Security Compliance Analyst II
H4 Enterprises
H4 Enterprises is currently seeking the following:TITLESecurity Compliance Analyst IILEVELMidRELATIONSHIPSAssigned Team LeaderEDUCATIONBachelor's degree in an Information Technology fieldEXPERIENCE10+ years of hands-on IT experienceCLEARANCETop Secret minimumPLACE OF PERFORMANCENational Capital RegionPOSITION SUMMARYThe Security Compliance Analyst II will assist the assigned Government Division Chief and assigned team leader with various Information Technology (IT) security support duties that will guide the Department of State's classified systems through various computer security requirements and meet Department and Office of the Director of National Intelligence (ODNI) security mandates. This position is responsible for participating in security assessments and compliance reviews of Sensitive Compartmented Information (SCI) systems. The contractor will help improve the security posture of the organization by implementing best practices and controls to prevent or mitigate security risks and exposures.RELATIONSHIPSThe Security Compliance Analyst II will receive direct government oversight, assignments, and directions from the assigned Government Office/ Program Director or Division Chief, through an assigned team leader.DUTIES & RESPONSIBILITIESCreates and develops Standard Operating Procedures, Policy, in support of the Information Assurance Branch (IAB)Participates in all steps of the Security Authorization and Assessment process for Information SystemsWorks closely with the Information Assurance Branch Chief and Chief Information Security Officer (CISO) to provide guidance and oversight for all requested initiativesAssists with the delivery of all required system documentation using the current National Institute of Standards and Technology (NIST), Diplomatic Security (DS), & Intelligence Community (IC) approved templates, forms, regulations, policies, methods, and standardsProvides advisement to stakeholders to assign resources and establish timelines to ensure the successful security authorization of a systemEnsures software installed in the production environment is evaluated and provides guidance regarding the potential for the software to introduce risk into the environmentContinuously maintains a thorough understanding of all configurations, architecture, installed software, accounts (both Operating System and Application), data flows, ports, protocols, and other relevant data for each IT SystemCoordinates with the appropriate operational group to accurately update the System Design Document for each IT system to reflect the approved state of each IT systemAnalyzes Information Assurance Vulnerability Alert (IAVA) bulletins, security, and vulnerability assessment results, provides leadership with details on any required actions and related timelines, and creates mitigation plansAnalyzes system weaknesses identified during system security assessments and the related mitigation plansProvides, tracks, and reports security requirements throughout the project life cycle of all projects that are within the accreditation boundary of assigned systemsPerforms in depth reviews of logs and other artifacts for each IT systemReviews and validates all relevant NIST 800-53 Security Controls and/or applicable departmental policies for each IT system assignedPerforms oversight of compliance with Vulnerability AlertsEnsures that all Information Assurance Vulnerability Management (IAVM) review items are tracked and reportedReviews and validates Plan of Actions & Milestones (POA&Ms) for each noncompliant control for each managed IT System prior to authorizing closure and ensures that proper documentation to support the POA&M lifecycle is filed and updated as required, including well documented waivers and exceptions detailing the potential risk to the Authorizing OfficialDevelops, documents, and executes internal audit programs, including the Federal Information Security Management Act (FISMA), to ensure that audits, inspections, and assessments appropriately address risks and management concernsProvides oversight and guidance regarding requests to modify technical policies such as firewall rules, ports, protocols, etc. for each IT systemCoordinates with and briefs Federal staff on all activities pertaining to each IT system as requestedLeads and facilitates walkthroughs with external auditors, explaining the various processes, improvements, and responses, and provides detailed and timely responses to audits and data callsPROFESSIONAL QUALIFICATIONS & SKILLSCitizenshipS. Citizenship requiredEducationBachelor's degree in an IT fieldMust possess the following current certifications:Certified Information Systems Security Professional (CISSP)Certified in Risk and Information Systems Control (CRISC)Certified Information Security Manager (CISM)Cybersecurity and Infrastructure Security Agency (CISA)Certified Ethical Hacker (CEH)OrDoD 8570 Information Assurance Management (IAM) II equivalent certificationsExperienceOver ten (10) years of hands-on IT experiencePreferred: Department of State experienceTechnical background and ability to review complex configurations for validationExperience with the Risk Management Framework (RMF) process from both a package preparation and assessor perspectiveExperience in the use of the XACTA, ACAS, and HBSS security toolsExperience with federal policies and procedures to acquire and maintain an Information System's Authority to Operate (ATO) under FISMA Act following NIST 800-53 guidelines and NIST- 800-53a security controls assessment practicesExcellent written and oral communication skills and the ability to work independently or as a member of a teamExperience with the RFM, POA&Ms, Security Authorization and AssessmentsExperience conducting and documenting vulnerability assessmentsKnowledge of and experience with NIST SP 800-53, 800-53A, and 800-37Understanding of FISMA complianceExperience with maintenance, installation, and use of WebInspect, Nessus scans, or similar toolsCLEARANCE REQUIREMENTPosition will be subject to a U.S. Government Security Investigation. Incumbent must possess or obtain/maintain minimum a TOP SECRET clearance with ability to obtain special access requirements (SCI).PLACE OF PERFORMACEPrimarily, the work will take place at a designated Department of State Location in the National Capital Region.This position is telework eligible and may be authorized in accordance with OPM and DS policy, only with the approval of the assigned Government Office/Program Director.EEO StatementH4 Enterprises, LLC does not discriminate in employment on the basis of race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or other non-merit factor.Working at H4 Working at H4 means applying a passion for meaningful work with intellectual rigor to help solve the leading issues of our day. Smart, compassionate, innovative, committed, H4 employees tackle unprecedented challenges to benefit people, businesses, and governments around the globe. We believe in collaboration, mutual respect, open communication, and opportunity for growth. We can only solve the toughest challenges by building an inclusive workplace that allows everyone to thrive. We are an equal opportunity employer, committed to hiring regardless of any protected characteristic, such as race, ethnicity, national origin, color, sex, gender identity/expression, sexual orientation, religion, age, disability status, or military/veteran status. Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. H4 does not discriminate in employment based on race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or other non-merit factor.COVID-19 Policy: New or prospective U.S. employees must provide proof of complete vaccination on the date of their commencement of employment. If selected for employment, you will provide proof of your full vaccination status, defined as vaccinated two weeks after receiving the requisite number of doses of a COVID-19 vaccine approved or authorized for emergency use by the FDA. Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process.
$155k - $165k
...Position Title: Security Analyst II Department: Cybersecurity & Program Management Corporate Area: PBS Technology Status: Regular, Full time Exempt Manager Title: Director, Cybersecurity Position Overview: The Security Analyst II is...SuggestedHourly payFull timeTemporary work- Akima Data Management (ADM), an Akima company, seeks a Security Program Analyst II to support the Department of State Diplomatic Security in Rosslyn, VA. The role focuses on safeguarding programs, performing data analysis, and assisting with security clearances and vendor...Suggested
$95k - $101k
Akima Data Management (ADM), an Akima company, is seeking Security Program Analyst II to provide program support to the Department of State Diplomatic Security, located in Rosslyn, VA. To join our team of outstanding professionals. Responsibilities The SPA II is responsible...SuggestedFull timeContract workPart timeFor contractorsWork at officeLocal areaRemote workWorldwide- PBS is seeking a Security Analyst II to join the Cybersecurity & Program Management team. The role focuses on designing, configuring, testing, and deploying secure services across on‑premises and cloud environments. You will conduct incident response, threat hunting, and...Suggested
- Akima Data Management (ADM), an Akima company, seeks a Security Program Analyst II to provide program support to the Department of State Diplomatic Security in Rosslyn, VA. The role focuses on Protecting Worldwide Protective Services programs and coordinating with DS officials...SuggestedFor contractorsWorldwide
- A security solutions provider in Washington, DC is seeking a Personnel Security Specialist II to support FBI investigations by processing e-QIP packets and conducting analysis. This role requires a Bachelor's Degree and a Current Top Secret security clearance, along with...
- ...are Integrity, Distinction, Experience and Achievement. We are seeking a Logistics Analyst II to support the Logistics and Program Management Support Services to the Defense Security Cooperation Agency’s (DSCA) International Operations Global Execution Division (OPS/...Temporary workFor contractorsRemote workFlexible hours2 days per week3 days per week
- DNI (Delaware Nation Industries) seeks a Technical Policy and Risk Analyst II to work with subject matter experts on security risk decisions and policy interpretation. The role involves coordinating responses for Foreign Service posts and applying DoS policies worldwide...Worldwide
- ...delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise and... ...challenges.We have an immediate need for a National Security Compliance Analyst to provide onsite support at the Mark Center in Alexandria,...Work at officeImmediate startFlexible hours
- ...ASSYST is seeking a Security & Compliance Analyst to support cybersecurity, risk management, compliance, and security operations activities. This is an onsite position based in Sterling, VA. Key Responsibilities Support security and compliance assessments, audits, and...Local areaFlexible hours
- ...Competitive salary Dental insurance Health insurance Paid time off Vision insurance Overview We are hiring a Security & Compliance Analyst to support multiple client environments with a focus on security operations, compliance readiness, and risk management....Work from homeFlexible hours
- ...in support of US military operations Provide day-to-day security support that includes continuous assessment of procedures to identify... ...related topics Conduct and document SAP facility compliance reviews, follow-on facility reviews, and facility close-outs...For contractors
- Systems Planning and Analysis, Inc. (SPA) seeks a National Security Compliance Analyst to provide onsite support at the Mark Center in Alexandria, VA. The role supports CFIUS and Team Telecom processes and develops risk mitigation options for DoW's Office of Global Investment...Work at office
- Chameleon Integrated Services is seeking a Security Documentation, Audit, and Quality Analyst to control the quality, traceability, currency, and acceptance readiness of cybersecurity deliverables for federal initiatives. You will maintain the evidence repository and deliverable...
- ...management, quality systems, data operations and cybersecurity. We secure some of the most sensitive data for the Department of Defense... ...insurance Training allowance PTO and more ISSO / Security Compliance Analyst Must be a United States citizen. Must be eligible for a Tier...Temporary work
- Systems Planning and Analysis, Inc. is seeking a National Security Compliance Analyst to provide onsite support at the Mark Center in Alexandria, VA. This role will require expertise in compliance and monitoring surrounding foreign investments and collaboration with DoD...Work at office
$68.4k - $131.76k
A global technology company is seeking a Compliance Advisor to understand U.S. compliance requirements and manage data governance. Responsibilities include conducting compliance assessments, identifying risks, and collaborating with technical teams. Ideal candidates will...- A consulting firm seeks a Security & Compliance Analyst to support various client environments, concentrating on security operations, compliance preparedness, and risk management. This hands-on position involves collaboration with IT leadership to ensure effective maintenance...Remote work
- ASSYST, Inc. is seeking a Security & Compliance Analyst to support cybersecurity, risk management, compliance, and security operations. This is an onsite role based in Sterling, VA. You will help with assessments, controls, and incident documentation, applying standards...
- ...heritage, proven expertise and insightful market intelligence has secured long‑term partnerships with Fortune 500 and government clients... ...Experience Matrix for Levels: Level I - 2+ years of experience Level II - 5+ years of experience Level III - 7+ years of experience Note...Shift workRotating shiftWeekend work
- ...Description **CONTINGENT UPON CONTRACT AWARD**Overview: Job Title: Security Operations Analyst – Senior Location : Washington, DC (Due to the nature... ...: ~ U.S. Citizenship. ~ Current IAT Level II or higher certification (e.g., Security+ CE, CySA+, CASP+,...Contract work
$52.29 per hour
Security Operations Center Analyst (SOC) Arlington, VA Are you ready to enhance your skills and build your career in a rapidly evolving business climate... ...substitute. 2+ years relevant experience. DoD IAT Level II Certification is required. DoD Top Secret Clearance with...$62k - $141k
COMSEC Security Program AnalystThe Opportunity:Provide technical and financial analytic support to the client’s Communications Security... ...technical and financial requirements, budgets, and policy compliance to support the development of information papers and briefings...Civilian ContractorFull timeContract workPart timeWork at officeLocal areaRemote work$88.4k - $154.7k
...Description:Parsons is seeking an exceptionally talented Program Security Analyst to join our dynamic team! In this critical role, you will... ...records and documentation for completeness, accuracy, and compliance with applicable policies and procedures.Apply experience with...Full timeContract workFor contractorsWork at officeFlexible hours- ...the broad spectrum of Risk Management, Compliance, Business Process, IT Effectiveness, Energy... ...Federal Govt. Client’s Mortgage Backed Securities (MBS) programs help to channel funds... ...trends, and customer demand. Financial analysts provide this information by gathering...Full timeFor contractorsBank staffInternshipWork at office
$104k - $166k
ResponsibilitiesPeraton is currently seeking to hire an experienced Forensics / Malware Security Analyst for its Federal Strategic Cyber Group.Location: Chandler, AZ or Washington DC.Role & Responsibilities: You will support a 24x7 Security Operations Center (SOC) by conducting...Contract workCurrently hiringShift work$107.9k - $195.05k
...The C5ISR Center Cyber Security Service Provider (CSSP) is a premier defensive cyber operations organization supporting the Department... ...an immediate opportunity for an experienced Endpoint Security Analyst to support a highly visible, strategic Cybersecurity Task Order...Full timeImmediate start- ...ProSidian services focus on the broad spectrum of Risk Management, Compliance, Business Process, IT Effectiveness, Energy & Sustainability... ...seeks a Mid-Level InfoSec Mobile Device Security Analyst Consultant focusing on Cyber-Security/Information Security (...Full timeFor contractorsWork experience placementInternshipWork at officeMonday to FridayShift work
- ...solutions, tested leadership, and trusted results to enable national security missions worldwide.Job Description*** This position is contingent upon contract award ***OverviewSOSi is seeking a Security Analyst - Forensics/Malware Analysis to support cyber defense and...Contract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
$62k - $141k
Crisis Response and Security Program Analyst The Opportunity: As a Crisis Response and Embassy Security Program Analyst, you support executive-level leadership and drive collaboration across high-performing teams in a fast-paced mission environment. Drawing upon your...Full timeContract workPart timeWork at officeLocal areaRemote workOverseas
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Compliance Analyst II. Be the first to apply!
- senior information security analyst Washington DC
- cloud security analyst Washington DC
- entry level security analyst Washington DC
- security analyst remote Washington DC
- security analyst intern Washington DC
- IT security analyst Washington DC
- security analyst Washington DC
- security operations analyst Washington DC
- bond analyst Washington DC
- junior security analyst Washington DC


