Enable job alerts via email!

Senior Information Security Analyst

KBR, Inc.

Washington (District of Columbia)

On-site

USD 102,000 - 154,000

Full time

8 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

An innovative firm is seeking a Senior Information Security Analyst to enhance cybersecurity for the Administrative Office of the US Courts. This hybrid role involves managing security risks, implementing NIST security controls, and ensuring compliance with federal standards. You will work in a dynamic environment, collaborating with stakeholders to safeguard critical judiciary information assets. If you have a strong background in information security governance and a passion for protecting sensitive data, this opportunity is perfect for you. Join a team that values innovation and commitment to a secure digital future.

Benefits

401K plan with company match
Medical, dental, and vision insurance
Flexible spending account
Paid time off
Flexible work schedule
Professional training and development

Qualifications

  • 7-10 years of IT system security experience, including GRC.
  • In-depth knowledge of NIST 800-53 and Risk Management Framework.

Responsibilities

  • Manage security risks using JISF and NIST RMF.
  • Implement and assess security controls for information systems.

Skills

Information Security Governance
Risk Management Framework (RMF)
NIST 800-53 Controls
Cybersecurity Compliance
Analytical Skills
Customer Communication

Education

Bachelor's degree in Information Technology

Tools

Cybersecurity Assessment and Management (CSAM)
Splunk
Nessus VSS

Job description

Join to apply for the Senior Information Security Analyst role at KBR, Inc.

1 week ago Be among the first 25 applicants

Join to apply for the Senior Information Security Analyst role at KBR, Inc.

This range is provided by KBR, Inc.. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

$102,700.00/yr - $154,000.00/yr

Direct message the job poster from KBR, Inc.

Senior Information Security Analyst (Hybrid)

Belong. Connect. Grow. with KBR!

Around here, we define the future.

We are a company of innovators, thinkers, creators, explorers, volunteers, and dreamers. But we all share one goal: to improve the world responsibly and safely.

THIS POSITION IS CONTINGENT UPON CONTRACT AWARD

KBR is hiring a full-time Senior Information Security Analyst supporting the Administrative Office of the US Courts and is contingent upon successful contract award.

This onsite position is located at the Thurgood Marshall Federal Judiciary Building in Washington DC and has the option of an approved telework/hybrid work schedule.

The core work hours dedicated to KBR and our direct customer are 8 am Est to 5 pm Est. No travel is expected with this position.

The Administrative Office of the US Courts Chief Operating Officer (COO) Information Security & Validation Staff (ISVS) is responsible for governing, overseeing, developing, strengthening, and maintaining the information security posture within COO Offices to meet and exceed enterprise security standards. Their mission is to proactively ensure the integrity, confidentiality, and availability of critical judiciary information assets through a comprehensive, rigorous security approach via our governance, risk management, and compliance (GRC) program.

The Senior Information Security Analyst will be responsible for enhancing cybersecurity for its customers including cybersecurity systems support, cybersecurity compliance, and cybersecurity risk management for the COO comprehensive IT system portfolio.

Primary Responsibilities:

  • Prepare Information Systems: Carry out activities at various levels to help manage security and privacy risks using the JISF and NIST RMF.
  • Categorize Information Systems: Determine the adverse impact to Judiciary operations and assets, individuals, other organizations, and the Nation.
  • Select Security Controls: Select, tailor, and document the controls necessary to protect the information system and organization.
  • Implement Security Controls: Implement the government-approved security controls specified in the Security Plan.
  • Assess Security Controls: Determine if the controls selected for implementation are operating as intended and producing the desired outcome.
  • Authorize Information System: Provide accountability by requiring a government senior management official to determine if the security and privacy risk is acceptable.
  • Monitor Security Controls: Maintain ongoing situational awareness about the security and privacy posture of the information system in compliance with NIST SP 800-53 Rev. 5, NIST SP 800-37 Rev. 2, and CSF 2.0.
  • Leveraging the existing GRC tool to track and reconcile findings from assessments, audits, and vulnerability scans.
  • Common Control Identification: Identify, document, and publish Judiciary-wide common controls available for inheritance by Judicial systems.
  • Mission or Business Focus: Identify and document the missions, business functions, and mission/business processes that the system is intended to support.
  • System Stakeholders: Identify stakeholders who have an interest in the design, development, implementation, assessment, operation, maintenance, or disposal of the system.
  • Asset Identification: Identify assets that require protection.
  • Authorization Boundary: Determine the authorization boundary of the system.
  • Information Types: Identify the types of information to be processed, stored, and transmitted by the system.
  • Information Life Cycle: Identify and understand all stages of the information life cycle for each information type processed, stored, or transmitted by the system.
  • Risk Assessment—System: Conduct a system-level risk assessment and update the risk assessment results as needed
  • Produce and perform quality review of InfoSec Governance, Risk and Compliance (GRC) product deliverables.

Required Qualifications

  • Ability to obtain a Public Trust Suitability Determination: Medium Risk Level 2
  • Seven (7) to ten (10) years of IT system security experience including five years of specialized InfoSec Governance, Risk and Compliance (GRC) experience of which two years were direct supervisory experience.
  • Possess in-depth knowledge of applying, selecting and testing the NIST 800-53 Rev 4 or 5 security controls.
  • Possess in-depth knowledge of NIST 800-37 Risk Management Framework.
  • Excellent customer-handling and verbal/written communication with teamwork emphasis
  • Strong analytical skills and attention to detail
  • Ability to handle and prioritize multiple tasks and deadlines
  • Ability to explain technical details and issues clearly to non-technical individuals and be able to explain problems clearly and concisely
  • Experience with the full Software Development Life Cycle (SDLC)

Education: Bachelor's degree in information technology or related field

Desired Skills:

  • Experience using Cybersecurity Assessment and Management (CSAM) Global Risk Compliance tool
  • Experience using Splunk and Nessus VSS vulnerability scan software
  • Information security certifications (CISSP, etc.)

The candidate must be able to obtain and maintain a national agency check and background investigation after hire to obtain a badge for facility access and user accounts.

Basic Compensation:

$102,700 - $154,000

This pay range is applicable to the DC area only.

The offered rate will be based on contract affordability and the selected candidate’s working location, knowledge, skills, abilities and/or experience, and in consideration of internal parity.

Additional Compensation:

KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short term incentives, long term incentives, or discretionary payments for exceptional performance.

KBR offers a selection of competitive lifestyle benefits which could include 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development.

Click here to learn more: KBR Benefits | KBR

Belong, Connect and Grow at KBR

At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team’s philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver – Together.

KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.

Seniority level
  • Seniority level
    Not Applicable
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology, Analyst, and Other
  • Industries
    Space Research and Technology, IT Services and IT Consulting, and Engineering Services

Referrals increase your chances of interviewing at KBR, Inc. by 2x

Sign in to set job alerts for “Information Security Analyst” roles.
Business Process Analyst Level III Office of the Under Secretary of Defense for Acquisition and Sustainment U.S. Department of Defense Washington, D.C. Metro Area – Proposal Position

District of Columbia, United States 2 days ago

Annapolis Junction, MD $142,100.00-$171,600.00 5 months ago

Cyber Security Specialist - Multiple Levels
Business Operations Analyst, WWPS National Security & Defense

Herndon, VA $79,300.00-$169,500.00 5 days ago

Arlington, VA $150,000.00-$175,000.00 2 weeks ago

Assistant Facilities Security Officer/ Site Assessor
Security Intelligence Analyst, AWS Security
Cyber Security Analyst - Secret - Part-Time

Fort Meade, MD $185,000.00-$225,000.00 6 months ago

IT Security Risk and Compliance Analyst II

Silver Spring, MD $91,000.00-$113,000.00 4 days ago

District of Columbia, United States 2 weeks ago

Columbia, MD $100,000.00-$195,000.00 4 months ago

Senior Information Security Engineer, Cloud Security
Information Security Analyst – Strategic Services

Fairfax, VA $105,000.00-$115,000.00 1 month ago

Business Operations Analyst, SMGS Ops - WWPS National Security and Defense
DEPUTY CHIEF, INFORMATION SECURITY OFFICER (REPOST) IT ASSISTANT DIRECTOR II

Annapolis Junction, MD $109,800.00-$241,600.00 3 months ago

Senior Information Systems Security Engineer (ISSE) SME (ISSO/Cybersecurity Architect - SME)
Information Technology Security Engineer

Washington DC-Baltimore Area $140,000.00-$150,000.00 1 day ago

Government and Public Sector - Cybersecurity - Defense Responder - Senior Consultant

McLean, VA $103,800.00-$190,300.00 1 week ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Information Security Analyst - Remote

Velera

Town of Texas

Remote

USD 84,000 - 109,000

10 days ago

Senior Data Security Analyst

White Ops

Remote

USD 80,000 - 120,000

2 days ago
Be an early applicant

Senior Security Analyst (Network & Cloud)

Ivy Rehab Network

City of White Plains

Remote

USD 120,000 - 150,000

5 days ago
Be an early applicant

Senior Information Security Analyst (Hybrid Opportunity)

University of Massachusetts Amherst

Amherst

Hybrid

USD 80,000 - 110,000

6 days ago
Be an early applicant

Senior Information Security Analyst (Hybrid Opportunity)

UMass Amherst

Amherst

Hybrid

USD 70,000 - 110,000

4 days ago
Be an early applicant

Senior Information Security Analyst

DSA Inc.

Virginia

On-site

USD 80,000 - 120,000

6 days ago
Be an early applicant

Senior Information Security Analyst with Security Clearance

Super Systems Inc

Massachusetts

On-site

USD 100,000 - 120,000

7 days ago
Be an early applicant

Senior Software Engineer – MIG

Movement Infrastructure

Washington

Remote

USD 140,000 - 165,000

Today
Be an early applicant

Sr. Software Engineer

Element Solutions

Washington

Remote

USD 100,000 - 150,000

6 days ago
Be an early applicant