What are the responsibilities and job description for the Information Security & Risk Analyst l (Data Protection) position at Deseret Mutual Benefit Administrators?
DMBA provides a variety of benefits including health, life, and retirement to employees of the Church of Jesus Christ of Latter-day Saints and its affiliates. DMBA began operations in 1970 and is now in its 55th year of supporting the Church of Jesus Christ of Latter-day Saints and its mission.
Position Summary:
DMBA is looking for an Information Security and Risk Analyst I to join our Information Security Team. This technical role will support a variety of data protection initiatives including: data labeling, data classification, data destruction, data loss prevention, user and entity behavior analysis, email protection, insider risk, data retention, and data flow documenting. This is a hands-on role with an opportunity to enhance and improve the enterprise security program.
Responsibilities:
- Ensure the confidentiality, integrity, and availability of sensitive information and assets across the organization
- Monitor and analyze data protection controls across various solutions
- Identify gaps in data protection mechanisms and recommend improvements
- Support the implementation and enforcement of data privacy policies, standards, and procedures
- Conduct data classification, mapping, and risk assessments across systems and applications
- Investigate potential data protection incidents and assist with incident response activities
- Assist in regulatory and audit preparation, providing evidence of compliance with data protection requirements
- Collaborate with business and IT teams to ensure data is properly secured in storage, transit, and use
- Stay current on data protection laws, regulations, and best practices, and provide guidance to stakeholders
- Participate in vendor risk management reviews, ensuring third-party data handling aligns with organizational standards
- Support SOC investigations that include data protection implications such as email, application, and content events
- Implementing, managing, and tuning advanced email protections
- Support DMBA's AI governance program by evaluating and tuning policies to govern the use of AI and sensitive data
- Evaluate, organize, tune, and continuously improve data protection capabilities integrated in operating systems, cloud networks, and data protection platforms
Qualifications and Experience:
- Bachelor's degree in Information Security, Computer Science, Risk Management, or related field (or equivalent work experience)
- 2 years of experience in data protection, cybersecurity, privacy, or compliance roles
- Professional certifications in data protection, cybersecurity, privacy, or compliance (CRISC, Microsoft security, AWS security, CompTIA Security , etc.)
- Familiarity with frameworks and regulations such as GDPR, HIPAA, CCPA, PCI-DSS, or ISO 27001
- Knowledge of data loss prevention (DLP), encryption, access controls, and privacy-enhancing technologies
- Strong analytical and problem-solving skills with attention to detail
- Excellent communication and collaboration skills with the ability to interact across technical and non-technical teams
- Understanding of information security best practices or a strong desire to learn
- Knowledge of databases, Windows, Linux, and networking
- Experience with security tooling (Firewall, WAF, Vulnerability Scanning, XDR, SIEM etc.)
- Fundamental understanding of cloud security (Azure, AWS, GCP)
- Ability to work independently on various tasks
- Hands-on experience with DLP solutions, cloud security tools, and identity management platforms
- Highly motivated team player with a strong desire to learn in the Cybersecurity sector
What We Offer:
- Competitive pay
- Rich medical, vision and dental benefits with low premiums. One of the top health plans in Utah
- Rich retirement planning: including 401(k) company match, 8% EDRC Employer Discretionary Retirement Contribution (we just give you free money for retirement), life insurance, and full service Financial Planners onsite at no cost
- Generous paid leave plan that starts accruing your first day, your birthday off, additional sick leave and 12 paid holidays
- Award winning wellness program with health coaching, ability to earn 3 additional days off a year, fun activities and an onsite gym.
- Tuition reimbursement
- Career development through company sponsored programs and over 5000 on-demand online training courses.
- Hybrid work schedules available depending on position
- Employee Assistance Program