Information Security Analyst

NextGen Federal Systems

$95K — $115K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Significant ISSO experience (2+ years) required without a degree.
  • Minimum 7 years in information security roles.
  • Experience in developing system security plans and tracking POAMs.
  • Knowledge of ongoing monitoring activities and SOP development.
  • Familiarity with NIST 800-Series frameworks.
  • Strong proficiency in Microsoft Office applications.
  • Positive adjudication from a CBP Background Investigation.

Responsibilities

  • Track and manage POAMs from creation to closure.
  • Review and approve Technical Requirement Models for software products.
  • Lead Authority to Operate efforts for Air and Marine Operations systems.
  • Ensure compliance with DHS and CBP policies and procedures.
  • Review audit logs per departmental policy and Security Authorization documentation.
  • Develop and update System Security Plans, Risk Assessments, and related documentation.
  • Document risks and controls for Authorizing Official decisions.
  • Categorize systems using FIPS 199 and NIST SP 800-60 standards.
  • Create and enhance Standard Operating Procedures for processes.
  • Develop strategies for Continuous Information Security Monitoring.

Benefits

  • Opportunity to support DHS and engage in critical national security work.
  • Work in a dynamic environment within the federal government sector.
  • Collaborative team focused on compliance and risk management.
  • Access to continuous professional development opportunities.
Full Job Description
NextGen Federal Systems is seeking an Information Security Analyst to join our work supporting our DHS customer in Washington, DC. The ISA will report to the ISSM and provide security and compliance duties to assigned systems stakeholders.

Duties include but are not limited to:

  • Track and manage POAMs throughout the remediation cycle from creation to closure.
  • Review and approve Technical Requirement Model (TRM) for software products
  • Lead Authority to Operate efforts for assigned Air and Marine Operations systems
  • Ensure technical team is adhering to laid down policy and procedures to meet DHS and CBP compliance requirements.
  • Ensuring audit logs are reviewed periodically in accordance with departmental policy and the Security Authorization documentation (e.g. weekly or daily)
  • Develop, analyze and update System Security Plan (SSP), Risk Assessment (RA), Privacy Threshold Analysis (PTA), Privacy Impact Assessment (PIA), System Security test and Evaluation (ST&E) and the Plan of Actions and Milestones (POA&M)
  • Document risks and appropriate compensation controls for the Authorizing Official to make a risk-based decision on identified vulnerabilities.
  • Designate systems and categorize its C.I.A using FIPS 199 and NIST SP 800-60
  • Create update Standard Operating Procedure (SOP) for process flows and quality enhancements
  • Develop Information Security Continuous Monitoring Strategy to help maintain an ongoing awareness of information security (Ensure continued effectiveness of all security controls), vulnerabilities, and threats to support organizational risk management decisions
  • Create security impact analysis document to accompany required changes for Change Control Board approval before changes are made to assigned systems


Required Education, Experience and Qualifications:

  • Significant ISSO experience required, in lieu of degree. (2 years)
  • A minimum of 7 years of experience in the following:
  • Developing System Security Plan
  • Managing and tracking POAMs
  • Continuing monitoring activities
  • Developing Standard Operating Procedures (SOP)
  • Understanding of NIST 800-Series
  • Proficiency with Microsoft Office software, including Word, Excel, PowerPoint, Outlook, and SharePoint.
  • Positive adjudication from a CBP Background Investigation.


RefID: D01x

Similar Jobs

More Jobs at NextGen Federal Systems

  • Procurement Analyst
    $80K — $95K *
    Washington, DC 20011 (District Of Columbia County)
    Aerospace & Defense
    In-Person
  • Data Manager / Analyst
    $80K — $95K *
    Washington, DC 20011 (District Of Columbia County)
    Aerospace & Defense
    In-Person
  • Senior Software Engineer
    $100K — $130K *
    Dayton, OH 45424 (Montgomery County)
    Aerospace & Defense
    Hybrid
  • DevSecOps (DSO) Engineer
    $100K — $130K *
    Fort George G Meade, MD 20755 (Anne Arundel County)
    Aerospace & Defense
    In-Person
  • Software Developer (copy)
    $70K — $95K *
    St. Augustine, FL 32084 (Saint Johns County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Information Security Analyst jobs: