A5. Report on risks and mitigations as well as following up to verify that adjustments were made.
A6. Interpret NIST or other standards to recommend and implement best practices.
A7. Contribute to the maintenance and operationalization of information security policies, procedures, and response playbooks.
A8. Review new IT projects, systems, and vendor solutions for security risk, documenting and escalating concerns as needed.
A9. Provide technical consulting and security recommendations aligned with DOC standards and DOA/DET architecture.
A10. Participate in enterprise-level risk assessments and contribute data to compliance, audit, or risk reporting needs.
A11. Assist in threat modeling exercises or tabletop simulations designed to improve preparedness and resiliency.
20% B. Monitor, detect, respond to, and investigate cybersecurity threats across
DOC’s enterprise environment.
B1. Triage, analyze, and respond to cybersecurity alerts using current technologies and tools.
B2. Conduct forensic investigations into suspected security incidents, including phishing, account compromise, and endpoint breaches.
B3. Coordinate with internal teams and DOA/DET to contain, eradicate, and recover from security incidents.
B4. Analyze logs, threat intelligence, and user behavior to identify indicators of compromise (IOCs) and prevent recurrence.
B5. Document incident response actions and create post-incident reports with recommended improvements.
B6. Participate in phishing mitigation, email threat response, and takedown coordination with third-party providers.
B7. Assist in vulnerability validation and risk triage based on vendor and tool security recommendations.
B8. Support the tuning, configuration, and enhancement of security technologies used in DOC’s environment.
B9. Assist with employee forensics, HR/legal investigations, and eDiscovery requests through log and artifact analysis.
B10. Assist with continuous improvement of detection logic, alerts, and response workflows in current technologies and tools.
15% C. Contribute to the configuration, deployment, and lifecycle management
of security technologies.
C1. Collaborate with internal teams and DOA/DET to implement, monitor, and maintain endpoint security, network protection, and access control systems.
C2. Assist in the deployment or refinement of security technologies and tools.
C3. Test and validate new use cases or configurations in existing tools and platforms, reporting anomalies or conflicts.
C4. Maintain technical documentation and inventories related to security tooling, integrations, and metrics.
5% D. Maintain current expertise in cybersecurity tools, trends, and techniques.
D1. Participate in professional development opportunities such as conferences, technical training, and webinars.
D2. Track emerging threats, vulnerabilities, and technology trends through vendor briefings, information sharing groups, and security communities.
D3. Contribute to internal knowledge sharing and cross-training within the security team.
KNOWLEDGE, SKILLS AND ABILITIES
-
Experience in effective methods of written and oral communication, meeting facilitation, and presenting to both technical and non-technical staff appropriate to audience and scenario
-
Understanding of NIST Cybersecurity Framework, NIST RMF, and other common security standards.
-
Experience with techniques used to establish and maintain effective working relationships with peers and customers
-
Experience in development, approval, and implementation of security documents (policies, standards, etc.)
-
Knowledge of information security risk activities to include risk assessments, risk registers, and risk management
-
Knowledge of state and federal laws regarding information security (Ex.HIPAA Security Rule) as well as experience with audit and compliance activities in conjunction with state and federal partners/regulators such as, but not limited to, the WI Legislative Audit Bureau and the U.S. Department of Justice
-
Experience and working knowledge of common security frameworks and control theories to include current applicable NIST , CJIS, and ISO standards
-
Proficiency in triaging and analyzing cybersecurity alerts using enterprise technologies and tools.
-
Strong knowledge of threat detection, incident response, and log analysis techniques.
-
Familiarity with phishing mitigation strategies and email threat analysis.
-
Working knowledge of vulnerability management practices, technologies, and tools.
-
Ability to analyze threat intelligence and apply it to strengthen detection and response mechanisms.
-
Capability to tune and optimize SIEM rules and detection logic to reduce noise and improve fidelity.
-
Excellent technical writing and documentation skills, including incident reports and playbook development.
-
Ability to collaborate with cross-functional teams, including DOA/DET, infrastructure, and development staff.
-
Commitment to continuous learning, professional development, and information sharing.
Flexible work from home options available.
- ...Title: Security Analyst II *Local to WI Job Descripiton: Under general supervision of the Security & Accounts Management Manager, this position works as a part of the Security & Accounts Management team and is responsible for provisioning and de-provisioning...SuggestedLocal area
- ...The Security Operations Center (SOC) Analyst II serves as a mid‑level cyber defender responsible for continuous monitoring, investigation, and response to security events across enterprise networks, endpoints, and cloud environments in a highly regulated government setting...SuggestedContract workWork at office
- ...science-driven innovators who are collaborating to bring new therapies to patients in need. The Position The Information Security Systems Analyst is responsible for the day-to-day administration, operation, and continuous improvement of the organization's Microsoft Purview...Suggested
- ...Our client, a government agency in the public sector, is seeking a Security Analyst II to join their team. As a Security Analyst, you will be part of the Information Security Department supporting security administration and compliance initiatives. The ideal candidate...SuggestedRemote work
- ...The Security Operations Center (SOC) Analyst I is a frontline cyber defender responsible for monitoring security tools and dashboards to identify indicators... ..., evidence preservation, and effective handoff to Tier II or incident response teams. p]:pt-0 [& p]:mb-2 [& p]:...SuggestedContract workWork at officeShift work
$124.2k - $186.2k
...About the team: The Information Security organization advances the overall state of security at Rubrik through purposeful initiatives and coordination of large security projects. Information Security builds technologies, tools, and processes to better enable teams...Local areaRemote work- The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role in evaluating and reducing EY’s digital exposure through hands‑on penetration testing and adversarial simulation. Working under the guidance of the Exposure...Summer holidayFlexible hours
- Our client, a government agency in the public sector, is seeking a Security Analyst to join their team. As a Security Analyst, you will be part of the cybersecurity support team supporting the Wisconsin Department of Correction. The ideal candidate will demonstrate strong...Weekly payTemporary workWork at officeRemote workFlexible hours
- ...starting the role at their own expense. 100% remote within the State of Wisconsin. Our direct client is looking for a Security Analyst 141236 This position is for up to 12 months with the option of extension, and the client is in Madison, WI. Please send...Remote workRelocation
$40 per hour
...is seeking experienced cybersecurity professionals to join their team. In this fully remote role, you will evaluate AI-generated security content and address technical problems while contributing to advanced AI models for the cybersecurity industry. The ideal candidate...Remote jobHourly pay- ...driven innovators who are collaborating to bring new therapies to patients in need. The Position We’re seeking an Information Security Analyst with a foundational background in IT support, system administration, or security operations and an interest in growing their...
$99k - $117k
...The Risk Management and Compliance (RMC) team within the Office of Cybersecurity is looking for an experienced risk analyst to address internal security review requests from UW‑Madison campus partners. This includes reviewing new tools, services, platforms or departmental...Work at office$78.9k - $123.3k
...system authorization and continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal cybersecurity requirements, and maintaining...Permanent employmentFull timeContract workPart timeWork at officeLocal areaRemote work- The University of Wisconsin-Madison is seeking an experienced risk analyst within the Risk Management and Compliance (RMC) team under the Office of Cybersecurity to address internal security review requests across campus. You will assess risk, review tools, services, and...Work at office
$81.91k
...in to Workday to apply through the internal application process. Job Summary The Department of Radiology is seeking a Financial Analyst II to join their Budget Team! The Financial Analyst II provides comprehensive budget, compensation, and financial reporting support...Hourly payPermanent employmentTemporary workRemote workMonday to Friday$40 per hour
A technology company is seeking experienced cybersecurity professionals to evaluate AI-generated security content and solve cybersecurity problems. In this remote position, you will provide feedback to enhance AI models and ensure their output is valid. Candidates should...Remote jobHourly payFlexible hours$63.72k - $103.6k
...of the United States District Court for the District of Oregon is now accepting applications for the position of Financial Specialist II in the Portland Division. As a member of the finance team, the Financial Specialist II performs and coordinates administrative,...Work at officeLocal area$18.25 per hour
...Target here. ALL ABOUT ASSETS PROTECTION Assets Protection (AP) teams function to keep our guests, team and brand secure and lead through crisis events. They protect profitable sales by mitigating shortage risks, preventing, and resolving theft and...Hourly payFull timeLocal areaFlexible hoursShift workNight shiftDay shift$70.2k - $120.4k
Medica is a nonprofit health plan with more than a million members that serves communities in Minnesota, Nebraska, Wisconsin, Missouri, and beyond. We deliver personalized health care experiences and partner closely with providers to ensure members are genuinely cared...Full timeWork experience placementWork at office3 days per week$50 - $60 per hour
...A technology company specializing in AI is seeking an Investment Operations Analyst to evaluate AI models' outputs and enhance their correctness. This role offers the flexibility of remote work, allowing individuals to set their own schedules. Ideal candidates will have...Hourly payFull timePart timeRemote workFlexible hours$21 per hour
...Accounting Team as a Financial Specialist I and a Financial Specialist II. We offer a fun, dynamic, and collaborative environment with... ...will be released. See Wis. Stat. sec. 19.36(7). The Annual Security and Fire Safety Report contains current campus safety and disciplinary...Hourly payFull timeFixed term contractImmediate startRemote workMonday to Friday- ...Portfolio Management Analyst The Wisconsin Foundation and Alumni Association (WFAA), the private fundraising and alumni relations organization for UW-Madison, is seeking a Portfolio Management Analyst to join our Prospect Development & Decision Support team! In this...Work experience placement
$70.2k - $120.4k
...connected care, where coordinated, quality service is the norm and every member feels valued. Medica is seeking an Actuarial Analyst to join our Actuarial Services team in Minnetonka, MN. This role provides analytical support in the areas of pricing, forecasting,...Work experience placementWork at office3 days per week$80k - $100k
...Role Snapshot Our Actuarial Analyst will work in a team setting and will apply mathematics, probability, statistics, and business principles to support rating/pricing, valuation, healthcare economics, and financial forecasting in a Health Plan / Insurance environment....Immediate startRemote work2 days per week$62k - $103k
...Overview We're seeking an Associate Actuarial Analyst to join our Property & Casualty Actuarial team to develop analytics and predictive modeling solutions that inform business decisions. You'll partner with actuarial and data/analytics colleagues to explore data, perform...Full timeLocal areaRelocation package$88.8k - $152.3k
Medica is a nonprofit health plan with more than a million members that serves communities in Minnesota, Nebraska, Wisconsin, Missouri, and beyond. We deliver personalized health care experiences and partner closely with providers to ensure members are genuinely cared...Full timeWork experience placementWork at office3 days per week$129.3k - $177.8k
Become a part of our caring community The Actuary, Analytics/Forecasting analyzes and forecasts financial, economic, and other data to provide accurate and timely information for strategic and operational decisions. Establishes metrics, provides data analyses, and works...Full timeTemporary workFor contractorsApprenticeshipWork at officeRemote workWork from homeHome officeMonday to Friday$42k - $55k
TRICOM, a payroll funding and staffing services provider, seeks a Portfolio Analyst to manage and protect its accounts receivable portfolio. What You’ll Do Monitor, analyze, and protect TRICOM’s portfolio of receivable collateral by managing and assisting in the collection...Temporary workFlexible hours$129.3k - $177.8k
Become a part of our caring community The Actuary, Analytics/Forecasting analyzes and forecasts financial, economic, and other data to provide accurate and timely information for strategic and operational decisions. You will establish metrics, provide data analyses, and...Full timeTemporary workApprenticeshipWork experience placementWork at officeRemote workWork from homeHome office$106.9k - $147k
Become a part of our caring community Reports To: Associate Director, Actuarial Analytics/Forecasting FLSA: Exempt/Salaried The Associate Actuary, Analytics/Forecasting analyzes and forecasts financial, economic, and other data to provide accurate and timely information...Full timeContract workTemporary workApprenticeshipWork at officeRemote workWork from homeHome office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Analyst II. Be the first to apply!
- rate analyst Madison, WI
- security analyst Madison, WI
- bond analyst Madison, WI
- junior security analyst Madison, WI
- senior security analyst Madison, WI
- network security analyst Madison, WI
- information security analyst Madison, WI
- security operations analyst Madison, WI
- application security analyst Madison, WI
- information security compliance analyst Madison, WI


