Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Compliance Analyst II

Full-time

H4 Enterprises

H4 Enterprises is currently seeking the following:TITLESecurity Compliance Analyst IILEVELMidRELATIONSHIPSAssigned Team LeaderEDUCATIONBachelor's degree in an Information Technology fieldEXPERIENCE10+ years of hands-on IT experienceCLEARANCETop Secret minimumPLACE OF PERFORMANCENational Capital RegionPOSITION SUMMARYThe Security Compliance Analyst II will assist the assigned Government Division Chief and assigned team leader with various Information Technology (IT) security support duties that will guide the Department of State's classified systems through various computer security requirements and meet Department and Office of the Director of National Intelligence (ODNI) security mandates. This position is responsible for participating in security assessments and compliance reviews of Sensitive Compartmented Information (SCI) systems. The contractor will help improve the security posture of the organization by implementing best practices and controls to prevent or mitigate security risks and exposures.RELATIONSHIPSThe Security Compliance Analyst II will receive direct government oversight, assignments, and directions from the assigned Government Office/ Program Director or Division Chief, through an assigned team leader.DUTIES & RESPONSIBILITIESCreates and develops Standard Operating Procedures, Policy, in support of the Information Assurance Branch (IAB)Participates in all steps of the Security Authorization and Assessment process for Information SystemsWorks closely with the Information Assurance Branch Chief and Chief Information Security Officer (CISO) to provide guidance and oversight for all requested initiativesAssists with the delivery of all required system documentation using the current National Institute of Standards and Technology (NIST), Diplomatic Security (DS), & Intelligence Community (IC) approved templates, forms, regulations, policies, methods, and standardsProvides advisement to stakeholders to assign resources and establish timelines to ensure the successful security authorization of a systemEnsures software installed in the production environment is evaluated and provides guidance regarding the potential for the software to introduce risk into the environmentContinuously maintains a thorough understanding of all configurations, architecture, installed software, accounts (both Operating System and Application), data flows, ports, protocols, and other relevant data for each IT SystemCoordinates with the appropriate operational group to accurately update the System Design Document for each IT system to reflect the approved state of each IT systemAnalyzes Information Assurance Vulnerability Alert (IAVA) bulletins, security, and vulnerability assessment results, provides leadership with details on any required actions and related timelines, and creates mitigation plansAnalyzes system weaknesses identified during system security assessments and the related mitigation plansProvides, tracks, and reports security requirements throughout the project life cycle of all projects that are within the accreditation boundary of assigned systemsPerforms in depth reviews of logs and other artifacts for each IT systemReviews and validates all relevant NIST 800-53 Security Controls and/or applicable departmental policies for each IT system assignedPerforms oversight of compliance with Vulnerability AlertsEnsures that all Information Assurance Vulnerability Management (IAVM) review items are tracked and reportedReviews and validates Plan of Actions & Milestones (POA&Ms) for each noncompliant control for each managed IT System prior to authorizing closure and ensures that proper documentation to support the POA&M lifecycle is filed and updated as required, including well documented waivers and exceptions detailing the potential risk to the Authorizing OfficialDevelops, documents, and executes internal audit programs, including the Federal Information Security Management Act (FISMA), to ensure that audits, inspections, and assessments appropriately address risks and management concernsProvides oversight and guidance regarding requests to modify technical policies such as firewall rules, ports, protocols, etc. for each IT systemCoordinates with and briefs Federal staff on all activities pertaining to each IT system as requestedLeads and facilitates walkthroughs with external auditors, explaining the various processes, improvements, and responses, and provides detailed and timely responses to audits and data callsPROFESSIONAL QUALIFICATIONS & SKILLSCitizenshipS. Citizenship requiredEducationBachelor's degree in an IT fieldMust possess the following current certifications:Certified Information Systems Security Professional (CISSP)Certified in Risk and Information Systems Control (CRISC)Certified Information Security Manager (CISM)Cybersecurity and Infrastructure Security Agency (CISA)Certified Ethical Hacker (CEH)OrDoD 8570 Information Assurance Management (IAM) II equivalent certificationsExperienceOver ten (10) years of hands-on IT experiencePreferred: Department of State experienceTechnical background and ability to review complex configurations for validationExperience with the Risk Management Framework (RMF) process from both a package preparation and assessor perspectiveExperience in the use of the XACTA, ACAS, and HBSS security toolsExperience with federal policies and procedures to acquire and maintain an Information System's Authority to Operate (ATO) under FISMA Act following NIST 800-53 guidelines and NIST- 800-53a security controls assessment practicesExcellent written and oral communication skills and the ability to work independently or as a member of a teamExperience with the RFM, POA&Ms, Security Authorization and AssessmentsExperience conducting and documenting vulnerability assessmentsKnowledge of and experience with NIST SP 800-53, 800-53A, and 800-37Understanding of FISMA complianceExperience with maintenance, installation, and use of WebInspect, Nessus scans, or similar toolsCLEARANCE REQUIREMENTPosition will be subject to a U.S. Government Security Investigation. Incumbent must possess or obtain/maintain minimum a TOP SECRET clearance with ability to obtain special access requirements (SCI).PLACE OF PERFORMACEPrimarily, the work will take place at a designated Department of State Location in the National Capital Region.This position is telework eligible and may be authorized in accordance with OPM and DS policy, only with the approval of the assigned Government Office/Program Director.EEO StatementH4 Enterprises, LLC does not discriminate in employment on the basis of race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or other non-merit factor.Working at H4 Working at H4 means applying a passion for meaningful work with intellectual rigor to help solve the leading issues of our day. Smart, compassionate, innovative, committed, H4 employees tackle unprecedented challenges to benefit people, businesses, and governments around the globe. We believe in collaboration, mutual respect, open communication, and opportunity for growth. We can only solve the toughest challenges by building an inclusive workplace that allows everyone to thrive. We are an equal opportunity employer, committed to hiring regardless of any protected characteristic, such as race, ethnicity, national origin, color, sex, gender identity/expression, sexual orientation, religion, age, disability status, or military/veteran status. Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. H4 does not discriminate in employment based on race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or other non-merit factor.COVID-19 Policy: New or prospective U.S. employees must provide proof of complete vaccination on the date of their commencement of employment. If selected for employment, you will provide proof of your full vaccination status, defined as vaccinated two weeks after receiving the requisite number of doses of a COVID-19 vaccine approved or authorized for emergency use by the FDA. Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Security Compliance Analyst II in Washington DC vacancy
  • $155k - $165k

     ...Position Title: Security Analyst II Department: Cybersecurity & Program Management Corporate Area: PBS Technology Status: Regular, Full time Exempt Manager Title: Director, Cybersecurity Position Overview: The Security Analyst II is... 
    Suggested
    Hourly pay
    Full time
    Temporary work

    PBS

    Alexandria, VA
    3 days ago
  • Akima Data Management (ADM), an Akima company, seeks a Security Program Analyst II to support the Department of State Diplomatic Security in Rosslyn, VA. The role focuses on safeguarding programs, performing data analysis, and assisting with security clearances and vendor... 
    Suggested

    Akima Infrastructure Services

    Arlington, VA
    3 days ago
  • $95k - $101k

    Akima Data Management (ADM), an Akima company, is seeking Security Program Analyst II to provide program support to the Department of State Diplomatic Security, located in Rosslyn, VA. To join our team of outstanding professionals. Responsibilities The SPA II is responsible... 
    Suggested
    Full time
    Contract work
    Part time
    For contractors
    Work at office
    Local area
    Remote work
    Worldwide

    Akima Infrastructure Services

    Arlington, VA
    3 days ago
  • PBS is seeking a Security Analyst II to join the Cybersecurity & Program Management team. The role focuses on designing, configuring, testing, and deploying secure services across on‑premises and cloud environments. You will conduct incident response, threat hunting, and... 
    Suggested

    PBS

    Alexandria, VA
    1 day ago
  • Akima Data Management (ADM), an Akima company, seeks a Security Program Analyst II to provide program support to the Department of State Diplomatic Security in Rosslyn, VA. The role focuses on Protecting Worldwide Protective Services programs and coordinating with DS officials... 
    Suggested
    For contractors
    Worldwide

    Akima

    Arlington, VA
    5 days ago
  • A security solutions provider in Washington, DC is seeking a Personnel Security Specialist II to support FBI investigations by processing e-QIP packets and conducting analysis. This role requires a Bachelor's Degree and a Current Top Secret security clearance, along with... 

    Protection Strategies Incorporated

    Washington DC
    2 days ago
  •  ...are Integrity, Distinction, Experience and Achievement. We are seeking a Logistics Analyst II to support the Logistics and Program Management Support Services to the Defense Security Cooperation Agency’s (DSCA) International Operations Global Execution Division (OPS/... 
    Temporary work
    For contractors
    Remote work
    Flexible hours
    2 days per week
    3 days per week

    Advanced Decision Vectors, LLC

    Arlington, VA
    a month ago
  • DNI (Delaware Nation Industries) seeks a Technical Policy and Risk Analyst II to work with subject matter experts on security risk decisions and policy interpretation. The role involves coordinating responses for Foreign Service posts and applying DoS policies worldwide... 
    Worldwide

    DNI (Delaware Nation Industries)

    Arlington, VA
    2 days ago
  •  ...delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise and...  ...challenges.We have an immediate need for a National Security Compliance Analyst to provide onsite support at the Mark Center in Alexandria,... 
    Work at office
    Immediate start
    Flexible hours

    MCR

    Alexandria, VA
    1 day ago
  •  ...ASSYST is seeking a Security & Compliance Analyst to support cybersecurity, risk management, compliance, and security operations activities. This is an onsite position based in Sterling, VA. Key Responsibilities Support security and compliance assessments, audits, and... 
    Local area
    Flexible hours

    Assyst

    Washington DC
    3 days ago
  •  ...Competitive salary Dental insurance Health insurance Paid time off Vision insurance Overview We are hiring a Security & Compliance Analyst to support multiple client environments with a focus on security operations, compliance readiness, and risk management.... 
    Work from home
    Flexible hours

    Managed IT & Security Provider

    Alexandria, VA
    5 days ago
  •  ...in support of US military operations Provide day-to-day security support that includes continuous assessment of procedures to identify...  ...related topics Conduct and document SAP facility compliance reviews, follow-on facility reviews, and facility close-outs... 
    For contractors

    3B Staffing LLC

    Washington DC
    1 day ago
  • Systems Planning and Analysis, Inc. (SPA) seeks a National Security Compliance Analyst to provide onsite support at the Mark Center in Alexandria, VA. The role supports CFIUS and Team Telecom processes and develops risk mitigation options for DoW's Office of Global Investment... 
    Work at office

    Arena Technologies LLC

    Alexandria, VA
    2 days ago
  • Chameleon Integrated Services is seeking a Security Documentation, Audit, and Quality Analyst to control the quality, traceability, currency, and acceptance readiness of cybersecurity deliverables for federal initiatives. You will maintain the evidence repository and deliverable... 

    chameleonintegratedservices

    Washington DC
    5 days ago
  •  ...management, quality systems, data operations and cybersecurity. We secure some of the most sensitive data for the Department of Defense...  ...insurance Training allowance PTO and more ISSO / Security Compliance Analyst Must be a United States citizen. Must be eligible for a Tier... 
    Temporary work

    Chameleon Integrated Services

    Washington DC
    4 days ago
  • Systems Planning and Analysis, Inc. is seeking a National Security Compliance Analyst to provide onsite support at the Mark Center in Alexandria, VA. This role will require expertise in compliance and monitoring surrounding foreign investments and collaboration with DoD... 
    Work at office

    Systems Planning and Analysis, Inc

    Alexandria, VA
    5 days ago
  • $68.4k - $131.76k

    A global technology company is seeking a Compliance Advisor to understand U.S. compliance requirements and manage data governance. Responsibilities include conducting compliance assessments, identifying risks, and collaborating with technical teams. Ideal candidates will... 

    Tik Tok

    Washington DC
    5 days ago
  • A consulting firm seeks a Security & Compliance Analyst to support various client environments, concentrating on security operations, compliance preparedness, and risk management. This hands-on position involves collaboration with IT leadership to ensure effective maintenance... 
    Remote work

    Envision Consulting LLC

    Alexandria, VA
    5 days ago
  • ASSYST, Inc. is seeking a Security & Compliance Analyst to support cybersecurity, risk management, compliance, and security operations. This is an onsite role based in Sterling, VA. You will help with assessments, controls, and incident documentation, applying standards... 

    Assyst

    Washington DC
    4 days ago
  •  ...heritage, proven expertise and insightful market intelligence has secured long‑term partnerships with Fortune 500 and government clients...  ...Experience Matrix for Levels: Level I - 2+ years of experience Level II - 5+ years of experience Level III - 7+ years of experience Note... 
    Shift work
    Rotating shift
    Weekend work

    Artech Information System LLC

    Washington DC
    1 day ago
  •  ...Description **CONTINGENT UPON CONTRACT AWARD**Overview: Job Title: Security Operations Analyst – Senior Location : Washington, DC (Due to the nature...  ...: ~ U.S. Citizenship. ~ Current IAT Level II or higher certification (e.g., Security+ CE, CySA+, CASP+,... 
    Contract work

    C3EL

    Washington DC
    3 days ago
  • $52.29 per hour

    Security Operations Center Analyst (SOC) Arlington, VA Are you ready to enhance your skills and build your career in a rapidly evolving business climate...  ...substitute. 2+ years relevant experience. DoD IAT Level II Certification is required. DoD Top Secret Clearance with... 

    NJVC

    Arlington, VA
    1 day ago
  • $62k - $141k

    COMSEC Security Program AnalystThe Opportunity:Provide technical and financial analytic support to the client’s Communications Security...  ...technical and financial requirements, budgets, and policy compliance to support the development of information papers and briefings... 
    Civilian Contractor
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    4 days ago
  • $88.4k - $154.7k

     ...Description:Parsons is seeking an exceptionally talented Program Security Analyst to join our dynamic team! In this critical role, you will...  ...records and documentation for completeness, accuracy, and compliance with applicable policies and procedures.Apply experience with... 
    Full time
    Contract work
    For contractors
    Work at office
    Flexible hours

    Parsons

    Arlington, VA
    1 hour ago
  •  ...the broad spectrum of Risk Management, Compliance, Business Process, IT Effectiveness, Energy...  ...Federal Govt. Client’s Mortgage Backed Securities (MBS) programs help to channel funds...  ...trends, and customer demand. Financial analysts provide this information by gathering... 
    Full time
    For contractors
    Bank staff
    Internship
    Work at office

    Prosidian Consultng

    Washington DC
    6 hours ago
  • $104k - $166k

    ResponsibilitiesPeraton is currently seeking to hire an experienced Forensics / Malware Security Analyst for its Federal Strategic Cyber Group.Location: Chandler, AZ or Washington DC.Role & Responsibilities: You will support a 24x7 Security Operations Center (SOC) by conducting... 
    Contract work
    Currently hiring
    Shift work

    Peraton Corporation

    Washington DC
    6 hours ago
  • $107.9k - $195.05k

     ...The C5ISR Center Cyber Security Service Provider (CSSP) is a premier defensive cyber operations organization supporting the Department...  ...an immediate opportunity for an experienced Endpoint Security Analyst to support a highly visible, strategic Cybersecurity Task Order... 
    Full time
    Immediate start

    Leidos

    Adelphi, MD
    4 days ago
  •  ...ProSidian services focus on the broad spectrum of Risk Management, Compliance, Business Process, IT Effectiveness, Energy & Sustainability...  ...seeks a Mid-Level InfoSec Mobile Device Security Analyst Consultant focusing on Cyber-Security/Information Security (... 
    Full time
    For contractors
    Work experience placement
    Internship
    Work at office
    Monday to Friday
    Shift work

    Prosidian Consultng

    Washington DC
    6 hours ago
  •  ...solutions, tested leadership, and trusted results to enable national security missions worldwide.Job Description*** This position is contingent upon contract award ***OverviewSOSi is seeking a Security Analyst - Forensics/Malware Analysis to support cyber defense and... 
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOSi

    Washington DC
    6 hours ago
  • $62k - $141k

    Crisis Response and Security Program Analyst The Opportunity: As a Crisis Response and Embassy Security Program Analyst, you support executive-level leadership and drive collaboration across high-performing teams in a fast-paced mission environment. Drawing upon your... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work
    Overseas

    Booz Allen Hamilton

    Arlington, VA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Compliance Analyst II. Be the first to apply!