Security Analyst II
Technoviz LLC
Job Description
Job Description
Benefits:
- Competitive salary
- Opportunity for advancement
- Training & development
POSITION SUMMARY –Security Analyst II (Compliance)
Under the general supervision of the GRC Manager, this position serves as a Security Analyst responsible for supporting a wide range of compliance and cybersecurity functions across the Wisconsin Department of Correction (DOC). Core responsibilities include providing risk assessment and/or compliance support. Taking part in or leading audits, submitting findings, analyzing risks for specific areas, monitoring corrective actions, and drafting risk reports with metric charts and ongoing effort accountability. This position assesses, documents, and provides guidance to other IT staff and non-IT areas on how to align IT operational and technology processes based on information technology risk assessments and/or with regulatory compliance/audit functions. This position will also provide support in detecting, analyzing, and responding to cybersecurity threats, participating in forensic investigations, and contributing to ongoing vulnerability management efforts. The role may also include supporting cloud security initiatives, assisting with tabletop exercises, and developing security response procedures.
The incumbent will work collaboratively with internal stakeholders across DOC, as well as external partners including the Department of Administration’s Division of Enterprise Technology (DOA/DET). The role will utilize a variety of enterprise security tools and platforms.
This position may be assigned to focus areas such as incident response, phishing mitigation, threat detection, security awareness, vulnerability scanning, or forensic analysis, depending on organizational needs. The analyst will represent the DOC Information Security Section (ISS) team in technical discussions, project work, and collaborative efforts to improve DOC’s cybersecurity posture.
The position requires strong communication and problem-solving skills, the ability to work independently on complex tasks, and a commitment to upholding the security and privacy standards of DOC. Clients and collaborators include information technology (IT) staff, application developers, infrastructure teams, business units, vendor, and external governmental partners. The work environment is dynamic, requiring adaptability, initiative, and a proactive mindset. This position shall comply with the Department’s administrative rules and the agency’s policies and procedures including those related to the Department's overall Reentry philosophy of using evidence-based strategies, practices and programs which target an offender’s individual criminogenic needs and risk level. Top Skills & Years of Experience: At least 5 year's of experience required in the following: - Understanding of NIST Cybersecurity Framework, NIST RMF, and other common security standards. - Experience and working knowledge of common security frameworks and control theories to include current applicable NIST, CJIS, and ISO standards - Experience with creating and leading discussions around the implementation and artifact collection of NIST 800-53 controls - Proficiency in triaging and analyzing cybersecurity alerts using enterprise technologies and tools. - Familiarity with phishing mitigation strategies and email threat analysis. - Incident Response Forensics and Remediation (i.e. Crowdstrike, Sandbox evaluation & detonation, Phish evaluation, Malicious Website and Malicious Intent Identification) - Customer service as it pertains to security incident management and communication with end user about dangerous behavior. - Excellent technical writing and documentation skills, including incident reports and playbook development. - Ability to work independently and as part of a distributed team to achieve shared objectives. Nice to have skills: - Capability to tune and optimize SIEM rules and detection logic to reduce noise and improve fidelity. - Strong interpersonal communication skills with the ability to explain complex topics to non-technical audiences. - Experience working as a team member on projects to improve business needs. - Experience supporting endpoint, network, and cloud-based security controls in large-scale environments. - Demonstrated ability to adapt to emerging threats, technologies, and evolving operational needs. Hybrid Remote: Remote daily work with the ability to report to Madison Office for training or when required for emergency situations. Must be a WI resident. No relocation allowed. Position will be 100% remote after training.
Required Skills
5+ years of experience applying NIST Cybersecurity Framework, NIST RMF, and other common security standards
5+ years of experience in development, approval, and implementation of security documents (policies, standards, etc.)
5+ years of experience in triaging and analyzing cybersecurity alerts.
Preferred Skills
5+ years of experience in technical writing and documentation skills, including incident reports and playbook development.
5+ years of experience in phishing mitigation strategies and email threat analysis.
5+ years of experience supporting endpoint, network, and cloud-based security controls in large-scale environments.
TIME % GOALS AND WORKER ACTIVITIES
60% A. Support cybersecurity policy execution, operational standards, and
governance activities.
A1. Review policy, procedures, controls, and standards to ensure DOC and regulatory standards are met.
A2. Address compliance issues with IT security standards; identifying deficiencies and recommending control and risk mitigation measures.
A3. Review documentation to ensure it meets standards and applicable regulatory requirements, standards, or industry best practices.
A4. Assist with the creation of new and updates to policy, process, and technical controls to determine if they are sufficient and functioning as intended.
A5. Report on risks and mitigations as well as following up to verify that adjustments were made.
A6. Interpret NIST or other standards to recommend and implement best practices. A7. Contribute to the maintenance and operationalization of information security policies, procedures, and response playbooks. A8. Review new IT projects, systems, and vendor solutions for security risk, documenting and escalating concerns as needed. A9. Provide technical consulting and security recommendations aligned with DOC standards and DOA/DET architecture. A10. Participate in enterprise-level risk assessments and contribute data to compliance, audit, or risk reporting needs. A11. Assist in threat modeling exercises or tabletop simulations designed to improve preparedness and resiliency.
20% B. Monitor, detect, respond to, and investigate cybersecurity threats across
DOC’s enterprise environment.
B1. Triage, analyze, and respond to cybersecurity alerts using current technologies and tools. B2. Conduct forensic investigations into suspected security incidents, including phishing, account compromise, and endpoint breaches. B3. Coordinate with internal teams and DOA/DET to contain, eradicate, and recover from security incidents. B4. Analyze logs, threat intelligence, and user behavior to identify indicators of compromise (IOCs) and prevent recurrence. B5. Document incident response actions and create post-incident reports with recommended improvements. B6. Participate in phishing mitigation, email threat response, and takedown coordination with third-party providers. B7. Assist in vulnerability validation and risk triage based on vendor and tool security recommendations. B8. Support the tuning, configuration, and enhancement of security technologies used in DOC’s environment. B9. Assist with employee forensics, HR/legal investigations, and eDiscovery requests through log and artifact analysis. B10. Assist with continuous improvement of detection logic, alerts, and response workflows in current technologies and tools.
15% C. Contribute to the configuration, deployment, and lifecycle management
of security technologies.
C1. Collaborate with internal teams and DOA/DET to implement, monitor, and maintain endpoint security, network protection, and access control systems. C2. Assist in the deployment or refinement of security technologies and tools. C3. Test and validate new use cases or configurations in existing tools and platforms, reporting anomalies or conflicts. C4. Maintain technical documentation and inventories related to security tooling, integrations, and metrics. 5% D. Maintain current expertise in cybersecurity tools, trends, and techniques.
D1. Participate in professional development opportunities such as conferences, technical training, and webinars. D2. Track emerging threats, vulnerabilities, and technology trends through vendor briefings, information sharing groups, and security communities. D3. Contribute to internal knowledge sharing and cross-training within the security team.
KNOWLEDGE, SKILLS AND ABILITIES
1. Experience in effective methods of written and oral communication, meeting facilitation, and presenting to both technical and non-technical staff appropriate to audience and scenario 2. Understanding of NIST Cybersecurity Framework, NIST RMF, and other common security standards. 3. Experience with techniques used to establish and maintain effective working relationships with peers and customers 4. Experience in development, approval, and implementation of security documents (policies, standards, etc.)
5. Knowledge of information security risk activities to include risk assessments, risk registers, and risk management 6. Knowledge of state and federal laws regarding information security (Ex.HIPAA Security Rule) as well as experience with audit and compliance activities in conjunction with state and federal partners/regulators such as, but not limited to, the WI Legislative Audit Bureau and the U.S. Department of Justice 7. Experience and working knowledge of common security frameworks and control theories to include current applicable NIST , CJIS, and ISO standards 8. Proficiency in triaging and analyzing cybersecurity alerts using enterprise technologies and tools. 9. Strong knowledge of threat detection, incident response, and log analysis techniques. 10. Familiarity with phishing mitigation strategies and email threat analysis. 11. Working knowledge of vulnerability management practices, technologies, and tools. 12. Ability to analyze threat intelligence and apply it to strengthen detection and response mechanisms. 13. Capability to tune and optimize SIEM rules and detection logic to reduce noise and improve fidelity. 14. Excellent technical writing and documentation skills, including incident reports and playbook development. 15. Ability to collaborate with cross-functional teams, including DOA/DET, infrastructure, and development staff. 16. Commitment to continuous learning, professional development, and information sharing.
Flexible work from home options available.
Vacancy posted a month ago
Similar jobs that could be interesting for youBased on the Security Analyst II in Madison, WI vacancy
- ...prior to starting the role at their own expense. 100% remote within the State of Wisconsin. Our direct client is looking for a Security Analyst 141236. This position is for up to 12 months with the option of extension, and the client is in Madison, WI. Please send rates...SuggestedRemote workRelocation
- ...Information Security Contract Support Specialist The Department of Health Services (DHS) is one of the largest and most diverse state... ...with security architects, liaisons, and other security analysts performing comprehensive assessment. Document and communicate...SuggestedContract workWork at office
- The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role in evaluating and reducing EY’s digital exposure through hands‑on penetration testing and adversarial simulation. Working under the guidance of the Exposure...SuggestedSummer holidayFlexible hours
$75k - $95k
...Overview What You’ll Be Doing This Junior Security Analyst role will have client facing responsibilities that encompass security analyst, engineering, and operations skill sets. Responsibilities include ensuring security and FISMA compliance of Cadmus’s client’s...SuggestedPermanent employmentWork experience placementLocal areaWorldwide$65k - $80k
...innovators who are collaborating to bring new therapies to patients in need. The Position We're seeking an Information Security Analyst with a foundational background in IT support, system administration, or security operations and an interest in growing their...Suggested$72k - $90k
...stack technical know-how to develop innovative solutions for our clients' most complex challenges. Position Overview: The Security Analyst supports customer engagements by helping to deliver business and technology solutions, interacting with clients to understand...Full timeRemote workShift work$90k - $115k
Our Senior Security Policy Analyst is responsible for developing, implementing, and maintaining security policies, standards, and procedures while leveraging ServiceNow to streamline policy management, compliance tracking, and reporting. This Senior Analyst combines deep...Contract workFor contractorsWork at officeLocal areaImmediate startRemote work3 days per week- Role Overview The Senior Security Policy Analyst is responsible for developing, implementing, and maintaining security policies, standards, and procedures while leveraging ServiceNow to streamline policy management, compliance tracking, and reporting. This role combines...Remote work
$81.91k
...in to Workday to apply through the internal application process. Job Summary The Department of Radiology is seeking a Financial Analyst II to join their Budget Team! The Financial Analyst II provides comprehensive budget, compensation, and financial reporting support...Hourly payPermanent employmentTemporary workRemote workMonday to Friday$24 per hour
...Employment Type: Regular Job Profile: Financial Specialist II Job Summary: Mechanical Engineering is a large, research... ...candidate will be released. See Wis. Stat. sec. 19.36(7). The Annual Security and Fire Safety Report contains current campus safety and...Hourly payImmediate startRemote work$65k - $80k
...innovators who are collaborating to bring new therapies to patients in need. The Position We're seeking an Information Security Analyst with a foundational background in IT support, system administration, or security operations and an interest in growing their...- ...aspire to be a leader or a technical expert, this position will set you up for success in the future.Primary ResponsibilitiesThe Data Analyst II gathers, analyzes, and interprets data from across the organization delivering descriptive and predictive information for...Full time
$63.72k - $103.6k
...of the United States District Court for the District of Oregon is now accepting applications for the position of Financial Specialist II in the Portland Division. As a member of the finance team, the Financial Specialist II performs and coordinates administrative,...Work at officeLocal area$60k - $85k
...Category:Academic Staff Employment Type:Regular Job Profile:Accountant II Job Summary: The Wisconsin Office of Rural Health is looking... ...will be released. See Wis. Stat. sec. 19.36(7). The Annual Security and Fire Safety Report contains current campus safety and...Ongoing contractPermanent employmentWork at officeImmediate startRemote work- ...a place – it’s the center of health, care coordination, and Meaningful Moments that transform lives. We’re seeking an Accountant II who is passionate about making a difference and driving impact. This role offers an opportunity to contribute to meaningful work and...Flexible hours
- ...About the Role Employee Benefits Corporation is hiring for a Accounting Specialist II . The Accounting Specialist II is responsible for reviewing, reconciling, and posting employer benefit plan payments, which include plan administration fees, employer plan funding and...Work experience placementWork at officeFlexible hours1 day per week
- ...Armed Services Vocational Aptitude Battery for enlisted roles or officer qualification tests for officer programs Eligibility for a security clearance when required for your rating or designator Additional qualifications can include specific skills, education, licensure,...ApprenticeshipNight shift
$110k
...Investment Banking Analyst Country: United States of America It Starts Here: Santander is a global leader and innovator in the financial services industry and is evolving from a high-impact brand into a technology-driven organization. Our people are at the heart of...Hourly payFull timeContract workWork experience placementWork at officeShift work- ...warranted Building perimeter Fueling Positions Property Perimeter Serve as conflict resolution agent when customer disputes arise Secure premises and personnel by patrolling property, monitoring surveillance equipment; inspecting buildings, equipment, and access points...Part timeNight shift
- ...exposure to evidence-based practice across clinic, home, school, and community settings, and a clear pathway toward the Student Analyst II role and beyond. What you’ll do Deliver high-quality ABA therapy across a clinic setting and implement behavior support plans...Hourly payFlexible hours
$70.2k - $120.4k
...Actuarial Analyst Medica is a nonprofit health plan with more than a million members that serves communities in Minnesota, Nebraska, Wisconsin, Missouri, and beyond. We deliver personalized health care experiences and partner closely with providers to ensure members...Work experience placementWork at office3 days per week$70k - $90k
...Insurance's Actuarial team and help drive data-informed decisions that support profitable growth and business success. The Actuarial Analyst performs pricing, reserving, forecasting, and analytical work within a Property & Casualty insurance environment. This position...Remote work$88.8k - $152.3k
Description Medica is a nonprofit health plan with more than a million members that serves communities in Minnesota, Nebraska, Wisconsin, Missouri, and beyond. We deliver personalized health care experiences and partner closely with providers to ensure members are...Work experience placementWork at office3 days per week- ...A financial services company is seeking a Senior Actuarial Analyst to develop and support a robust pricing and reserving framework. Responsibilities include leading projects, advanced analytics execution, and training junior staff. Ideal candidates have strong communication...Flexible hours
$113k - $194k
You will perform stochastic modeling analyses to measure and forecast financial strength of the Enterprise. Analyses include periodic forecasts based on Profit & Growth Plan and what-if scenarios that may require creative and flexible thinking to parameterize scenarios...Full timeWork at officeLocal areaRelocation packageFlexible hours$129.3k - $177.8k
Become a part of our caring community The Actuary, Analytics/Forecasting analyzes and forecasts financial, economic, and other data to provide accurate and timely information for strategic and operational decisions. Establishes metrics, provides data analyses, and works...Full timeTemporary workFor contractorsApprenticeshipWork at officeRemote workWork from homeHome officeMonday to Friday$81.07k - $129.71k
...Job Description Blue Cross NC is seeking an Actuarial Analyst to support rating and pricing, valuation, healthcare economics, and financial forecasting. Under general guidance, this role applies knowledge of mathematics, probability, statistics, and business principles...Work at officeLocal areaRemote workFlexible hours2 days per week$143.62k - $229.79k
Job Description As a Consulting Actuary -ACA Risk Adjustment, you will play a pivotal role in delivering a wide array of actuarial and analytical services for our organization. Responsibilities include leading pricing strategies and actuarial initiatives for business segments...- ...Insurance's Actuarial team and help drive data-informed decisions that support profitable growth and business success. The Actuarial Analyst performs pricing, reserving, forecasting, and analytical work within a Property & Casualty insurance environment. This position...Remote work
- ...Blue Cross NC is seeking an Actuarial Analyst to support rating, valuation, and forecasting, applying mathematics, statistics, and business principles. The role collaborates with actuaries and cross-functional teams to ensure coordinated health program analysis. The candidate...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Analyst II. Be the first to apply!
Related searches
- application security analyst Madison, WI
- entry level information security analyst Madison, WI
- entry level security analyst Madison, WI
- information security analyst Madison, WI
- senior security analyst Madison, WI
- rate analyst Madison, WI
- IT security analyst Madison, WI
- work from home security analyst Madison, WI
- bond analyst Madison, WI
- information security compliance analyst Madison, WI



