Security Analyst

7 days ago


Arlington, United States American Association of Motor Vehicles Full time
Job DescriptionJob Description

Position Summary:

AAMVA operates complex IT systems which support the real time information exchange required for the issuance of driver licenses, vehicle titling, and document verifications. The IT Security Analyst is responsible for documenting, maintaining, and monitoring security policies, standards, and procedures in accordance with Federal Information Security Management Act (FISMA) and SOC 2 Type II compliance regulations. Additionally, the IT Security Analyst will coordinate and lead AAMVA’s FedRAMP compliance efforts and ensure the completion of FedRAMP required documents based on NIST 800-53 rev 5 FedRAMP Mod controls.

The position requires a talented individual with a blend of skills including leadership, technical, project management, and communication, both written and oral. The IT Security Analyst will join AAMVA Security team and report to the Manager of Governance, Risk and Compliance.

Essential Duties and Responsibilities:

  • Operate with a high degree of independence and self-leadership regarding the management of the AAMVA’s compliance activities and associated risk activities.
  • Establish guidelines for the development and maintenance of security documentation against SOC 2 Type II and NIST/FedRAMP standards.
  • Facilitate cross collaborative discussions with IT teams to assess and validate control design and implementation details.
  • Document and maintain effective and practical policies and procedures to secure sensitive data, and ensure compliance with relevant control objectives, legislation, and other contractual obligations.
  • Recommend programmatic and technical directions to continuously enhance the maturity of AAMVA’s security controls.
  • Internally assess, evaluate, and make recommendations to Management regarding the adequacy of the security controls and the level of compliance for AAMVA’s information systems.
  • Support the CISO in strengthening the organization-wide information security compliance program.
  • Interacts in both oral and written communications with all levels of staff including technical staff, contract, finance, human resources, senior management, legal, and external auditors.
  • Develop comprehensive remediation briefings outlining security gaps/deficiencies identified in audit findings (IT Financial Audit, SOC 2 Type II Audit, FedRAMP Assessment)
  • Perform other duties as assigned to maintain the reputation of the organization as a viable business partner.

Direct Reports:

None

QUALIFICATIONS

Formal Education:

  • Bachelor’s degree with six to eight years of experience in information security, or IT operations
  • College level courses and/or equivalent work experience may be substituted
  • Security or auditor certifications are a definitive plus (such as CISA, CISM, CCSP)

Knowledge, Skills and Abilities Required:

  • Strong working knowledge of FedRAMP requirements, processes, and controls.
  • Strong project management or project coordination experience (ex: defining project scope, implementing project timelines and milestones, driving deliverables, identifying risks, gaps, and deficiencies with organization processes).
  • Excellent Interpersonal and communication skills
  • Strong understanding of cloud security principles and best practices (e.g. Microsoft Azure)
  • Experience developing and maintaining Corrective Action Plans and Standard Operating Procedures
  • Proficient in MS Office (Word, Excel, and PowerPoint) and SharePoint
  • Strong attention to detail; ability to multitask and prioritize workload and meet deadlines.
  • Solid experience with compliance frameworks supporting FISMA/NIST, SOC2, and PCI.
  • Detailed oriented
  • Ability to adapt quickly to new technologies and changing regulatory landscape
  • United States citizenship required.

Disclaimer Statement: The preceding job description has been written to reflect management’s assignment of essential functions. It does not prescribe or restrict the tasks that may be assigned.

AAMVA is an Equal Opportunity Employer/Veterans/Disabled



  • Arlington, United States US Defense Security Cooperation Agency Full time

    **Duties**: As a SECURITY ASSISTANCE ANALYST at the GS-0301-11/12/13 some of your typical work assignments may include: - Reviews, coordinates, and recommends revisions to legislative proposals and higher Executive Branch policies regarding assigned cooperation/security security assistance programs within established DoD (Department of Defense) policy. -...


  • Arlington, United States Motion Recruitment Full time

    Security Analyst The Security Analyst's primary duty is to manage security documentation across different environments, with a focus on Cloud tenants and IRS customers. Responsibilities may entail creating security documentation, utilizing RegScale, aiding in IRS, FedRAMP, SOC, or FISMA authorization/assessment processes, preparing the operations team, and...


  • Arlington, United States Cherokee Nation Businesses Full time

    Job DescriptionPhysical Security Specialist- Jr. Analyst This position requires an active Secret clearance. Receives work guidance from a geographical region's senior physical security specialist or lead analyst within the Project Coordination Division of Diplomatic Security's Countermeasures Directorate. Provides dedicated analytical, logistical and...


  • Arlington, United States Cherokee Nation Businesses Full time

    Job DescriptionJr Physical Security Specialist Analyst This position requires an active Secret clearance. Receive work guidance from a geographical regions senior physical security specialist or the lead program analyst within the Project Coordination Division (PCD) of Diplomatic Security's (DS) Countermeasures Directorate. Provide dedicated analytical,...


  • Arlington, United States Cherokee Nation Businesses Full time

    Jr Physical Security Specialist Analyst This position requires an active Secret clearance. Receive work guidance from a geographical regions senior physical security specialist or the lead program analyst within the Project Coordination Division (PCD) of Diplomatic Security’s (DS) Countermeasures Directorate. Provide dedicated analytical,...


  • Arlington, United States Cherokee Nation Businesses Full time

    Job DescriptionPhysical Specialist- Jr. Analyst This position requires an active Secret clearance. Receive work guidance from a geographical regions senior physical security specialist or the lead program analyst within the Project Coordination Division (PCD) of Diplomatic Security's (DS) Countermeasures Directorate. Provide dedicated analytical, logistical...


  • Arlington, United States Motion Recruitment Full time

    Information Security Analyst The Information Security Analyst, a member of the Cybersecurity Operations Group, will report to the Director of Information Security & Assurance. This role involves overseeing ongoing monitoring of the network environment to identify and respond to malicious activities and potential threats. The candidate must be local to the...


  • Arlington, Virginia, United States AES Corporation Full time

    The Analyst-ISOC, Infrastructure Security position directly supports the AES Infrastructure Security organization for all ongoing activities that serve to provide access to and protect the confidentiality, integrity, and availability of employee and business information. This follows compliance with organizational policies and procedures along with...


  • Arlington, Virginia, United States AES Corporation Full time

    The Analyst-ISOC, Infrastructure Security position directly supports the AES Infrastructure Security organization for all ongoing activities that serve to provide access to and protect the confidentiality, integrity, and availability of employee and business information. This follows compliance with organizational policies and procedures along with...


  • Arlington, United States SecuriGence LLC Full time

    Job Title: Cyber Security Analyst Location: Arlington, Virginia Clearance Level: Top Secret Clearance Summary We deliver essential technology services to our customers in support of their missions to sustain the national security and economic interests of our nation. SecuriGence is seeking an experienced Cyber Security Analyst to help contribute to our...


  • Arlington, United States SecuriGence LLC Full time

    Job DescriptionJob DescriptionJob Title: Cyber Security Analyst Location: Arlington, VirginiaClearance Level: Top Secret ClearanceSummaryWe deliver essential technology services to our customers in support of their missions to sustain the national security and economic interests of our nation. SecuriGence is seeking an experienced Cyber Security Analyst to...


  • Arlington, United States Saliense Consulting LLC Full time

    Job DescriptionJob DescriptionWho is Saliense?Saliense is a growing Management and Technology Consulting Solutions provider based out of Mclean, VA. We work to solve our client’s toughest challenges within the Defense, Civilian, Financial, and Healthcare industries. Our diverse employees support vital missions for government and commercial customers. For...


  • Arlington, United States Saliense Consulting LLC Full time

    Job DescriptionJob DescriptionWho is Saliense?Saliense is a growing Management and Technology Consulting Solutions provider based out of Mclean, VA. We work to solve our client’s toughest challenges within the Defense, Civilian, Financial, and Healthcare industries. Our diverse employees support vital missions for government and commercial customers. For...


  • Arlington, United States RedMatter Solutions Full time

    RedMatter Solutions is seeking a detail-oriented and experienced Mid-Level Security Compliance Analyst to join our dynamic team. This remote role involves ensuring our compliance with industry regulations, improving our security posture, and working closely with various teams to manage and mitigate risks. As an employee of RedMatter Solutions based in...


  • Arlington, United States AES Corporation Full time

    The Analyst-ISOC, Infrastructure Security position directly supports the AES Infrastructure Security organization for all ongoing activities that serve to provide access to and protect the confidentiality, integrity, and availability of employee and business information. This follows compliance with organizational policies and procedures along with...


  • Arlington, United States Quadrant Full time

    Information Assurance Analyst Arlington, VAMUST: Must have an Active Secret Clearance Experienced Information Assurance Analyst 3+ years of related work experience; CCNA-Security or CySA+ or GICSP or GSEC or Security+ CE or CND or SSCP is Required Command Cyber Readiness Inspection (CCRI) experience is desired Experience in the implementation of security...

  • SAP Security Analyst

    4 weeks ago


    Arlington, United States SAIC Full time

    Job ID: 2405435 **Location**:ARLINGTON, VA, US **Date Posted**:2024-04-15 **Category**:Security **Subcategory**:Security **Schedule**:Full-time **Shift**:Day Job **Travel**:No **Minimum Clearance Required**:TS/SCI **Clearance Level Must Be Able to Obtain**:None **Potential for Remote Work**:No **Description** SAIC is seeking a **SAP Security...


  • Arlington, United States RedMatter Solutions Full time

    Job DescriptionJob DescriptionSalary: Job Description:RedMatter Solutions is seeking a detail-oriented and experienced Mid-Level Security Compliance Analyst to join our dynamic team. This remote role involves ensuring our compliance with industry regulations, improving our security posture, and working closely with various teams to manage and mitigate risks....


  • Arlington, Virginia, United States SecuriGence LLC Full time

    Job Title: Security Operations Center Analyst (SOC)Location: Arlington, VirginiaClearance Level: Top Secret ClearanceSummaryWe deliver essential technology services to our customers in support of their missions to sustain the national security and economic interest of our nation. SecuriGence is seeking a talented Security Operations Center Analyst (SOC) to...

  • Security Analyst

    2 weeks ago


    Arlington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionARGO Cyber Systems is seeking a Cyber Security Incident ResponderARGO is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing new cyber capabilities to address emerging threats. In...