Talent.com
Lead Analyst - Info Sec
Lead Analyst - Info SecMAXIMUS • Manchester, NH, United States
[error_messages.no_longer_accepting]
Lead Analyst - Info Sec

Lead Analyst - Info Sec

MAXIMUS • Manchester, NH, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Description & Requirements

The Maximus DoD Cloud Information Systems Security Officer (ISSO) will work directly with the Maximus Federal Business Information Security Officer (BISO) to identify and manage implementation of security policies, standards, and procedures that support federal customers with federal requirements to include FISMA, applicable FAR and DFAR Clauses, Executive Orders, and OMB's applicable to IL5 Cloud Environments. The primary role of the ISSO will be the creation, management, and administration of a System Security Plan (SSP) to include all required artifacts needed to obtain a DISA IL5 certification and to maintain compliance with NIST 800-53 and associated NIST 800 series publications. The ISSO will be responsible for all continuous monitoring of the IL5 environment supporting federal customers and will be the SME for control management and the establishment of Inheritance which will be used to support future DoD projects

Essential Duties and Responsibilities :

  • Performs application vulnerability assessments to identify application vulnerabilities.
  • Performs network vulnerability assessments to identify host vulnerabilities.
  • Identifies, analyzes, and prioritizes vulnerability findings.
  • Analyzes system configurations to identify possible security gaps andor compliance violations.
  • Establishes collaborative working relationships with internal resources to provide security assessments, reports, and recommendations.
  • Performs other related duties as assigned.

Additional Duties and Responsibilities :

  • Create and manage System Security Plan and creation and or validation of all associated artifacts required to obtain DISA IL5 certification as well as NIST 800-53 compliance to include but not limited to a System Level Continuous Monitoring (SLCM) Strategy, HW / SW lists, Information Flow Diagrams, System Categorization Forms, System Topologies, Configuration Management Plan, Configuration Control Board (CCB) Charter, System and Services Acquisition Plan, System and Information Integrity Plan, System and Communication Protection Plan, Security Assessment and Authorization Plan, Risk Assessment Plan, Program Management Plan, Security Planning, Physical and Environmental Protection Plan, Personnel Security Plan, Media Protection Plan, Identification and Authentication Plan, Contingency Plan, Audit and Accountability Plan, Security Awareness and Training Plan, Incident Response Plan, Access Control Plan, Risk Assessment Review (RAR) and Plan of Action and Milestone (POA&M).
  • Liaison with Maximus Federal business units, Maximus Corporate business units, and external stakeholders to ensure all legal and contractual requirements pertaining to cybersecurity, physical security, and Information Assurance are being met.
  • Communicate federal requirements to Maximus Information Security Office (ISO) and advise implementation of applicable security controls and hardening standards to governance and technical teams.
  • Assist the BISO and ISO Team in the identification and assignment of control owners throughout the organization and continually review controls on organizationally defined periodicities.
  • Actively collaborate with Maximus Threat and Vulnerability Management (TVM) Team to ensure applicable technologies are compliant with defined remediation timelines and hardening standards via enterprise vulnerability management tools.
  • Minimum Requirements

  • Please refer to the additional information section of the job requisition for this opening to determine clearance eligibility required.
  • Bachelor's Degree
  • 7-10 years of security or technology related experience
  • Professional certifications, such as Security+, CEH, or CISSP, desirable
  • Knowledge of IPv4 network architecture and core services
  • Knowledge of web application development and architecture
  • Knowledge of network security controls
  • Knowledge of vulnerability management
  • Experience with dynamic application security testing (DAST) tools
  • Experience with vulnerability management (VM) tools
  • Familiarity with OWASP Top 10
  • Familiarity with WASC Threat Classification
  • Familiarity with CVE
  • Familiarity with NIST SP 800-53
  • Experience with automated service ticketing systems
  • Excellent analytical, decision-making, and problem-solving skills
  • Ability to communicate technical information in understandable business terms
  • Excellent interpersonal skills, presentation skills, and verbal / written communication skills
  • Strong customer service abilities required.
  • Ability to work collaboratively with a broad range of staff. Skilled in Microsoft Office software including Word, Excel, Visio, MS Project, and PowerPoint
  • Ability to perform comfortably in a fast-paced, deadline-oriented work environment
  • Ability to execute many complex tasks simultaneously, and work as a team member as well as independently
  • Additional Minimal Requirements :

  • Have a DoD secret clearance status or eligible to obtain secret clearance status.
  • DISA IL5 Certification Experience
  • Strong understanding of federal and DoD requirements to include but not limited to applicable Executive Orders, FISMA, FIPS, CMMC, NIST 800-171, NIST 800-60, NIST 800-65, SCRM, FedRAMP, DODI 8500s, 8500.2s, and 8510s.
  • Experience with GRC tools (eMASS, CFACTS, CSAM).
  • Experience developing SSP's and applicable artifacts required for A&A activities.
  • Experience with STIG compliance.
  • Experience with vulnerability management and assessment via Qualys and Tenable.
  • Works on complex issues where analysis of situations or data requires an in depth evaluation of variable
  • Exercises judgement in selecting methods, techniques, and evaluation criteria for obtaining results.
  • Networks with key contacts outside own area of expertise.
  • Develops solutions to a variety of complex problems.
  • Work requires considerable judgment and initiative.
  • #c0rejobs #HotJobs1111LI #HotJobs1111FB #HotJobs1111X #HotJobs1111TH #TrendingJobs #HotJobs1125LI #HotJobs1125FB #HotJobs1125X #HotJobs1125TH #HotJobs1209LI #HotJobs1209FB #HotJobs1209X #HotJobs1209TH

    EEO Statement

    Maximus is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, age, national origin, disability, veteran status, genetic information and other legally protected characteristics.

    Pay Transparency

    Maximus compensation is based on various factors including but not limited to job location, a candidate's education, training, experience, expected quality and quantity of work, required travel (if any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual salary is just one component of Maximus's total compensation package. Other rewards may include short- and long-term incentives as well as program-specific awards. Additionally, Maximus provides a variety of benefits to employees, including health insurance coverage, life and disability insurance, a retirement savings plan, paid holidays and paid time off. Compensation ranges may differ based on contract value but will be commensurate with job duties and relevant work experience. An applicant's salary history will not be used in determining compensation. Maximus will comply with regulatory minimum wage rates and exempt salary thresholds in all instances.

    Accommodations

    Maximus provides reasonable accommodations to individuals requiring assistance during any phase of the employment process due to a disability, medical condition, or physical or mental impairment. If you require assistance at any stage of the employment process-including accessing job postings, completing assessments, or participating in interviews,-please contact People Operations at applicantaccom@maximus.com .

    Minimum Salary

    108,375.00

    Maximum Salary

    146,625.00

    [job_alerts.create_a_job]

    Lead Analyst Info Sec • Manchester, NH, United States

    [internal_linking.similar_jobs]
    Business Systems Analyst (Process & Architecture Lead)

    Business Systems Analyst (Process & Architecture Lead)

    Amphenol TCS • Nashua, NH, US
    [job_card.full_time]
    Amphenol High Speed Products Group is the market leader for high-speed, high-bandwidth electrical connectors, cables, and systems for the Datacom / Telecom market (Artificial Intelligence (AI), Machi...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Oracle ERP Architect / Technical Lead (Wilmington)

    Senior Oracle ERP Architect / Technical Lead (Wilmington)

    JMD Technologies Inc. • Wilmington, MA, US
    [job_card.full_time] +1
    Senior ERP Architect / Technical Lead (1 Opening).On-site in Wilmington MA (3x / week onsite at least).Architect and lead Oracle Cloud Fusion ERP solutions, ensuring alignment with business requirement...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    INFORMATION TECHNOLOGY SPECIALIST

    INFORMATION TECHNOLOGY SPECIALIST

    US Army • Manchester, New Hampshire, United States
    [job_card.full_time] +1
    ELIGIBLE FOR UP TO A $10K SIGNING BONUS.TALK TO YOUR RECRUITER FOR DETAILS.THIS POSITION REQUIRES AN ENLISTMENT IN THE U. As an Information Technology Specialist, you’ll manage, maintain, process, a...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Health Information Management Analyst

    Health Information Management Analyst

    HealthcareSource Medical Center (Services admin-only migration) • Hampstead, New Hampshire, United States, 03841
    [job_card.full_time]
    Health Information Management Analyst.The health information management analyst assembles and analyzes the medical records of all patients discharged from the hospital to ensure that each record co...[show_more]
    [last_updated.last_updated_30]
    State Street Alpha Data Services - Data Solutions Architect, Vice President

    State Street Alpha Data Services - Data Solutions Architect, Vice President

    State Street • Burlington, MA, United States
    [job_card.temporary]
    State Street Alpha Data Services - Data Solutions Architect, Vice President.State Street Alpha Data Services - Data Solutions Architect, Vice President. Be among the first 25 applicants.We are looki...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Principal Salesforce Systems Analyst (Lowell)

    Principal Salesforce Systems Analyst (Lowell)

    Gardner Resources Consulting, LLC • Lowell, MA, US
    [job_card.part_time]
    Principal Salesforce Systems Analyst : .Extensive hands-on experience with Salesforce platform configuration, customization, and integration. Strong knowledge of Salesforce products (e.Proficiency in ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    INTELLIGENCE ANALYST

    INTELLIGENCE ANALYST

    US Army • Manchester, New Hampshire, United States
    [job_card.full_time] +1
    THIS POSITION REQUIRES AN ENLISTMENT IN THE U.As an Intelligence Analyst, you’ll be responsible for providing the Army with crucial and reliable information about enemy forces and potential areas o...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Lead Analyst / Consultant, Supply Market Insights

    Lead Analyst / Consultant, Supply Market Insights

    American Red Cross • Manchester, NH, United States
    [job_card.full_time]
    Please use Google Chrome or Mozilla Firefox when accessing Candidate Home.By joining the American Red Cross you will touch millions of lives every year and experience the greatness of the human spi...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Oracle ERP Architect / Technical Lead

    Senior Oracle ERP Architect / Technical Lead

    JMD Technologies Inc. • Wilmington, MA, United States
    [job_card.full_time]
    Senior ERP Architect / Technical Lead (1 Opening).On-site in Wilmington MA (3x / week onsite at least).Architect and lead Oracle Cloud Fusion ERP solutions, ensuring alignment with business requirement...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Sr. Fraud Technology Risk Analyst

    Sr. Fraud Technology Risk Analyst

    Fidelity Investments • Merrimack, NH, United States
    [job_card.full_time]
    Are you passionate about protecting customers and the enterprise from fraud risk?.The Enterprise Technology Risk & Analytics (ETRA) group is seeking a seasoned professional to join the Fraud Risk T...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Business Intelligence Analyst (on-site)

    Business Intelligence Analyst (on-site)

    CFS • Burlington, MA, US
    [job_card.full_time]
    Business Analyst (Hybrid) - Burlington, MA.Why take a Business Analyst role with this company?.Join a stable, mission-driven organization with a collaborative culture and long-tenured teams.Play a ...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Engineering Capital FP&A Analyst - P3 - (Onsite)

    Engineering Capital FP&A Analyst - P3 - (Onsite)

    Raytheon Technologies • Tewksbury, MA, United States
    [job_card.full_time]
    MA133 : Tewksbury, Ma Bldg 3 Concord 50 Apple Hill Drive Concord - Building 3, Tewksbury, MA, 01876 USA.Person, or Immigration Status Requirements : . At Raytheon, the foundation of everything we do is...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Solutions Engineer

    Solutions Engineer

    Keurig Dr Pepper • Burlington, Massachusetts, US
    [job_card.full_time]
    Do not pass up this chance, apply quickly if your experience and skills match what is in the following description.Architecture & Design Support. Support the definition of system and data integr...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Manager, Data Analytics

    Manager, Data Analytics

    New Hampshire Staffing • Nashua, NH, US
    [job_card.full_time]
    Job Opportunity : Manager, Data Analytics.Our purpose is sustaining energy and water for life, and it is demonstrated in everything we do as a business, and as an employee team.At Liberty, we hire p...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Director, Internal Audit

    Director, Internal Audit

    Entegris • Billerica, MA, United States
    [job_card.temporary]
    Here at Entegris, we use advanced science to enable technologies that transform the world, and we are seeking employees who have the drive to continue that mission. Vice President of Internal Audit ...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Manager, Information Technology - Epic Prelude and Cadence - Remote

    Manager, Information Technology - Epic Prelude and Cadence - Remote

    Sentara • Manchester, NH, United States
    [job_card.full_time]
    Sentara Health is hiring a Manager, Information Technology - Epic Prelude or Epic Cadence - Remote.General Information Technology work involves managing or performing work across multiple areas of ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior SerDes Architect and Lead

    Senior SerDes Architect and Lead

    Omni Design Technologies • Billerica, MA, US
    [job_card.full_time]
    SerDes architect and development lead focused on PAM4 ADC and DAC based wireline technologies.The successful candidate in this role will work with customers to understand requirements, and will lea...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Analyst, Strategy and Performance (Hybrid)

    Analyst, Strategy and Performance (Hybrid)

    Eversource Energy • Manchester, NH, United States
    [job_card.full_time]
    Eversource will not offer immigration-related sponsorship for this position.Applicants who require immigration sponsorship-either now or in the future-should not apply. This includes, but is not lim...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]