We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Information Security Analyst

MorganFranklin Consulting LLC
United States, Tennessee, Nashville
Sep 15, 2025

Description:

The Information Security Analyst ensures security of the organization's systems and information assets. The position will collaborate with end users and subject matter experts to plan and deliver IT security solutions, policies, and standards across the organization.

Essential Job Functions:

The Information Security Analyst is responsible for defining, planning, and monitoring security measures for the protection of computer networks and information assets

This individual will also be responsible for monitoring and analyzing network security hardware and software and assist in the development and enforcement of network security policies. This position will work within the Information Technology (IT) department and report to the Information Security Director.

Duties and Responsibilities:



  • Defines, maintains, and reports on overall computer network security strategies (Best Practices/Common Practices) with all information assets connected to the Highspring network. Must have the ability to communicate security policies and strategies to people of varying technical ability both verbally and in written format.
  • Monitors operation of, and provides reports on, perimeter security systems such as firewalls, routers, proxy servers, intrusion detection and protection systems.
  • Monitors operation of, and provides reports on, end point security systems such as anti-virus, patch management and vulnerability assessment tools.
  • Monitors operation of, and provides reports on, Security Information and Event Management (SIEM) systems. Must have the ability to examine a variety of data sources to correlate events and determine courses of action.
  • Participates in the incident response process when network anomalies are discovered and drives the incident process to completion.
  • Manages relationships and coordinates operational activities between Highspring and external security services providers (e.g., Managed Security Services Providers (MSSP), Penetration Testers, Solution providers, etc.).
  • Coordinates vulnerability remediation activities and works with the operations to mature the patch management lifecycle based on vulnerability management Service Level Agreements (SLA's) defined by Information Security policies governance.


The above statements describe the general nature and level of work only. They are not an exhaustive list of all required responsibilities, duties, and skills. Other duties may be added, or this description amended at any time. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential functions.

Desired Competencies:



  • Knowledge of SIEM systems
  • Knowledge of Intrusion Detection Systems/Intrusion Protection Systems
  • Knowledge of networking and firewall appliances
  • Knowledge of Information Security standards (International Organization for Standardization 27000 series, National Institute of Standards and Technology, Center for Internet Security (CIS))
  • Knowledge of a variety of vulnerability management solutions
  • Strong verbal and written communication skills.
  • Project management and organizational skills
  • Accountability - Holding self and others accountable to meet commitments
  • Action Oriented - Embracing new opportunities and tough challenges with a sense of urgency, high energy, and enthusiasm
  • Instills Trust - Gaining the confidence and trust of others through honesty, integrity, and authenticity
  • Situational Adaptability - Responds to changes, delays, or unexpected events in a positive manner; adapts working style to best fit a given situation with a strong work ethic
  • Tech Savvy - Anticipates and adopts innovations in business-building digital and technology applications


Education and Experience:



  • Bachelor's degree in Computer Science, Information Technology, Information Security or Electrical Engineering preferred, with at least (6) months of Information Security Internship experience. In lieu of a degree, candidates with (2)+ years of Information Security experience and a relevant certificate may be considered.
  • One of the following certifications is preferred: Certified Information Systems Security Professional (CISSP); Certified Information Security Manager (CISM); GIAC certifications and/or Certified Ethical Hacker (CEH); CompTIA Security+.


Multiple locations | Remote eligible with management approval

Travel Requirements:

Less than 5% (almost no travel)

Physical Demands: The physical demands described are representative of those that must be met by an employee to successfully perform the essential functions of this position:

Frequent: Sitting, walking, eye/hand/foot coordination and repetitive motion.

Occasional: Standing and bending.

Infrequent: Lifting up to 10 pounds.

Determining compensation for this role (and others) at Highspring depends upon a wide array of factors including but not limited to the individual's skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law, Highspring believes that the following salary range reasonably estimates the base compensation for an individual hired into this position in geographies that require salary range disclosure to be between $80,000 and $100,000. The individual may also be eligible for a variety of bonus and financial incentives based on individual and company performance.


Applied = 0

(web-759df7d4f5-mz8pj)