Information Security Analyst

NextGen Staffing
Washington, DC, United States
about 1 month ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Word Microsoft Excel Microsoft Outlook Cyber Security Federal Information Processing Standards (FIPS) Microsoft Office Microsoft PowerPoint Microsoft SharePoint Information Security Management System Operational Systems Plan of Action and Milestones

Job description

NextGen Federal Systems is seeking an Information Security Analyst to join our work supporting our DHS customer in Washington, DC. The ISA will report to the ISSM and provide security and compliance duties to assigned systems stakeholders.

Duties include but are not limited to:

  • Track and manage POAMs throughout the remediation cycle from creation to closure.
  • Review and approve Technical Requirement Model (TRM) for software products
  • Lead Authority to Operate efforts for assigned Air and Marine Operations systems
  • Ensure technical team is adhering to laid down policy and procedures to meet DHS and CBP compliance requirements.
  • Ensuring audit logs are reviewed periodically in accordance with departmental policy and the Security Authorization documentation (e.g. weekly or daily)
  • Develop, analyze and update System Security Plan (SSP), Risk Assessment (RA), Privacy Threshold Analysis (PTA), Privacy Impact Assessment (PIA), System Security test and Evaluation (ST&E) and the Plan of Actions and Milestones (POA&M)
  • Document risks and appropriate compensation controls for the Authorizing Official to make a risk-based decision on identified vulnerabilities.
  • Designate systems and categorize its C.I.A using FIPS 199 and NIST SP 800-60
  • Create update Standard Operating Procedure (SOP) for process flows and quality enhancements
  • Develop Information Security Continuous Monitoring Strategy to help maintain an ongoing awareness of information security (Ensure continued effectiveness of all security controls), vulnerabilities, and threats to support organizational risk management decisions
  • Create security impact analysis document to accompany required changes for Change Control Board approval before changes are made to assigned systems

Requirements

  • Significant ISSO experience required, in lieu of degree. (2 years)
  • A minimum of 7 years of experience in the following:
  • Developing System Security Plan
  • Managing and tracking POAMs
  • Continuing monitoring activities
  • Developing Standard Operating Procedures (SOP)
  • Understanding of NIST 800-Series
  • Proficiency with Microsoft Office software, including Word, Excel, PowerPoint, Outlook, and SharePoint.
  • Positive adjudication from a CBP Background Investigation.

About the company

About NextGen: NextGen Federal Systems is an innovative technology and professional services provider specializing in advanced software solutions and comprehensive mission and business support services. We work in close collaboration with our Customers to truly understand their business and mission goals. Our approach is to design, build, implement, and manage solutions that measurably improve our client’s organizational performance. We have established and foster a corporate culture where we:

  • Treat employees with fairness and respect regardless of their position, sexual identity, race, or tenure.
  • Communicate the importance of our mission and our employees’ contributions to it, ensuring they understand how their job role contributes to the greater good.
  • Openly promote and communicate our ideas for change and adaptability.
  • Strive to achieve results as an organization.
  • Hold employees accountable to their commitments and provide incentives that encourage positive and productive behaviors.
  • Value the talents and contributions of our employees as the key factor for our success.
  • Create an environment where people can engage at all levels.
  • Encourage people to take risks and allow them to make mistakes.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:24 min

Estimating project expenditures with Azure Pricing Calculator

Radu Vunvulea Radu Vunvulea · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:58 min

Mitigating diverse browser quirks and unsupported clipboard metadata formats

Markus Over Markus Over

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

Videos

See all

Related articles

See all