Intellibee is seeking an IT Security Analyst to oversee security planning, compliance readiness, and incident response support for MCSC and MiLEAP applications in Lansing, MI (onsite).
Responsibilities
- Provide leadership and oversight for maintaining and updating System Security Plans (SSPs), ensuring documentation accuracy, completeness, and alignment with NIST protocol and SOM compliance standards.
- Lead and coordinate the Authority to Operate (ATO) renewal process: plan, prepare required materials, manage timelines, and support successful approvals and continuous compliance.
- Ensure each supported application maintains a valid ATO on a three-year cycle, including validating and maintaining accurate security controls during renewal periods.
- Review and communicate security risk assessment results to management and recommend corrective actions as needed.
- Assess risks and scope for high-level security incidents; create management reports using collected metrics and conduct trend analysis across multiple agencies.
- Partner with stakeholders to manage Plans of Action & Milestones (POA&Ms) and other compliance requirements, ensuring timely reporting and closure.
- Provide senior-level support across multiple business areas including MDCR, MCSC, and MiLEAP, focusing on standardized security plan updates, documentation improvements, and long-term process consistency.
- Analyze compliance documentation to identify gaps or risks and guide corrective actions to meet regulatory and organizational requirements.
- Coordinate cross-functional work with technical teams, business owners, enterprise security personnel, and project leadership to ensure evidence and artifacts for SSP and ATO processes are completed and maintained.
- Oversee review, updates, and remediation of security controls, tracking issues, communicating status, and driving resolution with stakeholders.
- Identify procedural gaps, risks, and required updates during renewal cycles; promote consistent use of best practices across supported systems.
- Support enterprise security governance by maintaining accurate records, mentoring team members, and ensuring compliance activities are completed on time.
- Lead mid to high-level Incident Responses during incident resolution.
- Serve as an incident response specialist for cyber event detection, correlation, response, and recovery.
Requirements
- Bachelor’s degree in cyber security, Information Assurance, Business Analytics, or an IT Related Field
- OR: 5 years of experience
- Educational or professional knowledge of the NIST Framework and Controls (required)
- Strong written and oral communication skills
- Strong documentation skills
- Ability to collaborate cross-functionally
- Experience providing audit evidence to comply with security standards such as NIST, PCI, HIPPA, FERPA (required - 5 years)
- Exposure to complex IT web applications within the past 5 years (required - 5 years)
- Experience leading meetings and producing oral and written reports (required - 5 years)
- Experience serving as a liaison between different business and IT areas (required - 5 years)
Preferred
- Advanced degrees: Master’s in Cybersecurity, Information Assurance, Information Systems / IT Leadership, or an MBA with an IT or Security Concentration
- Knowledge or experience creating supporting documentation for IT system audits (highly desired - 2 years)
- Experience with creation of Disaster Recovery Plans, Business Continuity Plans, and Incident Response Plans (highly desired - 2 years)
Technologies
- NIST Framework and Controls
- NIST
- PCI
- HIPPA
- FERPA
Benefits
- Long-Term Stability: Multi-year opportunities with room to grow
- Comprehensive Health Coverage: Healthcare benefits for you and your family
- 401(k): Enrollment support to invest in your financial security
- GC Assistance: Support for immediate Green Card processing, if required
Location: Lansing, MI (onsite)
Minimum Experience: 5 years
Education: Bachelor’s degree in cyber security, Information Assurance, Business Analytics, or IT Related Field