Analyst - Information Security
Contract: [[cust_TypeOfContract]]
Compensation: [[salaryMin]]
If you’ve worn a pair of glasses, we’ve already met.
We are a global leader in the design, manufacture, and distribution of ophthalmic lenses, frames, and sunglasses. We offer our industry stakeholders in over 150 countries access to a global platform of high-quality vision care products (such as the Essilor brand, with Varilux, Crizal, Eyezen, Stellest and Transitions), iconic brands that consumers love (such as Ray-Ban, Oakley, Persol, Oliver Peoples, Vogue Eyewear and Costa), as well as a network that offers consumers high-quality vision care and best-in-class shopping experiences (such as Sunglass Hut, LensCrafters, Salmoiraghi & Viganò and the GrandVision network), and leading e-commerce platforms.
Join our global community of over 190,000 dedicated employees around the world in driving the transformation of the eyewear and eyecare industry.
Discover more by following us on LinkedIn !
Your #FutureInSight with EssilorLuxottica
Are you willing to pioneer new frontiers, foster inclusivity and collaboration, embrace agility, ignite passion, and make a positive impact on the world? Join us in redefining the boundaries of what’s possible.
GENERAL FUNCTION
The IS Application Security Analyst supports the execution of the Vulnerability Management program by coordinating vulnerability assessments, penetration testing, and social engineering efforts. This role facilitates remediation across systems to reduce the organization’s attack surface, analyzes application security scan results, and ensures vulnerabilities are properly addressed through post-development testing. While not responsible for direct remediation, the Analyst collaborates with technical teams and leverages automated tools to validate fixes and maintain enterprise-wide security oversight.
MAJOR DUTIES AND RESPONSIBILITIES
- Monitor and analyze vulnerability data to identify and communicate technical risks across the organization.
- Support classification and impact assessment of newly discovered vulnerabilities.
- Conduct and assist with vulnerability assessments, penetration testing, and social engineering exercises.
- Provide threat intelligence updates, including attacker tactics, techniques, and procedures, to security teams.
- Review application security scan results with an understanding of code structures to offer actionable feedback.
- Assist in post-development testing to validate remediation of identified vulnerabilities.
- Coordinate and track remediation efforts across application, infrastructure, and operations teams to ensure timely resolution.
- Contribute to the strategic goals of the vulnerability management program.
- Aggregate and report findings from various scanning tools and platforms.
- Use IS tools (e.g., DLP, code scanners, external security profiles) to identify and analyze gaps in security controls.
- Participate in IT projects to ensure security is embedded by default and by design through the SDLC process.
- Build collaborative relationships across departments and with clients to support compliance and enhance satisfaction.
- Assist with regulatory and compliance activities, including audits, assessments, certifications, and client inquiries.
- Present vulnerability findings and risk assessments to IS leadership.
- Help identify and address capability gaps in vulnerability management services.
- Work with cross-functional teams to strengthen the organization’s security posture and integrate security into workflows.
- Pursue continuous learning to enhance effectiveness in supporting Information Security functions.
BASIC QUALIFICATIONS
- Bachelor’s degree in computer science, IT or equivalent
- 3+ years of experience in IT, Information Security, or Compliance
- Familiarity with major standards: SOC 1-2, ISO 27001/2, PCI DSS, HITRUST, SANS, and NIST
- Experience implementing compliance frameworks in financial services environments
- Broad understanding of IT hardware and software products
- Strong project management, presentation, communication, and writing skills
- Excellent analytical and problem-solving abilities
- Experience managing enterprise security and intrusion detection systems
- Ability to collaborate effectively across business and technology teams
- High-level understanding of application structures and code to assess and respond to scan results
PREFERRED QUALIFICATIONS
- Certified Information Systems Security Profession, PCI DSS, Certified HIPAA Privacy Security Expert, Certified Information Security manager, Global Information Assurance Certification, or related.
- Experience or knowledge with healthcare or health insurance
- Knowledge of CMS and HIPAA related vendor requirements
- Knowledge of Security SDLC tools
Our Diversity, Equity and Inclusion commitment
We are committed to creating an inclusive environment for all employees. We celebrate diversity and provide equal opportunities to all, regardless of race, gender, ethnicity, religion, disability, sexual orientation, or any other characteristic that makes us unique.
Recommended Jobs
CNC Routing, Cutting Repair Technician
Job Description Job Description IronRoad is conducting a confidential search for a CNC routing, cutting, installation, maintenance and repair technician/specialist that has significant experien…
Part-time Assistant Golf Coach
Share this job: Part-time Assistant Golf Coach 18 August 2025 Category: Golf Coach Jobs Country: USA State: Ohio Apply for this job. Click the button below to apply for this job. Apply Now…
Med/Surg | RN
Travel Med/Surg Registered Nurse (RN) – Night Shift in Akron, Ohio Advance your nursing career with a rewarding travel Med/Surg Registered Nurse (RN) job in Akron, Ohio (44304). This locum tenens o…
Restaurant Shift Leader
Description Why Wingstop? Because We Invest in YOU! Do you enjoy helping people, working with a team, and keeping things organized? If you said "Yes," we want YOU to be our next Restaurant Shif…
Nurse Consultant
Job Description Job Description POSITION OVERVIEW NCA is in search of an experienced Field Nurse Case Manager based near the following locations: San Francisco, CA San Jose, CA Modest…
Health, Safety and Environmental (HSE) Specialist
LOCATION: IKO Seville (Blair Rubber) 5020 Enterprise Parkway, Seville, OH 44273 Check out our introduction video here: WHAT’S IN IT FOR YOU? Competitive health, dental and insurance plans…
Used Vehicle Salesperson
Joseph Chevrolet is now under new management and is currently looking for Used Car Salespeople to join our team. Experience preferred but will train the right person.
Team Coordinator
Agency Summary: Lifeworks is a nonprofit organization dedicated to ensuring that individuals with autism lead healthy and enriched lives by providing essential clinical services across the lifespa…
Assistant athletic trainer
Assistant athletic trainer Full time/10 months, evening and/or weekend duties as required The following statements are intended to describe the general nature and level of …
CDL A Driver-Lease A Pete Only 2 Deductions
CDL A CLASS A DRIVER Need Class A drivers who want to lease a Pete Need 3 months or more experience We have 2021 and 2022 Pete 579s All trucks have Cummins engine All miles paid plus f…