> Markdown version of [/jobs/ext/2229435-senior-information-systems-analyst](https://www.wearedevelopers.com/jobs/ext/2229435-senior-information-systems-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information Systems Analyst - **Company:** MAG LLC - **Location:** Lexington Park, MD, United States - **Experience:** Expert - **Salary:** $100,000.0 - $140,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, Information Systems Security Architecture Professional, Network Security, Open Source Technology, Information Technology - **Published:** August 25, 2026 - **Apply:** https://dejobs.org/x/x/18AA4D0CA5DB4BB7B8FC000532C59489/job/ ## About the Role * (10) years of required experience as a ISSM orInformation Security Analyst. * Of the minimum ten (10) years of required experience, at least five (5) years of the experience must be in all phases of IA and accreditation process for Top Secret networks. * Additionally, at least five (5) years of experience maintaining systems accreditation documentation. Education / Certifications: * MUST HAVE anActive Certified Information Systems Security Professional (CISSP) OR CompTIA Advanced Security Practitioner (CASP) * Master's Degree in a Technical, IT or Computer Science Discipline Clearance: * Must currently have a Top Secret Security Clearance * US Citizenship required ## Description MAG Aerospace is seeking to identify a Senior Information Security Analyst to support operations based out of Webster Outlying Field (WOLF), MD. This position provide security engineering and assessment work in accordance with established procedures and protocols while ensuring the demonstrable Confidentiality, Integrity and Availability (CIA) of information assets for authorized internal and external users by reviewing, validating, classifying, and responding to security events and cyber-attacks. * This position is contingent upon receipt of government funding and hiring authorization., Essential Duties and Responsibilities include the following. Other duties may be assigned. * The position will assist with meeting the requirements of all four domains (Security Oversight, IT Risk Assessment, Security Engineering, and Security Operations) and focus on depth upon the domain requirements of Security Operations and IT Risk Assessment. * Works with assistance from senior staff to define security requirements, track security specific issues/concerns, provide security solutions, identify & communicate vulnerabilities being introduced into the environment, and identify exceptions to policy. * Assists in the development of enterprise-wide designs as well as research, develops and recommends architectural policies and practices for current and future initiatives from definition phase through implementation with guidance from senior staff. * Manages internal security initiatives, with assistance from senior staff, that require little assistance from other groups. This includes writing requirements, managing the procurement process, initial installation, and configuration, and overseeing the entire project lifecycle. * Researches, evaluates, and stays current on emerging tools, techniques, and technologies Isolate, define, and analyze issues or conditions regarding the IT department * Resolve critical problems in all the US based locations * Establish criteria, formulate projects, assess program effectiveness, and investigate a variety of technical conditions, problems, or issues * Perform research, conduct studies, and adapt computer technology to meet the MAG IT department program plans to ensure the enterprise is compliant with all applicable Federal DoD Cybersecurity requirements - * Provide authoritative information security advice and guidance to the Director for the Information Technology Department * Create policies, implement controls, and provide training as necessary to ensure adherence to all applicable Federal DoD cybersecurity standards, HIPAA, and other relevant technology requirements * Perform risk assessment activities to include the mitigation for vulnerabilities at regular intervals * Maintain a record of any security violations and applicable resolutions * Knowledge of a variety of information technology and cybersecurity competencies related to automated support, including an understanding of sophisticated analytical concepts, principles, techniques, and practices * Comprehensive knowledge and demonstrated experience in managing procedures, policies, and standards such as NIST 800-171, 800-53 * Excellent communication skills, both oral and written, to initiate and respond to technical assistance requests and present information to other employees of the organization * Ability to conduct studies and recommend a course of action on proposed projects or refinements; ability to lead development of overall plans, criteria, and programming for the purposes of implementing new cybersecurity policies * Apply and provide significant security services in support of an agency's operations through the implementation of a risk management framework, which may include establishing technical security controls, providing continuous monitoring, conducting cyclical vulnerability testing, overseeing security assessments and authorizations, and responding to network security incidents * Must also be self-motivated, well organized, and detail oriented to be able to take initiative and exercise judgement to ensure the cybersecurity of the company is maintained with the exponential growth of the enterprise * Develop and carry out information security plans and policies - Develop strategies to respond to and recover from a security breach * Develop or implement open source/third-party tools to assist in detection, prevention, and analysis of security threats Enterprise Risk Management & Analysis * Management of Globally Deployed Information Assets. Implementation & Monitoring of NIST SP 800-171 (or 800-53) Controls ## Related Videos - [Microservices? Monoliths? An Annoying Discussion!](https://www.wearedevelopers.com/videos/970-microservices-monoliths-an-annoying-discussion) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [7 Important Tips That Every Software Developer Should Know](https://www.wearedevelopers.com/magazine/101-7-important-tips-that-every-software-developer-should-know) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)