Affinity

NIST Security Analyst

Affinity$95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 4 years of experience with NIST 800-37 Risk Management Framework and 800-53 Security controls
  • 4 years supporting compliance audits (PCI, SOC, HIPAA, ISO)
  • 4 years of data privacy experience
  • 3 years managing multiple responsibilities in technical and non-technical groups
  • 2 years writing Information System Security Plans
  • Bachelor's degree in Computer Science, Systems Engineering or equivalent experience

Responsibilities

  • Lead elicitation, analysis, and documentation of systems and operations
  • Coordinate and facilitate meetings with Medicaid/CHIP Services and IT stakeholders
  • Evaluate over 50 systems for Information Security Program Plans and Risk Assessments
  • Identify risks, confirm controls, and recommend improvements based on findings
  • Gather information on HHS data source systems interfacing with MCS systems

Benefits

  • Remote work option for candidates local to Austin, TX
  • Opportunity to work in a high-stakes healthcare environment
  • Engagement in meaningful projects impacting Medicaid services
  • Professional growth opportunities through analysis and risk assessment work
  • Team leadership roles may be available for skilled candidates
Full Job Description
City : Austin

State : Texas

Information Technology

Neos is seeking an IT Risk Analyst for a long-term project for our client in Austin, TX.

***REMOTE - ONLY CANDIDATES CURRENTLY RESIDING IN AUSTIN, TX Local to the Austin area (Within 50 mile radius) WILL BE CONSIDERED***

No calls, no emails, please respond directly to the "apply" link with your resume and contact details.

On site 5 days per week

The IT Risk Analyst will lead the team responsible for elicitation, analysis and documentation of systems and state operations and coordination and facilitation of meetings with Medicaid/CHIP Services (MCS) and IT stakeholders. The team will evaluate over 50 systems to complete the Information Security Program Plan, Information System Security Plans and associated Risk Assessments. The Worker will coordinate with IT and business areas to identify risks, confirm controls, and make recommendations for improvement. The Worker will be responsible for identifying system interdependencies and confirming classification of data in a HIPAA environment. The Worker may serve as team lead over analysts.

This job role will aide in analysis and documentation of systems necessary to complete the Information Security Program Plan and to conduct security risk assessments.

The IT Risk Analyst's responsibilities include:

  • Working with subject matter experts across the MCS system to collect and update business and system data.
  • Gathering information on HHS data source systems which interface to MCS systems.
  • Completing Information Security Program Plan, Information System Security Plans and associated Risk Assessments using HHS defined security tools to identify risks and confirm current controls.

Other Special Requirements: Because of the nature of the information in the systems to be evaluated, all entities must sign a Data Use Agreement (DUA) as a condition of employment. Face-to-face interview required.

Requirements:
  • 4 years - Experience with the National Institute of Standards Technology (NIST) 800-37 Risk Management Framework and 800-53 Security controls.
  • 4 years - Supporting various compliance audits including, PCI, SOC, HIPAA and ISO.
  • 4 years - Data Privacy experience
  • 3 years - Proven ability to work successfully with technical and non-technical groups, and manage multiple responsibilities
  • 2 years - Writing Information System Security Plans
  • Strong - Communication, analytical and interpersonal skills at all levels
  • Strong - Ability to work on multiple projects or project assignments
  • Degree - Bachelor's degree in Computer Science, Systems Engineering or equivalent experience
Preferences:
  • 3 years - Experience facilitating productive meetings to formulate business requirements and communicate stakeholder needs to technical staff
  • Industry recognized certification such as CISSP, CISA, GCIH
  • Knowledge of Medicaid and/or CHIP programs and policy
  • 2 years - Working with Health and Human Services or other Medicaid centric organizations

#DICE

#LI-CK

About Affinity

Affinity’s patented technology structures and analyzes millions of data points across emails, calendars, and third-party sources to offer users the tools they need to automatically manage their most valuable relationships, prioritize important connections, and discover untapped opportunities. Affinity uses artificial intelligence to analyze relationship strength and illuminate the best paths to warm introductions. The platform also offers a holistic view of users’ networks in a centralized, automatically updated database without any manual upkeep. Founded in 2014, Affinity is headquartered in San Francisco, California. Affinity has raised $120M to date and is backed by leading investors including Menlo Ventures, Advance Venture Partners, 8VC and MassMutual Ventures. It has over 2,700 customers in 70 countries, including venture capital firms such as Bain Capital Ventures and Kleiner Perkins, private equity firms such as SoftBank Group, investment bankers such as Woodside Capital Partners, financial services firms such as Fidelity Investments, real estate companies such as Tishman Speyer, insurers such as American Family Insurance and enterprises such as Nike, Qualcomm and Twilio. Affinity has been named in Fortune Magazine's Best Workplaces, Inc. Magazine's Best Workplaces and editor's number one pick, the Data Breakthrough Award, BIG Innovation Award and others.
Learn more about Affinity
Size
1,000 employees
Industry
Founded
2014

Similar Jobs

More Jobs at Affinity

More Information Technology Jobs

Find similar NIST Security Analyst jobs: