Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Analyst Lead

eSimplicity

Job Description

Job Description

Description:

About Us

eSimplicity is a modern digital services company that partners with government agencies to improve the lives and protect the well-being of all Americans, from veterans and service members to children, families, and seniors. Our engineers, designers, and strategists cut through complexity to create intuitive products and services that equip federal agencies with solutions to courageously transform today for a better tomorrow.

Purpose and Scope

We are seeking an Information Security Analyst who is responsible for providing security support services while meeting security control compliance requirements for a portfolio of systems at various states of maturity and modernization. This role will provide support for continuously monitoring the cybersecurity posture of systems to secure against cyber threats.

The primary responsibility is to facilitate security tool and control implementation, security tool usage, and ensure tools and controls remain compliant and configured properly, all the while ensuring a successful program Authorization to Operate (ATO). Additionally, the expectation is to take ownership of communication and visualization of security issues, especially where coordination between product teams, information owners, engineering, and infrastructure staff is necessary for remediation.

The candidate will own coordination and response to the agency’s security-related inquiries, compliance with agency policy, security controls, and the maintenance of security documentation and artifacts. You will function as the primary liaison to provide timely and accurate responses to security-related data calls (System Security & Compliance Status, Vulnerability, and Compliance scanning issues) and provide security guidance throughout the system development lifecycle. This role requires interfacing with multiple stakeholders through multiple touchpoints weekly.

Responsibilities

  • Work closely with Product Owners, other ISSOs, ISSMs, and engineering and infrastructure staff to provide guidance on the implementation of security policies, standards, and procedures.
  • Analyze new or updated security requirements, collaborate with stakeholders, and develop responses that are clear and accurate.
  • Support the review and update of ATO artifacts such as System Security Plans, Information System Contingency Plans, Configuration and Change Management Plans, Incident Response Plans, Privacy Impact Analyses, and more.
  • Interpret security risk assessments, review security scan results, assess security vulnerabilities, and support the development and remediation of vulnerability and compliance issues via Plans of Action and Milestones (POA&Ms).
  • Support the development and implementation of design documentation.
  • Work with engineering and infrastructure personnel to document remediation for vulnerabilities and non-compliance issues.
  • Analyze and interpret agency security requirements and provide governance communication to non-security personnel.
  • Collaborate with product teams, ISSOs, and other stakeholders in support of continuous monitoring and ATO efforts.
  • Conduct vulnerability assessments and monitor systems, networks, databases, and Web-based assets for potential system breaches.
  • Recommend and take the lead on implementing changes to enhance security systems, prevent unauthorized access, and help mitigate security vulnerabilities.
  • Respond to alerts from information security tools. Report, investigate, and resolve higher-level security incidents.
  • Respond to security tool outages and degradations in service, tune security rules and alerts, and set up/maintain security tool dashboards and reporting.
  • Research security trends, new methods, and techniques used in unauthorized access of data to preemptively eliminate the possibility of system breach.
  • Ensure compliance with regulations and privacy laws. Conduct research to identify new attack vectors.
  • Educate and communicate security requirements and procedures to all users and new employees.
  • Recommend process improvements to the information system for risk mitigation.
  • Support continuous improvement and security automation practices to strengthen the program’s overall security posture.
  • Conduct audit log reviews, present findings, and plan for investigation or remediation activities.
  • Perform periodic user and privileged access reviews.

Requirements:

Required Qualifications

  • Minimum of 8+ years of related experience.
  • Must hold a current Security+ certification.
  • Bachelor’s degree in Computer Science, Information Systems, Engineering, Business, or a related technical discipline is preferred. Additional relevant experience may be considered in lieu of a degree.
  • Experience designing security "baked-in" to architectures including Cloud and IaC, applications, web applications, data processing, data-centric applications, AI/ML, and CI/CD pipelines.
  • A proven track record of seeking automation-driven designs.
  • Familiarity with Agile methodologies.
  • Working knowledge of AWS or Azure security tools, their functionality, and their purpose.
  • Ability to assist customers with defining appropriate management processes (responsible for documenting application criticality, privacy, and security impact analysis).
  • Knowledge of hardening standards (DISA STIG, CIS).
  • Experience with the NIST Risk Management Framework, NIST 800-53 rev5, and NIST 800-171..

Desired Qualifications

  • Federal Government contracting work experience.
  • Experience as an ISSO for the DoD.
  • Highly preferred industry certifications such as CISSP, CEH, GIAC, etc.
  • Experience with Security Information and Event Management (SIEM) systems (e.g., Splunk).

Location and Hours

Location: This role is primarily remote; however, the employee must be able to report on-site to Fort Meade, MD when requested due to customer or business needs. The frequency and timing of on-site support may vary and cannot be guaranteed in advance.

Hours: Expected hours are 9:00 AM to 5:00 PM Eastern Time unless otherwise directed by your manager.

Travel: Occasional travel for training and project meetings, estimated to be less than 5% per year.

Benefits:

eSimplicity offers a comprehensive benefits package, including medical, dental, and vision coverage, 401(k) retirement benefits, paid time off, paid holidays, life and disability insurance, and additional wellness and employee support programs. Eligibility may vary based on employment status and applicable plan terms.

Reasonable Accommodation:

eSimplicity is committed to providing reasonable accommodations to qualified individuals with disabilities during the application and hiring process. Applicants who need assistance or an accommodation should contact Human Resources.

Equal Employment Opportunity:
eSimplicity is an Equal Opportunity Employer, including disability and protected veteran status. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran status, disability, or any other legally protected status.

Vacancy posted 13 days ago
Similar jobs that could be interesting for youBased on the Information Security Analyst Lead in Maryland vacancy
  • $112.8k - $165.4k

     ...better tomorrow. Purpose and Scope We are seeking an Information Security Analyst who is responsible for providing security support services...  ...for potential system breaches. Recommend and take the lead on implementing changes to enhance security systems, prevent... 
    Suggested
    Full time
    Work experience placement
    Remote work

    eSimplicity Inc

    Maryland
    5 days ago
  •  ...divh2Project Manager - Team Lead / Information Security Analyst - SME/h2pZantech is looking for a talented Project Manager - Team Lead / Information Security Analyst - SME to provide Continuous Process Improvement (CPI), Focused Development and Automation services, Risk... 
    Suggested
    Contract work
    Remote work

    Zantech

    Suitland, MD
    1 day ago
  • $85k - $101k

     ...Sigma Defense is currently seeking an Information Security Analyst to work in support of the Army for the Network Modernization & Mission Network Technical Service Support program (NetMod). NetMod sets forth the work efforts required to provide product technical support... 
    Suggested
    Work at office
    Remote work

    SOLUTE Careers

    Belcamp, MD
    8 days ago
  •  ...of the Department of Defense, Civilian Government, and commercial markets. Summary DataPath, Inc. is seeking an Information Security Analyst that will Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information... 
    Suggested
    Remote work

    DataPath

    Aberdeen Proving Ground, MD
    2 days ago
  • $77k - $172k

     ...Saalex Corporation  is seeking a  Senior Information Security Analyst  in  Saint Inigoes, MD . Saalex is an Engineering and Information Technology Services company with a focus on Test Range Operations and Management, Engineering and Logistics Services, Data Analytics... 
    Suggested
    Full time
    Temporary work
    Interim role
    Work at office
    Remote work
    2 days per week

    Saalex

    Maryland
    7 days ago
  • $30 per hour

     ...professional development in fields such as information technology, technical/systems...  ...Federal Sales Teams. The Information Security Compliance Analyst is expected to work with the GDI Performance...  ...Discover your potential at a company leading the way in AI and cloud solutions... 
    Hourly pay
    Temporary work
    Internship
    Flexible hours

    Oracle

    Annapolis, MD
    3 days ago
  •  ...Job Title: IT - Information Security/Privacy Analyst I Job Description: Summary: The CIOCC Tier 1 Analyst shall be responsible for the following, but not limited to: Analyze and respond to security events and incidents from SIEM, Firewall (FW), Intrusion Detection... 
    Night shift
    Afternoon shift

    PLANIT Group

    Rockville, MD
    2 days ago
  • $65k - $176k

     ...commitment to grow and sustain our company for the next 100 years! Come grow with us! Torch Technologies is seeking a TARCES Information Security Analyst to join our team supporting the Tactical and Remote Command, Control, Communications, Computers, Cyber, and Intelligence... 
    Contract work
    Temporary work
    Work experience placement
    Local area
    Remote work
    Relocation package
    Flexible hours

    Torch Technologies

    Patuxent River, MD
    4 days ago
  • $54.07k - $86.51k

     ...must be currently authorized to work in the US, as the College does not offer Visa sponsorships. JOB SUMMARY: The Information Security Analyst plays a key supporting role in the college's cybersecurity operations. Under the guidance of the Technical Manager, Information... 
    Full time
    Temporary work
    Work at office
    Local area
    Remote work
    Weekend work
    Afternoon shift
    1 day per week

    Cecil College

    North East, MD
    7 days ago
  •  ...Information Security Analyst Location Ft. Meade, MD Job Setting On-site Job Category Information Assurance Apply Now ( INFORMATION SECURITY ANALYST The company is seeking a Information Security Analyst to support NIWC (Naval Information Warfare Center... 
    Work experience placement
    Interim role

    Systems Technologies

    Maryland
    3 days ago
  •  ...Information Security Analyst - SME Zantech is looking for a talented Information Security Analyst - SME to provide specialized cybersecurity expertise supporting risk management operations, conduct security assessments, implement continuous monitoring solutions, and... 
    Contract work

    Zantech

    Suitland, MD
    2 days ago
  •  ...Senior Information Security Analyst As a Senior Information Security Analyst, you will be a key member of our security team, responsible for safeguarding...  ...completion of Plans of Action and Milestones (POA&Ms) Lead computer security incident response efforts including but... 
    Contract work
    Work experience placement
    Work at office
    2 days per week

    Staffing the Universe

    Columbia, MD
    5 days ago
  • We are seeking an experienced Info Security Analyst IV to support FIPS 140 validation projects within a hands-on lab environment. This role focuses on security analysis, cryptographic validation testing, product evaluations, automation, and technical reporting in support... 
    Local area

    Aptonet

    Columbia, MD
    4 days ago
  • $65k - $176k

    TARCES Information Security Analyst: The role supports the Tactical and Remote Command, Control, Communications, Computers, Cyber, and Intelligence (C5I) Edge Systems for commercial and militarized vehicles, small and large crafts, transit cases, mobile communications,... 
    Contract work
    Temporary work
    Local area
    Remote work
    Relocation package
    Monday to Friday
    Flexible hours

    Torch Technologies, Inc.

    Annapolis, MD
    5 days ago
  • $132k - $158k

    Job Description We are seeking an Information Security Analyst to serve as a key leader responsible for the Information Assurance (IA) posture of enterprise...  ...a mission‑critical program. This individual will lead cybersecurity efforts to ensure systems meet stringent compliance... 
    Contract work
    Temporary work
    Work experience placement
    Monday to Friday

    Cydecor

    Annapolis, MD
    1 day ago
  • Summary The Senior Information Security Analyst will have a strong background in infrastructure and network security. They will provide advanced technical support, lead security events investigation, and participate with various security initiatives and projects. They will... 
    Local area

    Facility North Kansas City Hospital

    Lothian, MD
    5 days ago
  • $77k - $172k

    A leading engineering firm in Maryland is seeking a Senior Information Security Analyst. The candidate will be responsible for planning and implementing security measures while assessing vulnerabilities. A minimum of seven years in information security is required, including... 

    Saalex Corp.

    Annapolis, MD
    2 days ago
  •  ...Union. Please note: A resume may be attached as supplemental information; however, only the information provided in the application...  ...time position will be to serve as the HR Data and Personnel Security Analyst for the Maryland Department of Labor, Office of Human... 
    Full time
    Work experience placement
    Work at office
    Weekend work

    State of Maryland

    Baltimore, MD
    1 day ago
  • $90k - $100k

     ...Job Title: IT Security Analyst Location: Baltimore, MD FLSA Status: Exempt Department: Information Technology (IT) Reports to: Director, Information Technology Operations Compensation: $90,000 - $100,000 + bonus Position Summary: The Baltimore... 
    H1b
    Remote work
    Relocation
    Flexible hours

    AEG Presents

    Baltimore, MD
    1 day ago
  • $76.4k - $138.6k

     ...is fueled by vast amounts of information. Data is more valuable than ever...  ...everyone in EY Information Security has a critical role to play....  ...As an Offensive Security Analyst on the Attack Surface Management...  ...guidance of the Exposure Management Lead, you will identify, assess... 
    Summer holiday
    Local area
    Flexible hours

    EY

    Annapolis, MD
    2 days ago
  •  ...Information Security Analyst Support daily operations of information security systems and processes to ensure protection and enablement of information security policies Develop, enhance, and maintain security tools to support capabilities for network and host-based... 

    MRINetwork

    Annapolis Junction, MD
    3 days ago
  •  ...We are seeking a highly skilled Security Analyst to join our cybersecurity team as an Information Systems Security Officer (ISSO) supporting a program with the Defense...  ..., risk management, and compliance. You will lead in the implementation, maintenance, and enforcement... 

    NextGen Federal Systems

    Maryland
    5 days ago
  •  ...Security Analyst / Information Systems Security Officer Fort Meade, MD Type: Contract-to-Hire Category: Engineer Industry: Government...  ...serving as an Information Systems Security Officer to lead implementation and enforcement of security policies aligned... 
    Hourly pay
    Contract work
    Local area

    Eliassen Group

    Maryland
    2 days ago
  •  ...maintain user and computer accounts and modify file permissions and security access lists. Test new releases of products to ensure...  ...products, services, and suggestions. Adhere to strict Information Systems security guidelines in all cases. Maintain security... 
    Full time
    Contract work

    Artech

    Linthicum Heights, MD
    4 days ago
  • Cydecor is seeking an Information Security Analyst based in Maryland to lead cybersecurity efforts across enterprise networks supporting critical mission programs. The role involves implementing security measures, conducting risk assessments, and ensuring compliance with... 

    Cydecor

    Annapolis, MD
    4 days ago
  •  ...Job Summary The Security Systems Engineer designs, develops, recommends, configures...  ...protect confidential data, systems, and information assets. This role provides technical engineering...  ...both to thrive. Across the U.S., leading companies in healthcare, government,... 
    Contract work
    For contractors
    Work experience placement

    Equiliem

    Columbia, MD
    4 days ago
  • $100k - $126k

     ...in order to mitigate and eliminate high level data and cyber security risks. Designs, tests and implements state-of-the-art secure operating...  ..., DB Protect, Venafi, and BURP. Comprehensive knowledge of information security and security frameworks. Excellent written and... 
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Annapolis, MD
    4 days ago
  • $100k - $245k

    The Johns Hopkins University Applied Physics Laboratory is seeking an Information Technology & Data Analyst to enhance enterprise IT systems. The candidate will analyze data to inform decision-making, design dashboards, and support IT operations in compliance with regulations... 

    The Johns Hopkins University Applied Physics Laboratory

    Laurel, MD
    1 day ago
  •  ...Lead Information Assurance (IA)/ Security Specialist Full Time Ft. Meade, MD Secret clearance **This position is contingent upon contract award** Job Description Semper Valens Solutions is seeking an experienced Lead IA / Security Specialist to support a... 
    Full time
    Contract work

    Semper Valens Solutions

    Maryland
    2 days ago
  • A global leader in flavors is seeking a Senior Security Risk Analyst in Cockeysville, Maryland. The ideal candidate will be responsible for leading security risk assessments and ensuring compliance across all disciplines. Strong communication skills and experience with... 

    McCormick & Company, Incorporated

    Cockeysville, MD
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Analyst Lead. Be the first to apply!