IT Security Analyst

Shirley Ryan AbilityLabChicago, IL
$61,800 - $103,000Remote

About The Position

The IT Security Analyst is a member of the IT Security Operations team who works closely with the other members of the team to deliver a comprehensive information security program and safeguards Shirley Ryan AbilityLab's valuable information assets. The analyst works with other IT teams to effectively manage, monitor, and deploy technical controls to meet specific security requirements and follows defined processes and standards to ensure that security configurations are enforced and maintained. In a demanding 24x7x365 healthcare environment, this position requires a high degree of initiative and hands-on technical knowledge, an up-to-date understanding of the latest security threats and technologies, familiarity with core security frameworks, commitment to ongoing and continuous security improvements as well as a professional demeanor and collaboration skill set. The IT Security Analyst will demonstrate Shirley Ryan AbilityLab Core Attributes (Communication, Accountability, Flexibility/Adaptability, Judgment/Problem Solving, Customer Service) and Core Values (Hope, Compassion, Discovery, Collaboration, and Commitment to Excellence) while fulfilling job duties.

Requirements

  • A minimum of five (5) years progressive experience working in Information Technology with at least three (3) years of direct experience in systems security administration, systems audit, or security compliance.
  • Robust and hands-on experience with various security solutions, including antivirus, Security Incident and Event Management (SIEM), encryption, endpoint detection and response, data loss prevention (DLP), intrusion detection & prevention, systems patching, vulnerability management, and threat intelligence.
  • Advanced knowledge and understanding of security configurations and monitoring for Microsoft Active Directory Domain Services, Windows and Linux OS, AWS/Azure cloud, logging and monitoring, user access, perimeter protection principles, network communication protocols, etc.
  • Must understand information security concepts, protocols, industry best practices and strategies. Knowledge of industry regulatory requirements and experience working with internal and external security audit staff as well as remediation practices is required.
  • High degree of initiative and commitment to ongoing and continuous security improvements, a professional demeanor and collaborative spirit to execute projects and complete tasks proficiently.
  • Effective communication and meticulous documentation skills required with a strong ability to develop and present comprehensive security reports to different audiences.
  • Familiarity and knowledge of core security frameworks: HIPAA (Healthcare Insurance Portability and Accountability Act), NIST (National Institute of Standards and Technology), HITRUST (Health Information Trust Alliance), ISO 27000 Series (International Organization of Standardization), etc.
  • Skillful in delivery of superior customer service.
  • Ability to transport and move PCs, printers, and related hardware weighing up to 30 pounds.

Nice To Haves

  • Healthcare environment experience and IT security certifications are a plus.
  • Familiarity with the Secure Software Development Lifecycle
  • Developing code or scripts to grow integration, automation and orchestration capacity.
  • Cloud application security or a strong understanding of the OWASP Top 10
  • API Governance, integration and behavior monitoring
  • AI Governance, Risk and Compliance
  • General understanding of Cerner and Financial Systems and their integration a plus.

Responsibilities

  • Performs administration relevant to security operations for all on-premises, hosted, and cloud infrastructure, storage, applications, systems, and networks.
  • Performs continuous monitoring of security solutions including but not limited to antivirus, encryption, endpoint detection and response, Security Incident and Event Management (SIEM), privileged access management, vulnerability management, threat intelligence, data loss prevention (DLP), and intrusion detection & prevention.
  • Identifies security incidents in the course of monitoring; collaborates with internal and external teams to execute incident response procedures related to containment and eradication; and provides guidance to internal teams to recover from such incidents.
  • Provides emergency, after-hours and weekend support on a rotational basis to respond to priority issues that occur outside of the normal business hours.
  • Executes and proposes improvements to detailed and accurate documentation and procedures related to security practices and processes. Ensures users, service delivery and systems will adhere to documented standards.
  • Assists as needed in conducting security awareness training and phishing simulations.
  • Provides direction to and collaborates with other teams regarding day-to-day operational security items relating to identity and access management as required.
  • Works closely with team members from IT, other business units, and vendors to ensure new systems, applications, subscriptions, services, and processes meet security and vulnerability management requirements.
  • Evaluates vendor security assessments, coordinates periodic internal and external security audits and assists in the development and implementation of post-audit mitigation plans.
  • Builds formal and informal relationships within SRAlab and among business partners and customers to improve the effectiveness of IT Security Operations. Collaborates with all IT teams and promotes ongoing and continuous security improvements.
  • Performs all other duties that may be assigned in the best interest of the Shirley Ryan AbilityLab.

Benefits

  • Comprehensive benefits program that is competitive with our industry peers in our geographic locations
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service