Posted today · be early
Information Security Associate
athenahealth
IndiaremotePosted today
Skill Required
Information-Security-AnalystCybersecurity-AnalystIT-Risk-AnalystCompliance-AnalystSecurity-Compliance-AssociateInformation-Security-Analyst-Entry-LevelInformation-Security-SpecialistAssociate-Cybersecurity-EngineersecuritytroubleshootingCybersecurityEngineeringnetworkingFirewallwrittenSparkAgileandFulltime
Key highlights
- Remote role based in Pune, India
- 2+ years experience managing technical projects
- 2+ years experience in external vendor compliance
- Bachelor of Science in Computer Science or similar degree/experience
- Includes health and financial benefits
Role overview
The Information Security Associate helps support cybersecurity, IT risk management, and security audit activities that protect sensitive information and strengthen business operations. This remote role is based in Pune, India and supports a distributed team environment, reporting to the Director, Information Security. As part of the Information Security team at athenahealth, the mission is to keep data as secure as possible while enabling the business to be nimble and meet customer needs, partnering across the organization to reduce risk, support compliance, and strengthen systems and services for care teams and patients.
Responsibilities
- Ensure Compliance - Work with new and existing athenahealth vendors to ensure initial and continued compliance with Information Security requirements. Review technical controls with vendors, document compliance and exceptions, and report out findings to athenahealth leadership.
- Systems Engineering – Ability to follow a strict change control process and implement changes and upgrades to essential security software, following documentation and escalation processes.
- Project planning and facilitation – Creation of Information Security related project plans that include deliverables, responsible parties, timelines, budgets, etc. for both athenahealth and 3rd party vendors who work with athenahealth. Frequently checking in with stakeholders (both internal and 3rd party) to ensure Information Security projects are on track, budget, etc.
- Reporting – Any exceptions to athenahealth Information Security policies by vendors must be communicated, tracked, and risk-managed on a regular basis.
- Process reviews – Ensure business stakeholders are periodically reviewing internal and vendor practices to ensure athenahealth is doing what we need to do on our end to remain compliant with all regulatory requirements.
- Participate in team meetings, planning discussions, and knowledge-sharing sessions.
- Help maintain security-related trackers, logs, and documentation repositories.
- Support policy and procedure updates as security practices evolve.
- Contribute to continuous improvement efforts for security operations and risk processes.
- Assist with basic troubleshooting and coordination related to security tools or controls.
- Review recurring security metrics and operational reports as needed.
- Collaborate with colleagues across functions to support timely completion of assigned work.
Requirements
- Bachelor of Science in Computer Science or similar degree and/or applicable work experience such as IT Audit.
- 2+ years of experience managing technical projects.
- Working knowledge of technical concepts including virtual desktops, operating systems, networking, firewalls, and VPNs.
- 2+ years of experience managing external vendors from a compliance (particularly InfoSec) perspective.
- Strong written and verbal communication skills.
- Effective communication of technical concepts, suggestions, and concerns to stakeholders, vendors, and management.
- Risk management experience.
- Experience with Agile and Scrum project management concepts.
- Ability to understand and apply technical concepts and apply them to recommendations around vendor onboarding and compliance.
Nice to have
- Certifications such as Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Agile and Scrum, etc.
Benefits
- Health and financial benefits
- Perks specific to each location, including commuter support, employee assistance programs, tuition assistance, employee resource groups, and collaborative workspaces (some offices welcome dogs)
- Flexibility regarding work-life balance and remote/office environment
- Sponsored events throughout the year, including book clubs, external speakers, and hackathons
- Company culture based on learning, the support of an engaged team, and an inclusive environment
Additional details
- Join us as we work to create a thriving ecosystem that delivers accessible, high-quality, and sustainable healthcare for all.
- Our vision: In an industry that becomes more complex by the day, we stand for simplicity. We offer IT solutions and expert services that eliminate the daily hurdles preventing healthcare providers from focusing entirely on their patients.
- Our company culture: Our talented employees — or athenistas, as we call ourselves — spark the innovation and passion needed to accomplish our vision. We are a diverse group of dreamers and do-ers with unique knowledge, expertise, backgrounds, and perspectives. We unite as mission-driven problem-solvers with a deep desire to achieve our vision and make our time here count. Our award-winning culture is built around shared values of inclusiveness, accountability, and support.
- Our DEI commitment: Our vision of accessible, high-quality, and sustainable healthcare for all requires addressing the inequities that stand in the way. That's one reason we prioritize diversity, equity, and inclusion in every aspect of our business, from attracting and sustaining a diverse workforce to maintaining an inclusive environment for athenistas, our partners, customers and the communities where we work and serve.
- Learn more about our culture and benefits here: athenahealth.com/careers
- athenahealth.com/careers/equal-opportunity
- Originally posted on Himalayas