HTC Global Services

Security Analyst 3

HTC Global Services • $92K — $110K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity, Information Assurance, Business Analytics, or IT-related field, or 5 years of relevant experience.
  • Knowledge of the NIST Framework and Controls.
  • 5 years of experience providing audit evidence for compliance with security standards (NIST, PCI, HIPAA, FERPA).
  • 5 years of experience with complex IT web applications.
  • 5 years of experience leading meetings and delivering reports.
  • 5 years of experience liaising between business and IT areas.
  • Strong written and oral communication skills.

Responsibilities

  • Provide leadership for maintaining and updating System Security Plans (SSPs).
  • Lead the Authority to Operate (ATO) renewal process, managing timelines and materials.
  • Ensure applications maintain a valid ATO on a three-year cycle.
  • Review security risk assessment results and recommend corrective actions.
  • Develop management reports and conduct trend analysis across agencies.
  • Track Plans of Action & Milestones (POA&Ms) and compliance requirements.
  • Coordinate collaboration with technical teams and business owners for SSP and ATO processes.

Benefits

  • Hybrid work model offering flexibility.
  • Opportunities for professional development and training.
  • Access to a collaborative and supportive team environment.
  • Involvement in high-impact security initiatives.
Full Job Description
Senior IT Security Compliance Analyst - NIST / ATO

Position Overview

This senior-level IT security compliance role provides high-level oversight, guidance, and strategic direction for maintaining System Security Plans (SSPs), Authority to Operate (ATO) renewals, security controls, compliance documentation, and Disaster Recovery Plans (DRPs) across supported applications.

The role serves as a compliance authority and liaison among business partners, technical teams, security groups, management, vendors, auditors, project managers, and analysts. The position supports alignment with NIST protocols, security standards, and enterprise security governance while driving consistency across application areas.

What You'll Do / Key Responsibilities
  • Provide leadership and oversight for maintaining and updating System Security Plans (SSPs), ensuring documentation accuracy, completeness, and alignment with NIST protocols and applicable compliance standards.
  • Lead and coordinate the Authority to Operate (ATO) renewal process, including planning, preparing required materials, managing timelines, and supporting successful approval and continuous compliance.
  • Ensure applications maintain a valid ATO on a three-year cycle and validate and maintain accurate security controls throughout each renewal period.
  • Review and inform management on security risk assessment results and recommend corrective actions as necessary.
  • Review and assess risks and scope for high-level security incidents.
  • Develop management reports based on collected metrics and conduct trend analysis across multiple agencies.
  • Work with stakeholders to address and track Plans of Action & Milestones (POA&Ms) and other compliance requirements, ensuring timely reporting and closure.
  • Provide senior-level support across multiple business areas with a focus on standardized security plan updates, documentation improvements, and long-term process consistency.
  • Analyze existing compliance documentation, identify gaps or risks, and guide corrective actions to meet regulatory and organizational requirements.
  • Coordinate cross-functional collaboration with technical teams, business owners, enterprise security personnel, and project leadership to ensure required evidence and artifacts for SSP and ATO processes are properly completed and maintained.
  • Oversee the review, updating, and remediation of security controls, ensuring issues are tracked, communicated, and resolved with stakeholders.
  • Lead efforts to identify procedural gaps, risks, or required updates during renewal cycles and ensure consistent application of best practices across supported systems.
  • Contribute to enterprise security governance by providing guidance, maintaining accurate records, mentoring team members, and driving timely completion of compliance activities.
  • Lead mid- to high-level incident response activities when working to resolve incidents.
  • Serve as an incident response specialist for cyber event detection, correlation, response, and recovery.

Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Assurance, Business Analytics, or an IT-related field, OR 5 years of experience.
  • Educational or professional knowledge of the NIST Framework and Controls.
  • 5 years of experience providing audit evidence to comply with security standards such as NIST, PCI, HIPAA, or FERPA.
  • 5 years of experience with complex IT web applications within the past 5 years.
  • 5 years of experience leading meetings and making oral and written reports.
  • 5 years of experience working as a liaison between different business and IT areas.
  • Strong written and oral communication skills.
  • Strong documentation skills.
  • Ability to collaborate cross-functionally.

Preferred Qualifications
  • Master's degree in Cybersecurity, Information Assurance, Information Systems / IT Leadership, or an MBA with an IT or Security concentration.
  • 2 years of experience creating supporting documentation for IT system audits.
  • 2 years of experience creating Disaster Recovery Plans, Business Continuity Plans, and Incident Response Plans.

#LI-AS1 #LI-Hybrid

About HTC Global Services

HTC Global Services is a global provider of IT and Business Process Services and Solutions. Founded in 1990, HTC is headquartered in Troy, Michigan with delivery centers across multiple locations in North America, Europe, India, and Malaysia. HTC is an Inc. 500 Hall of Fame company and has been recognized by numerous industry and trade publications as a top provider of services. HTC has a strong client base of Global 2000 customers. HTC has a strong focus on healthcare, retail, financial services, and automotive verticals. HTC has a strong commitment to corporate social responsibility and has been recognized for its contributions to the community.
Learn more about HTC Global Services
Size
17,575 employees
Industry
Founded
1990
NASDAQ

Similar Jobs

More Jobs at HTC Global Services

More Information Technology Jobs

Find similar Security Analyst 3 jobs: