Job Title: Risk Analyst II - InfoSec
Company: NorthEast Provider Solutions Inc.
City/State: Valhalla, NY
Category: Finance/Info Systems
Department: Info Technology-WMC Health
Union: No
Position: Full Time
Hours: M-F 8:30a -5:00p
Shift: Day
Req #: 50237
Posted Date: Oct 07, 2026
Hiring Range: $110,564-$138,996
Job Details:
Job Summary:
The Risk Analyst II position within the Digital Transformation Information Services Information Security team is a senior level position. The Risk Analyst II is responsible for designing, implementing and managing enterprise level security solutions. They oversee and enforce network security policies through a host of activities and practices. Included among these are the configuration, optimization and monitoring of network firewalls; zero-trust/SASE infrastructure, administration of email security measures to identify and filter phishing attempts, malware and data loss; monitoring and managing remote connections; implementing cloud controls; Administration of identify and access management controls; monitoring and responding to alerts from EDR/XDR and other endpoint detection and responses. The Risk Analyst II is also responsible for the oversight of security software and systems upgrades, troubleshooting issues and verifications of system availability and performance. An understanding of business requirements across areas involved, e.g. clinical, ancillary, administrative and financial areas, is necessary. They will document activities, resolutions, and other outcomes throughout the life cycle of a security breach, problem or related response. The Risk Analyst II will coordinate and collaborate with other WMC IT Teams in support 11of system, project rollout, problem resolution, and end user support. This senior team member will assist junior members of the team on more complex aspects of the aforementioned areas for growth and knowledge.
Responsibilities:
- Design, implement, and manage enterprise security solutions, including Cisco security platforms (Secure Network Analytics/Stealthwatch, Identity Services Engine (ISE), AnyConnect, Firepower, and Umbrella).
- Configure, maintain, and optimize Palo Alto Networks firewalls to enforce network security policies.
- Administer and enhance email security and filtering solutions to protect against phishing, malware, and data loss.
- Design and maintain cloud security controls, including policy enforcement, continuous monitoring, and compliance validation.
- Architect and support network segmentation initiatives aligned with zero-trust architecture principles.
- Deploy and manage zero-trust/SASE secure remote access solutions, including zero-trust solutions.
- Administer Identity and Access Management (IAM) controls, ensuring strong authentication, least privilege, and secure access governance.
- Manage Microsoft EntraID capabilities, including Conditional Access policies and Microsoft Authenticator for MFA.
- Deploy, monitor, and respond to alerts from CrowdStrike (Endpoint Detection & Response – EDR).
- Support OT/IoT/Medical device security initiatives to enhance visibility, vulnerability identification, remediation, and risk reduction
- • Investigate security alerts, support incident response efforts, and coordinate remediation with IT and infrastructure teams.
- Maintain security documentation, system configurations, and operational runbooks.
Experience:
- Minimum 5-7 years IT Infrastructure or IT Security experience, required
- Hands-on experience with Cisco security technologies, including:
- Cisco Secure Network Analytics (SNA) / Stealthwatch
- Cisco Identity Services Engine (ISE)
Education:
- Bachelor’s degree in information technology, Information Security, or related/relevant discipline.
Licenses / Certifications:
- CISSPor equivalent industry certification, required
Other:
- Knowledge of computer systems and applications in meeting medical data reporting requirements Knowledge of program planning and evaluation techniques
- Ability to compile, analyze and interpret InfoSec data and forecast trends
- Ability to work well with other technology and medical professionals
- Ability to communicate effectively, both orally and in writing; ability to effectively use computer applications such as spreadsheets, word processing, calendar, e-mail and database software in performing work assignments
- Good judgment, initiative, accuracy, thoroughness and physical condition commensurate with the demands of the position.
- Experience configuring and managing Palo Alto Networks firewalls.
- Experience with enterprise email security and filtering platforms.
- Strong understanding of cloud security fundamentals, including monitoring, policy enforcement, and compliance controls.
- Knowledge of network segmentation strategies and zero-trust architecture concepts.
- Practical experience with Microsoft Entra, including Conditional Access and Microsoft Authenticator deployment.
- Experience managing or supporting CrowdStrike (or similar EDR solutions).
- Familiarity with OT/IoT/Medical device security platforms, preferably Claroty xDome.
- Experience in designing, implementing, and maintaining Zero Trust architecture and operating principle. Experience with Netskope preferred.
- Solid understanding of IAM principles, authentication methods (MFA, SSO), and least privilege access.
- Strong analytical, troubleshooting, and incident response skills.
About Us:
NorthEast Provider Solutions Inc.
Benefits:
We offer a comprehensive compensation and benefits package that includes:
- Health Insurance
- Dental
- Vision
- Retirement Savings Plan
- Flexible Savings Account
- Paid Time Off
- Holidays
- Tuition Reimbursement