Security Analyst
Vanderbilt University Medical CenterAbout the role
Discover Vanderbilt University Medical Center: Located in Nashville, Tennessee, and operating at a global crossroads of teaching, discovery, and patient care, VUMC is a community of diverse individuals who come to work each day with the simple aim of changing the world. It is a place where your expertise will be valued, your knowledge expanded, and your abilities challenged. Vanderbilt Health recognizes that diversity is essential for excellence and innovation. We are committed to an inclusive environment where everyone has the chance to thrive and where your diversity of culture, thinking, learning, and leading is sought and celebrated. It is a place where employees know they are part of something that is bigger than themselves, take exceptional pride in their work and never settle for what was good enough yesterday. Vanderbilt’s mission is to advance health and wellness through preeminent programs in patient care, education, and research.
Organization:
VEC AVAJob Summary:
In this role, the Analyst will be responsible for assisting in assessing our network to identify and mitigate existing and potential vulnerabilities and exploits. Analysts will work closely with our senior security analysts to monitor, analyze, and respond to potential security incidents, ensuring the confidentiality, integrity, and availability of our network resources..
KEY RESPONSIBILITIES
Conduct regular vulnerability assessments and penetration tests to identify weaknesses in network infrastructure.
Assist in analyzing security logs and alerts to detect and reporting potential security incidents to the respective support team.
Collaborate with cross-functional teams to implement security best practices and mitigate identified vulnerabilities.
Stay informed about the latest security trends, vulnerabilities, and exploits to proactively address emerging security issues.
Assist in the development and implementation of security policies, procedures, and controls.
Leverage Open-Source Intelligence to help secure assets and property on the network.
TECHNICAL CAPABILITIES
Vulnerability Security Researcher (Novice) – Conduct research and analyze emerging cyber threats and vulnerabilities. Has existing knowledge of areas that contain Cybersecurity knowledge or how to search for new areas where information can be found. Able to provide timely intelligence to inform security strategies and Cybersecurity management. This will include oral and written notification to the necessary parties.
Conduct Vulnerability Assessment (Novice) – Conduct vulnerability scans on various items on the network. Provide timely reports to any stakeholders of the scans and Cybersecurity management. Will be expected to identify vulnerabilities that need to be remediated and provide guidance on potential mitigations for the vulnerabilities. Has conducted a vulnerability assessment in the past on an application or Operating System in the past. Basic knowledge of the following: Operating Systems, Software packages, networking, ports, protocols, and patching procedures.
Conduct Penetration Test (Novice) – Will be expected to participate in internal penetration testing exercises. This will include providing a detailed write-up of the engagement. Will work with various key stakeholders to report what exactly occurred. Basic knowledge of the following: navigating operating systems, installing software packages, networking, exploits, conducting reconnaissance procedures.
Escalation/Troubleshooting (Novice) – Will be expected to be a technical resource for any issues that may arise from scanning or assessing applications. They will be expected to report the issue to the necessary parties and follow through until the issue is resolved.
Consultation (Novice) – Will provide consulting services to VUMC support personnel as designated by VEC SOS leadership. They will operate in both a per directive and per request basis through approved methods. These include, but not limited to approved short-term and long-term initiatives.
Project Resource (Novice) – Will assist in cybersecurity centric projects for the institution. They will be expected to be assigned to multiple initiatives at the same time. They will be expected to operate in both an independent and team environment executing proper time and resource management skills. Regular reporting cadence with their director is expected.
Our professional administrative functions include critical supporting roles in information technology and informatics, finance, administration, legal and community affairs, human resources, commu
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s