Security Analyst II
PBS
Security Analyst II The Security Analyst II is responsible for building and maturing PBS's governance, risk, and compliance programs, including risk and vulnerability management, policy and procedure development, GRC tool configuration, automation, AI governance, and business continuity, while continuing to provide hands-on security operations support. This role is approximately 75% Governance, Risk & Compliance (GRC) program development and 25% security operations, including incident response and threat detection across cloud and on-prem environments. Key responsibilities will include, but are not limited to: Building and operating the enterprise cyber risk management program, including risk identification, assessment, treatment, and reporting aligned to NIST SP 800-53 Rev 5 Building and maturing the vulnerability management program, including scanning coverage, risk-based prioritization, remediation tracking, and metrics/reporting Developing, updating, and maintaining cybersecurity policies, standards, and procedures, and driving their adoption across the PBS ecosystem Configuring and administering GRC tooling, including workflow design, control mapping, and integrations with security and IT platforms Designing and implementing automation to streamline GRC workflows (e.g., evidence collection, continuous control monitoring, and risk and compliance reporting) Supporting the AI governance program, including the secure deployment, monitoring, and testing of AI, aligned to the NIST AI Risk Management Framework Developing and maintaining business continuity and disaster recovery plans, documentation, and tabletop exercises Supporting audits, assessments, and compliance activities, including evidence gathering and remediation tracking Monitoring information systems and assets to identify cybersecurity events and verify the effectiveness of protective measures Detecting anomalous activity and assessing the potential impact of events Executing incident response, containment, and recovery processes, and coordinating response activities with internal and external stakeholders (e.g., MSSPs and vendors) Incorporating lessons learned from incidents into detection, response, and recovery processes Streamlining security operations workflows using AI Requirements for success: Experience requirement: Minimum of 10 years' experience in cybersecurity and/or information technology Minimum of 5 years' experience working in cybersecurity GRC (e.g., risk management, compliance, policy and governance, business continuity) Minimum of 4 years' experience working as a security analyst Minimum of 3 years' experience working as a systems engineer or administrator Education and/or certification requirement: CISSP, CISA, CISM, CRISC, CGRC, or equivalent GRC-focused certifications desired GCIH, GCIA, GMON, GCED, or equivalent GIAC defense focused certifications desired Certifications by EC-Council, ISC2, Cisco, Microsoft, Fortinet, CompTIA, Offensive Security, etc. to be considered based on relevance to defensive cybersecurity operations Bachelor's Degree in a related field such as cybersecurity, information technology, or computer science; equivalent combination of education and experience may be considered Skills and abilities: Ability to design, implement, and continuously improve GRC programs and processes, translating frameworks such as NIST SP 800-53 Rev 5, NIST CSF, and NIST AI RMF into practical policies, controls, and procedures Ability to configure, integrate, and administer GRC platforms and build automated workflows across security and IT systems Ability to participate as a technical lead on all projects requiring cybersecurity expertise and consultation Ability to deploy, integrate, configure, and maintain systems which comprise the overall cybersecurity technology stack Ability to support incident response activities in coordination with internal teams and Managed Security Services Partners (MSSPs) Ability to communicate complex cybersecurity and risk concepts in a clear and concise manner for laypersons unfamiliar with cybersecurity and/or IT concepts Desire and ability to help drive organizational adoption and buy-in of cybersecurity policies and standards across the PBS ecosystem Eagerness to develop, grow, and maintain strong inter-team relationships across the business to aid in the accomplishment of the PBS mission Preferred qualifications: Experience configuring and administering GRC platforms (e.g., ServiceNow GRC/IRM, Archer, OneTrust, or similar) and building automation and reporting on top of them Strong working knowledge of NIST SP 800-53 Rev 5, NIST CSF, NIST AI RMF, CIS Benchmarks, and business continuity/disaster recovery planning Working knowledge of security operations technologies and concepts including DFIR, SIEM, SOAR, EDR, IAM, PAM, DLP, NGFW, IDS/IPS, CASB, MITRE ATT&CK, MSSPs, vulnerability management, application security, and cloud security (IaaS & PaaS) Fundamental knowledge of scripting and automation (e.g., PowerShell, Python, JavaScript), email security, MDM, OWASP, malware analysis, LOLBAS, WAF, DNS, Linux, Windows, and MacOS PBS
$97.59k - $142.99k
...Glassdoor, Facebook, Twitter, YouTube and Instagram. Position Summary We have an exciting opportunity to join our team as a Sr. II Security Analyst - Vulnerabilities. In this role, the successful analyst will be part of the Penetration Testing and Vulnerabilities...Suggested$75k - $85k
...IT Security Analyst Gen II is a leading fund administration provider focused entirely on serving private capital asset managers and investors with a best-in-class combination of people, process, and technology. Gen II has more than $1 trillion in private fund capital...SuggestedWork at officeFlexible hours1 day per week- ...Security Analyst Full-time Onsite - NYC No 3rd parties please. This role is not eligible for employment-based immigration sponsorship. Applicants must be legally authorized to work in the United States without employer sponsorship, now or in the future....SuggestedFull timeVisa sponsorship
$60k - $80k
Overview Under the direction of the Security Operations Lead, the Security Analyst plays a key role in supporting and enhancing the organization’s cybersecurity posture. This position is responsible for administering boundary and security services across the IT environment...SuggestedFull timeRemote work$100k - $140k
...Shachar (ex-Palo Alto Networks, AWS, Demisto) and Dan (ex-Abnormal Security, Twitter) have previously built, launched, and scaled... ...expanding customer base. Job Overview We're looking for a Security Analyst to be at the core of what we do: reviewing real security cases...Suggested$103k - $164k
...helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products...Full timePart timeLocal areaWorldwideFlexible hours- ...Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch wide framework that is... ...Your Role Overview: The Third Party Information Security Analyst supports the Bank’s Third Party Risk Management function by focusing...Work at officeWork from homeFlexible hours2 days per week
- ...Position Title * Information Security Analyst Position Responsibilities Information Security Analyst New York, NY (Hybrid role), look for Nearby candidates 12+ Months Contract . Responsibilities: Participate in developing and implementing application...Contract work
- Valon is seeking a Sr. Security Analyst to join its Security team in a pivotal role managing security governance, risk, and compliance across cloud infrastructure and products. You will collaborate with cross-functional teams to protect critical assets and strengthen trust...
- Plaid, with offices in New York, seeks a Security Risk professional to run third-party risk assessments end-to-end—from intake and questionnaire through risk rating, findings, and tracked exceptions. You will vet vendors, customers, and partners onboarding to the platform...
$110k
...candidates interested in joining the Corporate and Investment Banking (CIB) Credit team based in New York, NY as part of TD Securities' 2027 Full-Time Analyst Program. The Analyst Training Program, which begins in early July, provides a five-week introduction and orientation...Full timeInterim roleLocal areaWork from homeFlexible hours$100k - $140k
Goartemis is seeking a Security Analyst to enhance AI-driven defense solutions. As a crucial team member, you will review security cases, provide recommendations, and improve detection logic across customer environments. Ideal candidates will have 2-3 years of SOC experience...- Global Guardian in New York seeks an Embedded Security Analyst to join the GSOC team for 24/7 in-person coverage, overseeing threat intelligence, emergency response, and travel safety across regions. The candidate will manage CCTV, alarm systems, badge access, and crisis...
- Software Guidance & Assistance, Inc., (SGA), is searching for an Application Security Vulnerability Analyst for a contractor assignment with one of our premier Insurance Services clients. This is a remote role; candidates must work EST business hours. Responsibilities...For contractorsRemote work
$129.84k - $194.76k
...The Sec & Derivatives Lead Analyst is a senior level position responsible for processing orders and transactions originating from trading... ...the clearance, settlement and investigation of client securities and derivatives transactions. Responsibilities: Identify...Full time$95k - $110k
...Fitch Ratings is currently seeking a Senior Analyst to join the Commercial Mortgage-Backed Securities (CMBS) group in our New York or Chicago office. About the Team: Fitch Ratings is a global company with a presence in over 30 countries, offering opportunities...Temporary workInternshipWork at officeImmediate startShift work3 days per week$80k - $95k
...been a better time to make an impact and we invite you to join us on this journey. Fitch Ratings is seeking an Analyst to join its Asset-Backed Securities (ABS) group in our Chicago or New York office. The position provides opportunities to grow credit...Temporary workWork experience placementInternshipWork at officeImmediate start3 days per week$85k - $105k
The Oracle Security Analyst position provides technical, functional support and security for Oracle Fusion Cloud and related applications. This is a remote-work position and will be based in the US. This position will provide technical and functional support and security...Remote workWork from homeHome office- ...Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch wide framework that is... ...issues. Your Role Overview: The Information Security Risk Analyst is responsible for supporting the organization’s vulnerability...Work at officeWork from homeFlexible hours2 days per week
- ...Governance (“IRG”) provides oversight to information and cyber security risk by maintaining and improving branch wide framework that is... ...Your Role Overview: The Security Operations Center (SOC) Analyst is responsible for monitoring, detecting, investigating, and responding...Work at officeWork from homeFlexible hours2 days per week
- ...Actuarial Analyst II Location: This role requires associates to be in‑office 1‑2 days per week, fostering collaboration and connectivity, while providing flexibility to support productivity and work‑life balance. This approach combines structured office engagement with...Temporary workWork at officeLocal area2 days per week1 day per week
- Senior Consultant - Epic Security Analyst - Remote Join to apply for the Senior Consultant - Epic Security Analyst - Remote role at Nordic Global Senior Consultant - Epic Security Analyst - Remote Join to apply for the Senior Consultant - Epic Security Analyst - Remote...Remote jobFull timeContract workLocal area
$117.2k - $176.7k
...the right place! Agentforce is the future of AI, and you are the future of Salesforce. The Experience Enterprise Security is looking for a Senior Analyst to support our Business Information Security Officers (BISOs) in their day-to-day work with Enterprise business unit...- A government services provider is seeking an Intelligence Analyst to support a federal agency's threat watchlisting and screening mission. The role involves multi-source analysis and interaction with government leadership, producing intelligence products, and contributing...
- Network Security Analyst Austin, Texas, United States Requirement Details: Internal job ID: TWK_2002 State of Texas Austin, TX 78701 NOTE: Cybersecurity staff are currently primarily working remotely within the Texas state EXP: 10+ years Public Sector (State / Federal...Local areaRemote work
$110k - $135k
...guidance, innovative technology, and trusted partnerships, we make security stronger, more effective, and easier to understand. We're... ...ambiguous investigations with minimal direction Support Security Analysts with alert triage, classification, escalation, and incident...- Transaction Network Services (TNS) in Georgia seeks a Senior Application Security Engineer to advance secure SDLC across multiple teams, lead SAST, SCA, ASPM, and CI/CD security, and drive security automation. You will partner with development, DevOps, and security groups...
$169.95k - $179.3k
Senior Information Security Analyst McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on...Remote work- Location: Warren, NJ (Hybrid - 3 days onsite per week) Duration: Contract 6 months to start We are seeking a Senior Information Security Analyst to support a growing Governance, Risk, and Compliance (GRC) program. This position is ideal for someone who has grown their...Contract work3 days per week
- Salesforce is seeking a Senior Analyst in Enterprise Security to support BISOs in day-to-day work with enterprise business units. You will help track risks, coordinate deliverables, and prepare materials for stakeholder reviews, ensuring engagements run smoothly. This...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Analyst II. Be the first to apply!
- entry level information security analyst New York, NY
- junior security analyst New York, NY
- application security analyst New York, NY
- IT security analyst New York, NY
- network security analyst New York, NY
- information security compliance analyst New York, NY
- security analyst remote New York, NY
- information security analyst New York, NY
- work from home security analyst New York, NY
- national security analyst New York, NY


