Senior Information Security Analyst

Jobtailor

Maryland

On-site

USD 110,000 - 170,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Jobtailor is seeking a security-focused professional in Maryland to create and update client security deliverables (SSP, CP, ISRA, PTA/PIA) and serve as a trusted advisor on security matters for programs.

You will bridge client security teams with project teams, oversee vulnerability management, translate findings into actionable guidance, and ensure testing and compliance with FISMA and NIST RMF guidelines.

Qualifications

  • Experience in FISMA and NIST RMF guidelines
  • Experience with agile CI/CD development and testing/assessment
  • Experience in Agile development and operations support with respect to FISMA SP 800-53
  • Excellent writing and communication skills
  • Experience in understanding security testing reports
  • Experience in managing an audit for a program (SCA/ACT, A-123, IRS 1070)
  • Experience with cloud-based systems (AWS, Salesforce)
  • Experience in creating and maintaining the deliverables for the NIST RMF (800-series)
  • Experience in performing application-level testing (CP functional and tabletop testing)
  • Experience in performing risk assessments
  • Experience running meetings and holding teams to deadlines

Responsibilities

  • Create/Update all client security deliverables (SSP, CP, ISRA, CP, PTA/PIA, etc.)
  • Work with team members to ensure security functions are implemented for the program(s)
  • Act as a trusted advisor for security matters for their programs and provide training on security items when needed
  • Act as a bridge between client security teams and project teams to bridge the gap between compliance and technical security issues and both teams
  • Ensure proper testing occurs and manage the vulnerability process in the scope of the program
  • Translate technical security findings to practical issues and guide teams to corrective actions
  • Review program procedures and outputs and implement corrective action when needed
  • Act as a liaison for the program to client security teams
  • Support corporate security as needed

Skills

FISMA Compliance
NIST RMF (800-Series)
Agile CI/CD Development
Security Testing Reports
Cloud-Based Systems (AWS, Salesforce)
Excellent Writing & Communication
Risk Assessment
Vulnerability Management

Tools

Tenable
Fortify
ACT
AWS
Salesforce

Job description

  • Create/Update all client security deliverables (SSP, CP, ISRA, CP, PTA/PIA, etc.)
  • Work with team members to ensure security functions are implemented for the program(s) that are under their care.
  • Act as a trusted advisor for security matters for their programs and provide training on security items when needed.
  • Act as a bridge between client security teams and project teams to bridge the gap between compliance and technical security issues and both teams.
  • Ensure proper testing occurs and manage the vulnerability process in the scope of the program.
  • Translate technical security findings (pen tests, ACT, fortify, Tenable, etc.) to practical issues, and guide teams to appropriate preventative and corrective action.
  • Review program procedures and outputs and implement corrective action when needed.
  • Act as a liaison for the program to client security teams.
  • Support corporate security as needed.
Requirements
  • Experience in multiple aspects of FISMA, 4+ years.
  • Experience in an agile CI/CD development environment with a focusing on the testing and assessment functions (technical assessment and understanding (dev/sec/ops)
  • Experience in Agile development and operations support, in respect to FISMA SP 800-53 guidelines.
  • Excellent writing and communication skills
  • Experience in understanding security testing reports.
  • Experience in managing an audit for a program (SCA/ACT, A-123, IRS 1070, etc.)
  • Experience with cloud-based systems (e.g., AWS, Salesforce)
  • Experience in creating and maintaining the deliverables for the NIST RMF (800-series)
  • Experience in performing application-level testing (CP functional and tabletop testing required)
  • Experience in performing risk assessments.
  • Experience running meetings and holding team members to deadlines.
Core Competencies

Demonstrates expertise in security deliverables, compliance with FISMA and NIST RMF guidelines, and effective communication with both technical and client security teams. Proficient in managing security assessments, vulnerability processes, and agile development environments.

Highest-signal resume keywords
  • FISMA Compliance
  • NIST RMF (800-Series)
  • Agile CI/CD Development
  • Security Testing Reports
  • Cloud-Based Systems (AWS, Salesforce)
ATS Optimization Keywords
Hard Skills
  • Security Deliverables Creation
  • Vulnerability Management
  • Risk Assessment
  • Application-Level Testing
  • Technical Security Findings Translation
Soft Skills
  • Excellent Writing Skills
  • Communication Skills
  • Team Leadership
  • Meeting Facilitation
Industry Keywords
  • FISMA
  • NIST SP 800-53
  • SCA/ACT
  • A-123
  • IRS 1070
Tools & Technologies
  • Tenable
  • Fortify
  • ACT
  • AWS
  • Salesforce
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Systems Security Officer
Senior Information Systems Security Officer

Jobtailor • Washington

On-site
USD 120,000 - 180,000
Lead Federal Auditor
Lead Federal Auditor

Jobtailor • California (MO)

On-site
USD 120,000 - 180,000
Information Systems Security Engineer
Information Systems Security Engineer

Jobtailor • King of Prussia (PA)

On-site
USD 120,000 - 170,000
Senior Information Systems Security Engineer – ISSE
Senior Information Systems Security Engineer – ISSE

Jobtailor • Maryland

On-site
USD 140,000 - 180,000
Cybersecurity Risk, Managing Consultant
Cybersecurity Risk, Managing Consultant

Jobtailor • Washington

On-site
USD 120,000 - 180,000
Lead Governance and Compliance Analyst
Lead Governance and Compliance Analyst

Jobtailor • Washington

On-site
USD 140,000 - 190,000
Information System Security Manager – ISSM
Information System Security Manager – ISSM

Jobtailor • Ventura (CA)

On-site
USD 110,000 - 150,000
Associate Information Security Engineer
Associate Information Security Engineer

Jobtailor • Louisiana (MO)

On-site
USD 90,000 - 130,000
Project Lead
Project Lead

Jobtailor • Colorado

On-site
USD 150,000 - 190,000
Senior IS Advisor, Treasury Services Division
Senior IS Advisor, Treasury Services Division

Jobtailor • Town of Montana (WI)

On-site
USD 110,000 - 150,000