Information Security Analyst Advisor

General Dynamics Information Technology
Albany, NY, United States
$93.5K-$126.5K a year
Full-time
We are sorry. The job offer you are looking for is no longer available.

Req ID : RQ175895

Type of Requisition : Regular

Clearance Level Must Be Able to Obtain : None

Public Trust / Other Required : None

Job Family : Information Security

Skills :

Development Software,Information Security,Security Access Control,Vulnerability Assessments

Experience :

5 + years of related experience

Job Description :

Information Security Analyst Advisor

Transform technology into opportunity as an Information Security Analyst Advisor with GDIT. A career in enterprise IT means connecting and enhancing the systems that matter most.

At GDIT you’ll be at the forefront of innovation and play a meaningful part in improving how agencies operate.

At GDIT, people are our differentiator. As an Information Security Analyst Advisor you will help ensure today is safe and tomorrow is smarter.

Our work depends on Information Security Analyst Advisor joining our team to support New York State Department of Heath Medicaid Management Information System activities at Riverview Center in Menands, NY.

As an Information Security Analyst Advisor supporting the eMedNY CISO team, you will be trusted to work on developing technical solutions to a wide range of difficult problems.

The successful candidate should have experience in or knowledge of regulatory compliance, NIST SP 800-53, Medicaid Management Information Systems and CMS.

Also required, a comprehensive understanding and wide application of technical principles, theories, and concepts related to information security, with particular focus on vulnerability management and an emphasis on effective security and compliance management of vulnerabilities and security patches.

General knowledge of other related disciplines such as systems development, configuration management, change management, network security and asset management.

Solutions are imaginative, thorough, practicable and consistent with organization objectives.

HOW AN INFORMATION SECURITY ANALYST ADVISOR WILL MAKE AN IMPACT :

Reviewing and documenting security and privacy controls, documenting plans of action and milestones, and performing security risk analyses.

Experience in policy, procedure and standards development and review, and experience in developing and reviewing System Security Plans (SSPs) and other security documentation.

Reviewing and providing input to audit logging and log correlation tools

Reviewing development processes for Application Security best practices and review application artifacts in each environment.

Reviewing application-scanning, penetration testing and programming / coding for security tooling and scripts.

Advising the development team on how to remediate vulnerabilities, perform application security best practices, and address application security vulnerabilities.

Experience in Governance Risk and Compliance (GRC)

Demonstrating flexibility and the ability to handle other areas of information security, including business continuity, operations security, cryptography, forensics, regulatory compliance, insider threat detection and mitigation, and physical security analysis (including facilities analysis, and security management).

Validating system security requirements definition and analysis; establish system security designs; and implement security designs in hardware, software, data, and procedures.

Validating security requirements and perform system certification and accreditation planning and testing along with liaison activities.

Experience implementing Secure Fire Transfer Protocol (SFTP).

Experience with Multi-Factor Authentication (MFA).

Secure systems operations and maintenance.

WHAT YOU’LL NEED TO SUCCEED :

Education : Bachelor’s degree in Computer Science, Mathematics, Engineering or a related discipline or 5+ years of experience in Information Assurance

Required Experience : 5+ years of related experience in Information Assurance

Required Skills and Abilities :

An understanding of Privacy and familiarity with the NIST 800-53 Privacy controls

Experience with Security Control families in NIST SP 800-53 or Centers for Medicaid and Medicare Services (CMS)

Experience converting an SSP from NIST SP800-53 r4 to r5

Experience in DevSecOPS and Development in Agile environments

A working knowledge of container security

Familiarity with vulnerability assessment and scanning as well as other security tools, such as, Qualys, SAST, DAST

To work in a collaborative team environment as well as individually. Must be able to prioritize and multi-task.

Strong interpersonal and communication skills are required to communicate with customers, support personnel, application development personnel and management

To exercise considerable latitude in determining technical objectives of assignment. Work is performed with minimal direction.

Completed work is reviewed from a relatively long-term perspective for desired results

Required Certifications : Currently hold a certification or obtain one within 24 months of hire

Preferred Qualifications :

Experience with Galvanize GRC tools

Experience with Privacy

Experience with Security exception processes

New York State Medicaid Management Information Systems experience preferred

Experience in Secure Systems Development Life Cycle

Ability to Script using Python or other scripting languages

Familiarity with JAVA

Working knowledge of OWASP

Desired Certifications :

Security Certifications such as Information Systems Certification and Accreditation Professional (ISCAP) or INFOSEC Assessment Methodology Certification (IAM

Certification as an ISSO

CISSP certification

GIAC or ISACA security certifications

GDIT IS YOUR PLACE :

Full-flex work week to own your priorities at work and at home

401K with company match

Comprehensive health and wellness packages

Internal mobility team dedicated to helping you own your career

Professional growth opportunities including paid education and certifications

Cutting-edge technology you can learn from

Rest and recharge with paid vacation and holidays

The likely salary range for this position is $93,500 - $126,500. This is not, however, a guarantee of compensation or salary.

Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match.

To encourage work / life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave.

To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available.

We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.

S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation.

We operate across 30 countries worldwide, offering leading capabilities in digital modernization, AI / ML, Cloud, Cyber and application development.

Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.

We connect people with the most impactful client missions, creating an unparalleled work experience that allows them to see their impact every day.

We create opportunities for our people to lead and learn simultaneously. From securing our nation’s most sensitive systems, to enabling digital transformation and cloud adoption, our people are the ones who make change real.

GDIT is an Equal Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.

3 days ago
Related jobs
Promoted
Center for Internet Security, Inc.
East Greenbush, New York
Remote

The Information Security Analyst - Intern is assigned to the Office of the Chief Information Security Officer (CISO) at the Center for Internet Security. Reporting to the Information Security Operations Manager, this position will collaborate with other cybersecurity team members to promote the CISO...

Promoted
Forfeiture Support Associates (FSA)
Albany, New York

Data Analyst Supporting the FBI. FSA Federal (FSA) is focused on delivering unsurpassed services in support of law enforcement and homeland security. We currently have a vacancy for a Records Examiner/Analyst. NOTE: The 20% pay differential is dependent upon the customer's order for services and req...

Promoted
NYSTEC
Albany, New York

As a senior health information technology (HIT) project and planning manager, you will a lead a team of technology subject matter experts (SME) and strategic planners supporting the New York State Department of Health (NYSDOH), Office of Health Insurance Programs (OHIP), to conceptualize, develop, a...

Promoted
NTT DATA, Inc.
Albany, New York

NTT DATA Services is a recognized leader in IT and business services, including cloud, data and applications, headquartered in Texas. As part of NTT DATA, a $30 billion trusted global innovator with a combined global reach of over 80 countries, we help clients transform through business and technolo...

Promoted
NY CREATES
Albany, New York

The Security Officer position at the Albany Nanotech Complex (a 24/7 operation) provides communications, desk and roving security patrol duty functions, and access control in maintenance of safety and security. A current New York State security officer certification is preferred, but a contingent of...

Promoted
Avenues International
Albany, New York

Business Analyst - Senior (HBITS-05-13462). ...

Promoted
Empire State
Albany, New York

Gather business requirements, manage project documentation including all data mapping and business flows, manage change requests. Experience in an IT Business Analyst role. Drive awareness and analysis of process requirements across organizational business units through evaluation of real-time data....

Promoted
MVP Health Care, Inc.
Schenectady, New York

Case Manager, Medicaid Long Term Support Program. Through collaborative efforts the Case Manager will identify the medical and psycho-social needs of designated members, act as a proactive partner, and provide appropriate education, coordination of care and resource allocation. The Case Manager will...

Promoted
General Electric
Schenectady, New York

The Senior Facilities Program Manager provides operational support to GE Aerospace Research Facilities Team regarding Preventative Maintenance, Investment in Critical Building Systems, and Sustainability strategy. The role supports the operationalization of the GE Aerospace Research programs to achi...

Promoted
Indsafri
Albany, New York

Title: Business Analyst - (CBAP Certified). CBAP (Certified Business Analysis Professional) certification by the International Institute of Business Analysis IIBA. Researching and understanding the stakeholder’s business needs using a variety of analysis techniques and converting those into verified...