Sr Security Analyst

Dia Software Solutions

Town of Lansing (NY)

Hybrid

USD 110,000 - 150,000

Full time

4 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

DIA SOFTWARE SOLUTIONS LLC is seeking a Senior IT Security Analyst to support the Michigan state agencies by maintaining SSPs/DRPs, guiding compliance with NIST and SOM standards, and coordinating ATO renewals.

The role requires strong communication, cross-functional collaboration, and the ability to translate complex security requirements into actionable controls across MDCR, MCSC, and MiLEAP.

Qualifications

  • Bachelor's degree in cyber security, Information Assurance, Business Analytics, or IT related field.
  • 5 years of experience
  • Advanced degrees preferred (Master's in Cybersecurity, Information Assurance, Information Systems / IT Leadership, or MBA with IT/Security concentration)
  • Knowledge of NIST Framework and Controls
  • Strong written & oral communication
  • Strong documentation skills
  • Cross-functional collaboration

Responsibilities

  • Maintain and update System Security Plans (SSPs) aligned with NIST and SOM standards.
  • Lead Authority to Operate (ATO) renewal planning and materials, timelines and approvals.
  • Ensure all applications have a valid ATO on a 3-year cycle and maintain security controls.
  • Review risk assessments and recommend corrective actions.
  • Develop reports and perform trend analysis across agencies.
  • Coordinate Plans of Action & Milestones (POA&M) tracking and closure.
  • Provide senior-level support across MDCR, MCSC and MiLEAP.
  • Identify gaps in compliance and guide corrective actions.
  • Ensure evidence for SSP and ATO processes is complete across teams.
  • Lead incident response activities as needed.

Skills

Audit evidence
NIST
Security governance
Incident response
Communication

Education

Bachelor's degree in cyber security
Master's degree preferred

Job description

Hi,

Greetings from DIA SOFTWARE SOLUTIONS LLC!

We reaching out about an exciting Direct client opportunity with one of our clients.

Direct client Req:: Need Sr Security Analyst ,Hybrid, MI

Job Description:

This Senior IT Business/Compliance Analyst position serves as a senior resource within the Department
of Technology, Management and Budget (DTMB) Agency Services for Michigan Department of Civil
Rights (MDCR), Michigan Civil Service Commission (MCSC) and Michigan Department of Lifelong
Education, Advancement and Potential (MILEAP). The role provides high-level oversight, guidance, and
strategic direction for completing, updating, and maintaining System Security Plans (SSPs) and Disaster
Recovery Plans (DRPs) for the MCSC and MiLEAP applications.

The primary duty of this position is performing as the compliance authority and liaison among business
partners, technical teams, security groups, and management. The Senior Analyst ensures that
requirements, processes, and documentation align with State of Michigan standards, NIST protocols,
and enterprise security governance. This role guides stakeholders through complex compliance cycles,
drives consistency across application areas. They will also work and collaborate with people outside of
the DTMB Agency Services Compliance Team such as vendors, auditors, project managers, and analysts.

Job responsibilities:
  • Provide leadership and oversight for maintaining and updating System Security Plans (SSPs),
    ensuring documentation accuracy, completeness, and alignment with NIST protocol and
    SOM compliance standards.
  • Lead and coordinate the Authority to Operate (ATO) renewal process, including planning,
    preparing required materials, managing timelines, and ensuring successful approval and
    continuous compliance for all supported applications.
  • Ensure all applications maintain a valid ATO on a three-year cycle and lead efforts to validate
    and maintain accurate security controls throughout each renewal period.
  • Reviews and informs management on security risk assessment results and recommends
    corrective actions as necessary.
  • Reviews, assesses risks and scope for high level security incidents. Develops new reports for
    management based on those collected metrics across multiple agencies: conducts trend
    analysis.
  • Work with stakeholders to address and track Plans of Action & Milestones (POA&Ms) and
    other compliance requirements, ensuring timely reporting and closure.
  • Provide senior-level support across multiple business areas, MDCR, MCSC & MiLEAP, with a
    focus on standardized security plan updates, documentation improvements, and long-term
    process consistency.
  • Analyze existing compliance documentation, identify gaps or risks, and guide corrective
    actions to meet regulatory and organizational requirements.
  • Coordinate cross-functional collaboration with technical teams, business owners, enterprise
    security personnel, and project leadership to ensure all evidence and artifacts required for
    SSP and ATO processes are properly completed and maintained.
  • Oversee review, updates, and remediation of security controls, ensuring issues are tracked,
    communicated, and resolved in collaboration with stakeholders.
  • Lead efforts to identify procedural gaps, risks, or required updates during renewal cycles,
    ensuring consistent application of best practices across all supported systems.
  • Contribute to enterprise security governance by providing guidance, maintaining accurate
    records, mentoring team members, and driving timely completion of compliance activities.
  • Leads mid to high-level Incident Responses when working to resolve incidents.
  • Serves as the Incident response specialist for cyber event detection, correlation, response,
    and recovery.
Job Qualifications:

Bachelor s degree in cyber security, Information Assurance, Business Analytics, or IT Related
Field

o OR: 5 years of experience

  • Preferred Advanced Degrees, Master s in Cybersecurity, Information Assurance, Information
    Systems / IT Leadership, or an MBA with an IT or Security Concentration

  • Educational or professional knowledge of NIST Framework and Controls a must

  • Strong aptitude for written and oral communication

  • Strong documentation skills

  • Can collaborate cross-functionally

|----------------------------------------------------------------------------------------------------------------|----------------|----------------------|
| Skill | Required | Amount of Experience |
| Experience providing audit evidence to comply with security standards such as NIST, PCI, HIPPA, FERPA | Required | 5 Years |
| Exposure to Complex IT web Applications, within the past 5 years | Required | 5 Years |
| Experience leading meetings and making oral and written reports | Required | 5 Years |
| Experience working as a liaison between different business and IT areas | Required | 5 Years |
| Knowledge or experience creating supporting documentation for IT system audits | Highly Desired | 2 Years |
| Experience with the creation of Disaster Recover Plans, Business Continuity Plans, and Incident Response Plans | Highly Desired | 2 Years |

DIA SOFTWARE SOLUTIONS LLC.

VENKATESH| DIA SOFTWARE SOLUTIONS LLC.

Direct: Eight Zero Four Three Six Five Six Nine Three Four

DIA SOFTWARE SOLUTIONS is an affirmative action/Equal Opportunity Employer that supports workplace diversity. All employment decisions are made without regard to race, color, religion, sex, national origin, age, disability, veteran status, marital or family status, sexual orientation, gender identity, or genetic information. All Dia soft staff must be able to demonstrate the legal right to work in the United States. DIA SOFTWARE SOLUTIONS is an E-Verify employer

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT Security Analyst (Hybrid Onsite)
IT Security Analyst (Hybrid Onsite)

GSK Solutions Inc. • Town of Lansing (NY)

Hybrid
USD 90,000 - 130,000
Lansing, MI - IT Security Analyst
Lansing, MI - IT Security Analyst

Syntricate • Town of Lansing (NY)

Hybrid
USD 90,000 - 120,000
Senior IT Security Compliance Analyst
Senior IT Security Compliance Analyst

IO Datasphere, Inc. • Lansing (MI)

Hybrid
USD 90,000 - 130,000
Senior IT Security Compliance Analyst - DTMB
Senior IT Security Compliance Analyst - DTMB

IO Datasphere, Inc. • Lansing (MI)

Hybrid
USD 90,000 - 130,000
IT Security Analyst, Lansing, MI, US
IT Security Analyst, Lansing, MI, US

Intellibee • Town of Lansing (NY)

On-site
USD 100,000 - 150,000
Long-Term Stability
Comprehensive Health Coverage
Future Planning
+1
Security Analyst - MiLEAP, MCSC
Security Analyst - MiLEAP, MCSC

Zohorecruit • Town of Lansing (NY)

Hybrid
USD 90,000 - 130,000
Medical, dental, and vision coverage
Security Analyst - MiLEAP, MCSC
Security Analyst - MiLEAP, MCSC

Zohorecruit • Lansing (MI)

Hybrid
USD 100,000 - 135,000
IT Security Analyst
IT Security Analyst

Cybersecurity Jobs • Lansing (MI)

On-site
USD 90,000 - 130,000
Long-Term Stability
Comprehensive Health Coverage
401(k)
+1
Senior IT Security & Compliance Analyst (Hybrid)
Senior IT Security & Compliance Analyst (Hybrid)

Dia Software Solutions • Town of Lansing (NY)

Hybrid
USD 110,000 - 150,000
Lansing, MI - IT - Agency Services - MiLEAP - N/A - IT Security Analyst 3 - MiLEAP, MCSC
Lansing, MI - IT - Agency Services - MiLEAP - N/A - IT Security Analyst 3 - MiLEAP, MCSC

Morph Enterprise LLC • Town of Lansing (NY)

Hybrid
USD 100,000 - 140,000