Unfortunately, this job posting is expired.
Don't worry, we can still help! Below, please find related information to help you with your job search.
Some similar recruitments
Supervisor, Security Operations Center (Soc)
Recruited by JM Family Enterprises 8 months ago Address , Deerfield Beach
Systems Analyst Jobs
Recruited by GreenLight Group 10 months ago Address South Jordan, UT, United States
Security Analyst - Compliance (Remote)
Recruited by Networking For Future (NFF) 10 months ago Address Washington, DC, United States
Remote Tier 1 Soc Analyst (Security Analyst Senior)
Recruited by Elevance Health 10 months ago Address Washington, United States
Compliance Analyst Jobs
Recruited by Cherokee Federal 11 months ago Address Washington, DC, United States
Sr Security Analyst Jobs
Recruited by MetroStar 11 months ago Address Washington, DC, United States
Overnight Safety And Security
Recruited by Marriott Vacations Worldwide 11 months ago Address , Park City, 84060, Ut
#Transparency Compliance Analyst Jobs
Recruited by ABBVIE 11 months ago Address , San Juan, Pr
Compliance Analyst Ii Jobs
Recruited by GDH 11 months ago Address Washington, DC, United States
Junior Soc Analyst Jobs
Recruited by Fusion Technology 1 year ago Address Washington, DC, United States
Compliance Analyst Iii Jobs
Recruited by GDH 1 year ago Address Washington, DC, United States
Security Analyst Jobs
Recruited by Meta 1 year ago Address , Menlo Park, 94025, Ca $106,000 - $152,000 a year
Compliance Analyst Jobs
Recruited by CCBank 1 year ago Address , Pleasant Grove, Ut
Analyst-Compliance Jobs
Recruited by Amex 1 year ago Address , Sandy, 84094, Ut $55,000 - $105,000 a year

Security Analyst Jobs

Company

Washington Global Consulting

Address Washington, DC, United States
Employment type CONTRACTOR
Salary
Expires 2023-07-24
Posted at 10 months ago
Job Description

The Security Analyst Compliance will be responsible for monitoring, managing and closing existing compliance issues while also ensuring that internal systems are compliant with security standards. In carrying out these functions, the responsibilities include the identification, evaluation and interpretation of regulatory, statutory and member security requirements, control deficiencies and information security risks.

Core Duties:

-Perform security assessments and review system security documentation based on FISMA and FedRAMP requirements

-Develop, review, and update Certification and Accreditation (C&A) packages and Authority to Connect (ATC) documentation for systems hosted and owned by D.C. and Cloud environments

-Maintain and manage the required systems security documentation on the SharePoint Site:

-System Security Plans (SSP)

- Familiar with NIST Risk Assessments (RA)

-Contingency Plans (CP) and testing

-Federal Information Processing Standard Publication 199 (FIPS 199) Security Categorization

-Privacy Impact Assessments (PIA)

-Security Control Assessments (SCA) Certification

-Annual and quarterly security documentation review and testing

-ATO / ATC certifications and re-certifications

-Security Self Assessments (SSA)

-Memoranda of Understanding (MOU)

-Interconnection Security Agreement(s) (ISA)

-Develop and update the IRS Safeguard Security Report (SSR)

-Develop and update the IRS Corrective Action Plans (CAPS)

-Develop and update the IRS Inspection Plan and Inspection Reports

-Coordinate with departmental agency staff as necessary to provide guidance on the process of conducting risk analysis and computer security reviews, security assessments, the preparation of Disaster Recovery Plans, security plans, and the processes involved in the D.C. required activities for the Certification and Accreditation of Major Information and General Support Systems (MIS/GSS)

-Develop IT security Policies

-Develop IT security Procedures

-Manage the Computer Security Awareness Training and Role-Based Training projects

-Develop, review, update and publish Rules of Behavior

-Develop and implement information sharing regarding cyber security best practices and common vulnerabilities

-Administer and manage the site and content blocking, event monitoring, network intrusion detection systems

-Conduct, as needed, vulnerability assessment, and security risk analysis

-Support process, technical and R&D activities

-Perform research and preliminary proof-of-concept testing of security tools

-Prepare and submit SAR responses

-Manage day-to-day security operations, including assisting on investigative matters related to information security as requested

-Conduct Plan of Action and Milestones (PO&AM) reviews, oversight and reporting as well as Privacy Impact Assessments

-Coordinate data collection, analysis and reporting for IT security data calls, Freedom of Information Act (FOIA) -Requests, Incident reports

-Excellent attention to detail

-Excellent oral and written communication skills

-Ability to work in a fast-paced, dynamic environment

-Ability to interface with all levels of management

-Ability to perform complex tasks with minimal supervision and guidance

-Excellent time management, scheduling, and organizational skills

-Ability to work well independently or in a team setting

-Knowledge and understanding of FISMA, NIST and SOC-2 information security standards

-Working knowledge of common IT security-related regulations and/or standards such as Sarbanes-Oxley and ISO highly desired

-SOC-2 audit experience from a major professional services firm



Responsibilities:

1. Formulates and defines systems scope and objectives based on both user needs and a thorough understanding of business systems and industry requirements.

2. Devises or modifies procedures to solve complex problems considering computer equipment capacity and limitations, operation time, and form of desired results. Includes analysis of business and user needs, documentation of requirements, and translation into proper system requirements specifications.

3. Provides consultation on complex projects and is considered to be the top-level contributor/specialist of most phases of systems analysis, while considering the business implications of the application of technology to the current and future business environment.

Minimum Education :

Bachelor’s degree in IT or related field or equivalent experience;

Certification Requirements (current)

Project Management Professional (PMP) Certification

At least one industry certification (e.g. CISA, CISM, CRISC, CISSP, ISAAP) highly desired


Interview type: Webcam or in person

Position type: In office/hybrid

W2 or 1099(C2C)

No Visa Sponsorship

Must be US citizen or have green card