FISMA Security Analyst

🔥 7 hours ago

🇺🇸 United States – Remote

⏰ Full Time

🟠 Senior

🔴 Lead

🔐 Security Analyst

👻 Ghost score 17%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of SES Corporation

SES Corporation

51 - 200 employees

💼 Consulting

🎖️ Defense

🏥 Healthcare

Consulting • Defense • Healthcare

SES Corporation is an IT consulting services firm specializing in systems engineering solutions. With a focus on collaboration and problem-solving, SES is trusted by leadership and personnel across both government and commercial sectors to handle complex enterprise challenges. The company offers a wide range of services, including IT modernization, integrated security, managed services, and process optimization. SES prides itself on being home to top engineering experts and offers ongoing professional development and advanced training to its employees.

📋 Description

• Provide technical support for security architecture, design, and implementation of information technology security systems • Research security products and services and support rollout of enterprise security solutions • Develop, implement, and maintain enterprise-wide information security capabilities • Analyze enterprise business models and IT systems to determine security risks and risk management considerations • Define enterprise- and system-level security requirements • Implement and assess security and privacy controls according to NIST SP 800-53 Revision 5 and applicable federal control baselines • Execute the NIST Risk Management Framework lifecycle, including control implementation, assessment, authorization, and continuous monitoring • Develop, review, and maintain RMF and FISMA documentation, including SSPs, SARs, POA&Ms, risk assessments, control implementation statements, procedures, governance documentation, and authorization packages • Propose technical solutions for system- and application-level security architecture and design • Support continuous monitoring, vulnerability management, control assessments, risk tracking, remediation validation, and stakeholder reporting • Assess cybersecurity risks associated with APIs, integrations, data exchanges, and automated workflows • Review API designs and implementations for security compliance, secure configuration, access controls, token management, and sensitive-data protection • Assess Robotic Process Automation risks involving bots, workflows, service accounts, credentials, privileges, logging, exception handling, and operational resilience • Identify and document risks related to intelligent automation, RPA, API integrations, and emerging technologies, and recommend mitigation strategies • Communicate with staff, clients, government partners, and stakeholders through meetings, briefings, training, policy, and compliance updates • Appear on camera for meetings and protect proprietary company and customer information • No travel required

🎯 Requirements

• Ability to obtain a Public Trust Clearance and ITILv4 Foundation Certification • Possesses and applies a comprehensive knowledge across key tasks and high impact assignments • Functions as a security expert across multiple project assignments • Proven ability to work independently in a full and/or partial remote environment with limited supervision and may supervise/lead others • Ability to communicate effectively in oral and written forms with all levels of staff and clients • Maintain standard working hours per the DIGIT contract and be available for meetings and collaborative efforts during working hours • Demonstrated ability to apply comprehensive knowledge across key tasks and high impact assignments • CISSP, CISA, CISM, Security+ or other relevant security certifications preferred • Familiarity with CUI requirements for unclassified IT systems preferred • Track record of competency in obtaining initial A&A and reauthorization • Familiarity with unclassified network administration, including network infrastructure and security best practices, LAN administration and maintenance, user control, VPN access, firewalls, mobile device management, and identity and authentication services management • Comfortable with Windows operating systems • Linux operating systems experience • Familiarity with Google Suite, Microsoft Office, and ServiceNow • 10–15 years of experience and bachelor's degree or equivalent • Minimum 3–5 years of direct experience supporting FISMA and Financial Audit Requirements • Minimum 3–5 years of direct experience supporting cybersecurity compliance and implementing steps to mitigate threats • Minimum 3–5 years of direct experience providing continuous monitoring security expertise to business units and key stakeholders • Minimum 3–5 years of direct experience creating and delivering end-user briefings, training, policy, and/or compliance updates • Experience as a remote worker demonstrating time management, self-discipline, cultural change management, and an Agile mindset • If remote, maintain a safe home workspace aligned with information security policies

🏖️ Benefits

• Medical • Dental • Vision • AD&D • STD • LTD • Company paid Life Insurance • 401k with employer contribution • Paid Time Off • Pet Insurance

Apply Now

Similar Jobs

🔥 14 hours ago

DigitalOcean

1001 - 5000

☁️ SaaS

Senior Product Security Engineer threat-modeling products and guiding secure architecture at DigitalOcean, a scalable cloud platform company. Building security tooling and empowering engineering teams.

🔥 14 hours ago

DigitalOcean

1001 - 5000

☁️ SaaS

Senior Product Security Engineer threat-modeling DigitalOcean’s scalable cloud products. Guiding secure architecture, vulnerability remediation, security culture, and security automation.

🔥 21 hours ago

Arbiter

51 - 200

📚 Education

⚽ Sports

☁️ SaaS

Security Analyst protecting Arbiter’s AI-forward sports technology environments. Monitoring threats, managing security tools, investigating incidents, and applying AI to cybersecurity operations.

🇺🇸 United States – Remote

💵 $75k - $85k / year

💰 Debt financing on 2020-03

⏰ Full Time

🟡 Mid-level

🟠 Senior

🔐 Security Analyst

🕒 Yesterday

ISACA

201 - 500

🔒 Cybersecurity

📚 Education

🤝 B2B

Principal Research Analyst leading ISACA’s information security research, frameworks, and practitioner content. Representing the global technology association through thought leadership, events, and member guidance.

🕒 4 days ago

Providence

10,000+ employees

💼 Consulting

🛡️ Insurance

🏥 Healthcare

Applications Security Analyst securing information systems for Providence, a multi-facility healthcare organization. Managing projects, implementing system requirements, and supporting Epic environments.