Information System Security Compliance Analyst (Multiple Levels)
$78.9k - $123.3kNoblis
Responsibilities
Position Overview
We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal cybersecurity requirements, and maintaining the documentation necessary to support Authorization to Operate (ATO) decisions.
The ideal candidate will have experience working with NIST RMF, NIST SP 800-53 controls, security authorization packages, POA&M management, and compliance documentation. Candidates should be comfortable working with technical teams to assess control implementation, identify compliance gaps, and provide guidance to support remediation efforts and POA&M closure.
Key Responsibilities
Manage the security authorization lifecycle for one or more information systems in accordance with Federal Risk Management Framework (RMF) requirements.
Coordinate activities required to obtain and maintain Authorization to Operate (ATO) approvals.
Assess and track implementation of NIST SP 800-53 security controls and associated compliance requirements.
Develop, review, update, and maintain authorization package documentation, including:
System Security Plans (SSPs)
Security Assessment Reports (SARs)
Plan of Action and Milestones (POA&Ms)
Risk Assessments
Continuous Monitoring documentation
Security-related policies and procedures
Manage POA&M activities by tracking findings, monitoring remediation progress, validating corrective actions, and supporting closure efforts.
Provide technical guidance and compliance recommendations to system owners, engineers, administrators, and security stakeholders to facilitate POA&M remediation and closure.
Coordinate with technical teams to gather evidence supporting security control implementation and compliance requirements.
Review vulnerability scan results, assessment findings, and security documentation to identify compliance gaps and areas requiring remediation.
Support continuous monitoring activities by tracking security posture, compliance status, and ongoing control effectiveness.
Participate in security assessments, audits, and compliance reviews conducted by internal and external stakeholders.
Assist in the development of risk mitigation strategies and recommendations for addressing identified security weaknesses.
Track authorization milestones, compliance deadlines, and remediation activities to ensure timely completion.
Communicate compliance status, risks, findings, and recommendations to both technical and non-technical stakeholders.
Support audits and reporting activities related to Federal cybersecurity requirements and organizational security programs.
Required Qualifications
Experience supporting cybersecurity compliance, security authorization, risk management, or information security programs.
Experience working with the NIST Risk Management Framework (RMF).
Subject matter expertise with NIST SP 800-53 security controls and Federal cybersecurity compliance requirements.
Experience supporting the development, maintenance, or review of authorization package documentation, including SSPs, SARs, POA&Ms, and Risk Assessments.
Understanding of the Authorization to Operate (ATO) process and continuous monitoring requirements.
Experience tracking and managing POA&M findings through remediation and closure.
Ability to review technical security information and translate findings into compliance documentation and actionable recommendations.
Understanding of cybersecurity principles, security controls, vulnerability management, and risk management concepts.
Strong organizational skills with the ability to manage multiple systems, priorities, and compliance activities simultaneously.
Strong written and verbal communication skills, including the ability to develop and review formal security documentation.
Proficiency with Microsoft Office applications, particularly Excel, Word, and PowerPoint.
U.S. Citizen or Green Card Permanent Resident with a minimum of three (3) years of U.S. residency.
Ability to obtain and maintain an FAA Public Trust.
Education & Experience Substitutions
Substitutions are subject to government customer review and approval.
Mid
Bachelor's degree in Cybersecurity, Information Technology, Telecommunications, or a related field.
9+ years of experience in cybersecurity or network security roles
Substitutions: For anything requiring a substitution, the government customer is subject to further review and either approve or deny the request.
A High School degree with a total of 15 years of experience in cybersecurity or network security roles
Masters degree with a total of 6 years of experience in cybersecurity or network security roles.
Compensation Ranges: for D.C., NJ, Remote: $78,900 - $123,300
Mid to Senior:
Bachelor's degree in Cybersecurity, Information Technology, Telecommunications, or a related field.
12+ years of experience in cybersecurity or network security roles
Substitutions: For anything requiring a substitution, the government customer is subject to further review and either approve or deny the request.
A High School degree with a total of 16 years of experience in cybersecurity or network security roles
An Associates Degre with a total of 14 years of experience in cybersecurity or network security roles
Masters degree with a total of 9 years of experience in cybersecurity or network security roles
Compensation Ranges: for D.C., NJ, Remote: $95,500 - $180,525
Senior
Masters degree in Cybersecurity, Information Technology, Telecommunications, or a related field.
16+ years of experience in cybersecurity or network security roles
Substitutions: For anything requiring a substitution, the government customer is subject to further review and either approve or deny the request.
A Bachelors degree with a total of 19 years of experience in cybersecurity or network security roles
Compensation Ranges: for D.C., NJ, Remote: $115,500 - $218,475
Desired Qualifications
Experience supporting federal government programs, preferably within the FAA, Department of Transportation, or other civilian federal agencies.
FAA or transportation sector experience preferred.
Experience serving as an Information System Security Officer (ISSO), Security Control Assessor (SCA), Information System Security Manager (ISSM), or similar cybersecurity compliance role.
Experience managing authorization packages for multiple systems simultaneously.
Strong knowledge of NIST SP 800-53 Rev. 5, NIST RMF, FISMA, and related Federal cybersecurity requirements.
Experience developing, reviewing, and maintaining SSPs, SARs, POA&Ms, Risk Assessments, Contingency Plans, and other authorization artifacts.
Experience conducting control assessments, compliance reviews, and security documentation audits.
Ability to interpret technical findings from vulnerability scans, configuration assessments, and security reviews to support risk-based decision-making.
Experience providing technical guidance to engineering and operations teams to support corrective actions and POA&M closure.
Familiarity with continuous monitoring programs and ongoing authorization requirements.
Experience working with vulnerability management tools, compliance dashboards, and governance, risk, and compliance (GRC) platforms.
Knowledge of cloud security compliance, Zero Trust Architecture, and modern Federal cybersecurity initiatives.
Industry certifications such as:
CISSP
CAP (Certified Authorization Professional)
Security+ CISM
GSLC
CGRC
or equivalent certifications
Strong written, verbal, analytical, and interpersonal communication skills, with the ability to interact effectively with technical teams, auditors, system owners, and government stakeholders.
Overview
Noblis ( and our wholly owned subsidiaries, Noblis ESI , and Noblis MSD tackle the nation's toughest problems and apply advanced solutions to our clients' most critical missions. We bring the best of scientific thought, management, and engineering expertise together in an environment of independence and objectivity to deliver enduring impact on federal missions. Noblis works with a wide range of government clients in the defense, intelligence and federal civil sectors. Learn more at Noblis -About Us (
Why work at a Noblis company?
Our employees find greater meaning in their work and balance the other things in life that matter to them. Our people are our greatest asset. They are exceptionally skilled, knowledgeable, team-oriented, and mission-driven individuals who want to do work that matters and benefits the public. Noblis has won numerous workplace awards ( . Noblis maintains a drug-free workplace.
- Remote/hybrid status is subject to change based on Noblis and/or government requirements
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to race, color, ethnicity, sex, age, national origin, religion, physical or mental disability, pregnancy/childbirth and related medical conditions, veteran or military status, or any other characteristics protected by applicable federal, state, or local law.
If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact us ( .
EEO is the Law ( | E-Verify ( | Right to Work (
Total Rewards
At Noblis we recognize and reward your contributions, provide you with growth opportunities, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, and work-life programs. Our award programs acknowledge employees for exceptional performance and superior demonstration of our service standards. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in our benefit programs. Other offerings may be provided for employees not within this category. We encourage you to learn more about our total benefits by visiting the Benefits ( page on our Careers ( site.
Compensation at Noblis is determined by various factors, including but not limited to, the combination of education, certifications, knowledge, skills, competencies, and experience, internal and external equity, location, clearance level, as well as contract-specific affordability, organizational requirements and applicable employment laws. The projected compensation range for this position is based on full time status. For part time or on-call staff, compensation is proportionately adjusted based on hours worked. While monetary compensation is important, it's just one component of Noblis' total compensation package.
Posted Salary Range
USD $78,900.00 - USD $218,475.00 /Yr.
$76.4k - $138.6k
...is fueled by vast amounts of information. Data is more valuable than ever... ...data and information systems is central to doing business,... ...and everyone in EY Information Security has a critical role to play.... ...As an Offensive Security Analyst on the Attack Surface Management...Information SystemSummer holidayLocal areaFlexible hours$70k - $90k
...apply for the Cybersecurity Compliance Analyst role at New York eHealth... ...maintaining and strengthening NYeC’s information security and compliance posture... ...responding to information system security incidents,... ...Albany as required. SENIORITY LEVEL Associate EMPLOYMENT TYPE Full...Information SystemFull timeWork at office1 day per week- ...The Security Operations Center (SOC) Analyst II serves as a mid‑level cyber defender responsible... ...mission‑critical systems. The analyst helps... ...inputs. Support compliance‑driven... ...Computer Science, Information Assurance, Cybersecurity... ...depending on multiple factors; including...SuggestedContract workWork at office
- ...Department of Financial Services Job Title Security Analyst - Expert Description Monitor work queue, and research and address information security related user requests and... ...security exceptions Perform daily review of system security logs, and create analysis dashboards...SuggestedPart timeLocal area
$105k - $130k
...CampusGuard, a Nelnet company, provides information security and privacy consulting and compliance services primarily for campus-... ..., network infrastructure, IT system configurations and physical security as it all relates to multiple compliance requirements. Performing...Information SystemTemporary workFixed term contractLocal areaRemote workWork from homeHome office- ...has a new opening for a Lead Security Analyst 141809 This... ...experience in a leadership role, information security, relationship... ...Regulatory compliance & policy implementation... ...Privacy Controls for Information Systems and Organizations as established...Information SystemLocal areaRemote work
$44.8k
...integrity, reliability, and security of critical technology systems by planning and executing audits across information systems and related... ...or suggestions. Ensures compliance with IS audit standards, guidelines... ...complex issues to higher-level staff. Ability to build...Information SystemContract work$152.7k - $294k
...vast amounts of information. Data is more valuable... ...and information systems is central to... ...in EY Information Security has a critical role... ...at all levels of the firm, explaining... ...foster a culture of compliance, proactive risk... ...ability to manage multiple projects and meet...Information SystemWork experience placementSummer holidayLocal areaFlexible hours$105.79k - $141.05k
...connected ecosystem. We enable secure, high‑performance... ...today. The Role The CMMC Compliance Analyst must have advanced practical... ...the personnel, physical, information, and information systems (IS) security... ...supporting a successful CMMC Level 2 C3PAO assessment Experience...Information SystemTemporary workFor contractorsRemote work- ...The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role in evaluating and reducing... ...orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability...Summer holidayFlexible hours
$93.53k - $117.88k
...not usually request personal or financial information via text message or over the phone in connection... ...the position. Job Details Agency: Homeland Security and Emergency Services, Division of Title: Homeland Security Program Analyst 3 Occupational Category: Other Professional...Permanent employmentFull time- Join a dedicated team in a vital role as a Homeland Security Program Analyst 3. This position offers the opportunity to contribute to the safety and security of the community through strategic analysis and program management. You will be part of an essential agency focused...Full time
- ...the expertise in all facets of Information Operations, making sure our... ...and deployment of information systems crucial to the intelligence... ...that pose a threat to national security, such as drug smuggling,... ...intelligence assessment to high-level decision makers Planning intelligence...Information SystemPart timeWorldwide
- ...Job Title: Senior Security Analyst / CIAM SME (Transmit Security & Passkeys) Job Summary We are seeking an experienced Senior Security Analyst / CIAM Subject Matter Expert (SME) to support enterprise Identity and Access Management (IAM) initiatives with a focus...
- ...financial, operational, compliance, and program audits.... ...recommend improvements to the system of internal controls... ...Perform one or more multiple ongoing project... ...REQUIREMENTS: Education Level required : Bachelor’s... ...(service-based), information systems and project management...Information SystemWork at office
$230k - $240k
...can operate at a strategic level while ensuring disciplined execution... ...coordination efforts across multiple projects within the program,... ...with Project Management Information System (PMIS) Experience with... ...committed to maintaining a secure and trustworthy recruitment...Information SystemFull timeWork at officeLocal areaWorldwideRelocation packageFlexible hours- ...Employment Type: Full-Time, Senior-Level Department: Information Technology CGS is seeking an experienced... ...Architect will provide a view for system owners, planners, designers,... ...BlackBerry, Apple iOS, information security, wireless technologies, system networking...Information SystemFull timeFor subcontractorRemote workFlexible hours
$150.2k - $225.4k
...About the team: The Information Security organization advances the overall state of security... ...secure software and protect data and systems with appropriate security controls. Information... ...and exploits ~ Comprehension in multiple programming languages (Python, Go,...Information SystemWork experience placementLocal areaRemote workShift work$70k
Entry-level Guidewire Business Analyst & Technology Analyst Position Overview Cognizant Guidewire Implementation... ...Guidewire and external/internal systems Participate in unit testing, system... ...Engineering/Software Engineering; Information Technology / Information Systems;...Information SystemTemporary workWork experience placementSummer workWork at officeRemote workRelocation2 days per week- ...Summary The Actuarial Analyst performs actuarial services in support... ...rates, rating structures and systems and reserves. The Actuarial... .... Essential Accountabilities Level I Establishes insurance rates... ...All Levels NOTE: We include multiple levels of classification differentiated...Work at officeRemote work
$101.3k - $168.7k
...Sr Program Financial Analyst demonstrates deep expertise... ...a large contract or multiple complex TDL(s) by... ...Lead contract setup in compliance with contractual terms... ...arithmetic checks of contract level cost reporting... ...From priority national security initiatives for the DoD...Contract workWork experience placementFor subcontractorH1bWork at officeRemote work- ...troubleshooting of degree audit systems and degree exceptions.... ...student staff as needed. Compliance & Data Security: Ensure confidentiality,... ...Experience collaborating with multiple stakeholders to implement... ...using a Student Information System such as PeopleSoft...Information SystemFull timeWork at officeRemote work
$65k - $68k
...in the formulation of systems scope and objectives relative... ...in Computer Science, Information Systems Management, or... ...in a business analyst or requirements analyst... ...positions vary depending on multiple factors; including but... ...location, skill set, level of education,...Information SystemContract workWork at office- ...System Integration Engineer | Albany, New... ...Integration Engineer- Level II Location:... ...validation rules, security models, flows) and... ...Ability to manage multiple, complex projects... ...computer science, Information Systems, or a related... ...Business Analyst and Administrator...Information System
$128.1k - $239.6k
...is seeking a Cloud Security consultant with... ...Azure infrastructure level. The consultant... ...security testing and compliance, vulnerability... ...capable of supporting multiple project teams. In... ...DevOps, and other information security roles in... ...knowledge of various IT system architectures and...Summer holidayLocal areaFlexible hoursShift work$80.2k - $111.3k
...and mission‑critical systems, owning the technical... ...and influences broader security architecture and operations... ...handlers and SOC analysts, elevating investigative... ...ability to manage multiple simultaneous incidents... ...location, skill set, level of education, certifications...Contract workWork experience placementWork at office$60 per hour
...Qualifications Bachelor level or higher degree with coursework in Information Technology or Project... ...utilizing industry standard system life cycle... ...which utilize business analysts and testers experienced... ...deployment strategies spanning multiple entities, including risk...Information SystemHourly pay$46k - $48.19k
...Counselor ensures students feel confident, informed, and motivated as they navigate... ...Paced Environment: Maintain a high level of service delivery across multiple communication channels, including... ...for enrollment. Proficiency with Systems: Become proficient in using the university...Information SystemFull timeWork at officeShift work$86.68k - $109.65k
Information Security Administrator – Office of the New York State Attorney General... ...vulnerabilities and ensure compliance. Assess current... ...including cloud services, on-prem systems, and third‑party applications... ...Information Seniority Level: Associate Employment Type...Permanent employmentFull timeWork at office$77.08k - $119.47k
...Department/Unit: Information Systems & Services Work Shift: Day (United... ...0 - $119,466.00 The Epic Analyst is responsible for building,... ...in integrating systems from multiple vendors, including specific... ...The Epic Analyst - Level II is expected to support application...Information SystemShift workWeekend workWeekday work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information System Security Compliance Analyst (Multiple Levels). Be the first to apply!
- entry level information security analyst Albany, NY
- report analyst Albany, NY
- data solutions analyst Albany, NY
- entry level data analyst no experience Albany, NY
- remote data analyst part time Albany, NY
- remote data analyst intern Albany, NY
- client data analyst Albany, NY
- manufacturing data analyst Albany, NY
- data analyst full time Albany, NY
- neuroscience data analyst Albany, NY




