Senior IT Security Compliance Analyst - DTMB

IO Datasphere, Inc.

Lansing (MI)

Hybrid

USD 90,000 - 130,000

Full time

7 hours ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

The Michigan Department of Technology, Management and Budget (DTMB) seeks a Senior IT Security Compliance Analyst to provide high-level oversight, guidance, and strategic direction for SSPs and DRPs. This role acts as the compliance authority among business partners, technical teams, security groups, and management, ensuring alignment with NIST standards and enterprise governance.

Responsibilities include leading ATO renewal efforts, maintaining three-year cycle compliance, identifying gaps,

Qualifications

  • Strong written and oral communication.
  • Ability to collaborate cross-functionally.

Responsibilities

  • Provide leadership and oversight for SSPs and DRPs, ensuring alignment with NIST standards and client requirements.
  • Lead and coordinate the ATO renewal process, planning materials, managing timelines and ensuring ongoing compliance.
  • Ensure applications maintain a valid ATO on a three-year cycle and address remediation during renewals.
  • Review security risk assessment results and recommend corrective actions as needed.
  • Develop reports and conduct trend analysis across multiple agencies using collected metrics.
  • Coordinate Plans of Action & Milestones (POA&Ms) and other compliance requirements with stakeholders for timely reporting and closure.
  • Mentor team members and drive timely completion of compliance activities across enterprise.
  • Lead incident response efforts and act as incident response specialist for cyber event detection, correlation, response, and recovery.

Skills

NIST, PCI, HIPAA, FERPA audit evidence
Complex IT web applications
Leading meetings & reports
Liaison between business & IT
NIST Framework & Controls knowledge

Education

Bachelor's degree in cybersecurity / IT-related field

Job description

Client Name Michigan Department of Technology, Management and Budget (DTMB)

Requisition 166727

Location Lansing, MI

Duration 1+ years

Due Date 10/07/2026

C2C Possible Yes. Rate depends on experience

Interview Method 1st round will be webcam. 2nd Round may be in person

NOTE: Local candidates ONLY. Candidates must be located within 90 miles of Lansing, MI at time of submission. No relocation allowed. Resource will be working a hybrid schedule. NO REMOTE ONLY OPTION. Will need to be onsite from day 1, two days a week.) Candidates MUST be available for an on-site interview. We can accept H1b, H4, TN and other valid work visas for IT. However we cannot accept OPT or CPT visas at this time.

Description:

Our client seeks a Senior IT Security Compliance Analyst to serve to provide high-level oversight, guidance, and strategic direction for completing, updating, and maintaining System Security Plans (SSPs) and Disaster Recovery Plans (DRPs).

The primary duty of this position is performing as the compliance authority and liaison among business partners, technical teams, security groups, and management. The Senior Analyst ensures that requirements, processes, and documentation align with the client's standards, NIST protocols, and enterprise security governance. This role guides stakeholders through complex compliance cycles, drives consistency across application areas. They will also work and collaborate with people outside of the Agency Services Compliance Team such as vendors, auditors, project managers, and analysts.

Tasks:

  • Provide leadership and oversight for maintaining and updating System Security Plans (SSPs), ensuring documentation accuracy, completeness, and alignment with NIST protocol and client's compliance standards.
  • Lead and coordinate the Authority to Operate (ATO) renewal process, including planning, preparing required materials, managing timelines, and ensuring successful approval and continuous compliance for all supported applications.
  • Ensure all applications maintain a valid ATO on a three-year cycle and lead efforts to validate and maintain accurate security controls throughout each renewal period.
  • Reviews and informs management on security risk assessment results and recommends corrective actions as necessary.
  • Reviews, assesses risks and scope for high level security incidents. Develops new reports for management based on those collected metrics across multiple agencies: conducts trend analysis.
  • Work with stakeholders to address and track Plans of Action & Milestones (POA&Ms) and other compliance requirements, ensuring timely reporting and closure.
  • Provide senior-level support across multiple business areas with a focus on standardized security plan updates, documentation improvements, and long-term process consistency.
  • Analyze existing compliance documentation, identify gaps or risks, and guide corrective actions to meet regulatory and organizational requirements.
  • Coordinate cross-functional collaboration with technical teams, business owners, enterprise security personnel, and project leadership to ensure all evidence and artifacts required for SSP and ATO processes are properly completed and maintained.
  • Oversee review, updates, and remediation of security controls, ensuring issues are tracked, communicated, and resolved in collaboration with stakeholders.
  • Lead efforts to identify procedural gaps, risks, or required updates during renewal cycles, ensuring consistent application of best practices across all supported systems.
  • Contribute to enterprise security governance by providing guidance, maintaining accurate records, mentoring team members, and driving timely completion of compliance activities.
  • Leads mid to high-level Incident Responses when working to resolve incidents.
  • Serves as the Incident response specialist for cyber event detection, correlation, response, and recovery.

Knowledge, Skills and Abilities Required:

  • Strong aptitude for written and oral communication
  • Can collaborate cross-functionally
Skills Required
  • 5 years - Experience providing audit evidence to comply with security standards such as NIST, PCI, HIPPA, FERPA
  • 5 years - Exposure to Complex IT web Applications, within the past 5 years
  • 5 years - Experience leading meetings and making oral and written reports
  • 5 years - Experience working as a liaison between different business and IT areas
  • Educational or professional knowledge of NIST Framework and Controls
  • Bachelor's degree in cybersecurity, Information Assurance, Business Analytics, or IT Related Field or 5 years of experience
  • 2 years - Knowledge or experience creating supporting documentation for IT system audits
  • 2 years - Experience with the creation of Disaster Recover Plans, Business Continuity Plans, and Incident Response Plans
  • Preferred Advanced Degrees, Master's in Cybersecurity, Information Assurance, Information Systems / IT Leadership, or an MBA with an IT or Security Concentration
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior IT Security Compliance Analyst
Senior IT Security Compliance Analyst

IO Datasphere, Inc. • Lansing (MI)

Hybrid
USD 90,000 - 130,000
IT Security Compliance Analyst
IT Security Compliance Analyst

Stellar Professionals LLC • Town of Lansing (NY)

Hybrid
USD 90,000 - 120,000
IT Security Analyst
IT Security Analyst

Cybersecurity Jobs • Lansing (MI)

On-site
USD 70,000 - 90,000
Long-Term Stability
Comprehensive Health Coverage
401(k)
+1
Security Analyst
Security Analyst

Eightelevengroup • Lansing (MI)

On-site
USD 128,943,000 - 157,046,000
Cyber Security & Compliance Analyst
Cyber Security & Compliance Analyst

System Soft Technologies • Lansing (MI)

On-site
USD 90,000 - 120,000
NIST PCI HIPPA Web Applications Oral And Written Communication Cyber Security Analyst
NIST PCI HIPPA Web Applications Oral And Written Communication Cyber Security Analyst

COOLSOFT • Lansing (MI)

Hybrid
USD 83,000 - 131,000
Senior IT Security Compliance Analyst
Senior IT Security Compliance Analyst

The Stafford Gray Group • Town of Lansing (NY)

On-site
USD 110,000 - 160,000
IT Security Analyst
IT Security Analyst

Nanosoft Consulting Talent Page • Lansing (MI)

On-site
USD 65,000 - 90,000
IT Security Analyst, Lansing, MI, US
IT Security Analyst, Lansing, MI, US

Intellibee • Town of Lansing (NY)

On-site
USD 100,000 - 150,000
Long-Term Stability
Comprehensive Health Coverage
Future Planning
+1
Security Analyst - MiLEAP, MCSC
Security Analyst - MiLEAP, MCSC

Zohorecruit • Town of Lansing (NY)

Hybrid
USD 90,000 - 130,000
Medical, dental, and vision coverage