Jobs and Careers
AR

Information Security Analyst

Arkansas Blue Cross
Little Rock, United Statesfull_timeVerifiedPosted 19 May 2025

About the role

To learn more about Arkansas Blue Cross and Blue Shield Hiring Policies, please click here.

Applicants must be eligible to begin work on the date of hire. Applicants must be currently authorized to work in the United States on a full-time basis. ARKANSAS BLUE CROSS BLUE SHIELD will NOT sponsor applicants for work visas in this position.

Arkansas Blue Cross is only seeking applicants for remote positions from the following states:

Arkansas, Florida, Georgia, Illinois, Kansas, Louisiana, Minnesota, Mississippi, Oklahoma, South Carolina, Tennessee, Texas, Virginia and Wisconsin.

Workforce Scheduling

Job Summary

The Information Security Analyst is responsible for the operations, administration, and governance of the enterprise security solutions and processes.

Requirements

EDUCATION

High School diploma or equivalent
Bachelor’s degree in Business, Computer Science, Management Information Systems, or related field. In lieu of degree, minimum five (5) years' relevant experience will be considered.

LICENSING/CERTIFICATION

Professional security management certification (Certified Information Systems Security Professional (CISSP)) or other similar credentials desired.

EXPERIENCE

Minimum three (3) years' experience conducting various system audits and working with external vendors, conducting information security risk assessments and/or experience related to information security, business continuity, or disaster recovery.
Knowledge of at least one (1) common information security management framework, such as HIPAA, HITRUST, ISO/IEC 27001, ITIL, NIST, COBIT, and/or ITL.
System analysis experience preferred.
Project management experience preferred.

Data testing and/or software application testing preferred.

ESSENTIAL SKILLS & ABILITIES
Detail-Oriented
Critical thinking
Strong analytical skills
Problem sensitivity
Ingenuity
Project management skills
Excellent communication skills
Ability to build collaborative relationships.

Skills

Active Listening, Business Compliance, Computer Literacy, Coordinating Resources, Critical Thinking, Deductive Reasoning, Interpersonal Relationship Management, Operations Coordination, Oral Communications, Problem Sensitivity, Process Improvements, Systems Analysis, Time Management, Written Communication

Responsibilities

Asset Security: Provides guidance and policy expertise for data security, specifically regarding data classification, data storage, data transmission, and data lifecycle. Sets baseline configurations and monitor data governance. Sets policy and enforcement on security standards, such as file permissions, encryption, cloud data security, network assets, endpoint requirements, and others., Communication and Network Security: Provides/supports network monitoring solutions within SOC/SIEM implementation. Handles initial incident response functions. Provides limited consultation to support elements within this domain. Oversees implementation, configuration, maintenance, and changes for all network security capabilities and assets., Identity and Access Management: Provides account security management and control across all account security systems. Manages privileged access management entitlement review/approvals. Conducts usage audits, verify removal and retired accounts, approve launcher requests, and provides end user support. Creates, modifies, deletes, and retires member accounts. Manages role entitlement process. Maintains Workday integration. Manages access management application/system updates and testing., Performs other duties as assigned., Security and Risk Management: Provides guidance to business partners for all information security-related issues and identified security risks. Creates, manages, and enforces information security policy. Provides oversight of framework compliance. Manages enterprise audit remediation and CAP management. Manages vulnerability management plan. Conducts anti-phishing campaigns. Conducts and manages the security awareness and training program. Manages the third party risk management program., Security Architecture and Engineering: Ensures information security is designed with confidentiality, integrity, and access in mind. Sets security requirements. Ensures system redundancy and fault tolerance. Sets standards for mobile and web security. Ensures security of IoT devices., Security Assessment and Testing: Provides requested evidence/artifacts for all security-related assessments/audits. Coordinates and schedule security assessment

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Arkansas Blue Cross

View company profile →