Job Title: Risk Analyst I - InfoSec

Company: NorthEast Provider Solutions Inc.

City/State: Valhalla, NY

Category: Finance/Info Systems

Department: Info Technology-WMC Health

Union: No

Position: Full Time

Hours: M-F 8:30a -5:00p

Shift: Day

Req #: 50236

Posted Date: Oct 07, 2026

Hiring Range: $100,287 - $126,083

Job Details:

Job Summary:

The Risk Analyst I position within the Digital Transformation Information Services Information Security team is responsible for assisting in the design, implementation and management of enterprise level security solutions. They oversee routine aspects of network security policies through a host of activities and practices. Included among these are the configuration, optimization and monitoring of network firewalls; administration of email security measures to identify and filter phishing attempts, malware and data loss; monitoring and managing remote connections; implementing cloud controls; administration of identify and access management controls; assisting with the monitoring and responding to security alerts The Risk Analyst also participates in the oversight of security software and systems upgrades, troubleshooting issues and verifications of system availability and performance. An understanding of business requirements across areas involved, e.g. clinical, ancillary, administrative and financial areas, is helpful. They will document activities, resolutions, and other outcomes throughout the lifecycle of a security breech, problem or related response. The Risk Analyst I will assist with the coordination and collaboration with other WMC IT Teams in the support of system, project rollout, problem resolution, and end user support.

Responsibilities:

  • Manage secure remote access solutions, including Zero Trust and SASE platforms (ZTNA, SWG, CASB, DLP).
  • Assist in the design, implementation, and management of enterprise security solutions, including Cisco security platforms (Identity Services Engine [ISE] and Secure Network Analytics [Stealthwatch]).
  • Participate in the configuration, maintenance, and optimization of Palo Alto Networks firewalls to enforce network security policies.
  • Administer and enhance email security and filtering solutions to protect against phishing, malware, and data loss.
  • Assist in the implementation and maintenance of cloud security controls, including policy enforcement, continuous monitoring, and compliance validation.
  • Assist in designing and supporting network segmentation initiatives aligned with Zero Trust architecture principles.
  • Participate in the management of Microsoft EntraID capabilities, including Conditional Access policies and Microsoft Authenticator for MFA.
  • Monitor and escalate alerts from CrowdStrike Endpoint Detection & Response.
  • Support OT/IoT/medical device security initiatives to enhance visibility, vulnerability identification, remediation, and risk reduction.
  • Investigate security alerts, support incident response efforts, and coordinate remediation with IT and infrastructure teams.
  • Maintain security documentation, system configurations, and operational runbooks.
Qualifications/Requirements:

Experience:

  • Minimum 2-4 years of IT Infrastructure or IT Security experience, required
  • Hands-on experience with Cisco security technologies, including Cisco Identity Services Engine (ISE); familiarity with Cisco Secure Network Analytics (Stealthwatch), preferred

Education:

  • Bachelor’s degree in Information Technology, Information Security, or related/relevant discipline.
*Equivalent combination of experience and education may be substituted for degree requirements*

Licenses / Certifications:

N/A

Other:

  • Knowledge of computer systems and applications in meeting medical data reporting requirements
  • Knowledge of program planning and evaluation techniques
  • Ability to compile, analyze and interpret InfoSec data and forecast trends
  • Ability to work well with other technology and medical professionals; ability to communicate effectively, both orally and in writing
  • Ability to effectively use computer applications such as spreadsheets, word processing, calendar, e-mail and database software in performing work assignments
  • Good judgment, initiative, accuracy, thoroughness and physical condition commensurate with the demands of the position.
Special Requirements:
  • Experience designing, implementing, and maintaining Zero Trust architecture and operating principles.
  • Experience with Netskope
  • Experience configuring and managing Palo Alto Networks firewalls.
  • Experience with SailPoint and CyberArk.
  • Experience with enterprise email security and filtering platforms.
  • Strong understanding of cloud security fundamentals, including monitoring, policy enforcement, and compliance controls.
  • Knowledge of network segmentation strategies and Zero Trust architecture concepts.
  • Practical experience with Microsoft Purview and Microsoft Entra, including Conditional Access and Microsoft Authenticator deployment.
  • Experience managing or supporting CrowdStrike.
  • Familiarity with OT/IoT security platforms, preferably Claroty xDome.
  • Hands-on experience with Varonis for data classification, access governance, and threat detection.
  • Solid understanding of IAM principles, authentication methods (MFA, SSO), and least-privilege access.
Strong analytical, troubleshooting, and incident response skills

About Us:

NorthEast Provider Solutions Inc.

Benefits:

We offer a comprehensive compensation and benefits package that includes:

  • Health Insurance
  • Dental
  • Vision
  • Retirement Savings Plan
  • Flexible Savings Account
  • Paid Time Off
  • Holidays
  • Tuition Reimbursement