Talent.com
Lead Analyst - Info Sec
Lead Analyst - Info SecMAXIMUS • Cincinnati, OH, United States
Lead Analyst - Info Sec

Lead Analyst - Info Sec

MAXIMUS • Cincinnati, OH, United States
Hace 16 días
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

Description & Requirements

The Maximus DoD Cloud Information Systems Security Officer (ISSO) will work directly with the Maximus Federal Business Information Security Officer (BISO) to identify and manage implementation of security policies, standards, and procedures that support federal customers with federal requirements to include FISMA, applicable FAR and DFAR Clauses, Executive Orders, and OMB's applicable to IL5 Cloud Environments. The primary role of the ISSO will be the creation, management, and administration of a System Security Plan (SSP) to include all required artifacts needed to obtain a DISA IL5 certification and to maintain compliance with NIST 800-53 and associated NIST 800 series publications. The ISSO will be responsible for all continuous monitoring of the IL5 environment supporting federal customers and will be the SME for control management and the establishment of Inheritance which will be used to support future DoD projects

Essential Duties and Responsibilities :

  • Performs application vulnerability assessments to identify application vulnerabilities.
  • Performs network vulnerability assessments to identify host vulnerabilities.
  • Identifies, analyzes, and prioritizes vulnerability findings.
  • Analyzes system configurations to identify possible security gaps andor compliance violations.
  • Establishes collaborative working relationships with internal resources to provide security assessments, reports, and recommendations.
  • Performs other related duties as assigned.

Additional Duties and Responsibilities :

  • Create and manage System Security Plan and creation and or validation of all associated artifacts required to obtain DISA IL5 certification as well as NIST 800-53 compliance to include but not limited to a System Level Continuous Monitoring (SLCM) Strategy, HW / SW lists, Information Flow Diagrams, System Categorization Forms, System Topologies, Configuration Management Plan, Configuration Control Board (CCB) Charter, System and Services Acquisition Plan, System and Information Integrity Plan, System and Communication Protection Plan, Security Assessment and Authorization Plan, Risk Assessment Plan, Program Management Plan, Security Planning, Physical and Environmental Protection Plan, Personnel Security Plan, Media Protection Plan, Identification and Authentication Plan, Contingency Plan, Audit and Accountability Plan, Security Awareness and Training Plan, Incident Response Plan, Access Control Plan, Risk Assessment Review (RAR) and Plan of Action and Milestone (POA&M).
  • Liaison with Maximus Federal business units, Maximus Corporate business units, and external stakeholders to ensure all legal and contractual requirements pertaining to cybersecurity, physical security, and Information Assurance are being met.
  • Communicate federal requirements to Maximus Information Security Office (ISO) and advise implementation of applicable security controls and hardening standards to governance and technical teams.
  • Assist the BISO and ISO Team in the identification and assignment of control owners throughout the organization and continually review controls on organizationally defined periodicities.
  • Actively collaborate with Maximus Threat and Vulnerability Management (TVM) Team to ensure applicable technologies are compliant with defined remediation timelines and hardening standards via enterprise vulnerability management tools.
  • Minimum Requirements

  • Please refer to the additional information section of the job requisition for this opening to determine clearance eligibility required.
  • Bachelor's Degree
  • 7-10 years of security or technology related experience
  • Professional certifications, such as Security+, CEH, or CISSP, desirable
  • Knowledge of IPv4 network architecture and core services
  • Knowledge of web application development and architecture
  • Knowledge of network security controls
  • Knowledge of vulnerability management
  • Experience with dynamic application security testing (DAST) tools
  • Experience with vulnerability management (VM) tools
  • Familiarity with OWASP Top 10
  • Familiarity with WASC Threat Classification
  • Familiarity with CVE
  • Familiarity with NIST SP 800-53
  • Experience with automated service ticketing systems
  • Excellent analytical, decision-making, and problem-solving skills
  • Ability to communicate technical information in understandable business terms
  • Excellent interpersonal skills, presentation skills, and verbal / written communication skills
  • Strong customer service abilities required.
  • Ability to work collaboratively with a broad range of staff. Skilled in Microsoft Office software including Word, Excel, Visio, MS Project, and PowerPoint
  • Ability to perform comfortably in a fast-paced, deadline-oriented work environment
  • Ability to execute many complex tasks simultaneously, and work as a team member as well as independently
  • Additional Minimal Requirements :

  • Have a DoD secret clearance status or eligible to obtain secret clearance status.
  • DISA IL5 Certification Experience
  • Strong understanding of federal and DoD requirements to include but not limited to applicable Executive Orders, FISMA, FIPS, CMMC, NIST 800-171, NIST 800-60, NIST 800-65, SCRM, FedRAMP, DODI 8500s, 8500.2s, and 8510s.
  • Experience with GRC tools (eMASS, CFACTS, CSAM).
  • Experience developing SSP's and applicable artifacts required for A&A activities.
  • Experience with STIG compliance.
  • Experience with vulnerability management and assessment via Qualys and Tenable.
  • Works on complex issues where analysis of situations or data requires an in depth evaluation of variable
  • Exercises judgement in selecting methods, techniques, and evaluation criteria for obtaining results.
  • Networks with key contacts outside own area of expertise.
  • Develops solutions to a variety of complex problems.
  • Work requires considerable judgment and initiative.
  • #c0rejobs #HotJobs1111LI #HotJobs1111FB #HotJobs1111X #HotJobs1111TH #TrendingJobs #HotJobs1125LI #HotJobs1125FB #HotJobs1125X #HotJobs1125TH

    EEO Statement

    Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.

    Pay Transparency

    Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.

    Accommodations

    Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at applicantaccommodations@maximus.com .

    Minimum Salary

    108,375.00

    Maximum Salary

    146,625.00

    Crear una alerta de empleo para esta búsqueda

    Lead Analyst Info Sec • Cincinnati, OH, United States

    Ofertas relacionadas
    Marketing Specialist

    Marketing Specialist

    Coca Cola • Dry Ridge, KY, USA
    A tiempo completo
    Join the Coca Cola team and be part of a world-renowned company committed to sustainability, diversity, and innovation.As a Marketing Specialist, you will work with a team to develop and execute ma...Mostrar más
    Última actualización: hace 24 días • Oferta promocionada
    Senior Business Systems Analyst

    Senior Business Systems Analyst

    Myers Industries • Cincinnati, OH, United States
    A tiempo completo
    NYSE : MYE) is a leading manufacturer of a wide range of polymer products for industrial, agricultural, automotive, commercial and consumer markets. We are also the largest distributor of tools, equi...Mostrar más
    Última actualización: hace 19 días • Oferta promocionada
    System Analyst - Healthcare Cincinnati, OH $$$ bonus

    System Analyst - Healthcare Cincinnati, OH $$$ bonus

    ESR Healthcare • Cincinnati, OH, United States
    A tiempo completo
    About the job System Analyst - Healthcare (9107-1) Cincinnati, OH $$$ bonus.System Analyst, Healthcare, Clinical Trial System. If you post this job on a job board, please do not use company name or ...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Senior Specialist, ServiceNow HRSD Business Analyst

    Senior Specialist, ServiceNow HRSD Business Analyst

    KPMG • Cincinnati, OH, United States
    A tiempo completo
    KPMG Advisory practice is currently our fastest growing practice.We are seeing tremendous client demand, and looking forward we do not anticipate that slowing down. In this ever-changing market envi...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Senior Enterprise Architect

    Senior Enterprise Architect

    United IT Solutions • Cincinnati, OH, United States
    A tiempo completo
    The Senior Enterprise Architect will be responsible for providing expert advice and guidance on business and functional requirements and design elements of the solution, best practices for integrat...Mostrar más
    Última actualización: hace 6 días • Oferta promocionada
    Remote AI Content Reviewer

    Remote AI Content Reviewer

    Outlier • Hamilton, OH, United States
    Teletrabajo
    A tiempo completo
    Earn up to $15 / hour + performance bonuses.Outlier, a platform owned and operated by Scale AI, is looking for.If you're passionate about improving models and excited by the future of AI, this is you...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Vendor Consolidation Analyst

    Vendor Consolidation Analyst

    Diverse Lynx • Cincinnati, OH, US
    A tiempo completo
    Vendor Consolidation Analyst Role Summary.Lead governance, planning, and cross-functional coordination for the two company IT integration, ensuring strategic alignment, stakeholder engagement, and ...Mostrar más
    Última actualización: hace 24 días • Oferta promocionada
    Business Application Support

    Business Application Support

    Valeo • Hamilton, OH, United States
    A tiempo completo +1
    Valeo is a tech global company, designing breakthrough solutions to reinvent the mobility.We are an automotive supplier partner to automakers and new mobility actors worldwide.Our vision? Invent a ...Mostrar más
    Última actualización: hace 19 días • Oferta promocionada
    Sr SOC Analyst

    Sr SOC Analyst

    Genovice, Inc • Hebron, KY, United States
    A tiempo completo
    Job Title : Sr SOC Analyst (Level 1).Location : Cincinnati, Cincinnati OH.Employment Type : Full-time-Temp.The Sr SOC Analyst (L1) serves as the first line of defense in the Security Operations Center...Mostrar más
    Última actualización: hace 6 días • Oferta promocionada
    Lead

    Lead

    Wingstop - Sizzling Platter • HAMILTON, OH, US
    A tiempo completo +1
    Job Posting : Wingstop Lead – Supporting Operations and Team Success.Wingstop is more than a restaurant.It is a full-on flavor experience. Since 1994, we have been serving fresh, made-to-order wings ...Mostrar más
    Última actualización: hace más de 30 días
    Healthcare technology specialist i

    Healthcare technology specialist i

    Lehigh Valley Health Network • Dry Ridge, Kentucky, US
    A tiempo completo
    Lehigh Valley Health Network (LVHN) is home to nearly 23,000 colleagues who make up our talented, vibrant and diverse workforce. Read all the information about this opportunity carefully, then use t...Mostrar más
    Última actualización: hace 4 horas • Oferta promocionada • Nueva oferta
    Help Desk Tier 2 (SugarCreek)

    Help Desk Tier 2 (SugarCreek)

    Sugar Creek Packing • Hamilton, OH, United States
    A tiempo completo
    Its commitment to making the highest-quality, best-value products has allowed Sugar Creek to grow into one of the largest independent bacon processors servicing the global market.Provides support t...Mostrar más
    Última actualización: hace 16 días • Oferta promocionada
    Information Governance - Matter Mobility Analyst

    Information Governance - Matter Mobility Analyst

    Taft Stettinius & Hollister LLP • Cincinnati, OH, United States
    A tiempo completo
    Taft is seeking an Information Governance-Matter Mobility Analyst to support our Information Governance team in our Chicago, Cincinnati, Cleveland, Columbus, Dayton, Detroit, Indianapolis or Minnea...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Business Systems Analyst 2, ERP, Digital Technology Solutions, Hybrid

    Business Systems Analyst 2, ERP, Digital Technology Solutions, Hybrid

    University of Cincinnati • Cincinnati, OH, United States
    A tiempo completo
    Business Systems Analyst 2, ERP, Digital Technology Solutions, Hybrid.Current UC employees must apply internally via.Next Lives at the University of Cincinnati. Founded in 1819, the University of Ci...Mostrar más
    Última actualización: hace 9 días • Oferta promocionada
    Data Integration Support Analyst

    Data Integration Support Analyst

    Ohio Staffing • Cincinnati, OH, United States
    A tiempo completo
    Data Integration Support Analyst.Bank, we're on a journey to do our best.Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we...Mostrar más
    Última actualización: hace 4 días • Oferta promocionada
    Remote Senior FP&A Analyst - AI Trainer ($50-$60 / hour)

    Remote Senior FP&A Analyst - AI Trainer ($50-$60 / hour)

    Data Annotation • Fairfield, OH, United States
    Teletrabajo
    A tiempo completo +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality of ...Mostrar más
    Última actualización: hace 6 días • Oferta promocionada
    Senior Security Analyst (IAM)

    Senior Security Analyst (IAM)

    Syntricate Technologies • Cincinnati, OH, United States
    A tiempo completo
    Position- Senior Security Analyst (IAM).Cincinnati, OH~ Connecticut State.Implement and manage IAM solutions to control user access and ensure compliance with security policies.Oversee Microsoft Id...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    System Analyst - Healthcare

    System Analyst - Healthcare

    5 Star Global Recruitment Partners • Cincinnati, OH, United States
    A tiempo completo
    About the job System Analyst - Healthcare.System Analyst to support our healthcare clients in analyzing, designing, and implementing system solutions. Design and maintain process flows, data mapping...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada