Information Security Analyst

RiseMe

Washington (District of Columbia)

On-site

USD 86,000 - 105,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical
Dental
Vision
401K

Job summary

Cherokee Federal’s Cherokee Nation System Solutions (CNSS) seeks an Information Security Analyst to support ITGC testing, design and operate controls, and strengthen internal controls over financial systems. You will contribute to DHS-aligned remediation plans and work with cross-functional teams to embed security requirements in planning and reporting.

Preferred qualifications include a bachelor’s degree in a related field, 2 years in government IT testing with ITGC, and familiarity with

Qualifications

  • Bachelor’s degree in a business field, systems engineering, computers, or other related fields.
  • Two years of government IT financial or system testing experience, including one year of ITGC experience.
  • Knowledge of Federal and DHS policies and guidance, OMB A-123, DISA STIGS, DHS hardening guidance, DHS CEM framework, and testing/POA&M management.
  • Strong communication and interpersonal skills for collaboration with senior staff and stakeholders.
  • Ability to work independently and prioritize in a fast-paced environment.
  • Must obtain Public Trust and DHS suitability; must pass Cherokee Federal pre-employment qualifications.

Responsibilities

  • Provide ITGC testing to develop and execute test plans identifying procedural issues that pose financial risk.
  • Assist in designing and operating IT controls to protect financial data.
  • Support IT Benchmarking and A-123 ITGC scoping across fiscal years.
  • Develop remediation plans for identified deficiencies per DHS 4300A and OCISO guidance.
  • Conduct Test of Design and Test of Effectiveness for IT programs tied to internal controls over financial systems.
  • Collaborate with cross-functional teams to integrate security requirements into planning and reporting.
  • Report progress and risks to management and provide updates on security initiatives.

Skills

ITGC testing
NIST 800-53
Security controls
Communication skills

Education

Bachelor’s degree in business, systems engineering, computers, or related fields

Job description

Compensation & Benefits:

Estimated Starting Salary Range for Information Security Analyst: Starting $95,000

Pay commensurate with experience.

  • Full-time benefits include Medical, Dental, Vision, 401K, and other possible benefits as provided.
  • Benefits are subject to change with or without notice.
Information Security Analyst Responsibilities Include:
  • Provide Information Technology General Controls (ITGC) testing to develop and execute software test plans to identify procedural issues related to software configurations resulting in financial risk.
  • Assist stakeholders in designing, implementing, and effectively operating IT controls and processes that protect financial data.
  • Support in performing IT Benchmarking tasks which are used to demonstrate through testing that a sufficiently strong IT internal control environment for CFO Systems (internal and external) is designed and operated effectively that will lead to a downgrade of the IT deficiencies.
  • Assist in the development of a strategy that will enable the Benchmarks in consideration of available resources within the organization. Additional support is required to perform an initial A-123 ITGC assessment scoping each Fiscal Year (FY) based on the organization strategy.
  • Establish plans of action and milestones (POA&M) or Remediation Work Plans for all identified deficiencies within required timeframes per DHS 4300A and OCISO guidance.
  • Conduct Test of Design (TOD) for the IT program used for internal controls, over Financial Systems. Includes but not limited to evaluating the design of a control to determine whether the control should sufficiently address the corresponding control requirement and objective as well as relevant standards and regulations such as NIST 800-53, Rev. 5 and DHS Sensitive Systems Policy Directive 4300A.
  • Conduct Test of Effectiveness (TOE) for the IT program used for internal controls, over Financial Systems. Includes but not limited to evaluating the operating effectiveness of a control to determine whether the control is correctly implemented and operated as designed.
  • Provide support to ad-hoc IT Assessments to include but not limited to critical IT controls (CIC), Financial and related financial system ATOs, Accounting Treatment Manual Assessment and Testing (ATM), etc.
  • Collaborate with cross-functional teams to integrate security requirements into system planning, fieldwork, and reporting.
  • Work general supervision, relying on experience and judgment to plan and accomplish goals, while demonstrating a wide degree of creativity and latitude in problem-solving.
  • Report to a manager or head of a unit/department, providing regular updates on security initiatives, risks, and mitigation strategies.
  • Performs other job-related duties as assigned.
Information Security Analyst Experience, Education, Skills, Abilities requested:
  • Minimum education includes a bachelor’s degree in a business field, systems engineering, computers, or other related fields.
  • Minimum experience includes having two (2) years of government IT financial or system testing, including one year of federal internal controls ITGC experience.
  • Knowledge of Federal and Department of Homeland Security (DHS) policies and guidance, OMB A-123 attachment R-4300A, DISA STIGS, DHS hardening guidance, DHS Control Evaluation Matrix (CEM) framework, DHS CEM Testing and POA&M management
  • Strong communication and interpersonal skills, with the ability to collaborate effectively with senior management, technical teams, and stakeholders.
  • Ability to work independently and prioritize tasks in a fast-paced environment.
  • Must be able to obtain a Public Trust and DHS suitability
  • Must pass pre-employment qualifications of Cherokee Federal.
Company Information:

Cherokee Nation System Solutions (CNSS) is a part of Cherokee Federal - the division of tribally owned federal contracting companies owned by Cherokee Nation Businesses. As a trusted partner for more than 60 federal clients, Cherokee Federal LLCs are focused on building a brighter future, solving complex challenges, and serving the government’s mission with compassion and heart. To learn more about CNSS, visit cherokee-federal.com.

Cherokee Federal is a military friendly employer. Veterans and active military transitioning to civilian status are encouraged to apply.

#CherokeeFederal #LI

Similar Job Titles:
  • IT Security Analyst
  • Information Assurance Analyst
  • Cybersecurity Analyst
  • IT Risk Analyst
  • Security Compliance Analyst
Keywords:
  • IT General Controls (ITGC)
  • Risk Assessment
  • Compliance Testing
  • Security Controls
  • Internal Audit
Legal Disclaimer:

Cherokee Federal is an equal opportunity employer. Please visit cherokee-federal.com/careers for information regarding our *Affirmative Action and Equal Opportunity Employer Statement*, and Accommodation request.

Many of our job openings require access to government buildings or military installations. Candidates must pass pre-employment qualifications of Cherokee Federal.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Analyst
Information Security Analyst

Cherokee Federal • Washington

On-site
USD 95,000 - 110,000
Medical insurance
Dental insurance
Vision insurance
+1
Information Security Analyst - Strengthen ITGC & Compliance
Information Security Analyst - Strengthen ITGC & Compliance

RiseMe • Washington

On-site
USD 86,000 - 105,000
Medical
Dental
Vision
+1
Senior Cyber Analyst
Senior Cyber Analyst

Cherokee Federal • Quantico (VA)

On-site
USD 130,000 - 160,000
401(k) match
PTO
Medical insurance
+5
Mid Cyber Analyst
Mid Cyber Analyst

Cherokee Federal • Quantico (VA)

On-site
USD 90,000 - 100,000
Medical
Dental
Vision
+1
IT Analyst Mid Level – Vulnerability Assessment Analyst
IT Analyst Mid Level – Vulnerability Assessment Analyst

Cherokee Federal • Huntsville (AL)

On-site
USD 90,000 - 120,000
Medical
Dental
Vision
+1
Cybersecurity & ITGC Controls Analyst
Cybersecurity & ITGC Controls Analyst

Cherokee Federal • Washington

On-site
USD 95,000 - 110,000
Medical insurance
Dental insurance
Vision insurance
+1
Cyber Security Engineer III
Cyber Security Engineer III

Cherokee Federal • Denver (CO)

On-site
USD 100,000 - 150,000
Medical
Dental
Vision
+2
Cybersecurity Specialist - Mid
Cybersecurity Specialist - Mid

RiseMe • Arlington (VA)

Hybrid
USD 185,000 - 215,000
401(k) match
Paid time off
Medical/dental/vision
Program Analyst I
Program Analyst I

Cherokee Federal • Arlington (VA)

On-site
USD 80,000 - 90,000
Medical, Dental, Vision
401K
Counterintelligence Analyst - Senior
Counterintelligence Analyst - Senior

Cherokee Federal • Quantico (VA)

On-site
USD 110,000 - 120,000
Medical
Dental
Vision
+1