IT Security Analyst
KēSTA I.T.
Job Description
Job Description
Come build, innovate, disrupt, and thrive!
KēSTA I.T is actively seeking a IT Security Analyst for an immediate contract engagement with our client.
Job Description :
We Are Seeking a senior IT Security Analyst to provide compliance oversight, security guidance, and strategic support for enterprise applications and information systems. This role will serve as a key liaison between business stakeholders, technical teams, security professionals, management, vendors, auditors, and project leadership to ensure security requirements, documentation, processes, and controls remain aligned with established security frameworks and organizational standards.
The IT Security Analyst will lead and support System Security Plan (SSP) development and maintenance, Authority to Operate (ATO) activities, security risk assessments, compliance documentation, security control reviews, remediation tracking, and incident response. The ideal candidate will have strong knowledge of NIST security frameworks and controls , excellent documentation and communication skills, and the ability to coordinate complex compliance activities across multiple application environments.
Responsibilities:
· Provide senior-level oversight for the development, maintenance, review, and continuous improvement of System Security Plans (SSPs).
· Ensure security documentation is accurate, complete, current, and aligned with applicable security standards, frameworks, and organizational requirements.
· Lead and coordinate Authority to Operate (ATO) renewal activities, including planning, documentation, evidence collection, timeline management, stakeholder coordination, and approval support.
· Monitor application authorization status and ensure security controls and supporting documentation remain current throughout the authorization lifecycle.
· Review security risk assessment results, communicate findings to management, and recommend appropriate corrective actions.
· Assess security risks associated with significant incidents and provide guidance on appropriate response and remediation activities.
· Develop and maintain management reports using security and compliance metrics collected across multiple application environments.
· Perform trend analysis to identify recurring security risks, compliance issues, control weaknesses, and opportunities for improvement.
· Coordinate the identification, tracking, remediation, and closure of Plans of Action and Milestones (POA&Ms) and other compliance findings.
· Review existing compliance documentation to identify gaps, inconsistencies, deficiencies, and potential risks.
· Guide stakeholders in developing and implementing corrective actions necessary to address identified compliance or security gaps.
· Coordinate with technical teams, business owners, application stakeholders, enterprise security personnel, vendors, auditors, and project managers to collect and maintain required security evidence and artifacts.
· Oversee the review, maintenance, testing, and remediation of security controls.
· Track security issues and corrective actions through resolution while ensuring stakeholders remain informed of progress and risks.
· Identify procedural gaps and opportunities to improve security governance, compliance processes, documentation, and operational consistency.
· Provide guidance on security and compliance requirements and assist stakeholders in interpreting applicable policies, standards, and controls.
· Maintain accurate compliance records, audit documentation, security plans, and supporting artifacts.
· Support enterprise security governance activities by promoting consistent practices across application and business areas.
· Provide guidance and mentorship to less experienced team members regarding compliance processes, documentation, and security practices.
· Lead moderate- to high-complexity incident response activities and coordinate efforts to resolve security incidents.
· Support cyber event detection, analysis, correlation, response, containment, and recovery activities.
· Prepare and deliver written and verbal reports, presentations, status updates, and recommendations to management and stakeholders.
· Facilitate meetings and working sessions involving business, technical, security, and compliance teams.
· Serve as a trusted liaison between business and IT teams to facilitate communication, resolve issues, and maintain alignment on security objectives.
Required Skills
· 5+ years of experience providing audit evidence and supporting compliance with security standards or regulatory frameworks such as NIST, PCI, HIPAA, and FERPA.
· 5+ years of experience working with or supporting complex IT web applications within recent enterprise environments.
· 5+ years of experience leading meetings and preparing or delivering professional written and verbal reports.
· 5+ years of experience serving as a liaison between business stakeholders, IT teams, security groups, and other cross-functional organizations.
· 5+ years of experience in cybersecurity, information assurance, IT, business analytics, compliance, or a closely related field, in lieu of the education requirement where applicable.
· Bachelor’s degree in Cybersecurity, Information Assurance, Business Analytics, Information Technology, or a related field, or equivalent professional experience.
· Strong knowledge of NIST frameworks, security controls, and compliance practices.
· Strong understanding of security governance, risk management, compliance documentation, and audit processes.
· Demonstrated ability to develop and maintain detailed technical and compliance documentation.
· Strong written and verbal communication skills, including the ability to communicate complex security and compliance concepts clearly.
· Strong organizational and analytical skills with the ability to manage multiple compliance activities, deadlines, and stakeholders.
· Ability to collaborate effectively across business, technical, security, vendor, and management teams.
· Strong problem-solving and critical-thinking skills with the ability to assess risks and recommend appropriate corrective actions.
Preferred Skills
· 2+ years of experience creating supporting documentation for IT system audits.
· 2+ years of experience developing or maintaining Disaster Recovery Plans, Business Continuity Plans, and Incident Response Plans.
· Master’s degree in Cybersecurity, Information Assurance, Information Systems, IT Leadership, Business Administration, or a related discipline with an IT or security concentration.
· Experience supporting formal Authority to Operate (ATO) processes and security authorization activities.
· Experience developing and maintaining System Security Plans and security control documentation.
· Experience managing POA&Ms, compliance findings, security remediation activities, and audit responses.
· Experience with security incident response, cyber event analysis, and recovery activities.
· Experience developing security metrics, management reports, and compliance trend analyses.
· Experience working with vendors, auditors, project managers, and enterprise security teams.
· Experience mentoring or providing guidance to other security, compliance, or technical professionals.
Available Benefits:
· Medical Benefits (Platinum level plans available)
· Work from home / Hybrid / Onsite options
· PTO
· Holiday Pay
· VTO
· 401K
· Charitable Match
· Training reimbursement
About KēSTA I.T.:
Our name says it all; KēSTA I.T. (Keys-to-I.T.) AND our people are our keys to our success!
KēSTA I.T. is a premier Utah-based technical staffing and consulting services firm. We specialize in temporary and permanent placement of Software, Hardware, Network, Cloud, CRM/ERP, Data, End-User support, Web and Executive / leadership-based positions on a full time and consulting basis.
If you're interested in a role where top performance is rewarded, personal time is valued, and excellence is demanded at every level we want to talk to you today!
Where do you want to go? We've got the keys! ~ KēSTA I.T.
- ...IT Security Analyst Location: Lansing, MI Duration: 12 Months This position will function as a Compliance Specialist within the Department of Technology, Management and Budget (DTMB), supporting the following Agency Services Divisions – DTMB. This specialist is...Suggested
- Responsibilities The IT Security Analyst is responsible for completing and maintaining system security plans (SSP) for new and existing systems. This requires close coordination with IT project teams, business and enterprise security representatives, and product owners,...SuggestedWork at officeShift work
- ...Job Description Job Description Senior IT Security Compliance Analyst – NIST / ATO Position Overview This senior-level IT security compliance role provides high-level oversight, guidance, and strategic direction for maintaining System Security Plans (SSPs), Authority...Suggested
- ...Job Description Job Description We're looking for a Senior IT Security Compliance Analyst to lead security planning and authorization work for a portfolio of public-sector applications. You'll be the compliance authority for several business areas: keeping System...Suggested
- ...Job Description Job Description Job Title: IT Security Analyst 3 Job Location: Dimondale, MI (Hybrid) Job Type: Contract Job Description: Plans, schedules, implements and maintains scalable vulnerability scans using modern vulnerability management scanning...SuggestedContract work
- ...Security Compliance Analyst To support the maintenance and execution of the security compliance operations for the Michigan Farm Bureau Family... ...and remediating compliance gaps and supports the IT Model Audit Rule (MAR) Control Owner and IT Enterprise Risk...Contract workFor subcontractorWork at office
$45 - $55 per hour
...Security Analyst Public Sector Client Location: Lansing, MI - Hybrid on site Monday and Tuesday Rate: $45-$55/hr. Position Overview We are seeking an experienced Security Analyst to support security compliance and authorization activities across an...$68k - $108k
...experience providing audit evidence for security standards such as NIST, PCI, HIPAA, and FERPA... ...At least 5 years of exposure to complex IT web applications within the past 5 years.... ...vendors, auditors, project managers, and analysts to complete and maintain SSP and ATO...Full time$152.7k - $294k
...help to build a better working world. The Global Information Security Strategist is a senior role responsible for shaping and... ...initiatives in a global organization, aligning diverse teams (security, IT, and business) through influence and relationship-building...Summer holidayLocal areaFlexible hoursShift work- ...discountDevelopment programs for advancement and career growthPlease review the job profile below and apply today!Ensures a safe and secure environment for customers, team members, and vendors. Responsible for investigating of internal and external theft, to include ORC...Work experience placement
- ...exposure to the market using financial models and manages that exposure through hedging and other risk management actions. The Financial Analyst will assist in the monitoring and risk management of Jackson's asset/liability position.Essential ResponsibilitiesUpdates and...Full time
$81.07k - $129.71k
...Job Description Blue Cross NC is seeking an Actuarial Analyst to support rating and pricing, valuation, healthcare economics, and financial forecasting. Under general guidance, this role applies knowledge of mathematics, probability, statistics, and business principles...Work at officeLocal areaRemote workFlexible hours2 days per week- ...and rewarding. Our group of caring associates create financial security by helping individuals and businesses make a new start when a loss... ...individual to join our Actuarial Division as an Actuarial Analyst. The position is responsible for creating pricing plans to help...Currently hiringLocal areaHome office3 days per week
$80.9k - $110.3k
...Become a part of our caring community The Actuarial Analyst 2, Analytics/Forecasting supports value-based initiatives within the HealthCare Economics team, partnering across actuarial, finance, analytics, and business teams to develop actionable financial insights and...Full timeTemporary workApprenticeshipWork at officeRemote workWork from homeHome office- At Aristocrat, we focus on delivering happiness to life through the power of play. Our mission motivates us to innovate, collaborate, and sustain the highest standards in gaming content and technology. As a Control Room Operator, you will be essential in guaranteeing the...Local area
$75k - $85k
...Position Summary The Senior FP&A Analyst will be a member of the Operations Finance team at Propelis headquarters in Louisville, KY, reporting to the VP of Finance. The position requires knowledge of both Finance and Accounting principles, experience with advanced financial...Temporary workWork at officeLocal areaRemote workFlexible hours- ...Financial Analyst - Senior page is loaded## Financial Analyst - Seniorlocations: Newaygo, Michigan, UStime type: Full timeposted on:... ...shared externally through these AI tools. All information remains securely within our systems and is handled in accordance with our...Permanent employmentLocal area
- Position Summary The position oversees purchasing and billing processes for the Institute for Cyber Enabled Research (ICER) and related units, including software, hardware, and storage acquisitions. Responsibilities also include managing fee-for-service billing, reconciling...Work experience placementWork at officeRemote workFlexible hours
- Product Finance covers two things: how our products perform, and what they cost to build, run, and support. This role owns the cost and investment side, as the finance partner to the Product and Customer Support organizations You’ll own the operating expense P&L for both...
- ...IT Security Auditor We are from US IT Solutions, an ISO Certified, E-Verify, WMBE Certified organization established in 2005 in CA. Our company is serving various State, Local and County Departments for over 10 years. USITSOL has been helping clients innovate across...Local area
- The Home Depot is hiring for the position of Asset Protection Specialist. The main responsibilities include preventing financial loss due to theft and fraud, supporting safety and environmental compliance. You will utilize tools to minimize loss, prepare detailed case reports...
- At Aristocrat, we focus on delivering happiness to life through the power of play. Our mission motivates us to innovate, collaborate, and sustain the highest standards in gaming content and technology. As a Control Room Operator, you will be essential in guaranteeing the...Local area
- Financial Analyst - Senior page is loaded## Financial Analyst - Seniorlocations: Newaygo, Michigan, UStime type: Full timeposted on: Posted... ...externally through these AI tools. All information remains securely within our systems and is handled in accordance with our...Permanent employmentLocal area
$65k - $75k
Venteon is looking for a Financial Analyst for an automotive manufacturing client located in the greater Lansing area. The Financial Analyst will play a strategic role in supporting senior leadership and driving financial performance, shaping the company’s financial strategies...Full time- ...where everyone’s empowered to be their best. Position Summary We are seeking a highly analytical and results-driven Senior Financial Analyst to join our Finance team. This position is responsible for performing complex financial analyses, developing management reports,...
- ...Job Description Job Description Title: Analyst I, Finance Location: Lansing, MI LG Energy Solution Michigan, Inc is a global leader in advanced lithium-ion battery technology for electric vehicle (EV) and energy storage applications. With growing operations...Work at office
- ...video surveillance on identified individuals for the allotted amount of time and utilizes established investigative techniques to secure covert video footage Conduct investigations such as securing recorded statements, scene inspections, activity checks and securing documents...Flexible hours
- J T Becker & Co Inc is seeking experienced Field Investigators in Michigan for flexible hours on an as-needed basis. Ideal candidates should have a valid investigator license and experience in surveillance and SIU investigations. Responsibilities include conducting investigations...Flexible hours
- ...methods that measure, model, and communicate cybersecurity risk across the enterprise. You will partner with Cyber GRC, Cyber Strategy, Security Operations, Enterprise Risk Management, Finance, and business leaders to inform investment priorities, control effectiveness,...Full timeFor contractorsRemote work
$105.4k - $207.8k
Position Summary AI Security Senior ConsultantOur Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape...Local areaWorldwideVisa sponsorship
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Security Analyst. Be the first to apply!
- bond analyst Lansing, MI
- senior security analyst Lansing, MI
- entry level information security analyst Lansing, MI
- network security analyst Lansing, MI
- information security analyst Lansing, MI
- rate analyst Lansing, MI
- IT security analyst Lansing, MI
- entry level security analyst Lansing, MI
- junior security analyst Lansing, MI
- security analyst remote Lansing, MI





