Security Analyst

MARS Solutions Group

Madison (WI)

On-site

USD 85,000 - 120,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

MARS Solutions Group is seeking a Security Analyst for a State Government agency to strengthen information security across programs. The role emphasizes integrating security into operations, identifying risks, and communicating with IT and non-IT stakeholders.

The successful candidate will lead audit and compliance activities, support vulnerability management, and coordinate with procurement, legal, and vendor teams to advance security posture while maintaining a strong work-life balance.

Qualifications

  • 5+ years of experience with Vulnerability Management and Security Compliance.
  • 5+ years of IT Security Documentation & Auditing (security requirements, plans of action & milestones, proposals/briefs).
  • 5+ years of Stakeholder Management and Cross-Functional Communication (collaborative environments, updates with IT and non-IT teams).
  • Nice-to-have: Security certificates such as CEH, CISSP, etc.

Responsibilities

  • Integrate security into program operations.
  • Act as a liaison between the program area and the Information Security Section.
  • Support audit, assessment, incident response, and other regulatory activities.
  • Participate and support Program Integration related activities.
  • Support Vulnerability Management related to DMS and its vendors.
  • Support client's transition from CMS compliance requirements (MARS-E) to ARC-AMPE.
  • Support client in completing software reviews, cloud brokerage reviews, and AI Use Case reviews.
  • Other duties as assigned.

Skills

Vulnerability Management
Security Compliance
IT Security Documentation & Auditing
Stakeholder Management
Cross-Functional Communication
Security Certificates

Job description

MARS Solutions Group is looking for a
Security Analyst. Our client is a State Government agency seeking high-quality talent to make a meaningful difference in public-sector services. The organization values professionalism, collaboration, and a strong work-life balance while offering opportunities for contract extensions and long-term stability.

Top Skills & Years of Experience:

  • 5+ years of experience with Vulnerability Management and Security Compliance.
  • 5+ years of IT Security Documentation & Auditing (developing security requirements, creating plans of action & milestones, and/or developing proposals and briefs).
  • 5+ years of Stakeholder Management and Cross-Functional Communication (Working in collaborative environments and communicating updates with IT and non-IT teams).

Nice to have skills:

  • Security Certificates (CEH, CISSP, etc.)

Goals and Worker Activities

1. Integrate security into program operations

  • Partner with organizational leaders to incorporate information security best-practices into technical and operational development.
  • Provide recommendations on how to improve the information security posture of programs and reduce risk.
  • Communicate risks in simple and comprehensible terms. Provide options to mitigate risk considering business impact.
  • Draft security requirements to be included into charters, scope documents, procurements.
  • Document and communicate analysis. Answer clarifying questions.
  • Escalate to ISS leadership if an acceptable level of risk cannot be achieved

2. Act as a liaison between the program area and the Information Security Section

  • Be a solutions-focused advocate.
  • Intake projects and other program initiatives and champion them through the appropriate ISS workstream
  • Gather information as needed so that security team can perform thorough analysis
  • Communicate workstream deliverables to the customer. Verify that the deliverable meets the customer need, follow-up on any clarifications.
  • Coordinate across ISS meeting their security-focused needs
  • Coordinate with other BITS staff, Office of Legal Counsel, Bureau of Procurement and Contracting, and other program staff as needed in order to arrive to an outcome

3. Support audit, assessment, incident response, and other regulatory activities

  • Responsibility and authority will vary based on the use case and customer need.
  • Request and/or gather artifacts demonstrating compliance.
  • Schedule/facilitate communications between auditor/incident response, vendors, technical teams, and other program stakeholders.
  • In partnership with ISS, assess audit results and develop corrective action plans/plans of action and milestone.
  • Provide oversight to the resolution, test for compliance, and request authority to close.
  • Respond to regulatory inquiry and draft documents as needed

4. Participate and support Program Integration related activities

  • Back-up other security liaison roles
  • Draft and deliver status reports
  • Establish and maintain positive working relationships with stakeholders
  • Establish and documents standard operations for job-related activities.

5. Support Vulnerability Management related to DMS and its vendors

  • Foster transparency, accountability, and timely resolution of vulnerabilities with DMS and its vendors
  • Support DMS and its vendors in adhering to state and federal regulations and Policies, Procedures, Standards and Guidelines (PPSGs) related to vulnerability management
  • Draft and monitor plans of action and milestones for non-compliance

6. Support client's transition from the Center for Medicare and Medicaid Services (CMS) compliance requirements known as the Minimum Acceptable Risk Standards for Exchanges (MARS-E) to the new requirements known as Acceptable Risk Controls for ACA, Medicaid, and Partner Entities (ARC-AMPE)

  • In partnership with Deloitte, DET, and ISS conduct GAP analysis to support transition, implementation, and maturation of DHS's
  • Draft the ARC-AMPE System Security and Privacy Plan (SSPP) and keep it current
  • Draft and monitor plans of action and milestones for non-compliance

7. Support client in completing software reviews, cloud brokerage reviews, and AI Use Case reviews

8. Other duties as assigned

  • Back-up other security staff
  • Write concept papers, proposals and briefs, and other documentation

Knowledge, Skills, and Abilities

  • Well qualified candidate will have broad knowledge of information security and experience application development, technical architecture, contracting, audit, or vendor management.
  • Be familiar with NIST or another recognized framework
  • Demonstrated ability to solve complex problems, convey both oral and written instruction, and handle multiple task interruptions while providing services in a professional and courteous manner.
  • Demonstrated attention to detail and organizational skills.
  • Demonstrated ability to work effectively with customers to solve business challenges while balancing the need for confidentiality, integrity, and availability.
  • Demonstrated commitment to fostering a diverse working environment.
  • Demonstrated ability to work independently, as part of a team of peers, and also to support and contribute to a multidiscipline team environment.

About MARS Solutions Group:
MARS Solutions Group provides a range of opportunities for meaningful work by understanding that employment fit is a combination of people, process, and technology. We leverage our experienced and compassionate team to bring humanity to matching you with the right advanced technology role, and stay connected with you to help you attain your professional goals.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst
Security Analyst

The Planet Group • Wisconsin

On-site
USD 80,000 - 120,000
Cybersecurity Vulnerability Management & Compliance Analyst - $54 CTC - HYBRID (Must be WI resident)
Cybersecurity Vulnerability Management & Compliance Analyst - $54 CTC - HYBRID (Must be WI resident)

Chandra Technologies, Inc • Madison (WI)

Hybrid
USD 90,000 - 120,000
Public Sector Security Analyst & Compliance Specialist
Public Sector Security Analyst & Compliance Specialist

MARS Solutions Group • Madison (WI)

On-site
USD 85,000 - 120,000
Security Analyst III
Security Analyst III

Technoviz LLC • Madison (WI)

On-site
USD 80,000 - 110,000
Competitive salary
Opportunity for advancement
Training & development
LU - Security Analyst 1.19
LU - Security Analyst 1.19

Focused HR Solutions • Columbia (SC)

On-site
USD 70,000 - 90,000
Cyber Security Consultant at RICEFW Technologies Inc Columbia, MO
Cyber Security Consultant at RICEFW Technologies Inc Columbia, MO

RICEFW Technologies Inc • Columbia Township (MO)

On-site
USD 90,000 - 140,000
Senior ISSO & RMF Security Architect
Senior ISSO & RMF Security Architect

RICEFW Technologies Inc • Columbia Township (MO)

On-site
USD 90,000 - 140,000
Cybersecurity Analyst
Cybersecurity Analyst

SHR Consulting Group • Arlington (VA)

On-site
USD 120,000 - 160,000
Medical Insurance
Dental Insurance
Vision Insurance
+7
Information Systems Security Officer
Information Systems Security Officer

Modern Technology Solutions, Inc. (MTSI) • Patterson (OH)

On-site
USD 80,000 - 100,000
Information Assurance Engineer
Information Assurance Engineer

Agile IT Synergy, LLC • Tampa (FL)

On-site
USD 90,000 - 130,000