Talent.com
Lead Analyst - Info Sec
Lead Analyst - Info SecMAXIMUS • Columbus, OH, United States
serp_jobs.error_messages.no_longer_accepting
Lead Analyst - Info Sec

Lead Analyst - Info Sec

MAXIMUS • Columbus, OH, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Description & Requirements

The Maximus DoD Cloud Information Systems Security Officer (ISSO) will work directly with the Maximus Federal Business Information Security Officer (BISO) to identify and manage implementation of security policies, standards, and procedures that support federal customers with federal requirements to include FISMA, applicable FAR and DFAR Clauses, Executive Orders, and OMB's applicable to IL5 Cloud Environments. The primary role of the ISSO will be the creation, management, and administration of a System Security Plan (SSP) to include all required artifacts needed to obtain a DISA IL5 certification and to maintain compliance with NIST 800-53 and associated NIST 800 series publications. The ISSO will be responsible for all continuous monitoring of the IL5 environment supporting federal customers and will be the SME for control management and the establishment of Inheritance which will be used to support future DoD projects

Essential Duties and Responsibilities :

  • Performs application vulnerability assessments to identify application vulnerabilities.
  • Performs network vulnerability assessments to identify host vulnerabilities.
  • Identifies, analyzes, and prioritizes vulnerability findings.
  • Analyzes system configurations to identify possible security gaps andor compliance violations.
  • Establishes collaborative working relationships with internal resources to provide security assessments, reports, and recommendations.
  • Performs other related duties as assigned.

Additional Duties and Responsibilities :

  • Create and manage System Security Plan and creation and or validation of all associated artifacts required to obtain DISA IL5 certification as well as NIST 800-53 compliance to include but not limited to a System Level Continuous Monitoring (SLCM) Strategy, HW / SW lists, Information Flow Diagrams, System Categorization Forms, System Topologies, Configuration Management Plan, Configuration Control Board (CCB) Charter, System and Services Acquisition Plan, System and Information Integrity Plan, System and Communication Protection Plan, Security Assessment and Authorization Plan, Risk Assessment Plan, Program Management Plan, Security Planning, Physical and Environmental Protection Plan, Personnel Security Plan, Media Protection Plan, Identification and Authentication Plan, Contingency Plan, Audit and Accountability Plan, Security Awareness and Training Plan, Incident Response Plan, Access Control Plan, Risk Assessment Review (RAR) and Plan of Action and Milestone (POA&M).
  • Liaison with Maximus Federal business units, Maximus Corporate business units, and external stakeholders to ensure all legal and contractual requirements pertaining to cybersecurity, physical security, and Information Assurance are being met.
  • Communicate federal requirements to Maximus Information Security Office (ISO) and advise implementation of applicable security controls and hardening standards to governance and technical teams.
  • Assist the BISO and ISO Team in the identification and assignment of control owners throughout the organization and continually review controls on organizationally defined periodicities.
  • Actively collaborate with Maximus Threat and Vulnerability Management (TVM) Team to ensure applicable technologies are compliant with defined remediation timelines and hardening standards via enterprise vulnerability management tools.
  • Minimum Requirements

  • Please refer to the additional information section of the job requisition for this opening to determine clearance eligibility required.
  • Bachelor's Degree
  • 7-10 years of security or technology related experience
  • Professional certifications, such as Security+, CEH, or CISSP, desirable
  • Knowledge of IPv4 network architecture and core services
  • Knowledge of web application development and architecture
  • Knowledge of network security controls
  • Knowledge of vulnerability management
  • Experience with dynamic application security testing (DAST) tools
  • Experience with vulnerability management (VM) tools
  • Familiarity with OWASP Top 10
  • Familiarity with WASC Threat Classification
  • Familiarity with CVE
  • Familiarity with NIST SP 800-53
  • Experience with automated service ticketing systems
  • Excellent analytical, decision-making, and problem-solving skills
  • Ability to communicate technical information in understandable business terms
  • Excellent interpersonal skills, presentation skills, and verbal / written communication skills
  • Strong customer service abilities required.
  • Ability to work collaboratively with a broad range of staff. Skilled in Microsoft Office software including Word, Excel, Visio, MS Project, and PowerPoint
  • Ability to perform comfortably in a fast-paced, deadline-oriented work environment
  • Ability to execute many complex tasks simultaneously, and work as a team member as well as independently
  • Additional Minimal Requirements :

  • Have a DoD secret clearance status or eligible to obtain secret clearance status.
  • DISA IL5 Certification Experience
  • Strong understanding of federal and DoD requirements to include but not limited to applicable Executive Orders, FISMA, FIPS, CMMC, NIST 800-171, NIST 800-60, NIST 800-65, SCRM, FedRAMP, DODI 8500s, 8500.2s, and 8510s.
  • Experience with GRC tools (eMASS, CFACTS, CSAM).
  • Experience developing SSP's and applicable artifacts required for A&A activities.
  • Experience with STIG compliance.
  • Experience with vulnerability management and assessment via Qualys and Tenable.
  • Works on complex issues where analysis of situations or data requires an in depth evaluation of variable
  • Exercises judgement in selecting methods, techniques, and evaluation criteria for obtaining results.
  • Networks with key contacts outside own area of expertise.
  • Develops solutions to a variety of complex problems.
  • Work requires considerable judgment and initiative.
  • #c0rejobs #HotJobs1111LI #HotJobs1111FB #HotJobs1111X #HotJobs1111TH #TrendingJobs #HotJobs1125LI #HotJobs1125FB #HotJobs1125X #HotJobs1125TH

    EEO Statement

    Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.

    Pay Transparency

    Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.

    Accommodations

    Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at applicantaccommodations@maximus.com .

    Minimum Salary

    108,375.00

    Maximum Salary

    146,625.00

    serp_jobs.job_alerts.create_a_job

    Lead Analyst Info Sec • Columbus, OH, United States

    Job_description.internal_linking.related_jobs
    Senior Data Analyst

    Senior Data Analyst

    Gifthealth • Columbus, Ohio, United States
    serp_jobs.job_card.full_time
    We are looking for a meticulous Senior Data Analyst with exceptional skills in data analytics and reporting to join our team. This role will serve as a vital link between our business intelligence t...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Sr Analyst,Digital Product

    Sr Analyst,Digital Product

    CVS Health • Columbus, OH, United States
    serp_jobs.job_card.full_time
    At CVS Health, we're building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.As the nation's leading h...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Business System Analyst

    Senior Business System Analyst

    Indotronix Avani Group • Columbus, Ohio Metropolitan Area, United States
    serp_jobs.job_card.full_time
    Location : Columbus, OH- Hybrid Engagement.Designs and facilitates business engagements to establish scope, business needs, project objectives, outcomes, and expectations on business processes.Overs...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Business System Analyst (Columbus)

    Senior Business System Analyst (Columbus)

    Indotronix Avani Group • Columbus, Ohio Metropolitan Area, US
    serp_jobs.job_card.part_time
    Location : Columbus, OH- Hybrid Engagement.Designs and facilitates business engagements to establish scope, business needs, project objectives, outcomes, and expectations on business processes.Overs...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Data Scientist - Lead

    Data Scientist - Lead

    Genesis10 • Columbus, OH, US
    serp_jobs.job_card.permanent +1
    Genesis10 is seeking a Data Scientist : IV (Lead).This is a remote 3-month contract to hire position with a client located in Columbus, OH. Job Description : This role combines the technical rigor of ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Analyst, Analytics Delivery

    Senior Analyst, Analytics Delivery

    McGraw-Hill Education • Columbus, OH, United States
    serp_jobs.job_card.full_time
    At McGraw Hill, we are dedicated to delivering digital learning experiences that transform education for learners and educators. Our focus is on creating seamless, impactful products that truly bene...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    InfoSec Lead

    InfoSec Lead

    Northwest Partners • Westerville, Ohio, USA
    serp_jobs.job_card.full_time
    Northwest Partners is looking for an InfoSec Lead whos passionate about building and maturing information security capabilities in complex enterprise environments. This role will help drive a newly ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Information Technology Business Analyst (Columbus)

    Senior Information Technology Business Analyst (Columbus)

    Revel IT • Columbus, OH, US
    serp_jobs.job_card.part_time
    This contract-to-hire role with our Columbus, Ohio client is a combination of IT Analyst (lightly) and IT Business Analyst. CANDIDATES MUST BE LOCAL TO COLUMBUS, OHIO.The key experience interests ar...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Financial Analyst - Information Technology

    Senior Financial Analyst - Information Technology

    McKesson • Columbus, OH, United States
    serp_jobs.job_card.full_time
    McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare.We are known for delivering insights, products, and services that make quality care more accessibl...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Sr. Director, Enterprise Data Leader

    Sr. Director, Enterprise Data Leader

    Vertiv Group • Westerville, Ohio, USA
    serp_jobs.job_card.full_time
    Director Enterprise Data Leader.This role ensures that data is treated as a strategic asset across the organization enabling transformation analytics and AI adoption at scale.The leader will overse...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Defense Data Analyst

    Defense Data Analyst

    The One 23 Group • OH, Ohio, United States
    serp_jobs.job_card.full_time
    At The One 23 Group, our mission is to set the benchmark for excellence in government services.We empower our clients in the Department of Defense, Intelligence Community, and Federal Civilian sect...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Analyst, IT Business Solutions

    Senior Analyst, IT Business Solutions

    Cardinal Health • Columbus, OH, United States
    serp_jobs.job_card.full_time
    What Application Development & Maintenance contributes to Cardinal Health.Information Technology oversees the effective development, delivery, and operation of computing and information services.Th...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Imaging Informatics Senior Analyst

    Imaging Informatics Senior Analyst

    Ohio State University Wexner Medical Center • Columbus, OH, United States
    serp_jobs.job_card.full_time
    The duties of this position are performed under the general review and supervision of clinical health system applications staff and management. A majority of assignments will be completed independen...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Epic Systems Analyst- Cadance / GrandCentral / Prelude

    Senior Epic Systems Analyst- Cadance / GrandCentral / Prelude

    OhioHealth • Columbus, OH, United States
    serp_jobs.job_card.full_time
    We are more than a health system.We believe wellness and sickness are both part of a lifelong partnership, and that everyone could use an expert guide. We work hard, care deeply and reach further to...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Analyst - IT Region / Site Support

    Senior Analyst - IT Region / Site Support

    Omni Inclusive • Circleville, OH, United States
    serp_jobs.job_card.full_time
    Associate's or bachelor's degree in Information Technology, Computer Science, or related field or comparable experience.Minimum of three (3) years of IT Support experience • Well versed with compute...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Imaging Informatics Senior Analyst

    Imaging Informatics Senior Analyst

    InsideHigherEd • Columbus, Ohio, United States
    serp_jobs.job_card.full_time
    Screen reader users may encounter difficulty with this site.For assistance with applying, please contact.If you have questions while submitting an application, please review these.Current Employees...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Information Technology Business Analyst

    Senior Information Technology Business Analyst

    Revel IT • Columbus, OH, United States
    serp_jobs.job_card.full_time
    This contract-to-hire role with our Columbus, Ohio client is a combination of IT Analyst (lightly) and IT Business Analyst. CANDIDATES MUST BE LOCAL TO COLUMBUS, OHIO.The key experience interests ar...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior Analyst, Configuration Information Management- NetworX

    Senior Analyst, Configuration Information Management- NetworX

    Molina Healthcare • Columbus, OH, United States
    serp_jobs.job_card.full_time
    Serves as a subject matter expert on system capabilities, conducting research and root cause analysis to resolve complex business and technical issues. Ensures system configuration aligns with busin...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted