IT Security Analyst II

Centauri Health Solutions, Inc
Centauri Health Solutions, Inc

IT

Posted on Sep 9, 2026
Your Daily Mission The IT Security Analyst II manages systems to protect data from unauthorized users. Identifies, reports, and resolves security incidents. Knowledge of commonly-used concepts, practices, and procedures within IT and security. This position audits information systems, platforms, and operating procedures in accordance with established corporate standards for efficiency, accuracy, and security. Evaluates IT infrastructure in terms of risk to the organization and recommend controls to mitigate loss. Determines and recommends improvements in current risk management controls, system changes, or upgrades. Provides support for client/customer security assessments, pre-delegation security audits for select vendors/subcontractors, and external security/compliance assessments, certification, accreditation, and audit processes, including HITRUST, SOC, ONC, and related industry and regulatory frameworks and standards. Who You Are Bachelor’s degree preferred (MIS, CIS, or equivalent); or equivalent work experience.1-3 years’ experience in IT or a technical-related position. Possess project management and presentation experience.Microsoft Windows Operating Systems, Linux, and virtualization softwareSecurity Information and Event ManagementData Loss PreventionIntrusion Detection and PreventionLAN/WAN experienceBusiness Office Protocol/Telephone EtiquetteBusiness processesInformation Technology knowledgeKnowledge of security frameworks (COBIT, NIST, HITRUST, HITECH)Knowledge of audits (SOC, HITRUST, HIPAA) The Reality of the Role Serves as Security Analyst Coordinate and implement security measures for information systems to regulate access to computer data files and prevent unauthorized modification, destruction, or disclosure of informationImplement plans to safeguard computer files against accidental or unauthorized modification, destruction, or disclosure and to meet emergency data processing needsParticipate in risk assessments and execute tests of systems to ensure security measures perform as intendedParticipate in the design and implementation of security solutionsConfigure, maintain, and support EDR, SIEM, firewalls, remote access, DMZ, proxy servers, VPNs, vulnerability management, and a variety of security toolsManage IDS/IPS and DLP services or softwareMonitor system and security logs and investigate and report incidentsParticipate in the execution and remediation of vulnerability scansParticipate in the development and implementation of security-related policy, usage, training and documentationKnowledge of HIPAAMonitor and limit use of data files and regulate access to safeguard information in computer filesProduce and maintain security documentation and reportsHelp promote security awareness to ensure system security Internal Business Audits: Perform internal audits to ensure policies, procedures, and controls are being followed and applied appropriatelyContinually monitor the progress of internal audits and report to the Director of IT Security on audit status, challenges, potential risks, and remediation status; project manage audits to timely completion of audit deliverables through to audit closureMaintain an internal audit record for audit activity, including reports, findings, recommendations, and internal corrective action plansDevelop a solid working knowledge of the features, functions, and applicable security standards for all Centauri products, services, and solutionsDrive Centauri’s internal audit function towards continuous readiness for various audit typesWork with internal leaders to ensure compliance and successful completion of audits such as SOC2 and HITRUST Work with internal teams to assist in the completion of client audits, questionnaires, attestations, review contracts, and amendments for technical complianceMaintain Centauri’s Vendor Management ProgramAssist with pre-delegation/contract audits and annual audits as required by both Centauri and HITRUSTAssist with annual vendor audits and audits of potential vendorsAssist with client/customer security assessment/audits Maintains a direct line of communication with the VP of Compliance and General Council to ensure separation of duties when auditing internal processes Security Industry Compliance: Reviews government regulations and state laws, HIPAA, and HITRUST for changes impacting our business.Communicates with appropriate individuals where appropriate.Manage HITRUST, SOC, and similar industry and regulatory accreditation and certification compliance assessments, prioritizing engagement tasks, including supervising the tests of business process and IT general controls, managing engagement progress and communicatingAssess IT security policies, procedures, and controls of business applications, networks, operating systems, and other components of technology to ensure we are meeting current standards Develop a solid working knowledge of the features, functions, and applicable security standards for all Centauri products, services, and solutionsDevelop a solid working knowledge of the features, functions, and applicable security standards for allDevelop strong relationships with internal teams through a comprehensive understanding of operations and communicating expectations, control needs, control exceptions, or engagement issues to the engagement team and SOC, HITRUST, and related accreditation and certification teams in a timely mannerManage the day-to-day aspects of multiple, concurrent engagements, prioritizing and managing engagement tasks, communicating engagement progress to the engagement teams Business Support: Recommends improvements to policies, procedures, efficiency, and controls.Drives development and annual reviews ofBusiness Impact Analysis (BIA) Business Continuity Plans (BCP)Disaster Recovery Plans (DR)Risk Assessment (RA)Policies and ProceduresOther duties as assigned