Information Security Analyst

TruStageMadison, WI
1d

About The Position

At TruStage, we’re on a mission to make a brighter financial future accessible to everyone. We put people first, and work hand in hand with employees and customers to create a diverse and inclusive environment. Passionate about building insurance and financial services solutions, we push the boundaries of what’s possible. We need you to help us shape what’s next. You’ll be encouraged to share your experiences, ideas and skills to help others take control of their financial future. Join a team that has received numerous awards for being a top place to work: TruStage awards and recognition Job Summary Under the guidance of Information Security leadership, the Information Security Analyst supports TruStage’s cybersecurity program by delivering integrated threat intelligence and digital forensic services. This hands-on role is responsible for reviewing and analyzing incoming threat intelligence to assess risk and potential impact to the organization, applying best practices to inform proactive defense strategies. The analyst plays a critical role in the incident response lifecycle by investigating escalated threats—such as malware infections, phishing attempts, or unauthorized access—through structured processes that include detection, containment, eradication, recovery, and root cause analysis. Responsibilities also include conducting forensic investigations, performing advanced data collections, and executing eDiscovery requests. The analyst may be called upon to support investigations led by Legal, Human Resources, or other internal stakeholders, ensuring evidence integrity and alignment with regulatory and organizational standards. The ideal candidate will have experience using tools such as Magnet Forensics Axiom Cyber, Splunk, Microsoft Defender, and the MITRE ATT&CK framework to detect, investigate, and respond to complex security incidents. This role requires a strong analytical mindset, attention to detail, and the ability to work collaboratively across teams to enhance the organization’s security posture. Excellent verbal and written communication skills are essential, as the analyst will be expected to clearly document findings, articulate technical concepts to non-technical stakeholders, and contribute to incident reports, threat briefings, and cross-functional discussions.

Requirements

  • Bachelor's degree in computer science, information systems or related field, or equivalent combination of education and/or related professional work experience.
  • 5 or more years of demonstrated proficiency with an information security audit, assessment, engineering or architecture focus or comparable, professional experience.
  • Proven ability to clearly and effectively communicate business and technical information, both verbally and in writing.
  • Aptitude for speaking or communicating to varied groups of business and technical professionals.
  • Experience in presenting technical material to a nontechnical audience and to senior management.
  • Established skills and experience in the development of security policies, standards or other governance practices.
  • Demonstrated relationship management and consulting skills, including ability to effectively influence and negotiate.
  • Proven ability to provide high quality customer service.

Nice To Haves

  • Financial Services industry experience strongly preferred.
  • Experience with law enforcement preferred
  • Experience with forensics preferred

Responsibilities

  • Support Information Security Leadership regarding all aspects of the information security program, with minimal supervision.
  • Responsibilities include facilitating the identification of risks throughout the organization, developing, reporting and monitoring formats on risk management issues and developing methodologies for the assessment of risks throughout the organization.
  • Continuously monitor the internal and external landscape for relevant events, risks, and threats related to malicious code, vulnerabilities, and potential attacks.
  • Coordinate and ensure cybersecurity related alerts and incidents are prioritized and responded to at all hours of the day.
  • Remain current with emerging threats and share knowledge with colleagues to improve incident response processes.
  • Participate in the creation and execution of tabletop exercises designed to identify gaps, improve skills, enhance communication and engage with key stakeholders.
  • Review reports from tabletop exercises, vulnerability scans and penetration testing to identify weaknesses or gaps in existing security controls and provide recommendations where appropriate.
  • Lead coordination, consultation, and assessment efforts to track and remediate events and alerts, directs response to related incidents, internal or external audits, and / or control assessments.
  • Identify, report, and assist in resolving privacy, compliance or security violations and control gaps.
  • Lead feedback with other IT teams to protect data from compliance, privacy or security compromise.
  • Contribute to the strategic direction of the Information Security team to develop new capabilities, process efficiencies and goals.
  • Participate in the development, review, ongoing maintenance and development of security policies, standards, processes, procedures and requirements to facilitate the establishment of common administrative controls for the delivery of security capabilities.
  • Develop content for organization wide and targeted security awareness training.
  • Present relevant information security topics through a variety of forums depending on the audience.

Benefits

  • medical
  • dental
  • vision
  • employee assistance program
  • life insurance
  • disability plans
  • parental leave
  • paid time off
  • 401k
  • tuition reimbursement
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service