Senior Information Systems Security Analyst

3 weeks ago


Washington, United States SAIC Full time
Description

SAIC is looking for a Senior Information Systems Security Analyst to join our team supporting an important US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for IT Security Risk and Compliance support by providing direct support to the Information System Security and Privacy Officer (ISSPO) in managing and documenting the ongoing security posture of the agency.The Senior Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development. Specifically, this job requires the following:
  • Develop and maintain IT security controls per NIST SP 800-53 and Agency Security Policy standards.
  • Collect and validate control implementation statements from subject matter experts.
  • Consult with experts to ensure work instructions align with agency security standards.
  • Conduct risk assessments for security issues and propose resolutions.
  • Document and communicate control deficiencies for POA&M consideration.
  • Support Continuous Security Monitoring for compliance with agency Security Policy
  • Assist in developing security policies, ensuring compliance, and updating documentation.
  • Conduct security reviews for changes impacting hardware, software, baselines, connections, or applications.
  • Review and assess POA&M outputs, recommending additional work or closure.
  • Support IT Governance, Risk, and Compliance activities, including standards management.
  • Provide information for status reports, briefings, schedules, and project plans in written and oral form.
This role requires on site work in Washington, D.C. 2 days per week.

Qualifications

EDUCATION & EXPERIENCE:
  • Undergraduate degree with nine years or Graduate degree with seven years of IT control or IT security experience in a technical environment with a variety of IT systems.
  • One or more current Security certifications (CISSP, CISM, Security+).
  • Experience serving in an information system engineer/administrator role implementing security controls.
REQUIRED SKILLS:
  • A solid understanding of IT security controls, tools, and concepts.
  • Experience working in a technical environment with IT platforms such as Microsoft Office 365, Azure, Cisco, Oracle, etc.
  • Understanding of OMB M-22-09 and EO 14028
  • Experience with NIST Risk Management and Cybersecurity Framework, FISMA, NIST 800-53, and IT control processes.
  • Experience implementing security measures within information systems engineering projects.
  • Understanding of web application security concepts, such as OWASP Top 10 vulnerabilities.
  • Knowledge of cloud security principles and best practices, particularly for major cloud platforms like AWS, Azure, or Google Cloud.
  • Familiarity with GRC frameworks/tools (Archer, eMASS, CSAM) and SA&A tools (Xacta).
  • Knowledge of cyber-attack patterns, Tactics, Techniques, and Procedures.
  • Ability to adapt security processes/tools to evolving landscapes and risk scenarios.
  • Proficiency in network security principles, including firewalls, intrusion detection/prevention systems (IDS/IPS), VPNs, and secure network architectures.
  • Strong understanding of operating systems (e.g., Windows, Linux/Unix) and their security features and vulnerabilities.
  • Knowledge of encryption protocols and techniques, such as SSL/TLS, AES, RSA, etc.
  • Familiarity with security assessment tools and techniques, including vulnerability scanning, penetration testing, and ethical hacking.
  • Experience with security information and event management (SIEM) systems for log analysis and threat detection.
  • Fluency in spoken/written English for technical content, with strong communication skills.
  • Experience producing high-quality deliverables with minimal edits, quick review, and feedback on federal security doctrine.
  • Ability to thrive in a fast-paced environment, outstanding customer service skills.
  • Ability to document processes, explain complex policies in simple terms.
  • Familiarity with latest IT trends, security standards, excellent analytical thinking, and problem-solving skills.

Candidates for consideration must be eligible to obtain and maintain a Public Trust clearance.

SAIC accepts applications on an ongoing basis and there is no deadline.

Covid Policy: SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site.

  • Washington, Washington, D.C., United States SAIC Career Site Full time

    Description SAIC is looking for a Senior Information Systems Security Analyst to join our team supporting an important US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for IT Security Risk and Compliance support by providing direct support to the Information System Security and Privacy...


  • Washington, United States Information Protection Solutions Full time

    Job DescriptionJob DescriptionInformation systems security officers (ISSO) research, develop, implement, test and review an organization's information security in order to protect information and prevent unauthorized access. Officers inform users about security measures, explain potential threats, install software, implement security measures and monitor...


  • Washington, United States Watershed Security Full time

    COMPANY OVERVIEW Watershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust and respect with our...


  • Washington, United States Summit Technologies Full time

    Summit Technologies Inc. is seeking a Senior Information Systems Security Analyst to support our government client. The Senior Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development. This is a hybrid role based in Washington, DC. Candidates must be...


  • Washington, United States Information Protection Solutions Full time

    Job DescriptionJob DescriptionRESPONSIBILITYAnalyze science, engineering, business, and other data processing problems to implement and improve computer systems. Analyze user requirements, procedures, and problems to automate or improve existing systems and review computer system capabilities, workflow, and scheduling limitations. May analyze or recommend...


  • Washington, United States Watershed Security Full time

    Job DescriptionJob DescriptionCOMPANY OVERVIEWWatershed Security is a Veteran Owned Small Business and a leader in providing quality Cyber Security Services to the Federal Government. Watershed is a great place to work, offering a challenging and respectful work environment. We are growing fast and strive to deliver our vision every day: “To inspire trust...


  • Washington, United States Summit Technologies, Inc. Full time

    Job DescriptionJob DescriptionSummit Technologies Inc. is seeking a Senior Information Systems Security Analyst to support our government client. The Senior Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development. This is a hybrid role based in...


  • Washington, United States Summit Technologies Full time

    Summit Technologies Inc. is seeking an Information Systems Security Analyst to support our government client. The Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development. This is a hybrid role based in Washington, DC. Candidates must be eligible for a...


  • Washington, United States GVD SYSTEMS LLC Full time

    **Title: Information System Security Officer** **Location: Washington, DC, US Onsite** **Job description** **Executive Summary**: HRUCKUS seeks a Cloud Information System Security Officer (ISSO) - Senior Level (TS required, eligible for SCI) for a role in Washington, DC. **Roles and Responsibilities**: - Services to support IS Security performed by the...


  • Washington, United States Summit Technologies, Inc. Full time

    Job DescriptionJob DescriptionSummit Technologies Inc. is seeking an Information Systems Security Analyst to support our government client. The Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development.This is a hybrid role based in Washington, DC....


  • Washington, United States Omniscius Consulting Full time

    Job DescriptionJob DescriptionWe are seeking a highly experienced Senior Information System Security Officer (ISSO) to lead our information security Compliance Branch to support a homeland security customer in Washington, DC. The ideal candidate will have over 10 years of experience in managing complex systems within our Agency, demonstrating a deep...


  • Washington, United States Municipal Securities Rulemaking Board Full time

    The Municipal Securities Rulemaking Board (MSRB) seeks an Information Security Analyst who will play a key role in safeguarding our organization by actively engaging in operational security procedures. The Information Security Analyst will manage day-to-day security tasks, which include managing alerts, investigating phishing incidents, resolving end user...


  • Washington, United States Municipal Securities Rulemaking Board Full time

    The Municipal Securities Rulemaking Board (MSRB) seeks an Information Security Analyst who will play a key role in safeguarding our organization by actively engaging in operational security procedures. The Information Security Analyst will manage day-to-day security tasks, which include managing alerts, investigating phishing incidents, resolving end user...


  • Washington, United States Municipal Securities Rulemaking Board Full time

    The Municipal Securities Rulemaking Board (MSRB) seeks an Information Security Analyst who will play a key role in safeguarding our organization by actively engaging in operational security procedures. The Information Security Analyst will manage day-to-day security tasks, which include managing alerts, investigating phishing incidents, resolving end user...


  • Washington, United States JRC Integrated Systems, Inc. Full time

    JRC is searching for an enthusiastic, highly motivated Senior Analyst, Fleet Liaison to join our amazing Maritime and Security Team in supporting the Navy's Strategic Systems Programs in the planning, coordination, and execution of the new Nuclear Sea-Launched Cruise Missile (SLCM-N) program. As the Senior Analyst, Fleet Liaison, you will... * Coordinate...


  • Washington, United States Creative Visions Full time

    **Senior Information System Security Officer** Washington, District of Columbia Minimum Experience **Experienced** Creative Visions is seeking a Sr. Information System Security Officer (ISSO) to support multiple federal agencies through the Continuous Diagnostic& Mitigation (CDM) Program. The CDM Program is a high-profile, high-visibility, cybersecurity...


  • Washington, United States JRC Integrated Systems, Inc. Full time

    JRC team is actively searching for an enthusiastic, highly motivated Senior Logistics Analyst to support life cycle management and sustainment for the Navy's fast-paced Strategic Systems Programs (SSP) Sea-Launched Cruise Missile-Nuclear (SLCM-N) program. As the Senior Logistics Analyst, you will apply your skills in Integrated Logistics Support (ILS)...


  • Washington, United States Syntricate Technologies Full time

    Job description **Veteran Firm Seeking a Senior Cloud Information System Security Officer (ISSO) with Top Secret Clearance for an Onsite Assignment in Washington, DC** My name is Stephen Hrutka, and I lead a Veteran-owned consulting firm in Washington, DC, focused on strategic sourcing, supply chain, and IT Staffing. We are looking to fill a Senior Cloud...


  • Washington, United States Bering Straits Native Corporation (BSNC) Full time

    Overview: Visit our website at www.beringstraits.com to apply! Equal Opportunity Employer/Veterans/Disabled SUMMARY Bering Global Solutions, LLC, a subsidiary of Bering Straits Native Corporation is currently seeking a qualified Senior Information Systems Security Officer for a government client in Washington, DC. The selected individual will guide...


  • Washington, United States Enlightened Full time

    Job Description Job Description Senior Cyber Security Analyst Are you passionate about Cyber Security and looking to contribute to meaningful projects that impact our Nation and communities? If so, we are ready to Enlightened you! This is an excellent opportunity to use critical thinking to bring together information from multiple sources to determine if a...