Talent.com
Lead Analyst - Info Sec
Lead Analyst - Info SecMAXIMUS • Albuquerque, NM, United States
Lead Analyst - Info Sec

Lead Analyst - Info Sec

MAXIMUS • Albuquerque, NM, United States
Hace 1 día
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

Description & Requirements

The Maximus DoD Cloud Information Systems Security Officer (ISSO) will work directly with the Maximus Federal Business Information Security Officer (BISO) to identify and manage implementation of security policies, standards, and procedures that support federal customers with federal requirements to include FISMA, applicable FAR and DFAR Clauses, Executive Orders, and OMB's applicable to IL5 Cloud Environments. The primary role of the ISSO will be the creation, management, and administration of a System Security Plan (SSP) to include all required artifacts needed to obtain a DISA IL5 certification and to maintain compliance with NIST 800-53 and associated NIST 800 series publications. The ISSO will be responsible for all continuous monitoring of the IL5 environment supporting federal customers and will be the SME for control management and the establishment of Inheritance which will be used to support future DoD projects

Essential Duties and Responsibilities :

  • Performs application vulnerability assessments to identify application vulnerabilities.
  • Performs network vulnerability assessments to identify host vulnerabilities.
  • Identifies, analyzes, and prioritizes vulnerability findings.
  • Analyzes system configurations to identify possible security gaps andor compliance violations.
  • Establishes collaborative working relationships with internal resources to provide security assessments, reports, and recommendations.
  • Performs other related duties as assigned.

Additional Duties and Responsibilities :

  • Create and manage System Security Plan and creation and or validation of all associated artifacts required to obtain DISA IL5 certification as well as NIST 800-53 compliance to include but not limited to a System Level Continuous Monitoring (SLCM) Strategy, HW / SW lists, Information Flow Diagrams, System Categorization Forms, System Topologies, Configuration Management Plan, Configuration Control Board (CCB) Charter, System and Services Acquisition Plan, System and Information Integrity Plan, System and Communication Protection Plan, Security Assessment and Authorization Plan, Risk Assessment Plan, Program Management Plan, Security Planning, Physical and Environmental Protection Plan, Personnel Security Plan, Media Protection Plan, Identification and Authentication Plan, Contingency Plan, Audit and Accountability Plan, Security Awareness and Training Plan, Incident Response Plan, Access Control Plan, Risk Assessment Review (RAR) and Plan of Action and Milestone (POA&M).
  • Liaison with Maximus Federal business units, Maximus Corporate business units, and external stakeholders to ensure all legal and contractual requirements pertaining to cybersecurity, physical security, and Information Assurance are being met.
  • Communicate federal requirements to Maximus Information Security Office (ISO) and advise implementation of applicable security controls and hardening standards to governance and technical teams.
  • Assist the BISO and ISO Team in the identification and assignment of control owners throughout the organization and continually review controls on organizationally defined periodicities.
  • Actively collaborate with Maximus Threat and Vulnerability Management (TVM) Team to ensure applicable technologies are compliant with defined remediation timelines and hardening standards via enterprise vulnerability management tools.
  • Minimum Requirements

  • Please refer to the additional information section of the job requisition for this opening to determine clearance eligibility required.
  • Bachelor's Degree
  • 7-10 years of security or technology related experience
  • Professional certifications, such as Security+, CEH, or CISSP, desirable
  • Knowledge of IPv4 network architecture and core services
  • Knowledge of web application development and architecture
  • Knowledge of network security controls
  • Knowledge of vulnerability management
  • Experience with dynamic application security testing (DAST) tools
  • Experience with vulnerability management (VM) tools
  • Familiarity with OWASP Top 10
  • Familiarity with WASC Threat Classification
  • Familiarity with CVE
  • Familiarity with NIST SP 800-53
  • Experience with automated service ticketing systems
  • Excellent analytical, decision-making, and problem-solving skills
  • Ability to communicate technical information in understandable business terms
  • Excellent interpersonal skills, presentation skills, and verbal / written communication skills
  • Strong customer service abilities required.
  • Ability to work collaboratively with a broad range of staff. Skilled in Microsoft Office software including Word, Excel, Visio, MS Project, and PowerPoint
  • Ability to perform comfortably in a fast-paced, deadline-oriented work environment
  • Ability to execute many complex tasks simultaneously, and work as a team member as well as independently
  • Additional Minimal Requirements :

  • Have a DoD secret clearance status or eligible to obtain secret clearance status.
  • DISA IL5 Certification Experience
  • Strong understanding of federal and DoD requirements to include but not limited to applicable Executive Orders, FISMA, FIPS, CMMC, NIST 800-171, NIST 800-60, NIST 800-65, SCRM, FedRAMP, DODI 8500s, 8500.2s, and 8510s.
  • Experience with GRC tools (eMASS, CFACTS, CSAM).
  • Experience developing SSP's and applicable artifacts required for A&A activities.
  • Experience with STIG compliance.
  • Experience with vulnerability management and assessment via Qualys and Tenable.
  • Works on complex issues where analysis of situations or data requires an in depth evaluation of variable
  • Exercises judgement in selecting methods, techniques, and evaluation criteria for obtaining results.
  • Networks with key contacts outside own area of expertise.
  • Develops solutions to a variety of complex problems.
  • Work requires considerable judgment and initiative.
  • EEO Statement

    Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.

    Pay Transparency

    Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.

    Accommodations

    Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at applicantaccommodations@maximus.com .

    Minimum Salary

    108,375.00

    Maximum Salary

    146,625.00

    Crear una alerta de empleo para esta búsqueda

    Analyst • Albuquerque, NM, United States

    Ofertas relacionadas
    Access Management Analyst II

    Access Management Analyst II

    Segra • Albuquerque, New Mexico, United States
    A tiempo completo
    Segra is searching for a qualified and experienced.Ideally, this person will be in the Kansas City, MO office.However, we are also open to considering candidates in other Segra office locations.Thi...Mostrar más
    Última actualización: hace 12 días • Oferta promocionada
    AWS Certified Solutions Architect

    AWS Certified Solutions Architect

    ADEX • Albuquerque, NM, United States
    A tiempo completo
    We are seeking an AWS Professional Certified Solutions Architect to join our team! You will design, consult and implement AWS solutions to complex application problems and deployment solutions.Work...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Cybersecurity Information Systems Security Engineer, SME

    Cybersecurity Information Systems Security Engineer, SME

    Keenbee Talent Soluitions • Albuquerque, NM, US
    A tiempo completo
    Quick Apply
    Active TS / SCI Clearance Required.We are seeking a highly motivated and well-qualified professional to join our team as a Cybersecurity Information Systems Security Engineer (SME).This role offers t...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Design and Analysis Engineer with Security Clearance

    Design and Analysis Engineer with Security Clearance

    Encode • Albuquerque, NM, United States
    A tiempo completo
    The ideal candidate will have experience with electronic design (analog and digital); high speed, low latency systems; firmware development, requirements tracking / verification; assembly and test of...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    NAVWAR Analyst

    NAVWAR Analyst

    Blue-Halo.org • Albuquerque, NM, United States
    Temporal
    In support of the Joint Navigation Warfare Center (JNWC) contract, you will be part of our team's efforts to empower the Department of Defense's navigation warfare (NAVWAR) mission to ensure positi...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    E01-M01 Senior Systems DevSecOps Engineer in Albuquerque

    E01-M01 Senior Systems DevSecOps Engineer in Albuquerque

    Energy Jobline ZR • Albuquerque, NM, United States
    A tiempo completo +1
    Energy Jobline is the largest and fastest growing global Energy Job Board and Energy Hub.We have an audience reach of over 7 million energy professionals, 400,000+ monthly advertised global energy ...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Information Security Manager

    Information Security Manager

    Space Dynamics Laboratory • Albuquerque, NM, US
    A tiempo completo
    Quick Apply
    Information Security Manager – Albuquerque, NM Job ID : .Location : SDL Field Office – Albuquerque, New Mexico Position : Information Security – Manager Date Posted : October 2, 2025 A...Mostrar más
    Última actualización: hace más de 30 días
    DevSecOps Engineer

    DevSecOps Engineer

    eTeam • Albuquerque, NM, United States
    A tiempo completo
    As a DevOps Engineer, you are joining a passionate software engineering team to build digital pathology products to change patients' lives. You will design & implement product infrastructure to auto...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Project Engineer-Secure Systems Architecture

    Project Engineer-Secure Systems Architecture

    The Aerospace Corporation • Kirtland Air Force Base, NM, United States
    A tiempo completo
    The Aerospace Corporation is the trusted partner to the nation's space programs, solving the hardest problems and providing unmatched technical expertise. As the operator of a federally funded resea...Mostrar más
    Última actualización: hace 20 días • Oferta promocionada
    Senior Systems DevSecOps Engineer

    Senior Systems DevSecOps Engineer

    Space Systems Integration LLC • Albuquerque, NM, United States
    A tiempo completo
    Be among the first 25 applicants.Space Systems Integration (SSI) is a fast-growing engineering company that provides aerospace solutions to a variety of government and commercial customers.Our empl...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Space RCO Systems DevSecOps Engineer (Senior)

    Space RCO Systems DevSecOps Engineer (Senior)

    Modern Technology Solutions Inc • Albuquerque, NM, United States
    A tiempo completo
    MTSI is searching for asenior Software Engineer (SWE)to support the development of first-of-kind space vehicles and missions. This handpicked candidate must possess technical expertise and experienc...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Information Security Manager

    Information Security Manager

    Utah State University Space Dynamics Laboratory • Albuquerque, NM, United States
    A tiempo completo
    Information Security Manager - Albuquerque, NM.SDL Field Office - Albuquerque, New Mexico.Information Security - Manager. The Space Dynamics Laboratory (SDL) is seeking an.This role is critical in e...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    E01-M01 Senior Systems DevSecOps Engineer

    E01-M01 Senior Systems DevSecOps Engineer

    TalentWerx • Albuquerque, NM, United States
    A tiempo completo
    Senior Systems DevSecOps Engineer.EXPANSIA is a service-disabled veteran-owned company that empowers organizations to be mission ready now with data, people, and ecosystems.As experts in continuous...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Veeva RIM Administrator

    Veeva RIM Administrator

    Syneos Health / inVentiv Health Commercial LLC • Albuquerque, NM, United States
    A tiempo completo
    Syneos Health is a leading fully integrated biopharmaceutical solutions organization built to accelerate customer success. We translate unique clinical, medical affairs and commercial insights into ...Mostrar más
    Última actualización: hace 8 días • Oferta promocionada
    Information Systems Security Engineer (ISSE)

    Information Systems Security Engineer (ISSE)

    OMNI Consulting Solutions • Alburquerque, NM, US
    A tiempo completo
    Information Systems Security Engineer (ISSE) (TEMPEST).OMNI is seeking a highly skilled.Information Systems Security Engineer (ISSE). Special Access Programs (SAPs) in Albuquerque, NM.The ISSE will ...Mostrar más
    Última actualización: hace más de 30 días
    DevSecOps Engineer, Mid

    DevSecOps Engineer, Mid

    Booz Allen Hamilton • Albuquerque, NM, United States
    A tiempo completo +1
    Today's dynamic technology landscape demands constant and rapid innovation.To facilitate this transformation, we must ensure continuous integration and application development.That's why we need yo...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    E01-M01 Senior Systems DevSecOps Engineer

    E01-M01 Senior Systems DevSecOps Engineer

    EXPANSIA • Albuquerque, NM, United States
    A tiempo completo +1
    EXPANSIA is a service-disabled veteran-owned company that empowers organizations to be mission ready now with data, people, and ecosystems. As experts in continuous-delivery methods that drive digit...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    DevSecOps Engineer, Mid

    DevSecOps Engineer, Mid

    ClearanceJobs • Albuquerque, NM, United States
    A tiempo completo +1
    Today's dynamic technology landscape demands constant and rapid innovation.To facilitate this transformation, we must ensure continuous integration and application development.That's why we need yo...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada