Analyst II - Information Security

alsacstjude· American Lebanese Syrian Associated Charities
Apply Now ↗
📍 Memphis, TNFull time
Full timeAmerican Lebanese Syrian Associated Charities

About this role

At ALSAC you do more than make a living; you make a difference.

We like people who are different…because we’re different, too. As one of the world’s most iconic and respected nonprofits, we know what it’s like to stand out. That’s why we’re looking at you. Your background, perspective, and desire to make an impact set you apart. As we work to help St. Jude cure childhood cancer, we're calling on the game-changers, innovators and visionaries to join our family. Not just for the kids of St. Jude, but also for you. Because at ALSAC, we develop and celebrate our employees. So, bring your whole, authentic self and become part of our shared mission: Finding cures. Saving children.®

Job Description

The Information Security Analyst is responsible for supporting the development, implementation, and continuous improvement of the enterprise information security program. This role partners across Information Technology and business teams to protect organizational systems, applications, networks, and data from evolving cybersecurity threats.

The analyst contributes to key cybersecurity functions including security operations, vulnerability management, security governance, incident response, identity and access management, risk assessment, and application security. This position provides technical analysis, consultation, reporting, and recommendations to strengthen the organization's security posture while supporting strategic business objectives.

This role offers broad exposure to multiple cybersecurity domains and provides opportunities to work with a diverse set of security technologies, enterprise initiatives, and cross-functional stakeholders.

What You'll Do

  • Partner with Information Security, Infrastructure, and Application Development teams to strengthen enterprise security controls and capabilities.
  • Participate in security operations activities, including monitoring, investigation, and response to potential security incidents.
  • Conduct vulnerability assessments, analyze findings, and support remediation efforts across technology environments.
  • Assist in the development, implementation, and maintenance of security policies, standards, procedures, and response plans.
  • Perform information security risk assessments and provide recommendations to reduce organizational risk.
  • Support identity and access management processes, access reviews, and privilege management initiatives.
  • Validate application security testing results and collaborate with development teams to promote secure coding practices.
  • Evaluate emerging cybersecurity threats, vulnerabilities, and industry trends to recommend appropriate safeguards and mitigation strategies.
  • Provide security consultation and guidance to systems administrators, technology teams, and business stakeholders.
  • Develop meaningful security metrics, dashboards, and reports to communicate risk and program effectiveness to leadership.
  • Participate in enterprise security projects, audits, compliance initiatives, and continuous improvement efforts.
  • Help educate and train employees on cybersecurity awareness and security best practices.

Why This Role is Unique

  • Work across nearly every area of Information Security, gaining exposure to multiple cybersecurity disciplines.
  • Collaborate with infrastructure, cloud, networking, identity, and application development teams.
  • Contribute to enterprise-wide security initiatives that directly impact organizational risk and resilience.
  • Gain hands-on experience with security technologies, investigations, risk management, and governance activities.
  • Join a team that values continuous learning, innovation, and professional development.

Essential Job Functions

  • Monitor, analyze, and investigate security events, alerts, and suspicious activity across enterprise systems and networks.
  • Support incident response activities, including triage, investigation, containment, documentation, and post-incident analysis.
  • Assist in developing, maintaining, and improving enterprise information security policies, standards, procedures, and response plans.
  • Perform security risk assessments and provide actionable recommendations to mitigate identified risks.
  • Conduct vulnerability management activities, including scanning, validation, reporting, prioritization, and remediation tracking.
  • Review security logs, alerts, and intelligence sources to identify threats, vulnerabilities, and potential indicators of compromise.
  • Collaborate with security team members, system administrators, and application developers to address security concerns and implement controls.
  • Assist with implementing, validating, and documenting security-related changes across enterprise technology environments.
  • Support application security initiatives through testing validation, secure coding reviews, and collaboration with development teams.
  • Develop and deliver security metrics, status reports, and presentations for management and stakeholders.
  • Research emerging cybersecurity threats, vulnerabilities, technologies, and industry best practices to improve organizational defenses.
  • Provide consultation and security guidance to technology teams regarding infrastructure, cloud, applications, and data protection.
  • Maintain confidentiality, integrity, and professionalism while handling security-sensitive information and investigations.
  • Support cybersecurity awareness, education, and training initiatives across the organization.
  • Participate in audits, compliance assessments, and enterprise security improvement initiatives as assigned.

Minimum Requirements

  • Bachelor's degree in Information Systems, Computer Science, Cybersecurity, Business, or a related field.
  • Five (5) years of progressive experience in information security, cybersecurity, systems administration, infrastructure security, or related technology disciplines.
  • Demonstrated knowledge of cybersecurity principles, technologies, controls, and best practices.
  • Strong analytical, problem-solving, and investigative skills.
  • Excellent written and verbal communication skills, including the ability to communicate technical concepts to both technical and non-technical audiences.
  • Ability to prioritize and manage multiple projects and initiatives in a dynamic environment.
  • Valid driver's license required.

Preferred Qualifications

  • Security+, GSEC, GCIH, CySA+, CISSP, CASP+, or comparable cybersecurity certifications preferred.
  • Experience working with:
    • Vulnerability management platforms
    • Security Information and Event Management (SIEM) tools
    • Endpoint Detection and Response (EDR) solutions
    • Identity and Access Management (IAM) technologies
    • Cloud security platforms and controls
    • Application security testing tools
  • Familiarity with security frameworks and standards such as NIST Cybersecurity Framework, CIS Controls, ISO 27001, or similar.
  • Knowledge of incident response methodologies, threat hunting, and security operations practices.

This position is based at ALSAC’s National Executive Office in Memphis, TN and is eligible for a hybrid work schedule.

Benefits & Perks

The following Benefits & Perks apply to Full-Time Roles Only.

We’re dedicated to ensuring children and their families have every opportunity to enjoy life’s special moments. We’re also committed to giving our staff excellent benefits so they can do the same.

  • Core Medical Coverage: (low cost low deductible Medical, Dental, and Vison Insurance plans)​
  • 401K Retirement Plan with 7% Employer Contribution
  • Exceptional Paid Time Off
  • Maternity / Paternity Leave
  • Infertility Treatment Program
  • Adoption Assistance
  • Education Assistance
  • Enterprise Learning and Development
  • And more

ALSAC is an equal employment opportunity employer. 

ALSAC does not discriminate against any individual with regard to race, color, religion, sex, national origin, age, sexual orientation, gender identity, transgender status, disability, veteran status, genetic information or other protected status.

No Search Firms:

ALSAC does not accept unsolicited assistance from search firms for employment opportunities.  All resumes submitted by search firms to any ALSAC employee or ALSAC representative via email, the internet or in any form and/or method without being contacted and approved by our Employee Experience team and without a valid written search agreement in place will result in no fee being paid if a referred candidate is hired by ALSAC.

Frequently Asked Questions

Is the salary disclosed for the Analyst II - Information Security position at alsacstjude?
The salary for this Analyst II - Information Security role at alsacstjude is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Analyst II - Information Security position at alsacstjude located?
This Analyst II - Information Security role at alsacstjude is based in Memphis, TN. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Analyst II - Information Security role at alsacstjude full-time or part-time?
This is listed as a Full time position. It is posted as a Analyst II - Information Security role in the American Lebanese Syrian Associated Charities department at alsacstjude.
Which team or department does the Analyst II - Information Security at alsacstjude belong to?
This Analyst II - Information Security position is part of the American Lebanese Syrian Associated Charities department at alsacstjude. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Analyst II - Information Security position at alsacstjude?
Click the "Apply Now" button on this page. You will be redirected to alsacstjude's official application portal hosted on workday where you can submit your application directly.
When was the Analyst II - Information Security job at alsacstjude posted?
This Analyst II - Information Security position at alsacstjude was posted on Aug 13, 2026. Apply as soon as possible — early applications are often reviewed first.
Analyst II - Information Security
alsacstjude
Apply for this role ↗

You'll be redirected to alsacstjude's official application page on Workday.