Center Valley, PA - The Senior Information Security Analyst will plan and implement security measures to safeguard information systems against accidental or unauthorized modification, destruction, or disclosure. The incumbent will be responsible for Information Technology Security as related to system audits and policies and procedures, as well as compliance for the following areas: disaster recovery, network security, data protection and application security. EOE M/F/D/V
* Confer with Management, the Legal Department, Developers, Risk Assessment Staff, Auditors, Facilities and Security Departments, and other personnel to identify and plan for security for application data, software applications, hardware, telecommunications, and computer installations.
* Work with external service providers and vendors to identify, select, and implement backup and archiving disaster recovery-related software, hardware, and processes.
* Develop, coordinate, and implement disaster or emergency recovery procedures for information systems.
* Maintain disaster recovery contracts and procedures as business requirements and technology change.
* Provide information security and business continuity training to Olympus employees as needed.
* Create and maintain Olympus Information Security Policies and Procedures.
* Analyze, recommend, and coordinate the installation of security software, hardware, physical security components, and other security measures.
* Monitor compliance with Olympus' security policies and procedures among employees, contractors, and other third parties.
* Monitor internal controls systems to ensure that appropriate information access levels and security controls are maintained.
* Monitor changes in legislation and accreditation standards that affect information security.
* Organize and manage periodic security audits; correcting issues as they arise.
* Identify potential threats and respond to reported security violations to determine causes, possible solutions, and remedial actions required to ensure data security. Coordinate, document, and report on internal investigations of possible security violations.
* Ensure compliance with required security.
* Recommend improvements to policies and procedures.
* Perform other related duties as assigned.