What are the responsibilities and job description for the Fraud and Information Security Analyst position at IHC Specialty Benefits?
SUMMARY
The Fraud & Security Analyst is responsible for detecting and preventing fraudulent activity, monitoring system security, maintaining compliance with regulatory standards, and supporting both internal and external audits.
ESSENTIAL DUTIES AND RESPONSIBILITIES
- Monitor consumer, broker, or agent activity for suspicious patterns indicating potential fraud or misuse.
- Investigate fraud incidents and prepare detailed incident reports, including root-cause analysis and recommended remediation steps.
- Identify trends, anomalies, and potential risks by analyzing user behavior, system logs, and transactional data.
- Perform user access reviews and enforce least-privilege security principles across systems and applications.
- Participate in security incident response activities, including containment, evidence gathering, root-cause identification, and reporting.
- Conduct vulnerability assessments, track remediation efforts, and validate the installation of security patches.
- Maintain security policies, procedures, and standards to ensure consistent, compliant security operations.
- Prepare for and support internal and external audits, including federal audits and PCI DSS assessments, and internal security/compliance reviews.
- Maintain audit artifacts, control documentation, and evidence repositories to support annual/ongoing audit cycles.
- Document audit findings and track corrective action plans through completion; monitor remediation progress and validate effectiveness.
- Conduct periodic process and control reviews to ensure compliance with internal policies, regulatory requirements, and security standards.
- Support regulatory reporting and ensure timely submission of required audit deliverables and compliance documentation.
- Report key metrics to management
- Stay informed of industry best practices and information security frameworks
- Meet department attendance requirements, including being prompt and available during scheduled shift
- Performs other related duties and tasks as needed.
REQUIREMENTS
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
- Knowledge of common security frameworks (ISO, NIST, etc.) and regulatory compliance (PCI, SOX, HIPAA, NYDFS, CCPA)
- Experience investigating fraud, security incidents, or compliance issues, including collecting evidence, documenting findings, and supporting remediation efforts.
- Working knowledge of log analysis, monitoring tools, and data analysis techniques to identify suspicious activity, anomalies, and potential security or fraud risks.
- Ability to document processes, controls, and findings clearly and accurately, including writing incident reports, audit evidence, and management-facing summaries.
- Strong analytical and critical-thinking skills, with the ability to assess risk, prioritize issues, and recommend practical, risk-based solutions.
- Understanding of access control concepts and least-privilege principles, including user access reviews, role-based access, and account lifecycle management.
SUPERVISORY RESPONSIBILITIES
- None
PAY TRANSPARENCY
- The base pay for this hybrid role is: $68,400 – 90,000 per year. You are also eligible for employee benefits medical, dental, vision, life, and participation in the company 401(k) plan. Final offer amounts, within the base pay set forth above, are determined by factors including your relevant skills, education, and experience. Role is located in Akron OH.
CERTIFICATES, LICENSES, REGISTRATION
- While a current information security certification (such as Security , CISSP, or similar) is not required at the time of hire, the individual must obtain the certification within 15 months of starting the role.
PHYSICAL DEMANDS
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Small Motor Skills: Picking, pinching, typing or otherwise working primarily with fingers rather than with whole hand or arm, as in handling.
Speaking: Expressing or exchanging ideas by means of spoken word. Those activities in which require detailed or important spoken instructions must be conveyed to other workers accurately and quickly.
Hearing: Ability to receive detailed information through oral communication with or without correction.
Repetitive Motion: Substantial movement (motions) of the wrist, hands and fingers.
WORK ENVIRONMENT
This Hybrid Remote / In-office role provides the opportunity to gain knowledge while collaborating with co-workers while also considering a life work balance.
The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
Normal office environment with controlled temperature.
ADDITIONAL REQUIREMENTS
The company reserves the right to determine if this position will be assigned to work on-site, remotely, or a combination of both. Assigned work location may change. In the case of remote work, physical presence in the office/on-site may be required to engage in face-to-face interaction and coordination of work among co-workers.
Salary : $68,400 - $90,000