Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information System Security Compliance Analyst (Multiple Levels)

$78.9k - $123.3k

Noblis

Position Overview We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal cybersecurity requirements, and maintaining the documentation necessary to support Authorization to Operate (ATO) decisions. The ideal candidate will have experience working with NIST RMF, NIST SP 800-53 controls, security authorization packages, POA&M management, and compliance documentation. Candidates should be comfortable working with technical teams to assess control implementation, identify compliance gaps, and provide guidance to support remediation efforts and POA&M closure. Key Responsibilities Manage the security authorization lifecycle for one or more information systems in accordance with Federal RMF requirements. Coordinate activities required to obtain and maintain Authorization to Operate (ATO) approvals. Assess and track implementation of NIST SP 800-53 security controls and associated compliance requirements. Develop, review, update, and maintain authorization package documentation, including: System Security Plans (SSPs) Security Assessment Reports (SARs) Plan of Action and Milestones (POA&Ms) Risk Assessments Continuous Monitoring documentation Security-related policies and procedures Manage POA&M activities by tracking findings, monitoring remediation progress, validating corrective actions, and supporting closure efforts. Provide technical guidance and compliance recommendations to system owners, engineers, administrators, and security stakeholders to facilitate POA&M remediation and closure. Coordinate with technical teams to gather evidence supporting security control implementation and compliance requirements. Review vulnerability scan results, assessment findings, and security documentation to identify compliance gaps and areas requiring remediation. Support continuous monitoring activities by tracking security posture, compliance status, and ongoing control effectiveness. Participate in security assessments, audits, and compliance reviews conducted by internal and external stakeholders. Assist in the development of risk mitigation strategies and recommendations for addressing identified security weaknesses. Track authorization milestones, compliance deadlines, and remediation activities to ensure timely completion. Communicate compliance status, risks, findings, and recommendations to both technical and non-technical stakeholders. Support audits and reporting activities related to Federal cybersecurity requirements and organizational security programs. Required Qualifications Experience supporting cybersecurity compliance, security authorization, risk management, or information security programs. Experience working with the NIST Risk Management Framework (RMF). Subject matter expertise with NIST SP 800-53 security controls and Federal cybersecurity compliance requirements. Experience supporting the development, maintenance, or review of authorization package documentation, including SSPs, SARs, POA&Ms, and Risk Assessments. Understanding of the Authorization to Operate (ATO) process and continuous monitoring requirements. Experience tracking and managing POA&M findings through remediation and closure. Ability to review technical security information and translate findings into compliance documentation and actionable recommendations. Understanding of cybersecurity principles, security controls, vulnerability management, and risk management concepts. Strong organizational skills with the ability to manage multiple systems, priorities, and compliance activities simultaneously. Strong written and verbal communication skills, including the ability to develop and review formal security documentation. Proficiency with Microsoft Office applications, particularly Excel, Word, and PowerPoint. U.S. Citizen or Green Card Permanent Resident with a minimum of three (3) years of U.S. residency. Ability to obtain and maintain an FAA Public Trust. Education & Experience Substitutions Substitutions are subject to government customer review and approval. Mid to senior Bachelor’s degree in Cybersecurity, Information Technology, Telecommunications, or a related field. 9+ years of experience in cybersecurity or network security roles. For any substitution, the government customer will review and either approve or deny. A High School degree with a total of 15 years of experience in cybersecurity or network security roles. Master’s degree with a total of 6 years of experience in cybersecurity or network security roles. Compensation Ranges – Mid Senior For D.C., NJ, Remote: $78,900 - $123,300 Senior Compensation Ranges Bachelor’s degree in Cybersecurity, Information Technology, Telecommunications, or a related field. 16+ years of experience in cybersecurity or network security roles. For any substitution, the government customer will review and either approve or deny. A High School degree with a total of 20 years of experience. An Associates Degree with a total of 18 years of experience. Master’s degree with a total of 13 years of experience. Compensation for this position is based on full‑time status. For part‑time or on‑call staff, compensation is proportionally adjusted based on hours worked. Desired Qualifications Experience supporting federal government programs, preferably within the FAA, Department of Transportation, or other civilian federal agencies. FAA or transportation sector experience preferred. Experience serving as an Information System Security Officer (ISSO), Security Control Assessor (SCA), Information System Security Manager (ISSM), or similar cybersecurity compliance role. Experience managing authorization packages for multiple systems simultaneously. Strong knowledge of NIST SP 800-53 Rev. 5, NIST RMF, FISMA, and related Federal cybersecurity requirements. Experience developing, reviewing, and maintaining SSPs, SARs, POA&Ms, Risk Assessments, Contingency Plans, and other authorization artifacts. Experience conducting control assessments, compliance reviews, and security documentation audits. Ability to interpret technical findings from vulnerability scans, configuration assessments, and security reviews to support risk‑based decision‑making. Experience providing technical guidance to engineering and operations teams to support corrective actions and POA&M closure. Familiarity with continuous monitoring programs and ongoing authorization requirements. Experience working with vulnerability management tools, compliance dashboards, and governance, risk, and compliance (GRC) platforms. Knowledge of cloud security compliance, Zero Trust Architecture, and modern Federal cybersecurity initiatives. Industry certifications such as CISSP, CAP, Security+, CISM, GSLC, CGRC, or equivalent. Strong written, verbal, analytical, and interpersonal communication skills, with the ability to interact effectively with technical teams, auditors, system owners, and government stakeholders. Commitment to Non‑Discrimination All qualified applicants will receive consideration for employment without regard to race, color, ethnicity, sex, age, national origin, religion, physical or mental disability, pregnancy/childbirth and related medical conditions, veteran or military status, or any other characteristics protected by applicable federal, state, or local law. EEO Statement EEO is the Law. E-Verify. Right to Work. Total Rewards At Noblis we recognize and reward your contributions, provide growth opportunities, and support your well‑being. Benefits include health, life, disability, financial, and retirement plans, paid leave, professional development, tuition assistance, and work‑life programs. Full‑time and part‑time employees working at least 20 hours a week are eligible to participate in our benefit programs. Posted Salary Range USD $78,900.00 - USD $180,525.00 per year. #J-18808-Ljbffr

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Information System Security Compliance Analyst (Multiple Levels) in Richmond, VA vacancy
  •  ...apply for the 1.20. IT Security Analyst role at Focused HR...  ...Virginia State Police Information Security program by providing...  ...awareness and compliance with Commonwealth...  ...audit of their sensitive systems completed....  ...Required 5 Years. Seniority level Mid-Senior level Employment... 
    Information System
    Contract work
    Work at office
    Remote work

    Focused HR Solutions LLC

    Richmond, VA
    3 days ago
  • $30 per hour

     ...development in fields such as information technology, technical/systems consulting, technical...  ...supporting Federal Compliance and Federal Sales Teams. The Information Security Compliance Analyst is expected to work...  ...remains posted. Career Level - IC0 About Us Only... 
    Information System
    Hourly pay
    Temporary work
    Internship
    Flexible hours

    Oracle

    Richmond, VA
    1 day ago
  • $124.2k - $186.2k

     ...About the team: The Information Security organization advances the overall state of security...  ...secure software and protect data and systems with appropriate security controls. Information...  ...; Perform ongoing activities in compliance with service and contractual... 
    Information System
    Local area
    Remote work

    Rubrik

    Richmond, VA
    2 days ago
  • $118.4k - $219.8k

     ...a strong focus on security. As a global leader in information services, we areseeking...  ...Security Analyst to support our Legal...  ...influencing across all levels of the organization...  ...essential due to the multiple engagements, both internal...  ..., tax, accounting, compliance, government, and... 
    Suggested
    Work at office
    Local area
    Flexible hours
    2 days per week
    3 days per week

    Thomson Reuters

    Richmond, VA
    1 day ago
  •  ...IT Security Analyst Location: Richmond, VA Client: VSP...  ...this is not an entry level opening. General...  ...infrastructure changes to ensure compliance with the security...  ...of new system or new interfaces between...  ...security controls) for the information system(s) and network... 
    Information System

    nLeague

    Richmond, VA
    1 day ago
  •  ...Job ID-ACSBEH53 IT Security Analyst Location: Richmond, VA 23...  ...Comprehensive knowledge of Information Security principles; including...  ...monitoring Environment for compliance with information security...  ...of personal including all levels of management and external... 
    Work experience placement
    Work at office
    Remote work

    Keylent Inc

    Richmond, VA
    3 days ago
  •  ...Junior Identity Security Metrics Consultant & Databricks Analyst Drives identity security initiatives like generating "metrics-that-matter" within existing...  ...data ~ Ability to communicate and collaborate with multiple functional groups Overall Experience/Education... 
    Permanent employment
    Interim role

    PLANIT Group

    Richmond, VA
    3 days ago
  •  ...Responsibilities Provides research and analysis of information security data and responds to inquiries;...  ...and follow IS policy and/or IS risk compliance regulations. Provides reporting and...  ...and/or monitoring. Experienced level position requires developing career in... 
    Work experience placement

    Stefanini North America and APAC

    Richmond, VA
    1 day ago
  • $3,600 per month

    Are you a seasoned security professional passionate...  ...Role As a Senior Information Security Analyst, you’ll play a critical...  ...across networks, systems, applications, vendors...  ..., privacy, and compliance initiatives. Leading...  ...of experience across multiple IT security domains,... 
    Immediate start

    Kinsale Insurance Company

    Richmond, VA
    4 days ago
  •  ...Role: IT Security Analyst 4 Location: Richmond, VA Individual is...  ...Analyst monitors and advises on information security issues related to the systems and workflow at an agency to ensure...  ...of best practices and compliance with Commonwealth IT Security policies... 

    Equiliem

    Richmond, VA
    2 days ago
  • # Information Security AnalystApply**Job#: 3041382****Job Description:**Information Security Analyst**Location:** Richmond, Virginia (Partial Remote)...  ...information security standards and compliance regulations. The analyst...  ...provide.**Everforth Apex Systems is an equal opportunity... 
    Hourly pay
    Contract work
    Work experience placement
    Remote work

    Apex Systems

    Richmond, VA
    4 days ago
  •  ...Stefanini is looking for an Information Security Analyst for Richmond, VA (Onsite)....  ...follow IS policy and/or IS risk compliance regulations. Provides...  ...monitoring. Experienced level position requires...  ...outsourcing, IT digital consulting, systems integration, application,... 
    For contractors
    Work experience placement
    Local area

    Stefanini North America and APAC

    Richmond, VA
    13 days ago
  •  ...seeking a highly technical senior information security professional to lead our...  ...Architect. This manager-level role reports to the Assistant...  ...integrating information security systems into UNOS' technology...  ...security systems that impact multiple domains across Service Operations... 
    Information System
    Work experience placement
    Work at office

    United Network for Organ Sharing

    Richmond, VA
    1 day ago
  • Responsibilities Requires 5 to 8 years of experience in IT Security field. Coordinates and executes IT security related projects for the agency. Conducts campus-wide data classification assessment and security audits and manages remediation plans. Collaborates with IT... 

    American Business Solutions

    Richmond, VA
    4 days ago
  •  ...Information System Security Manager (ISSM) We are currently recruiting for an...  ...government customers on overall compliance and configuration change...  ...to effectively prioritize multiple projects. Ability to work...  ...motivated. DoD 8570 IAM Level III certification (CISA, CISM... 
    Information System
    For contractors

    MRINetwork

    Richmond, VA
    23 hours ago
  •  ...Security Analyst Long term contract Richmond, VA – Locals only...  ...incidents involving tolling systems and devices. Coordinate...  ...misconfigurations, and gaps in compliance with standards such as NIST...  ...s degree in Cybersecurity, Information Technology, Engineering, or... 
    Long term contract
    Local area

    GlobalPoint

    Richmond, VA
    4 days ago
  •  ...~ Bachelor's degree in Cybersecurity, Information Technology, Engineering, or a related field;...  ...workflows. ~ Familiarity with PCI DSS 4.0+ security requirements. ~ Working knowledge of networking protocols, system hardening, and asset inventory practices.... 

    3B Staffing LLC

    Richmond, VA
    4 hours ago
  •  ...Title: Security Analyst Open to USC About this Position / Responsibilities...  ...Performing Identification of Effected Systems, Networks and Data Engaging with...  ...Affected Customers to Gather Incident Information, Assess Mission Impact. Countermeasure... 
    Work experience placement
    Shift work

    3B Staffing LLC

    Richmond, VA
    5 hours ago
  •  ...tasks aligned with Tier 1 and Tier 2 SOC Analysts following the NICE framework...  ...segmentation. Coordinate recovery efforts to securely restore systems and prevent recurrence of incidents....  ...Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a... 
    Contract work
    Local area
    Shift work

    TECHEAD

    Richmond, VA
    3 days ago
  • The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role in evaluating and reducing...  ...orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability... 
    Summer holiday
    Flexible hours

    Ernst & Young Oman

    Richmond, VA
    2 days ago
  •  ...industry experience. Responsibilities The IT Security Analyst monitors and advises on information security issues related to the systems and workflow at an agency to ensure the...  ...based on knowledge of best practices and compliance with Commonwealth IT Security policies,... 
    Permanent employment
    Contract work
    Local area

    Cloud Analytics Technologies, LLC

    Richmond, VA
    17 hours ago
  • $118.4k

     ...effectively with all levels of the...  ...clients to keep them informed of progress and make...  ...business processes and system priorities. Ensure...  ...areas. Ensuring compliance with corporate standards...  ...in executing multiple projects, including...  ...well as all data security guidelines established... 
    Information System
    Temporary work
    Casual work
    Work at office
    Local area

    Highmark Health

    Richmond, VA
    23 hours ago
  • $58.1k

     ...deliverables, translate high-level business data needs...  ...of changes across multiple data stores....  ...customer impacts. Assure compliance for required...  ...EXPERIENCE Required ~ Information Systems and Technology Preferred...  ...as well as all data security guidelines... 
    Information System
    For contractors
    Work at office
    Local area
    Remote work

    Highmark Health

    Richmond, VA
    3 days ago
  • $108.31k - $160k

     ...Fully remote Information Technology Overview...  ...Cyber Threat Analyst to support the US...  ...development of new security content as the result...  ...iteratively search through systems and networks to...  ...of your highest level of education...  ...vary depending on multiple individualized factors... 
    Information System
    Full time
    Currently hiring
    Remote work
    Flexible hours

    GovCIO

    Richmond, VA
    4 days ago
  •  ...Qualifications Are you an Information System Security Engineer (ISSE) looking for...  ...Assurance Technical (IAT) Level II baseline certification...  ...Please note, due to EEOC/OFCCP compliance, Serco is unable to accept...  .... For roles available in multiple states, the range may vary... 
    Information System
    Full time
    Contract work
    Part time
    Interim role
    Local area
    Flexible hours

    Serco

    Richmond, VA
    5 days ago
  • $95k - $120k

     ...availability, and security of VCU’s...  ...mission‑critical systems across VCU’s...  ..., which spans multiple enterprise data...  ...performance. Security Compliance: Collaborate...  ...University Information Security team...  ...security analysts, to deliver integrated...  ...a current level of knowledge... 
    Information System
    Full time
    Work at office
    Remote work
    Flexible hours

    Virginia Commonwealth University

    Richmond, VA
    4 days ago
  • $133.3k - $304.5k

     ...Transformation team as an Information Security Architect, where you...  ...Architecture, Risk, Compliance, and Information...  ...remediation strategies across multiple stakeholders. To...  ...Finance, Information Systems, Economics and/or a...  ...at a high level Excellent organizational... 
    Information System
    Summer holiday
    Flexible hours

    Ernst & Young

    Richmond, VA
    1 day ago
  • $65k - $80k

     ...awards . For more information, visit our...  ...Assurance (IA) Analyst The...  ...conduct information security audits, assess...  ...risk management, compliance, and information...  ...AI‑enabled systems, to identify security...  ...and senior‑level executives...  ...responsibilities across multiple information... 
    Information System
    Immediate start
    Flexible hours

    EAB

    Richmond, VA
    1 day ago
  • $70k - $90k

     ...A financial services company in Richmond is seeking a motivated Business Analyst to join its Finance team. This full-time on-site position is ideal for entry-level candidates who are eager to grow in a fast-paced environment. Responsibilities include assessing business... 
    Full time

    Merchant Projects LLC

    Richmond, VA
    3 days ago
  • $110k - $125k

     ...initiative unifies 24x7x365 Security Operations (SOC),...  ...highly sensitive, national‑level financial and personally identifiable information (PII). You will be at...  ...business goals and compliance requirements. Experience...  ...operations encompassing user systems, integration,... 
    Information System
    Contract work
    For subcontractor
    Local area
    Remote work

    ECS Limited

    Richmond, VA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information System Security Compliance Analyst (Multiple Levels). Be the first to apply!