IT Security Analyst 2
Stellar Professionals
Lansing, MI, United States
7 days ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source
Tech stack
Software Applications
Cyber Security
Data Classification
Information Technology
Vulnerability Analysis
Job description
As a Compliance Analyst, you will build and maintain System Security Plans (SSPs) using Governance, Risk, and Compliance (GRC) tools. You’ll work closely with IT project teams and security leaders to identify vulnerabilities, validate NIST controls, and lead applications through the Authority to Operate (ATO) process., * System Security Plans (SSP): Draft, update, and maintain SSPs for critical IT applications.
- Risk & Compliance: Conduct risk assessments, track remediation plans, and align systems with NIST security controls.
- Security Testing & Scans: Lead vulnerability scanning, data classification, and mitigation tracking.
- Collaboration: Coordinate security requirements with cross-functional technical teams and vendors.
Requirements
- Experience: 1 3 years in IT Security, Compliance, or a related cybersecurity role.
- Core Standards: Strong working knowledge of NIST, SSP, and GRC concepts.
- Education / Certification (Must meet ONE):
- Bachelor’s/Associate’s degree in IT/Computer Science, OR
- Active Cybersecurity Certification (e.g., Security+, CISSP, CISA, etc.), OR
- Equivalent technical work experience.
- Communication: Clear verbal and written skills to translate complex security concepts to stakeholders.
Bonus Skills
- Hands-on experience with Keylight (GRC tool).
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.dice.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
CH
Chris Heilmann
almost 2 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
about 2 years ago
CH
Chris Heilmann
Dev Digest 138 - Are you secure about this?
almost 2 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
6 months ago
BB
Benedikt Bischof
Walking Into The Era of Supply Chain Risks
about 4 years ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago