Talent.com
No longer accepting applications
Lead Analyst - Info Sec

Lead Analyst - Info Sec

MAXIMUSSavannah, GA, United States
8 days ago
Job type
  • Full-time
Job description

Description & Requirements

The Maximus DoD Cloud Information Systems Security Officer (ISSO) will work directly with the Maximus Federal Business Information Security Officer (BISO) to identify and manage implementation of security policies, standards, and procedures that support federal customers with federal requirements to include FISMA, applicable FAR and DFAR Clauses, Executive Orders, and OMB's applicable to IL5 Cloud Environments. The primary role of the ISSO will be the creation, management, and administration of a System Security Plan (SSP) to include all required artifacts needed to obtain a DISA IL5 certification and to maintain compliance with NIST 800-53 and associated NIST 800 series publications. The ISSO will be responsible for all continuous monitoring of the IL5 environment supporting federal customers and will be the SME for control management and the establishment of Inheritance which will be used to support future DoD projects

Essential Duties and Responsibilities :

  • Performs application vulnerability assessments to identify application vulnerabilities.
  • Performs network vulnerability assessments to identify host vulnerabilities.
  • Identifies, analyzes, and prioritizes vulnerability findings.
  • Analyzes system configurations to identify possible security gaps andor compliance violations.
  • Establishes collaborative working relationships with internal resources to provide security assessments, reports, and recommendations.
  • Performs other related duties as assigned.

Additional Duties and Responsibilities :

  • Create and manage System Security Plan and creation and or validation of all associated artifacts required to obtain DISA IL5 certification as well as NIST 800-53 compliance to include but not limited to a System Level Continuous Monitoring (SLCM) Strategy, HW / SW lists, Information Flow Diagrams, System Categorization Forms, System Topologies, Configuration Management Plan, Configuration Control Board (CCB) Charter, System and Services Acquisition Plan, System and Information Integrity Plan, System and Communication Protection Plan, Security Assessment and Authorization Plan, Risk Assessment Plan, Program Management Plan, Security Planning, Physical and Environmental Protection Plan, Personnel Security Plan, Media Protection Plan, Identification and Authentication Plan, Contingency Plan, Audit and Accountability Plan, Security Awareness and Training Plan, Incident Response Plan, Access Control Plan, Risk Assessment Review (RAR) and Plan of Action and Milestone (POA&M).
  • Liaison with Maximus Federal business units, Maximus Corporate business units, and external stakeholders to ensure all legal and contractual requirements pertaining to cybersecurity, physical security, and Information Assurance are being met.
  • Communicate federal requirements to Maximus Information Security Office (ISO) and advise implementation of applicable security controls and hardening standards to governance and technical teams.
  • Assist the BISO and ISO Team in the identification and assignment of control owners throughout the organization and continually review controls on organizationally defined periodicities.
  • Actively collaborate with Maximus Threat and Vulnerability Management (TVM) Team to ensure applicable technologies are compliant with defined remediation timelines and hardening standards via enterprise vulnerability management tools.
  • Minimum Requirements

  • Please refer to the additional information section of the job requisition for this opening to determine clearance eligibility required.
  • Bachelor's Degree
  • 7-10 years of security or technology related experience
  • Professional certifications, such as Security+, CEH, or CISSP, desirable
  • Knowledge of IPv4 network architecture and core services
  • Knowledge of web application development and architecture
  • Knowledge of network security controls
  • Knowledge of vulnerability management
  • Experience with dynamic application security testing (DAST) tools
  • Experience with vulnerability management (VM) tools
  • Familiarity with OWASP Top 10
  • Familiarity with WASC Threat Classification
  • Familiarity with CVE
  • Familiarity with NIST SP 800-53
  • Experience with automated service ticketing systems
  • Excellent analytical, decision-making, and problem-solving skills
  • Ability to communicate technical information in understandable business terms
  • Excellent interpersonal skills, presentation skills, and verbal / written communication skills
  • Strong customer service abilities required.
  • Ability to work collaboratively with a broad range of staff. Skilled in Microsoft Office software including Word, Excel, Visio, MS Project, and PowerPoint
  • Ability to perform comfortably in a fast-paced, deadline-oriented work environment
  • Ability to execute many complex tasks simultaneously, and work as a team member as well as independently
  • Additional Minimal Requirements :

  • Have a DoD secret clearance status or eligible to obtain secret clearance status.
  • DISA IL5 Certification Experience
  • Strong understanding of federal and DoD requirements to include but not limited to applicable Executive Orders, FISMA, FIPS, CMMC, NIST 800-171, NIST 800-60, NIST 800-65, SCRM, FedRAMP, DODI 8500s, 8500.2s, and 8510s.
  • Experience with GRC tools (eMASS, CFACTS, CSAM).
  • Experience developing SSP's and applicable artifacts required for A&A activities.
  • Experience with STIG compliance.
  • Experience with vulnerability management and assessment via Qualys and Tenable.
  • Works on complex issues where analysis of situations or data requires an in depth evaluation of variable
  • Exercises judgement in selecting methods, techniques, and evaluation criteria for obtaining results.
  • Networks with key contacts outside own area of expertise.
  • Develops solutions to a variety of complex problems.
  • Work requires considerable judgment and initiative.
  • EEO Statement

    Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.

    Pay Transparency

    Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.

    Accommodations

    Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at applicantaccommodations@maximus.com .

    Minimum Salary

    108,375.00

    Maximum Salary

    146,625.00

    Create a job alert for this search

    Analyst • Savannah, GA, United States

    Related jobs
    Applications Support Analyst

    Applications Support Analyst

    St. Josephs CandlerSavannah, Georgia, United States, 31405
    Full-time
    Focus is to proactively anticipate and meet user needs while adhering to regulatory requirements and SJ / C Strategic Information Systems goals. The Application Support Analyst I demonstrates progress...Show moreLast updated: 30+ days ago
    • Promoted
    Manager, Business Analysis and Architecture - Medicaid / Medicare - Remote

    Manager, Business Analysis and Architecture - Medicaid / Medicare - Remote

    Remote StaffingSavannah, GA, US
    Remote
    Full-time
    Focuses on process improvement, organizational change management, project management and other processes relative to the business. Project management includes estimating, scheduling, costing, planni...Show moreLast updated: 5 days ago
    • Promoted
    • New!
    20241 - Sr. Business System Analyst

    20241 - Sr. Business System Analyst

    Hyundai AutoEver AmericaSavannah, GA, United States
    Full-time
    Job id# 20241 - SAP SCM Business Analyst II.The SAP SCM Business Analyst II role is an integral part of SCM solutions for Hyundai Motors Manufacturing. In addition to supporting business systems lik...Show moreLast updated: less than 1 hour ago
    • Promoted
    Information Systems Technician

    Information Systems Technician

    U.S. NavyRichmond Hill, GA, United States
    Full-time
    ABOUT Effective, secure communication in the cyber domain is essential to the everyday operations of military intelligence in America’s Navy. Information Professionals who oversee the seamless opera...Show moreLast updated: 5 days ago
    • Promoted
    • New!
    Senior Analyst, Technical Configuration Information Management - REMOTE

    Senior Analyst, Technical Configuration Information Management - REMOTE

    Molina HealthcareSavannah, GA, United States
    Remote
    Permanent
    Responsible for accurate and timely implementation and maintenance of critical information on claims databases.Maintains critical information on claims databases. Synchronizes data among operational...Show moreLast updated: 1 hour ago
    • Promoted
    Read allabout it

    Read allabout it

    StaplesHilton Head Island, SC, US
    Full-time
    Focus on the core content of the job post, removing all extra metadata, navigation, and redundant headers.Keep the formatting beautiful and high signal to noise ratio.Show moreLast updated: 30+ days ago
    • Promoted
    Sr. Cyber Security Analyst (SOC)

    Sr. Cyber Security Analyst (SOC)

    SNF Holding CompanyRiceboro, GA, United States
    Full-time
    SNF is a specialty chemical group whose products, water-soluble polymers, contribute to treating, recycling, preserving water, saving energy, and reducing carbon footprint.A pioneer in soft chemist...Show moreLast updated: 20 days ago
    • Promoted
    Senior Warfare Analyst (Strike Fighter SME), Various US Locations

    Senior Warfare Analyst (Strike Fighter SME), Various US Locations

    2 Circle IncBeaufort, SC, US
    Full-time
    Circle is a small veteran-owned consulting firm providing specialized customer-focused system engineering, requirements definition, operational analysis, technology development, and program managem...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Analyst, Healthcare Analytics- Managed care analytics & financial contracts

    Lead Analyst, Healthcare Analytics- Managed care analytics & financial contracts

    Molina HealthcareSavannah, GA, United States
    Full-time
    Candidates must be located in California and work PST hours.Performs research and analysis of complex healthcare claims data, pharmacy data, and lab data regarding network utilization and cost cont...Show moreLast updated: 8 days ago
    • Promoted
    • New!
    Tech Desk Analyst Level 1

    Tech Desk Analyst Level 1

    Citi TrendsSavannah, GA, United States
    Full-time
    Role : Tech Desk Support Analyst.Positions Available : 2nd Shift.Citi Trends is a high-growth, publicly held retail brand with a fleet of 600+ Stores across 33 States. Our track record of delivering e...Show moreLast updated: less than 1 hour ago
    • Promoted
    • New!
    Senior Analyst, Network Strategy, Pricing & Analytics - REMOTE

    Senior Analyst, Network Strategy, Pricing & Analytics - REMOTE

    Molina HealthcareSavannah, GA, United States
    Remote
    Full-time
    Analyst, Network Strategy, Pricing & Analytics guides the investment of our network partners through contract valuation and analysis to ensure access to quality healthcare services for people recei...Show moreLast updated: 1 hour ago
    • Promoted
    Senior Analyst, Network Strategy, Pricing & Analytics (VBC) - REMOTE

    Senior Analyst, Network Strategy, Pricing & Analytics (VBC) - REMOTE

    Molina HealthcareSavannah, GA, United States
    Remote
    Full-time
    Analyst, Network Strategy, Pricing & Analytics guides the investment of our network partners through contract valuation and analysis to ensure access to quality healthcare services for people recei...Show moreLast updated: 8 days ago
    • Promoted
    Shift Lead

    Shift Lead

    Krystal RestaurantsRincon, GA, US
    Full-time
    Are you looking for an entry-mid level job in the restaurant industry that can lead to a career? We offer.COMPETITIVE STARTING PAY, FLEXIBLE SCHEDULES, HEALTH BENEFITS, and 401k, !.Are you dedicate...Show moreLast updated: 30+ days ago
    • Promoted
    Retail IT Support Analyst

    Retail IT Support Analyst

    Hugo BossMidway, GA, United States
    Full-time
    Our vision is to establish HUGO BOSS as the leading premium tech-driven fashion platform worldwide and to be one of the top 100 global brands. At HUGO BOSS, we work as a team to apply our knowledge,...Show moreLast updated: 30+ days ago
    Ambulatory Systems Analyst

    Ambulatory Systems Analyst

    St. Josephs CandlerSavannah, Georgia, United States, 31405
    Full-time
    Analyst will serve as technical subject matter expert within the practice, pertaining to the Allscripts-Veradigm platform. Analyst will be a key operational partner to physicians, clinical teams and...Show moreLast updated: 30+ days ago
    • Promoted
    IT Systems Analyst

    IT Systems Analyst

    Beaufort-Jasper Water & Sewer AuthorityOkatie, SC, US
    Full-time
    Under limited supervision, responsible for the installation, availability, reliability, performance and maintenance of the Authority’s supported systems. This includes day-to-day management, o...Show moreLast updated: 6 days ago
    • Promoted
    • New!
    Senior Analyst, Provider Configuration

    Senior Analyst, Provider Configuration

    Molina HealthcareSavannah, GA, United States
    Full-time
    Designs and implements processes and solutions associated with a wide variety of data sets used for data / text mining, analysis, modeling, and predicting to enable informed business decisions.Gains ...Show moreLast updated: 1 hour ago
    • Promoted
    Lead Analyst, Quality Analytics and Performance Improvement (HEDIS)

    Lead Analyst, Quality Analytics and Performance Improvement (HEDIS)

    Molina HealthcareSavannah, GA, United States
    Full-time
    The Lead Analyst, Quality Analytics and Performance Improvement role will support Molina's Quality Reporting team.Designs and develops reporting solutions to assist HEDIS Outbound, Inbound extracts...Show moreLast updated: 8 days ago