IT Risk Analyst's

Neos Consulting
Austin, TX, United States
4 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Systems Engineering Information Security Management Information Technology

Job description

The IT Risk Analyst will lead the team responsible for elicitation, analysis and documentation of systems and state operations and coordination and facilitation of meetings with Medicaid/CHIP Services (MCS) and IT stakeholders. The team will evaluate over 50 systems to complete the Information Security Program Plan, Information System Security Plans and associated Risk Assessments. The Worker will coordinate with IT and business areas to identify risks, confirm controls, and make recommendations for improvement. The Worker will be responsible for identifying system interdependencies and confirming classification of data in a HIPAA environment. The Worker may serve as team lead over analysts.

This job role will aide in analysis and documentation of systems necessary to complete the Information Security Program Plan and to conduct security risk assessments.

The IT Risk Analyst’s responsibilities include:

  • Working with subject matter experts across the MCS system to collect and update business and system data.
  • Gathering information on HHS data source systems which interface to MCS systems.
  • Completing Information Security Program Plan, Information System Security Plans and associated Risk Assessments using HHS defined security tools to identify risks and confirm current controls.

Requirements

  • 4 years - Experience with the National Institute of Standards Technology (NIST) 800-37 Risk Management Framework and 800-53 Security controls.
  • 4 years - Supporting various compliance audits including, PCI, SOC, HIPAA and ISO.
  • 4 years - Data Privacy experience
  • 3 years - Proven ability to work successfully with technical and non-technical groups, and manage multiple responsibilities
  • 2 years - Writing Information System Security Plans
  • Strong - Communication, analytical and interpersonal skills at all levels
  • Strong - Ability to work on multiple projects or project assignments
  • Degree - Bachelor’s degree in Computer Science, Systems Engineering or equivalent experience

Preferences:

  • 3 years - Experience facilitating productive meetings to formulate business requirements and communicate stakeholder needs to technical staff
  • Industry recognized certification such as CISSP, CISA, GCIH
  • Knowledge of Medicaid and/or CHIP programs and policy
  • 2 years - Working with Health and Human Services or other Medicaid centric organizations

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:08 min

Introduction to speakers and model-based systems engineering goals

Daniel Siegl +1 · LIVE

42 sec

Energy forecasts and resource demands of information technology

Marjolein Pordon · LIVE

4:25 min

The growing power and security responsibility of developers

Tino Sokic · World Congress 2023

1:48 min

Utilizing the NIST framework for risk management

Rebekka Weiss Rebekka Weiss +1 · World Congress 2025

5:05 min

Bridging the gap to production systems engineering

Luca Palmieri · LIVE

5:30 min

Identifying non-coding software vulnerabilities and organizational risks

Tino Sokic · World Congress 2023

Videos

See all

Related articles

See all