Jr. Security Analyst

IT-CNP INC.
Columbia, MD, United States
2 days ago
Apply on career.merrimack.edu
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
1 year minimum
Working hours
Regular working hours

Tech stack

Microsoft Word Microsoft Windows Antivirus Softwares Microsoft Outlook CompTIA Security+ Cyber Security Linux Federal Information Processing Standards (FIPS) Identity and Access Management Intrusion Detection Systems Microsoft Office Microsoft PowerPoint
+6 more
Red Hat Enterprise Linux Firewalls (Computer Science) Web Filtering Information Technology Nessus Plan of Action and Milestones

Job description

Oversee, evaluate, and support the documentation, validation, and accreditation processes necessary to assure that IT systems meet the organization’s security requirements. * Respond to crisis or urgent situations within the system to mitigate immediate and potential threats. * Use mitigation, preparedness, and response and recovery approaches, as needed, to maximize information security. * Ensures appropriate treatment of risk, compliance, and assurance from internal and external perspectives. * Provide security advice and recommendations to leadership and staff based on NIST and FIPS guidelines. * Analyze system security assessment reports. * Develop estimates of the security risks associated with deployment of new technologies. * Use defensive measures and information collected from a variety of sources to identify, analyze, and report events.

Requirements

A bachelor’s degree in information technology systems, computer science, or a related field and experience in information technology systems or a related area * At least 3 years of information security experience, including documenting system security controls in place to support the Assessment and Authorization processes. * CompTIA Security + certification * Experience using Nessus, AIDE, Windows, Linux/RHEL * Hands on experience in security systems, including firewalls, intrusion detection systems, anti-virus software, authentication systems, log management, content filtering, etc. * Hands on experience analyzing requirements and writing to security control implementation language. Experience in with identifying and collecting required security control artifacts., 1-2 years of professional experience supporting information security/assurance programs, policies, processes, and operational procedures per various standard security frameworks/laws/standards/directives, e.g.: FISMA; OMB directives; Presidential Directives; NIST (SP-800 series; FIPS); HIPAA of 1996; Privacy Act; FedRAMP * Comprehensive knowledge of the FISMA, HIPAA laws and Privacy Act of 1974 * Experience writing System Security Plans using-depth knowledge of the NIST 800-53 security control requirements and standard methods for implementing security controls. * Understanding of risk assessment and risk management concepts, including POA&M support * Practical knowledge of IT System contingency planning and incident response * Good understanding of continuous monitoring and continuous authorization concepts * Good understanding of protection of PII and PIA concepts * Expert use of MS Office, especially Word, PowerPoint and Outlook * Good ability to articulate technical concepts, especially in the audit review process * Must be a US Citizen IT-CNP is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law.

About the company

New: AI Search is live - ask any career question and get instant answers from our resources. Log in for personalized results.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on career.merrimack.edu
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

2:50 min

Filtering unstructured web data for model training

Jodie Burchell · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:03 min

Replacing traditional web navigation with prompt input forms

Patrick Reinbold Patrick Reinbold · Europe 2026 Virtual

Videos

See all

Related articles

See all