> Markdown version of [/jobs/ext/2742226-senior-information-security-analyst](https://www.wearedevelopers.com/jobs/ext/2742226-senior-information-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Information Security Analyst - **Company:** Accede Solutions Inc - **Location:** United States - **Experience:** Expert - **Contract:** Temporary contract - **Skills:** Cyber Security, Databases, Federal Information Processing Standards (FIPS), Software Engineering, Software Vulnerability Management, Information Technology, Cybercrime - **Published:** September 6, 2026 - **Apply:** https://www2.jobdiva.com/portal/?a=61jdnw1cv8quk0579tcleq0ku3qz2007c5amxc2d0t9hnzzfvoxcgumgecmgrgxd&compid=0/jobs/27617235#/jobs/27617235 ## About the Role As a Senior Information Security Analyst, you will be a key member of our security team, responsible for safeguarding our organization's systems and data from cyber threats. Your primary focus will be assessing security risks, developing and implementing security measures, and ensuring compliance with regulations, contractual requirements, and established policies and standards. You will play a crucial role in supporting our Federal business teams and must have an understanding of FedRAMP, NIST 800-53, HIPAA, and/or FIPS. This role requires expertise in cybersecurity practices, excellent analytical skills, and the ability to collaborate effectively with cross-functional teams. Our preferred candidate will have experience with one or more Federal agencies including CMS, HHS, or HRSA., · 5-7 years of work experience in IT in one or more areas of infrastructure, application development, database, and systems management · 3 or more years of experience must be in an information security role with demonstrated working knowledge of information security, federal and state rules and regulations, company/business unit operations, compliance policies, procedures, and/or programs in the area of assignment · 2-year degree in Information Technology, Information Security, or related field and/or equivalent training and/or experience. · Bachelor's degree in Computer Science, MIS, Information Assurance, or a related field is preferred · Experience working with FedRAMP, NIST 800-53, HIPAA, and/or FIPS · Industry-standard certification (CISSP, SSCP, GSNA, or CISA) is preferred. · Experience with NIST, ISO, and HIPAA requirements/guidance is highly desirable. ## Description · Develop and implement security standards, policies, and procedures to safeguard resources ensuring compliance with HIPAA, NIST, FedRAMP, and/or HITRUST requirements. · Evaluate security and privacy risks by balancing business drivers, best practices, and external drivers. Provide proactive solutions or recommendations through collaboration across business units. · Security Operations and Vulnerability Management · Support vulnerability management activities. Validate creation, documentation, and completion of Plans of Action and Milestones (POA&Ms) · Lead computer security incident response efforts including but not limited to preparing executive summaries, recommending mitigation strategies, and tracking remediation efforts. · Facilitate BCP/DR planning including coordination of documentation and testing. · Lead the creation and ensure the ongoing maintenance of documentation for multiple systems including but not limited to risk assessments, privacy impact assessments, and security plans. Validate compliance of documentation with government and industry standards. · Maintain accurate and up-to-date documentation of incidents, tickets, vulnerabilities, and compliance activities. · Work closely with Federal contract teams to ensure implementation of security controls and best practices as required by the contract. · Stay current with industry trends, emerging threats, security technologies, and pertinent regulations. · Provide guidance and mentorship to junior members of the security team. · Be timely with response, use professional communication, and approach vulnerability and risk management from the perspective of business enablement. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Kubernetes and Microservices with Multi-Model Databases](https://www.wearedevelopers.com/videos/382-kubernetes-and-microservices-with-multi-model-databases) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)