Information Security Analyst

NextGen Federal Systems

Washington (District of Columbia)

On-site

USD 100,000 - 140,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

NextGen Federal Systems is seeking an Information Security Analyst to join our DHS support team in Washington, DC. You will report to the ISSM and provide security and compliance duties to assigned systems stakeholders.

Key responsibilities include tracking POAMs, reviewing TRM, leading ATO efforts, ensuring policy adherence, auditing logs, and developing SSP/RA/PTA/PIA/ST&E/POA&M artifacts. A strong background in NIST controls and DHS/CBP requirements is essential.

Qualifications

  • Significant ISSO experience required, in lieu of degree (2 years).
  • 7+ years of experience in security/IS
  • Developing SSP, RA, PTA, PIA, ST&E, POA&M
  • Review and track POAMs and SOPs
  • Understanding of NIST 800-series controls
  • Proficiency with Microsoft Office products (Word/Excel/PowerPoint/Outlook) and SharePoint

Responsibilities

  • Track and manage POAMs through remediation cycle from creation to closure.
  • Review and approve TRM for software products.
  • Lead Authority to Operate efforts for assigned systems.
  • Ensure policy and procedures meet DHS/CBP compliance.
  • Review audit logs as per departmental policy.
  • Develop SSP, RA, PTA, PIA, ST&E and POA&M artifacts.
  • Document risks and controls for risk-based decisions.
  • Categorize CIAs using FIPS 199 and NIST SP 800-60.
  • Create SOPs for processes and quality improvements.
  • Develop continuous monitoring to maintain security controls.

Skills

ISSO experience
POAM management
NIST SP 800-60
Security compliance

Education

ISSO experience required (2 years)

Tools

Word
Excel
PowerPoint
Outlook
SharePoint

Job description

NextGen Federal Systems is seeking an Information Security Analyst to join our work supporting our DHS customer in Washington, DC. The ISA will report to the ISSM and provide security and compliance duties to assigned systems stakeholders.

Duties include but are not limited to:
  • Track and manage POAMs throughout the remediation cycle from creation to closure.
  • Review and approve Technical Requirement Model (TRM) for software products
  • Lead Authority to Operate efforts for assigned Air and Marine Operations systems
  • Ensure technical team is adhering to laid down policy and procedures to meet DHS and CBP compliance requirements.
  • Ensuring audit logs are reviewed periodically in accordance with departmental policy and the Security Authorization documentation (e.g. weekly or daily)
  • Develop, analyze and update System Security Plan (SSP), Risk Assessment (RA), Privacy Threshold Analysis (PTA), Privacy Impact Assessment (PIA), System Security test and Evaluation (ST&E) and the Plan of Actions and Milestones (POA&M)
  • Document risks and appropriate compensation controls for the Authorizing Official to make a risk-based decision on identified vulnerabilities.
  • Designate systems and categorize its C.I.A using FIPS 199 and NIST SP 800-60
  • Create update Standard Operating Procedure (SOP) for process flows and quality enhancements
  • Develop Information Security Continuous Monitoring Strategy to help maintain an ongoing awareness of information security (Ensure continued effectiveness of all security controls), vulnerabilities, and threats to support organizational risk management decisions
  • Create security impact analysis document to accompany required changes for Change Control Board approval before changes are made to assigned systems
Required Education, Experience and Qualifications:
  • Significant ISSO experience required, in lieu of degree. (2 years)
  • A minimum of 7 years of experience in the following:
  • Developing System Security Plan
  • Managing and tracking POAMs
  • Continuing monitoring activities
  • Developing Standard Operating Procedures (SOP)
  • Understanding of NIST 800-Series
  • Proficiency with Microsoft Office software, including Word, Excel, PowerPoint, Outlook, and SharePoint.
  • Positive adjudication from a CBP Background Investigation.
About NextGen:

NextGen Federal Systems is an innovative technology and professional services provider specializing in advanced software solutions and comprehensive mission and business support services. We work in close collaboration with our Customers to truly understand their business and mission goals. Our approach is to design, build, implement, and manage solutions that measurably improve our client’s organizational performance. We have established and foster a corporate culture where we:

  • Treat employees with fairness and respect regardless of their position, sexual identity, race, or tenure.
  • Communicate the importance of our mission and our employees’ contributions to it, ensuring they understand how their job role contributes to the greater good.
  • Openly promote and communicate our ideas for change and adaptability.
  • Strive to achieve results as an organization.
  • Hold employees accountable to their commitments and provide incentives that encourage positive and productive behaviors.
  • Value the talents and contributions of our employees as the key factor for our success.
  • Create an environment where people can engage at all levels.
  • Encourage people to take risks and allow them to make mistakes.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Security Analyst – Risk & Compliance Lead
Senior Information Security Analyst – Risk & Compliance Lead

NextGen Federal Systems • Washington

On-site
USD 100,000 - 140,000
Systems Security Analyst
Systems Security Analyst

ADG Tech Consulting, LLC • Vienna (VA)

Hybrid
USD 90,000 - 120,000
Senior Information Assurance Analyst
Senior Information Assurance Analyst

Qmulos • Arlington (VA)

On-site
USD 90,000 - 120,000
Senior Information Systems Security Officer
Senior Information Systems Security Officer

LinTech Global, a Dexian company • Washington

On-site
USD 150,000 - 175,000
Open Paid Time Off
Health Insurance with Company Contribution
401k Plan with Company Match
+1
Senior Information Systems Security Officer
Senior Information Systems Security Officer

EmergencyMD • Washington

On-site
USD 100,000 - 130,000
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

CGS Federal (Contact Government Services) • Boston (MA)

On-site
USD 90,000 - 130,000
Health, Dental, and Vision
Life Insurance
401k
+2
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

CGS Federal (Contact Government Services) • Miami (FL)

On-site
USD 85,000 - 105,000
Health, Dental, and Vision
Life Insurance
401k
+2
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

CGS Federal (Contact Government Services) • United States

On-site
USD 90,000 - 120,000
Health, Dental, and Vision
Life Insurance
401k
+2
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

CGS Federal (Contact Government Services) • Charlotte (NC)

On-site
Health, Dental, and Vision insurance
401k
Flexible Spending Account
+1
Information Systems Security Officer (ISSO)
Information Systems Security Officer (ISSO)

CGS Federal (Contact Government Services) • United States

On-site
USD 80,000 - 100,000
Health, Dental, and Vision
Life Insurance
401k
+2