Security Analyst
Job description
About the role
Metro Vein Centers is a rapidly growing healthcare practice specializing in state-of-the-art vein treatments. Our board-certified physicians and expert staff are on a mission to improve people's quality of life by relieving the painful, yet highly treatable symptoms of vein disease-such as varicose veins and heavy, aching legs. With over 70 clinics across 8 states, and still growing, we are building the future of vein care-delivering compassionate, results-driven care in a modern, patient-first environment. We proudly maintain a Net Promoter Score of 93, the highest patient satisfaction in the industry. This Security Analyst role owns and matures our information security program across a 70-plus clinic, cloud-first healthcare environment. This is a newly created role that reflects our commitment to proactive security, HIPAA compliance, and a zero trust approach to identity and access management. You will translate risk findings into actions that protect patient data and enable safe growth while partnering with clinical and corporate teams.
Key facts
What you'll do
Implementing robust security monitoring and orchestrating rapid incident response activities across cloud services and endpoint devices.
Architecting and sustaining Google Workspace protective controls, including precise data loss prevention policies, resilient email security configurations, rigorous Drive sharing restrictions, and tightly governed access rules.
Conducting endpoint detection and response operations to enforce device integrity and execute thorough threat investigations.
Enforcing device compliance standards and conditional access protocols while maintaining strict alignment with zero trust principles for identity and access.
Hardening authentication security by owning multi-factor authentication policies and defining password complexity standards for all user populations.
Executing detailed access reviews for Athena, Luma, Google Workspace, and BigQuery to systematically reduce organizational risk.
Safeguarding enterprise access through disciplined least-privilege access models and rigorous identity platform governance.
Configuring and managing email security controls, including advanced phishing protection, aggressive spam filtering, and precise DMARC/DKIM settings.
Designing and running sophisticated phishing simulation campaigns while delivering engaging user security awareness training programs.
Supporting HIPAA security compliance through active participation in risk assessments, policy updates, and thorough audit readiness preparations.
Performing identity and access management administration, including oversight of single sign-on, multi-factor authentication, and Google Identity configurations.
Partnering with the network team to enforce ZTNA policy measures and optimize Zscaler security configurations for enhanced protection.
Developing and maintaining comprehensive incident response plans, disaster recovery documentation, and detailed security runbooks.
Tracking and reporting on critical security KPIs, including multi-factor adoption rates, device compliance statistics, vulnerability status, and audit remediation progress.
Engaging in occasional travel to address critical security issues or support organizational growth initiatives.
Participating in on-call rotation as required to ensure continuous security posture coverage and rapid response.
Requirements
Candidates must present 3-5 years of professional experience in information security, security analyst, or IT security operations roles with hands-on implementation experience in complex environments. You must demonstrate hands-on experience administering Google Workspace security features, including Admin Console configurations, audit log reviews, data loss prevention policy creation, and OAuth app management in production settings. You are required to have hands-on experience with endpoint security platforms; CrowdStrike Falcon expertise is preferred, and Microsoft Defender for Endpoint knowledge is also considered valid. Familiarity with Microsoft security products is mandatory, including Microsoft Intune for device management, Microsoft Defender for endpoint protection, and Entra ID for identity and device protection strategies. A solid understanding of identity and access management concepts is essential, including implementation of single sign-on, multi-factor authentication, role-based access control, and strict least-privilege enforcement. You must have practical experience conducting access reviews, performing user provisioning audits, and enforcing security policies across complex, multi-clinic environments. Working knowledge of email security protocols including SPF, DKIM, and DMARC, along with current email threat landscape trends, is required. Strong analytical capabilities are necessary to investigate security alerts, analyze logs, and identify indicators of compromise effectively. Excellent written and verbal communication skills are required to articulate technical security concepts clearly to non-technical stakeholders and team members. Familiarity with HIPAA Security Rule requirements and healthcare data protection obligations is necessary for success in this position.
Nice to have
No preferred qualifications or additional skills are specified beyond the core requirements.
Practical notes
This is a full-time position based in the United States with remote work arrangements. Travel may be required occasionally for critical security incidents or business expansion activities. The role operates under standard on-call rotation schedules to maintain security operations and incident response readiness.