Talent.com
IT Security and Risk Analyst

IT Security and Risk Analyst

DCI Donor ServicesNashville, Tennessee, United States, 37228
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

DCI Donor Services

DCI Donor Services (DCIDS) is looking for a dynamic and enthusiastic team member to join us to save lives!! Our mission at DCIDS is to save lives through organ donation and we want professionals on our team that will embrace this important work!! We are currently seeking an IT Security and Risk Analyst. The IT Security and Risk Analyst is responsible for managing the organization’s security and compliance posture, ensuring adherence to regulatory requirements, and mitigating risks through proactive security controls. This position will work closely with IT Infrastructure and Support teams to implement security controls and will lead the organization’s incident response and management process. Additionally, this role will develop, maintain, and enforce security policies and procedures to ensure ongoing compliance and risk mitigation.

COMPANY OVERVIEW AND MISSION

For over four decades, DCI Donor Services has been a leader in working to end the transplant waiting list. Our unique approach to service allows for nationwide donation, transplantation, and distribution of organs and tissues while maintaining close ties to our local communities.

DCI Donor Services operates three organ procurement / tissue recovery organizations : New Mexico Donor Services, Sierra Donor Services, and Tennessee Donor Services. We also maximize the gift of life through the DCI Donor Services Tissue Bank and Sierra Donor Services Eye Bank.

Our performance is measured by the way we serve donor families and recipients. To be successful in this endeavor is our ultimate mission. By mobili

We are committed to diversity, equity, and inclusion. With the help of our employee-led strategy team, we will ensure that all communities feel welcome and safe with us because we are a model for fairness, belonging, and forward thinking.

Key responsibilities this position will perform include :

  • Compliance and Risk Management

Ensure the organization remains compliant with NIST security frameworks.

  • Conduct risk assessments and recommend remediation strategies.
  • Develop and maintain security policies, procedures, and documentation.
  • Monitor and enforce security controls to reduce risk exposure.
  • Audits & Control Effectiveness Testing
  • Conduct internal security audits and control assessments to evaluate compliance with NIST and organizational policies.

  • Coordinate and support external audits, providing necessary documentation and responses.
  • Develop and execute control testing procedures to ensure the effectiveness of security measures over time.
  • Security Controls Implementation
  • Collaborate with Infrastructure and Support teams to implement and maintain security controls.

  • Review and recommend security configurations for networks, systems, and endpoints.
  • Assist with vulnerability management, including patching and remediation efforts.
  • Incident Response & Management
  • Own and maintain the organization’s Incident Response Plan.

  • Lead security incident investigations, coordinating response efforts across IT teams.
  • Perform root cause analysis and recommend improvements to prevent recurrence.
  • Monitoring & Reporting
  • Regularly review security logs, alerts, and reports for potential threats.

  • Work with security tools (SIEM, endpoint protection, etc.) to identify and mitigate risks.
  • Provide reports to leadership on security incidents, trends, and compliance status.
  • Conduct security audits, vulnerability scans, and penetration tests, partnering with consultants / third parties where necessary
  • Training & Security Awareness
  • Assist in developing security awareness training for employees.

  • Ensure staff are informed of security best practices and compliance requirements.
  • Conduct security awareness training and phishing simulations.
  • Perform other related job duties as assigned
  • The ideal candidate will have :

  • Bachelor’s degree in information security, Computer Science, or related field (or equivalent work experience)
  • 5+ years of experience in information security, risk management, or compliance
  • Experience in the healthcare or nonprofit sector is a plus, particularly in a regulated environment such as an OPO
  • Technical Skills :
  • Assist in developing security awareness training for employees.

  • Ensure staff are informed of security best practices and compliance requirements.
  • Conduct security awareness training and phishing simulations.
  • Certifications :
  • Relevant GRC / Cybersecurity / Compliance certifications preferred (e.g. Security+, CRISC, CISM, CGEIT, GSEC, CISSP, CIPP / US, CIPM)

  • Competencies & Physical Traits
  • Excellent problem-solving, analytical, and decision-making abilities.

  • Effective communication and interpersonal skills, with the ability to interact with technical and non-technical stakeholders.
  • Sits, stands, bends, and walks.
  • Communicates verbally and in writing.
  • Lifts and carries loads up to 50 lbs.
  • Work Environment

  • Hybrid work model with a mix of remote and on-site responsibilities, depending on project needs and organizational priorities.
  • On-site presence may be required for activities such as audits, stakeholder meetings, or incident response coordination.
  • Standard office conditions when on-site, including extended periods working at a computer.
  • May require occasional after-hours availability to support time-sensitive risk assessments, compliance deadlines, or security incidents.
  • We offer a competitive compensation package including :

  • Up to 176 hours of PTO your first year
  • Up to 72 hours of Sick Time your first year
  • Two Medical Plans (your choice of a PPO or HDHP), Dental, and Vision Coverage
  • 403(b) plan with matching contribution
  • Company provided term life, AD&D, and long-term disability insurance
  • Wellness Program
  • Supplemental insurance benefits such as accident coverage and short-term disability
  • Discounts on home / auto / renter / pet insurance
  • Cell phone discounts through Verizon
  • Monthly phone stipend
  • New employees must have their first dose of the COVID-19 vaccine by their potential start date or be able to supply proof of vaccination.
  • You will receive a confirmation e-mail upon successful submission of your application. The next step of the selection process will be to complete a video screening. Instructions to complete the video screening will be contained in the confirmation e-mail. Please note - you must complete the video screening within 5 days from submission of your application to be considered for the position.

    DCIDS is an EOE / AA employer – M / F / Vet / Disability.

    PI58f313cbb5c6-30511-38517526

    serp_jobs.job_alerts.create_a_job

    It Security Analyst • Nashville, Tennessee, United States, 37228

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Senior Insider Threat Analyst

    Senior Insider Threat Analyst

    VirtualVocationsNashville, Tennessee, United States
    serp_jobs.job_card.full_time
    Key Responsibilities Identify and respond to insider threat security events Analyze alerts from DLP, UEBA, and other monitoring tools to detect anomalous activity Develop insider threat use cas...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Identity Security Analyst

    Identity Security Analyst

    VirtualVocationsNashville, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for an Identity Security Analyst (Contract).Key Responsibilities Triage, analyze, and respond to identity hygiene issues and defects in ISPM platforms Coordinate with assura...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    IT Operations Analyst

    IT Operations Analyst

    VirtualVocationsMurfreesboro, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for an IT Operations Analyst I.Key Responsibilities Assist in submitting purchasing requests through iProcurement Track iProc tickets through the approval process Update th...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Workday Security Analyst

    Workday Security Analyst

    VirtualVocationsNashville, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for a Workday Security Analyst to configure, maintain, and advise on security within the Workday application ecosystem. Key Responsibilities Manage Workday security configurat...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Operational Technology Security Analyst

    Operational Technology Security Analyst

    VirtualVocationsNashville, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for an Operational Technology Security Analyst to support the delivery of Operational Technology security services. Key Responsibilities Assist with delivering OT services inc...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Remote Senior Financial Analyst - AI Trainer

    Remote Senior Financial Analyst - AI Trainer

    Data AnnotationFranklin, Tennessee
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the q...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security GRC Analyst

    Security GRC Analyst

    VirtualVocationsNashville, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security GRC Analyst.Key Responsibilities Lead the strategy, execution, and improvement of the compliance program, including assessments and policy documentation Devel...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Remote Financial Analyst - AI Trainer

    Remote Financial Analyst - AI Trainer

    Data AnnotationFranklin, Tennessee
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the q...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Risk Management Analyst

    Risk Management Analyst

    VirtualVocationsNashville, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for a Risk Management Analyst to support customer inquiries and manage risk-related tasks in a fully remote environment. Key Responsibilities Resolve customer inquiries regard...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Cyber Security Analyst

    Senior Cyber Security Analyst

    VirtualVocationsMurfreesboro, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Cyber Security Analyst.Key Responsibilities Assist in the design and implementation of comprehensive compliance programs aligned with multiple frameworks Config...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    IT Compliance Lead

    IT Compliance Lead

    VirtualVocationsMurfreesboro, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for an IT Compliance Lead to enhance its IT control environment and compliance posture.Key Responsibilities Own and maintain the Common Control Set in alignment with SOX ITGC...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cyber Intelligence Analyst

    Cyber Intelligence Analyst

    VirtualVocationsNashville, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cyber Intelligence Analyst to identify and mitigate information security threats.Key Responsibilities Identify, track, monitor, contain, and mitigate information securi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Senior Security Analyst

    Senior Security Analyst

    VirtualVocationsMurfreesboro, Tennessee, United States
    serp_jobs.job_card.full_time
    Security Analyst, Falcon Complete (Hybrid).Key Responsibilities Exercise incident handling processes across Windows, Mac, and Linux platforms Perform malware analysis and develop processes for i...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Director of Security & IT

    Senior Director of Security & IT

    Built TechnologiesNashville, TN, US
    serp_jobs.job_card.full_time
    Senior Director Of Security & It.Built is hiring a strategic and delivery-focused Senior Director of Security & IT to lead enterprise security and information technology enablement.As we transform ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Analyst Consultant

    Security Analyst Consultant

    VirtualVocationsMurfreesboro, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Analyst - Consultant.Key Responsibilities Champion DevSecOps through security automation by designing, implementing, and maintaining security tools Monitor an...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    IT Governance Risk Compliance Analyst

    IT Governance Risk Compliance Analyst

    VirtualVocationsMurfreesboro, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for an IT Governance, Risk and Compliance Analyst.Key Responsibilities Support daily GRC operations, policy development, and audit readiness Evaluate IT control effectivenes...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Network Security Administrator

    Network Security Administrator

    JobotNashville, TN, US
    serp_jobs.job_card.full_time
    This Jobot Job is hosted by : Ellie Staver.Are you a fit? Easy Apply now by clicking the "Apply Now" buttonand sending us your resume. Salary : $105,000 - $130,000 per year.We are seeking a ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Cyber Security Analyst

    Cyber Security Analyst

    VirtualVocationsMurfreesboro, Tennessee, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cyber Security Analyst for a 100% remote W2 contract position.Key Responsibilities Monitor, manage, and respond to security events in collaboration with the internal cy...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30