via Greenhouse
$94K - 100K a year
The Security Analyst will conduct risk assessments and security evaluations to identify and prioritize risks across applications and systems. They will also develop remediation plans and monitor system activities to respond to security threats effectively.
Candidates should have a Bachelor's degree or equivalent experience, with at least 5 years in IT security risk management and 3 years assessing security controls. Hands-on experience with GRC tools and cloud environments is also required.
Altera, a member of the N. Harris Computer Corporation family, delivers health IT solutions that support caregivers around the world. These include the Sunrise™, Paragon®, Altera TouchWorks®, Altera Opal, STAR™, HealthQuest™ and dbMotion™ solutions. At the intersection of technology and the human experience, Altera Digital Health is driving a new era of healthcare, in which innovation and expertise can elevate care delivery and inspire healthier communities across the globe. A new age in healthcare technology has just begun. ***Security Analyst*** Remote U.S.-based Role ABOUT THE ROLE We are looking for a Security Analyst to join our Corporate IT Security Team. This is a unique opportunity to make a significant impact on our growing risk program. You will help strengthen our security, maintain our ISO certification, and position Altera for future growth. In this role, you'll use your expertise in risk management, security frameworks, and compliance to support all Altera group of companies. You will communicate with diverse stakeholders, from technical teams to executive leaders. Responsibilities Risk Assessment & Analysis Conduct risk and security assessments of applications, databases, servers, and network hardware to identify, evaluate, and prioritize risks. Assess potential risks and vulnerabilities to establish security baselines and assist with deviation responses. Perform risk assessments against compliance standards (HIPAA, PCI) and security frameworks (NIST, CIS, ISO 27001). Evaluate emerging technologies to determine how they fit within our security architecture. Review security controls before hardware or software is moved to production. Work with business units to review vendor security and ensure compliance with all regulations and requirements. Remediation & Incident Response Provide actionable recommendations to mitigate vulnerabilities and strengthen our security posture. Develop and execute remediation plans for identified issues, risks, or vulnerabilities. Analyze, assess, and track security incidents. Develop and maintain standard procedures for responding to identified threats. Monitor system activities and events to detect, classify, and respond quickly to threats. Work with the information security team to support incident escalation and remediation. Governance & Strategy Advise on security architecture for new and existing systems, ensuring alignment with best practices and company policies. Oversee access control risk management, including auditing controls and recommending improvements. Develop and maintain risk registers and other risk management documentation. Monitor and report on the effectiveness of risk mitigation strategies. Support the development and testing of disaster recovery and business continuity plans. Develop and support the achievement of strategic security objectives. Collaboration & Awareness Collaborate with IT teams to solve information security issues in a timely manner. Participate in annual security audits, incident response exercises, and compliance reporting. Oversee the security awareness program, including phishing campaigns, training, and compliance tracking. Qualifications A Bachelor's degree in a related field or equivalent professional experience. 5+ years of experience in IT security risk management, a security operations center (SOC), or system administration. 3+ years of experience assessing security controls, processes, and vulnerabilities, regulatory and legal changes, and security standards that may impact the security of systems or data. Hands-on experience with Governance, Risk, and Compliance (GRC) tools. Experience with identity and access management for both on-premise and cloud (Azure, AWS) environments. Excellent communication skills, with the ability to explain technical concepts to different audiences. Ability to adapt and thrive in a dynamic work environment. Certifications like CISSP, CRISC, or CISA are a plus. Working Arrangements This is a fully remote position. Our company complies with all local/state regulations in regard to displaying salary ranges. If required, the salary range(s) are displayed below and are specifically for those potential hires who will perform work in or reside in the location(s) listed, if selected for the role. Any offered salary is determined based on internal equity, internal salary ranges, market data, ranges, applicant's skills and prior relevant experience, certain degrees and certifications (e.g. JD, technology), for example. Salary Range $94,000—$100,000 USD Altera is an Equal Opportunity/Affirmative Action Employer. We consider applicants without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, citizenship status, or membership in any other group protected by federal, state or local law. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact us at: HR.Recruiting@AlteraHealth.com
This job posting was last updated on 11/22/2025