IT Security Analyst (Hybrid Onsite)

GSK Solutions Inc.

Town of Lansing (NY)

Hybrid

USD 90,000 - 130,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

GSK Solutions Inc. is seeking an IT Security Analyst to serve as compliance authority, coordinating with business partners and technical teams to align with NIST controls and SOM standards. The role drives SSP and ATO processes and collaborates with auditors, project managers, and vendors.

The position emphasizes leadership in risk reviews, documentation, and remediation across multiple security domains, with a hybrid onsite schedule in Lansing area and a focus on continuous improvement.

Qualifications

  • Bachelor's degree in cyber security, Information Assurance, Business Analytics, or IT related field (OR: 5 years of experience)
  • Educational background or professional knowledge of NIST Framework and Controls a must
  • Strong written and oral communication skills
  • Ability to collaborate cross-functionally

Responsibilities

  • Provide leadership and oversight for maintaining and updating System Security Plans (SSPs), ensuring documentation accuracy, completeness, and alignment with NIST protocol and SOM compliance standards.
  • Lead and coordinate the Authority to Operate (ATO) renewal process, including planning, preparing required materials, managing timelines, and ensuring successful approval and continuous compliance for all supported applications.
  • Ensure all applications maintain a valid ATO on a three-year cycle and lead efforts to validate and maintain accurate security controls throughout each renewal period.
  • Reviews and informs management on security risk assessment results and recommends corrective actions as necessary.
  • Reviews, assesses risks and scope for high level security incidents. Develops new reports for management based on those collected metrics across multiple agencies: conducts trend analysis.
  • Work with stakeholders to address and track Plans of Action & Milestones (POA&Ms) and other compliance requirements, ensuring timely reporting and closure.
  • Provide senior level support across multiple business areas, MDCR, MCSC & MiLEAP, with a focus on standardized security plan updates, documentation improvements, and long-term process consistency.
  • Analyze existing compliance documentation, identify gaps or risks, and guide corrective actions to meet regulatory and organizational requirements.
  • Coordinate cross functional collaboration with technical teams, business owners, enterprise security personnel, and project leadership to ensure all evidence and artifacts required for SSP and ATO processes are properly completed and maintained.
  • Oversee review, updates, and remediation of security controls, ensuring issues are tracked, communicated, and resolved in collaboration with stakeholders.
  • Lead efforts to identify procedural gaps, risks, or required updates during renewal cycles, ensuring consistent application of best practices across all supported systems.
  • Contribute to enterprise security governance by providing guidance, maintaining accurate records, mentoring team members, and driving timely completion of compliance activities.
  • Leads mid to high-level Incident Responses when working to resolve incidents.
  • Serves as the Incident response specialist for cyber event detection, correlation, response, and recovery.

Skills

NIST controls
Audit evidence
Incident response
Cross-functional liaison

Education

Bachelor's degree in cyber security / IT
Advanced degree preferred

Job description

Job Title

IT Security Analyst (Hybrid Onsite)

Location

Lansing, MI

Duration

12 Months

Interview Type

Virtual & In-Person

Note
  • Will close submissions on 10/8 at 10am EST
  • Interview Process: 1st round interviews will be held virtually with a potential for a 2nd round in-person. Candidates MUST be available for an in-person interview.
  • Duration: 1 year with extension likely
  • Hybrid: Resource will be working a hybrid schedule. NO REMOTE ONLY OPTION. Will need to be onsite from day 1, two days a week.
  • Local candidates ONLY. Candidates must be located within 90 miles of Lansing, MI at time of submission.
Job Description

The primary duty of this position is performing as the compliance authority and liaison among business partners, technical teams, security groups, and management. The Senior Analyst ensures that requirements, processes, and documentation align with State of Michigan standards, NIST protocols, and enterprise security governance. This role guides stakeholders through complex compliance cycles, drives consistency across application areas. They will also work and collaborate with people outside of the DTMB Agency Services Compliance Team such as vendors, auditors, project managers, and analysts.

Job Responsibilities
  • Provide leadership and oversight for maintaining and updating System Security Plans (SSPs), ensuring documentation accuracy, completeness, and alignment with NIST protocol and SOM compliance standards.
  • Lead and coordinate the Authority to Operate (ATO) renewal process, including planning, preparing required materials, managing timelines, and ensuring successful approval and continuous compliance for all supported applications.
  • Ensure all applications maintain a valid ATO on a three-year cycle and lead efforts to validate and maintain accurate security controls throughout each renewal period.
  • Reviews and informs management on security risk assessment results and recommends corrective actions as necessary.
  • Reviews, assesses risks and scope for high level security incidents. Develops new reports for management based on those collected metrics across multiple agencies: conducts trend analysis.
  • Work with stakeholders to address and track Plans of Action & Milestones (POA&Ms) and other compliance requirements, ensuring timely reporting and closure.
  • Provide senior level support across multiple business areas, MDCR, MCSC & MiLEAP, with a focus on standardized security plan updates, documentation improvements, and long-term process consistency.
  • Analyze existing compliance documentation, identify gaps or risks, and guide corrective actions to meet regulatory and organizational requirements.
  • Coordinate cross functional collaboration with technical teams, business owners, enterprise security personnel, and project leadership to ensure all evidence and artifacts required for SSP and ATO processes are properly completed and maintained.
  • Oversee review, updates, and remediation of security controls, ensuring issues are tracked, communicated, and resolved in collaboration with stakeholders.
  • Lead efforts to identify procedural gaps, risks, or required updates during renewal cycles, ensuring consistent application of best practices across all supported systems.
  • Contribute to enterprise security governance by providing guidance, maintaining accurate records, mentoring team members, and driving timely completion of compliance activities.
  • Leads mid to high-level Incident Responses when working to resolve incidents.
  • Serves as the Incident response specialist for cyber event detection, correlation, response, and recovery.
Job Qualifications
  • Bachelor's degree in cyber security, Information Assurance, Business Analytics, or IT Related Field (OR: 5 years of experience)
  • Preferred Advanced Degrees, Master's in Cybersecurity, Information Assurance, Information Systems / IT Leadership, or an MBA with an IT or Security Concentration
  • Educational or professional knowledge of NIST Framework and Controls a must
  • Strong aptitude for written and oral communication
  • Strong documentation skills
  • Can collaborate cross-functionally
Top Skills & Years of Experience
  • Experience providing audit evidence to comply with security standards such as NIST, PCI, HIPPA, FERPA - Required - 5 Years
  • Exposure to Complex IT web Applications, within the past 5 years - Required - 5 Years
  • Experience leading meetings and making oral and written reports - Required - 5 Years
  • Experience working as a liaison between different business and IT areas - Required - 5 Years
Skill - Required/Desired - Required Years of experience
  • Experience providing audit evidence to comply with security standards such as NIST, PCI, HIPPA, FERPA - Required - 5 Years
  • Exposure to Complex IT web Applications, within the past 5 years - Required - 5 Years
  • Experience leading meetings and making oral and written reports - Required - 5 Years
  • Experience working as a liaison between different business and IT areas - Required - 5 Years
  • Knowledge or experience creating supporting documentation for IT system audits - Highly Desired - 2 Years
  • Experience with the creation of Disaster Recover Plans, Business Continuity Plans, and Incident Response Plans - Highly Desired - 2 Years
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lansing, MI - IT Security Analyst
Lansing, MI - IT Security Analyst

Syntricate • Town of Lansing (NY)

Hybrid
USD 90,000 - 120,000
IT Security Analyst 3
IT Security Analyst 3

Aroha Technologies Inc • Town of Lansing (NY)

Hybrid
USD 90,000 - 125,000
Senior IT Security Compliance Analyst - DTMB
Senior IT Security Compliance Analyst - DTMB

IO Datasphere, Inc. • Lansing (MI)

Hybrid
USD 90,000 - 130,000
Senior IT Security Compliance Analyst
Senior IT Security Compliance Analyst

IO Datasphere, Inc. • Lansing (MI)

Hybrid
USD 90,000 - 130,000
Lansing, MI - IT - Agency Services - MiLEAP - N/A - IT Security Analyst 3 - MiLEAP, MCSC
Lansing, MI - IT - Agency Services - MiLEAP - N/A - IT Security Analyst 3 - MiLEAP, MCSC

Morph Enterprise LLC • Town of Lansing (NY)

Hybrid
USD 100,000 - 140,000
IT Security Compliance Analyst
IT Security Compliance Analyst

Stellar Professionals LLC • Town of Lansing (NY)

Hybrid
USD 90,000 - 120,000
IT Security Analyst
IT Security Analyst

Cybersecurity Jobs • Lansing (MI)

On-site
USD 90,000 - 130,000
Long-Term Stability
Comprehensive Health Coverage
401(k)
+1
Security Analyst
Security Analyst

Eightelevengroup • Lansing (MI)

On-site
USD 128,943,000 - 157,046,000
IT Security Analyst
IT Security Analyst

Nanosoft Consulting Talent Page • Lansing (MI)

On-site
USD 65,000 - 90,000
Sr Security Analyst
Sr Security Analyst

Dia Software Solutions • Town of Lansing (NY)

Hybrid
USD 110,000 - 150,000