Haystack
← Back to Jobs
Technology
CM

Program Security Analyst

Computer Merchant, Ltd., TheBoston, MA🇺🇸United StatesPosted Oct 7, 2026

Quick Overview

Salary
$95 - $100/hr
Seniority
Mid Senior
Work mode
Hybrid
Location
Boston, MA, United States
Posted
15 hours ago

Job Description

JOB TITLE: Program Security Analyst
JOB LOCATION: Boston, MA
WAGE RANGE*: $95-$100
JOB NUMBER: ITS87 RFR-FY27-003 - BEST Program Security Analyst
JOB DESCRIPTION:
The BEST Technical Security Analyst will work for the BEST Deputy Program Manager and Solution Technical Lead to support the adoption of the future state end user security solution and protocols. The program will deploy technical controls to meet specific end-user security requirements, enable processes and standards to ensure that security configurations are maintained in the new Human Resource Management and Payroll solution.

The BEST Technical Security Analyst will be a part of the BEST Technical Implementation team and work closely with the other members of the BEST team to develop and implement a comprehensive information security program. This includes:
Implementing security policies, processes and standards related to end user roles, data access for application users and how users will be provisioned and de-provisioned. Providing operational support for the BEST team, product vendors, and CMW users.

Specific Duties
Partner with the BEST Team, SI, and product vendors, CTR and EOTSS to identify security requirements, using methods that may include risk and business impact assessments.

Components of this activity include but are not limited to

o Provide operational support as defined by SLA requirements agreed to by the Commonwealth, the product vendor, and SI. o Implementation of Commonwealth IT policies related to user security and data security.
o Work with the Commonwealth Risk Management Office in their assessments and recommended controls regarding data security and security operations.

Works with BEST information security leadership to develop strategies, procedures and recommended roles and responsibilities to enforce security requirements and address identified risks related to the use of the new solution. Performs configuration updates and execution role in application development and implementation related to security requirements and controls, ensures that security controls are implemented as planned and that security and access needs are addressed throughout the User life cycle.

Participates and supports the data conversion of end users from the legacy system to the new system. Works with BEST, CTR's, and EOTSS' CSOs, CIOs, and the Commonwealth's Risk Management Office to identify, select and implement technical controls related to data security and to implement security processes and procedures that ensure security controls are managed and maintained both centrally through the new solution, and within agencies if certain security management tasks are decentralized.

Advises the BEST Team and SI and product vendors regarding end user security roles and groups, data access controls and security role provisioning and de-provisioning protocols to ensure that data are accessed appropriately in the new solution. Supports the BEST Team and Commonwealth agencies in identifying approved end users of the new solution and coordinating provisioning of users for Day One go live. Supports the definition and implementation of the security needs along with the BEST Security Workstream. Understanding of Human Resource and Payroll systems security requirements.

More than 3 years of experience in developing, documenting, and maintaining security policies, processes, procedures, and standards. Knowledge of network infrastructure, including routers, switches, firewalls, and the associated network protocols and concepts. Demonstrated operational security support experience in a Software as a Service (SaaS) solution. Experience with WorkDay Human Resource and Payroll solution. Experience with WorkDay Prism data and reporting solution. Experience with WorkDay user security management as a member of a business (non-IT) team.

Minimum Entrance Requirements
Bachelor's degree in computer science, system analysis or a related study, or equivalent experience in the field of audit compliance and security risk and compliance management.

Minimum of five years of implementation and operational experience in IT, with a knowledge in the following technical disciplines: application development, audit compliance, database management, infrastructure and network design, security risk and compliance management, and cloud solutions
Equal opportunity employer as to all protected groups, including protected veterans and individuals with disabilities

  • While an hourly range is posted for this position, an eventual hourly rate is determined by a comprehensive salary analysis which considers multiple factors including but not limited to: job-related knowledge, skills and qualifications, education and experience as compared to others in the organization doing substantially similar work, if applicable, and market and business considerations. Benefits offered include medical, dental and vision benefits; dependent care flexible spending account; 401(k) plan; voluntary life/short term disability/whole life/term life/accident and critical illness coverage; employee assistance program; sick leave in accordance with regulation. Benefits may be subject to generally applicable eligibility, waiting period, contribution, and other requirements and conditions. Benefits offered are in accordance with applicable federal, state, and local laws and subject to change at TCM's discretion.
#Dice

Similar jobs