Talent.com
Novalink Solutions LLC
Security AnalystNovalink Solutions LLC • Madison, WI, us
No longer accepting applications
Security Analyst

Security Analyst

Novalink Solutions LLC • Madison, WI, us
18 days ago
Job type
  • Full-time
Job description

Job Description

The Department of Health Services (DHS) is one of the largest and most diverse state agencies in Wisconsin. DHS

employs more than 7,000 staff spanning ten divisions and offices and seven 24/7 institutions located throughout

Wisconsin. Programs and services administered by DHS include Medicaid and other human service programs, alcohol

and other drug abuse prevention services, mental health, public health, and long-term care.

The Information Security Section (ISS) serves the Department by creating an information security culture and enabling

the business. We are metrics minded, employee focused, and view security as a service. ISS is responsible for

• Identifying and continuously assessing risk

• Developing, institutionalizing, and improving strategies to mitigate risk

• Limiting the potential effects of information security events

• The selection, assessment, authorization, and monitoring of security controls while contributing to the overall

information security plan.

The Information Security Section (ISS) is functionally organized into Security Awareness and Governance, Compliance,

Architecture, and Portfolio Management. Cross-team collaboration is essential to our success.

The DHS Liaison serves the Division of Medicaid Services and is the champion for security initiatives integrating

information security into program operations. This work is completed by engaging other security staff, communicating

risk, and developing strategies to reduce risk. To successfully do this work, one must possess strong communication and

interpersonal skills capable of presenting to diverse audiences including executive and non-technical individuals.

A federally recognized (ANSI) information security certification must be obtained within 6 months of the start date and

maintained for this position. The Department of Defense (DOD) 8570 Baseline Certifications defined by Defense

Information Systems Agency (DISA) is the baseline to consider when reviewing the relevance of the certification.

Goals and Worker Activities

1. Integrate security into program operations

• Partner with organizational leaders to incorporate information security best-practices into technical and

operational development.

• Provide recommendations on how to improve the information security posture of programs and reduce risk.

• Communicate risks in simple and comprehensible terms. Provide options to mitigate risk considering

business impact.

• Draft security requirements to be included into charters, scope documents, procurements.

• Document and communicate analysis. Answer clarifying questions.

• Escalate to ISS leadership if an acceptable level of risk cannot be achieved

2. Act as a liaison between the program area and the Information Security Section

• Be a solutions-focused advocate.

• Intake projects and other program initiatives and champion them through the appropriate ISS workstream

• Gather information as needed so that security team can perform thorough analysis

• Communicate workstream deliverables to the customer. Verify that the deliverable meets the customer

need, follow-up on any clarifications.

• Coordinate across ISS meeting their security-focused needs

• Coordinate with other BITS staff, Office of Legal Counsel, Bureau of Procurement and Contracting, and other

program staff as needed in order to arrive to an outcome

Department of Health Services (DHS)

Contractor Job Description – DHS Liaison

Jennifer Mueller Information Security Section

DHS CISO Updated 07-21-2026

Office: 608-267-7231

Email: jennifer.mueller@dhs.wisonsin.gov Page 2 of 2

3. Support audit, assessment, incident response, and other regulatory activities

• Responsibility and authority will vary based on the use case and customer need.

• Request and/or gather artifacts demonstrating compliance.

• Schedule/facilitate communications between auditor/incident response, vendors, technical teams, and

other program stakeholders.

• In partnership with ISS, assess audit results and develop corrective action plans/plans of action and

milestone.

• Provide oversight to the resolution, test for compliance, and request authority to close.

• Respond to regulatory inquiry and draft documents as needed

4. Participate and support Program Integration related activities

• Back-up other security liaison roles

• Draft and deliver status reports

• Establish and maintain positive working relationships with stakeholders

• Establish and documents standard operations for job-related activities.

5. Support Vulnerability Management related to DMS and its vendors

• Foster transparency, accountability, and timely resolution of vulnerabilities with DMS and its vendors

• Support DMS and its vendors in adhering to state and federal regulations and Policies, Procedures,

Standards and Guidelines (PPSGs) related to vulnerability management

• Draft and monitor plans of action and milestones for non-compliance

6. Support DHS’s transition from the Center for Medicare and Medicaid Services (CMS) compliance requirements

known as the Minimum Acceptable Risk Standards for Exchanges (MARS-E) to the new requirements known as

Acceptable Risk Controls for ACA, Medicaid, and Partner Entities (ARC-AMPE)

• In partnership with Deloitte, DET, and ISS conduct GAP analysis to support transition, implementation, and

maturation of DHS’s transition from MARS-E to ARC-AMPE

• Draft the ARC-AMPE System Security and Privacy Plan (SSPP) and keep it current

• Draft and monitor plans of action and milestones for non-compliance

7. Support DHS in completing software reviews, cloud brokerage reviews, and AI Use Case reviews

8. Other duties as assigned

• Back-up other security staff

• Write concept papers, proposals and briefs, and other documentation

Knowledge, Skills, and Abilities

• Well qualified candidate will have broad knowledge of information security and experience application

development, technical architecture, contracting, audit, or vendor management.

• Be familiar with NIST or another recognized framework

• Demonstrated ability to solve complex problems, convey both oral and written instruction, and handle multiple

task interruptions while providing services in a professional and courteous manner.

• Demonstrated attention to detail and organizational skills.

• Demonstrated ability to work effectively with customers to solve business challenges while balancing the need

for confidentiality, integrity, and availability.

• Demonstrated commitment to fostering a diverse working environment.

• Demonstrated ability to work independently, as part of a team of peers, and also to support and contribute to a

multidiscipline team environment


Requirements

Position Summary

The Department of Health Services (DHS) is one of the largest and most diverse state agencies in Wisconsin. DHS employs more than 7,000 staff spanning ten divisions and offices and seven 24/7 institutions located throughout Wisconsin. Programs and services administered by DHS include Medicaid and other human service programs, alcohol and other drug abuse prevention services, mental health, public health, and long-term care.


The Information Security Section (ISS) serves the Department by creating an information security culture and enabling the business. We are metrics minded, employee focused, and view security as a service. ISS is responsible for

• Identifying and continuously assessing risk

• Developing, institutionalizing, and improving strategies to mitigate risk

• Limiting the potential effects of information security events

• The selection, assessment, authorization, and monitoring of security controls while contributing to the overall information security plan.


The Information Security Section (ISS) is functionally organized into Security Awareness and Governance, Compliance, Architecture, and Portfolio Management. Cross-team collaboration is essential to our success.


The DHS Liaison serves the Division of Medicaid Services and is the champion for security initiatives integrating information security into program operations. This work is completed by engaging other security staff, communicating risk, and developing strategies to reduce risk. To successfully do this work, one must possess strong communication and interpersonal skills capable of presenting to diverse audiences including executive and non-technical individuals.


A federally recognized (ANSI) information security certification must be obtained within 6 months of the start date and maintained for this position. The Department of Defense (DOD) 8570 Baseline Certifications defined by Defense Information Systems Agency (DISA) is the baseline to consider when reviewing the relevance of the certification.


Goals and Worker Activities

1. Integrate security into program operations

• Partner with organizational leaders to incorporate information security best-practices into technical and operational development.

• Provide recommendations on how to improve the information security posture of programs and reduce risk.

• Communicate risks in simple and comprehensible terms. Provide options to mitigate risk considering business impact.

• Draft security requirements to be included into charters, scope documents, procurements.

• Document and communicate analysis. Answer clarifying questions.

• Escalate to ISS leadership if an acceptable level of risk cannot be achieved


2. Act as a liaison between the program area and the Information Security Section

• Be a solutions-focused advocate.

• Intake projects and other program initiatives and champion them through the appropriate ISS workstream

• Gather information as needed so that security team can perform thorough analysis

• Communicate workstream deliverables to the customer. Verify that the deliverable meets the customer need, follow-up on any clarifications.

• Coordinate across ISS meeting their security-focused needs

• Coordinate with other BITS staff, Office of Legal Counsel, Bureau of Procurement and Contracting, and other program staff as needed in order to arrive to an outcome


3. Support audit, assessment, incident response, and other regulatory activities

• Responsibility and authority will vary based on the use case and customer need.

• Request and/or gather artifacts demonstrating compliance.

• Schedule/facilitate communications between auditor/incident response, vendors, technical teams, and other program stakeholders.

• In partnership with ISS, assess audit results and develop corrective action plans/plans of action and milestone.

• Provide oversight to the resolution, test for compliance, and request authority to close.

• Respond to regulatory inquiry and draft documents as needed


4. Participate and support Program Integration related activities

• Back-up other security liaison roles

• Draft and deliver status reports

• Establish and maintain positive working relationships with stakeholders

• Establish and documents standard operations for job-related activities.


5. Support Vulnerability Management related to DMS and its vendors

• Foster transparency, accountability, and timely resolution of vulnerabilities with DMS and its vendors

• Support DMS and its vendors in adhering to state and federal regulations and Policies, Procedures, Standards and Guidelines (PPSGs) related to vulnerability management

• Draft and monitor plans of action and milestones for non-compliance


6. Support DHS’s transition from the Center for Medicare and Medicaid Services (CMS) compliance requirements known as the Minimum Acceptable Risk Standards for Exchanges (MARS-E) to the new requirements known as Acceptable Risk Controls for ACA, Medicaid, and Partner Entities (ARC-AMPE)

• In partnership with Deloitte, DET, and ISS conduct GAP analysis to support transition, implementation, and maturation of DHS’s

• Draft the ARC-AMPE System Security and Privacy Plan (SSPP) and keep it current

• Draft and monitor plans of action and milestones for non-compliance


7. Support DHS in completing software reviews, cloud brokerage reviews, and AI Use Case reviews


8. Other duties as assigned

•Back-up other security staff

•Write concept papers, proposals and briefs, and other documentation





Requirements
Skill Required / Desired Amount of Experience Proven work experience with enterprise data governance Required 3 Years Proven work experience with the OneTrust platform (Data Mapping, Data Discovery, Data Catalog, Assessments) Required 2 Years Proven work experience creating documentation for internal and external audiences, technical and business audiences Required 3 Years Proven work experience supporting the creation and presentation of knowledge and training Required 3 Years

Create a job alert for this search

Security Analyst • Madison, WI, us

Similar jobs

Security & Law Enforcement (Master-at-Arms)

US NavyEvansville, WI, US
Full-time

Security & Law Enforcement (Master-at-Arms).This role is open to both entry-level applicants and candidates with prior experience.Those with a background in Law Enforcement, Corrections/Parole, or ... Show more

 • Promoted

W2 - Security Analyst II (account provisioning, de-provisioning, security rules) - Remote in WI

TANSON CORPMadison, WI, United States
Remote
Full-time

Description:The client is looking for a Security Analyst II.Will close to submissions on 2/2/26 at 4PM CST.Preferred Skills and Experience:4-7 years of experience in the following:- Coordination of... Show more

 • Promoted

Security & Law Enforcement

U.S. NavyMadison, WI, United States
Full-time

Job Title :Security & Law Enforcement (Master-at-Arms) Category / Component :Enlisted Active Overview Master-at-Arms (MA) Sailors provide the Navy's core security, antiterrorism, and law enforcemen... Show more

 • Promoted

Remote Financial Analyst

Micro1Sun Prairie, Wisconsin, US
Remote
Full-time +1

Investment Strategy & Advisory.Predictive Analytics & Visualization.AI data lab for training frontier models and evaluating AI agents.Experts contribute their diverse subject matter knowled... Show more

 • Promoted

Business Analyst

TradeJobsWorkForce53502 Albany, WI, US
Full-time

Business Analyst Job Duties: Elicits, analyzes, specifies, and validates the business needs of ... Show more

 • Promoted

Event Security - Kohl Center

BEST Crowd ManagementMadison, WI, United States
Part-time

Job Title:Event Security - Kohl Center Company:BEST Crowd Management Location:Madison, WI Pay:$16 / hr - Security Job Type:Part-time Summary:Join the dynamic team at BEST Crowd Management as an Eve... Show more

 • Promoted

Retail Project Supervisor

DrivelineEvansville, WI, US
Full-time

Are you looking for a new, challenging and rewarding management career with the ability to travel across the US?  Do you like managing and interacting with people and customers?  Then continue read... Show more

 • Promoted

25-26 - Doyle - Safety & Security Specialist - 1.0 FTE

The Madison Metropolitan School DistrictMadison, WI, United States
Full-time

Doyle - Safety & Security Specialist - 1.FTESchool SafetyDoyle 103Starting Compensation: $31.Employment Type: Non-ExemptPurpose of Position:Under the direct supervision of the Executive Directo... Show more

 • Promoted

Remote Work – Product Assessments - $25-$45 per hour (No Experience)

Online Consumer Panels AmericaDeForest, Wisconsin, US
$25.00–$45.00 hourly
Remote
Part-time +1

Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet... Show more

 • Promoted

Security Analyst -II (Remote)

Serigor IncMadison, WI, United States
Remote
Full-time

Job Title :Security Analyst -II (Remote)Location :Madison, WIDuration :12 MonthsJob Description :Under general supervision of the Security & Accounts Management Manager, this position works as ... Show more

 • Promoted

Remote Consumer Insights Participant

GL IncWaunakee, Wisconsin
$15.00 hourly
Remote
Part-time +1

Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet... Show more

 • Promoted

Correctional Officer

TradeJobsWorkForce53502 Albany, WI, US
Full-time

Correctional Officer Job Duties: Supervision of inmates and inmate activity in detention facilit... Show more

 • Promoted

Hiring Now - Work from Home - No Experience

OCPAOrfordville, Wisconsin, us
$25.00 hourly
Remote
Part-time +1

Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet... Show more

 • Promoted

Work From Home - Product Specialist - $45 per hour

GL1Sun Prairie, Wisconsin
$45.00 hourly
Remote
Part-time +1

Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet... Show more

 • Promoted

Online Customer Experience Specialist

TradeJobsWorkforce53502 Albany, WI, US
Full-time

As a Online Customer Experience Specialist, you will be responsible for supporting customers and handling inquiries from the comfort of your home, including: respond to customer inquiries via phone... Show more

 • Promoted

Costco Inventory Control Specialist

TradeJobsWorkforce53502 Albany, WI, US
Full-time

Help us succeed as our next Costco Inventory Control Specialist to follow safety procedures and company policies, support the preparation and delivery of goods or services, and work collaboratively... Show more

 • Promoted

Assistant Service Center Manager

ValvolineSun Prairie, WI, United States
Full-time +1

Assistant Service Center Manager.At Ivy Lane Corp, a franchisee of Valvoline Instant Oil ChangeSM (VIOC), it all starts with our people.We demonstrate that belief every day by living a safety cultu... Show more

 • Promoted

Substation Controls Business Analyst

Sunrise SystemsCottage Grove, WI, United States
Temporary

Substation Controls Business Analyst.Location: Hybrid (1-2x onsite per week in Pewaukee, WI or Cottage Grove, WI).Duration: 18 months Contract to HIRE.This role requires an individual possessing st... Show more

 • Promoted

BA

Software Technology, Inc.Sun Prairie, WI, United States
Full-time

Strong Guidewire ClaimCenter experience, including:.Multiple policy data sources other than PolicyCenter.How various lines of business uniquely engage with the system.Moderate data analysis experie... Show more

 • Promoted

Research Analyst Remote, United States

Ctec CorpOregon, WI, United States
Remote
Full-time

OverviewCTEC is a leading technology firm that provides modernization, digital transformation, and application development services to the U.Headquartered in McLean, VA, CTEC has over 300 team memb... Show more