Senior Information Sysems Security Analyst

2 weeks ago


Washington, United States Gilder Search Group Full time
Summit Technologies, Inc.

is seeking a

Senior

Information Systems Security Analyst

to support our government client.

Senior Information Systems Security Analyst support IT management with control assessment, development, and maintenance, and risk assessment and response development.

This is a hybrid role based in Washington, DC. Candidates must be eligible for a Public Trust clearance.

Duties & Responsibilities:
Develop and maintain IT security controls per NIST SP and agency security standards.
Support the Information System Security and Privacy Officer (ISSPO) with managing and documenting the agency's security posture.
Collect and validate control implementation statements from subject matter experts.
Conduct risk assessments for security issues and propose resolutions.
Communicate and document control deficiencies for POA&M consideration.
Support Continuous Security Monitoring for compliance with agency security policy.
Assist in developing security policies to ensure compliance.
Conduct security reviews for changes impacting hardware, software, baselines, and connections.
Review and assess POA&M outputs and recommend additional work or closure.
Support IT Governance, Risk, and Compliance activities, including standards management.
Provide information for status reports, briefings, schedules, and project plans (written and oral).
Stay up-to-date on IT trends and security standards.
Provide quality deliverables with minimal edits and provide feedback on federal security doctrine.

Skills & Experience:
A solid understanding of IT security controls, tools, and concepts.
Experience working with IT platforms such as Microsoft Office 365, Azure, Cisco, Oracle, etc.
Understanding of OMB M-22-09 and EO 14028.
Experience with NIST Risk Management and Cybersecurity Framework, FISMA, NIST 800-53, and IT control processes.
Experience implementing security measures within information systems engineering projects.
Understanding of web application security concepts, such as OWASP Top 10 vulnerabilities.
Knowledge of cloud security principles and best practices, particularly for major cloud platforms like AWS, Azure, or Google Cloud.
Familiarity with GRC frameworks/tools (Archer, eMASS, CSAM) and SA&A tools (Xacta).
Knowledge of cyber-attack patterns, Tactics, Techniques, and Procedures.
Ability to adapt security processes/tools to evolving landscapes and risk scenarios.
Proficiency in network security principles, including firewalls, intrusion detection/prevention systems (IDS/IPS), VPNs, and secure network architectures.
Strong understanding of operating systems (e.g., Windows, Linux/Unix) and their security features and vulnerabilities.
Knowledge of encryption protocols and techniques, such as SSL/TLS, AES, RSA, etc.
Familiarity with security assessment tools and techniques, including vulnerability scanning, penetration testing, and ethical hacking.
Experience with security information and event management (SIEM) systems for log analysis and threat detection.
Good interpersonal and communication skills (verbal and written).
Experience producing high-quality deliverables with minimal edits, quick review, and feedback on federal security doctrine.
Ability to document processes and explain complex policies in simple terms.
Familiarity with latest IT trends and security standards.
Excellent analytical thinking, and problem-solving skills.

Education & Certification:
Bachelor's degree and nine years relevant IT experience; Or
Graduate degree and seven years relevant IT experience.
Any of the following certifications (CISSP, CISM, CompTIA Security+).

Security Requirements:
All candidates must be eligible to obtain a Public Trust Clearance.
If you feel you are qualified and want to be considered for this position, please supply the following to:

, and please put the job number

'6664 ' in the subject line:
Updated resume including MM/YYYY for each employer.
Best times/dates to interview (plus phone # you can best be contacted at).
Availability to start once given formal offers.
Summit Technologies Inc. appreciates your interest. We will contact the best matching prospects and will consider you for future opportunities. We will not submit your resume without your prior knowledge and consent. We are an equal opportunity employer.

All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, national origin, disability or veteran status.

#J-18808-Ljbffr

  • Washington, United States Summit Technologies Full time

    Summit Technologies, Inc. is seeking a Senior Information Systems Security Analyst to support our government client. Senior Information Systems Security Analyst support IT management with control assessment, development, and maintenance, and risk assessment and response development. This is a hybrid role based in Washington, DC. Candidates must be eligible...


  • Washington, United States Summit Technologies Full time

    Summit Technologies, Inc. is seeking a Senior Information Systems Security Analyst to support our government client. Senior Information Systems Security Analyst support IT management with control assessment, development, and maintenance, and risk assessment and response development. This is a hybrid role based in Washington, DC. Candidates must be eligible...


  • Washington, United States Summit Technologies Full time

    Summit Technologies, Inc. is seeking a Senior Information Systems Security Analyst to support our government client. Senior Information Systems Security Analyst support IT management with control assessment, development, and maintenance, and risk assessment and response development. This is a hybrid role based in Washington, DC. Candidates must be eligible...


  • Washington, United States Summit Technologies, Inc. Full time

    Job DescriptionJob DescriptionSummit Technologies, Inc. is seeking a Senior Information Systems Security Analyst to support our government client. Senior Information Systems Security Analyst support IT management with control assessment, development, and maintenance, and risk assessment and response development. This is a hybrid role based in Washington, DC....


  • Washington, United States Insight Global Full time

    A federal IT services client of Insight Global is looking for 2 Senior Information Security Analysts to join their team in Washington, DC. This role is primarily remote, with onsite requirements as needed. Personnel must be eligible for a Public Trust.The Senior Information Assurance Analyst will be an integral part of a team responsible for supporting the...


  • Washington, United States General Dynamics Information Technology Full time

    We are GDIT. We support and secure some of the most complex government, defense, and intelligence projects across the country. At GDIT, security management is not just a singular part of our mission—it connects every one of us because it’s embedded into every aspect of what we do. GDIT is your place. You make it your own by bringing your ideas and unique...


  • Washington, United States Excentium Full time

    Information Assurance Analyst - Senior CITIZENSHIP: US Citizenship LOCATION: Remote CLEARANCE: N/A Excentium, Inc. is a Service-Disabled Veteran Owned Small Business (SDVOSB) passionate about reducing the vulnerabilities of our Nation's Cyberspace. Since 2006, we have attacked cyber security challenges on two fronts: by partnering with government to reduce...


  • Washington, United States ManTech Full time

    Secure our Nation, Ignite your FutureBecome an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech, you'll help protect our national security while working on innovative projects that offer opportunities for advancement.Currently, ManTech is seeking a motivated, career and...


  • Washington, United States Science Applications International Corporation Full time

    SAIC Office of Security is currently seeking Senior Security Analyst to support the Washington, DC 80 M Street Location OperationsDuties and Responsibilities:Self-Inspections/ Government Inspections as required Maintaining compliance with corporat Security Analyst, Security, Analyst, Senior, Operations, Government


  • Washington, United States General Dynamics Information Technology Full time

    Type of Requisition: Regular Clearance Level Must Currently Possess: Secret Clearance Level Must Be Able to Obtain: Top Secret Suitability: Public Trust/Other Required: Job Family: Information Security Job Qualifications: **Skills**:Information System Security, Security Requirements, Systems Security Certifications: **Experience**: 5 + years of related...


  • Washington, United States MUNICIPAL SECURITIES RULEMAKING BOARD Full time

    The Information Security Analyst is responsible for securing the MSRB by supporting existing controls and processes across multiple dimensions and domains, including MSRB Web Applications, Cloud environments, networks, SaaS platforms, and enterprise systems. The analyst will support operational security processes by triaging our security alerts, phishing...


  • Washington, United States Municipal Securities Rulemaking Board Full time

    The Municipal Securities Rulemaking Board (MSRB) seeks an Information Security Analyst who will play a key role in safeguarding our organization by actively engaging in operational security procedures. The Information Security Analyst will manage day-to-day security tasks, which include managing alerts, investigating phishing incidents, resolving end user...


  • Washington, United States Super Systems Inc Full time

    This role is hybrid - 2x a week onsite-3x a week REMOTE The Senior Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development. Specifically, this job requires the following: - Develop and maintain IT security controls per NIST SP 800-53 and Agency...


  • Washington, United States Super Systems Inc Full time

    The Senior Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development. Specifically, this job requires the following: - Develop and maintain IT security controls per NIST SP 800-53 and Agency Security Policy standards. - Consult with experts to ensure...


  • Washington, United States Municipal Securities Rulemaking Board Full time

    The Municipal Securities Rulemaking Board (MSRB) seeks an Information Security Analyst who will play a key role in safeguarding our organization by actively engaging in operational security procedures. The Information Security Analyst will manage day-to-day security tasks, which include managing alerts, investigating phishing incidents, resolving end user...


  • Washington, United States Municipal Securities Rulemaking Board Full time

    The Municipal Securities Rulemaking Board (MSRB) seeks an Information Security Analyst who will play a key role in safeguarding our organization by actively engaging in operational security procedures. The Information Security Analyst will manage day-to-day security tasks, which include managing alerts, investigating phishing incidents, resolving end user...


  • Washington, United States Municipal Securities Rulemaking Board Full time

    The Municipal Securities Rulemaking Board (MSRB) seeks an Information Security Analyst who will play a key role in safeguarding our organization by actively engaging in operational security procedures. The Information Security Analyst will manage day-to-day security tasks, which include managing alerts, investigating phishing incidents, resolving end user...


  • Washington, United States Municipal Securities Rulemaking Board Full time

    The Municipal Securities Rulemaking Board (MSRB) seeks an Information Security Analyst who will play a key role in safeguarding our organization by actively engaging in operational security procedures. The Information Security Analyst will manage day-to-day security tasks, which include managing alerts, investigating phishing incidents, resolving end user...


  • Washington, United States E-Logic, Inc. Full time

    The job position is for an experienced Information Security Analyst at the Department of Homeland Security (DHS), as a part of the agency's cybersecurity team. The Information Security Analyst will take the utmost explanation concerning DHS’ systems, networks, and data by way of security events and incidents monitoring, analyzing and...


  • Washington, United States General Dynamics Information Technology Full time

    || THIS POSITION IS CURRENTLY BEING PIPELINED IN PREPARATION FOR THE ANTICIPATED DEMAND FOR CANDIDATES || Seize your opportunity to make a personal impact as a Senior Business Systems Analyst supporting the United States Postal Service. GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. At GDIT,...