Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information Security Analyst Lead

eSimplicity

Job Description

Job Description

Description:

About Us:
eSimplicity is modern digital services company that work across government, partnering with our clients to improve the lives and ensure the security of all Americans—from soldiers and veteran to kids and the elderly, and defend national interests on the battlefield. Our engineers, designers and strategist cut through complexity to create intuitive products and services that equip Federal agencies with solutions to courageously transform today for a better tomorrow for all Americans.

Purpose of Scope:

We are seeking an Information Security Analyst who is responsible for providing security support services while meeting security control compliance requirements for a portfolio of systems at various states of maturity and modernization. This role will provide support for continuously monitoring the cybersecurity posture of systems to secure against cyber threats.

The primary responsibility is to facilitate security tool and control implementation, security tool usage, and ensure tools and controls remain compliant and configured properly, all the while ensuring a successful program Authorization to Operate (ATO). Additionally, the expectation is to take ownership of communication and visualization of security issues, especially where coordination between product teams, information owners, engineering, and infrastructure staff is necessary for remediation.

The candidate will own coordination and response to the agency’s security-related inquiries, compliance with agency policy, security controls, and the maintenance of security documentation and artifacts. You will function as the primary liaison to provide timely and accurate responses to security-related data calls (System Security & Compliance Status, Vulnerability, and Compliance scanning issues) and provide security guidance throughout the system development lifecycle. This role requires interfacing with multiple stakeholders through multiple touchpoints weekly.

Responsibilities:

  • Work closely with the Product Owners, ISSOs, engineering and infrastructure staff to provide guidance on implementation if security policies, standards, and procedures
  • Analyze new or updated security requirements, collaborate with stakeholders, and develop responses that are clear and accurate.
  • Support the review and update of ATO artifacts such as System Security Plans, Information System Contingency Plans, Configuration and Change Management Plans, Incident Response Plans, Privacy Impact Analysis, and more.
  • Interpret security risk assessment, review security scan results, assess security vulnerabilities and support the development and remediation of vulnerability and compliance issues via Plan of Action and Milestones (POA&Ms).
  • Support the development of implementation and design documentation relating to security feature implementation.
  • Work with engineering and infrastructure personnel to document remediation for vulnerabilities and non-compliance issues.
  • Analyze and interpret agency security requirements and provide governance communication to non-security personnel.
  • Collaborate with product teams, ISSOs and other stakeholders in support of continuous monitoring and ATO efforts.
  • Conducts vulnerability assessments and monitors systems, networks, databases and Web-based assets for potential system breaches. Recommends and takes the lead on implementing changes to enhance security systems, prevent unauthorized access, and help mitigate security vulnerabilities.
  • Responds to alerts from information security tools. Reports, investigates, and resolves higher level security incidents.
  • Responds to security tool outages, degradations in service, tune security rules and alerts, and setup/maintain security tool dashboards and reporting.
  • Research security trends, new methods, and techniques used in unauthorized access of data to preemptively eliminate the possibility of system breach. Ensures compliance with regulations and privacy laws. Conducts research to identify new attack vectors.
  • Educates and communicates security requirements and procedures to all users and new employees.
  • Recommend process improvements to the information system for risk mitigation.
  • Applies iterative security automation to all program aspects increasing overall security posture iteratively and never accepts the status quo.
  • Provide audit log review in Splunk, present any findings to ISSO, and plan for any investigation or remediation activities.
  • Periodic user and privileged access reviews.

Requirements:

Requirements

Required Qualifications:

  • Minimum of eight years of experience in cybersecurity architecture, cloud security, DevSecOps, security engineering, or a related technical field. Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related field preferred but not required.
  • Must hold a current Security+ certification.
  • Experience designing security "baked-in" to architectures including Cloud and IaC, applications, web applications, data processing, data-centric applications, AI/ML, and CI/CD pipelines.
  • A proven track record
  • Familiarity with Agile methodologies.
  • Working knowledge of AWS or Azure security tools, their functionality, and their purpose.
  • Ability to assist customers with defining appropriate management processes (responsible for documenting application criticality, privacy, and security impact analysis).
  • Knowledge of hardening standards (DISA STIG, CIS).
  • Experience with the NIST Risk Management Framework, NIST 800-53 rev5, and NIST 800-171.
  • Active secret clearance.

Desired Qualifications:

  • Federal Government contracting work experience.
  • Experience as an ISSO for the DoD.
  • Highly preferred industry certifications such as CISSP, CEH, GIAC, etc.
  • Experience with Security Information and Event Management (SIEM) systems (e.g., Splunk).

Location and Hours

Location: This role is primarily remote; however, the employee must be able to report on-site to Fort Meade, MD when requested due to customer or business needs. The frequency and timing of on-site support may vary and cannot be guaranteed in advance.

Hours: Expected hours are 9:00 AM to 5:00 PM Eastern Time unless otherwise directed by your manager.

Travel: Occasional travel for training and project meetings, estimated to be less than 5% per year.

Benefits:

eSimplicity offers a comprehensive benefits package, including medical, dental, and vision coverage, 401(k) retirement benefits, paid time off, paid holidays, life and disability insurance, and additional wellness and employee support programs. Eligibility may vary based on employment status and applicable plan terms.

Reasonable Accommodation:

eSimplicity is committed to providing reasonable accommodations to qualified individuals with disabilities during the application and hiring process. Applicants who need assistance or an accommodation should contact Human Resources.

Equal Employment Opportunity:
eSimplicity is an Equal Opportunity Employer, including disability and protected veteran status. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran status, disability, or any other legally protected status.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Information Security Analyst Lead in Maryland vacancy
  • $34.66 per hour

    Job Title: Information Security Analyst III Job Category: Service Contract Act Time Type: Full time Minimum Clearance Required to Start: TS/SCI Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Local... 
    Suggested
    Hourly pay
    Minimum wage
    Full time
    Contract work
    For contractors
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Aberdeen, MD
    1 day ago
  • $55.8k - $111.5k

    Job Title: Information Security Analyst 4 Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Local... 
    Suggested
    Full time
    Contract work
    Work experience placement
    Local area
    Flexible hours

    CACI International

    Aberdeen Proving Ground, MD
    1 day ago
  •  ...love to talk with you regarding the next step in your career. Come join our team! Zantech is looking for a talented Information Security Analyst - SME to provide specialized cybersecurity expertise supporting risk management operations, conduct security assessments... 
    Suggested
    Remote job
    Full time
    Contract work

    Zantech-it

    Camp Springs, MD
    17 hours ago
  • Overview Zantech is looking for a talented Project Manager - Team Lead / Information Security Analyst - SME to provide Continuous Process Improvement (CPI), Focused Development and Automation services, Risk Management Operations Support, Continuous Monitoring and Internal... 
    Suggested
    Contract work
    Remote work

    Zantech

    Camp Springs, MD
    2 days ago
  • $77k - $172k

     ...Saalex Corporation  is seeking a  Senior Information Security Analyst  in  Saint Inigoes, MD . Saalex is an Engineering and Information Technology Services company with a focus on Test Range Operations and Management, Engineering and Logistics Services, Data Analytics... 
    Suggested
    Full time
    Temporary work
    Interim role
    Work at office
    Remote work
    2 days per week

    Saalex

    Maryland
    6 days ago
  • We are seeking an experienced Info Security Analyst IV to support FIPS 140 validation projects within a hands-on lab environment. This role focuses on security analysis, cryptographic validation testing, product evaluations, automation, and technical reporting in support... 
    Local area

    Aptonet

    Columbia, MD
    3 days ago
  • Summary The Senior Information Security Analyst is responsible for identifying, investigating, and addressing both internal and external threats. This position requires a deep understanding of various threats, attacks, and malware to develop effective detection and protection... 
    Work at office

    DLA Piper

    Baltimore, MD
    2 days ago
  •  ...Description Tharros is seeking a Senior Information Security Analyst to support the Naval Air Warfare Center Aircraft Division Cyber Warfare Department. The analyst will lead assigned cybersecurity, Information Assurance, RMF, vulnerability assessment, and cyber... 
    Contract work
    For contractors

    ANALYGENCE Inc

    Patuxent River, MD
    3 days ago
  • $54.07k - $86.51k

    Job Summary The Information Security Analyst plays a key supporting role in the college’s cybersecurity operations. Under the guidance of the Technical Manager, Information Security & Infrastructure, this position monitors IT systems for potential threats, assists with... 
    Full time
    Temporary work
    Work at office
    Local area
    Remote work
    Weekend work
    Afternoon shift
    1 day per week

    The Chronicle of Higher Education

    North East, MD
    1 day ago
  •  ...Senior Information Security Analyst As a Senior Information Security Analyst, you will be a key member of our security team, responsible for safeguarding...  ...completion of Plans of Action and Milestones (POA&Ms) Lead computer security incident response efforts including but... 
    Contract work
    Work experience placement
    Work at office
    2 days per week

    Staffing

    Columbia, MD
    4 days ago
  • $117.2k - $176.7k

     ...to level‑up your career at the company leading workforce transformation in the agentic...  ...advising business partners on adopting new security requirements. Responsibilities Drive...  ...with business or security stakeholders on information security requirements and applicability... 

    Salesforce.Com Inc

    Annapolis, MD
    4 days ago
  • $105k - $115k

     ...approved equivalent AI solution. DSA is hiring a Senior Information Security Analyst. This is a full-time position supporting a customer in the...  ...compliance, awareness and training, and security operations. Leading Independent Validation and Verification (IV & V) efforts... 
    Full time
    Contract work
    Work at office
    Remote work
    Flexible hours

    Data Systems Analysts, Inc.

    Annapolis, MD
    4 days ago
  • $78.9k - $123.3k

     ...continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal cybersecurity requirements, and maintaining the documentation... 
    Permanent employment
    Full time
    Part time
    Work at office
    Local area
    Remote work

    Noblis

    Annapolis, MD
    4 days ago
  • $85k - $101k

     ...Job Description Job Description Sigma Defense is currently seeking an Information Security Analyst to work in support of the Army for the Network Modernization & Mission Network Technical Service Support program (NetMod). NetMod sets forth the work efforts required... 
    Work at office
    Remote work

    Sigma Defense

    Belcamp, MD
    a month ago
  • $97.97k - $132.25k

     ...Job Qualifications: Skills: IT Security Services, IT Security Support, IT System...  ...the future. Our work depends on a Information Security Analyst Sr Advisor joining our team to support...  ...50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud... 
    Full time
    Temporary work
    Part time
    Immediate start
    Remote work
    Work from home
    Worldwide
    Monday to Friday
    Flexible hours

    GDIT

    Silver Spring, MD
    6 days ago
  •  ...Job Description Job Description iQuasar is seeking to fill an Information Security Analyst IV position. At iQuasar, we strive to provide the next generation of cutting-edge technologies. Our growth means exciting career opportunities for talented professionals in... 
    Contract work

    IQUASAR LLC

    Columbia, MD
    16 days ago
  •  ...Job Description Job Description ASSYST is seeking an Information Security Governance, Risk & Compliance (GRC) Analyst to support our client in administering the Information Security Policy Exception Program and maintaining the Enterprise Risk Register using the... 
    Work at office
    Local area

    ASSYST, Inc.

    Gaithersburg, MD
    7 days ago
  • $90k - $100k

    Job Title IT Security Analyst Location Baltimore, MD FLSA Status Exempt Department Information Technology (IT) Reports to Director, Information Technology Operations Compensation $90,000 - $100,000 + bonus Position Summary The Baltimore Orioles organization is a... 
    Remote work
    Flexible hours

    Baltimore Orioles

    Baltimore, MD
    4 days ago
  •  ...Job Title: RMF IT Security Analyst Location: Bethesda, Maryland Type: Direct Hire / Perm...  ...cybersecurity professional. Working under Lead and Senior RMF personnel, the analyst...  ...supporting RMF, cybersecurity compliance, or information security programs. Preferred... 
    Permanent employment
    Local area
    Remote work

    System One

    Bethesda, MD
    7 days ago
  •  ...Description Job Description Description: Onsite in Fort Meade, MD   Our client seeks a Security Analyst serving as an Information Systems Security Officer to lead implementation and enforcement of security policies aligned to NIST frameworks. The role will conduct... 
    Hourly pay
    Contract work
    Local area

    Eliassen Group

    Maryland
    15 days ago
  • $102.5k - $188.9k

     ...confidence, and proactively manage to secure success. Cyber threats...  .... As a Cyber Exploitation Analyst, you will support cyber...  ...relationships Ability to lead projects or workstreams Ability...  ...Cybersecurity, Computer Science, Information Systems, Engineering, or a... 
    Work at office

    Deloitte LLP

    Maryland
    17 hours ago
  • $65k - $75k

     ...Junior Program Protection Security Analyst Aether Aerospace is currently seeking a Program Protection Security Analyst, Junior level,...  ...duties pertaining to personnel security, physical security, and information security. Implement security processes necessary to protect... 
    For contractors
    Work at office
    Local area

    Technology Security Associates

    Patuxent River, MD
    2 days ago
  • $72.4k - $108.6k

    Industrial Security Analyst II / CPSO Relocation assistance: No relocation assistance available. Clearance required: Yes (Top Secret). Travel: Yes, 10% of the time. Overview The role supports program(s) by applying classified federal, contractual, customer, and... 
    Work experience placement
    Relocation
    Shift work

    Northrop Grumman

    Baltimore, MD
    1 day ago
  • As a Personnel Security Analyst, you will provide personnel security support and resolution of issues of low and medium complexity in a collaborative...  .... You will provide exceptional customer assistance and information to officials within the stakeholder base requiring personnel... 
    Work at office

    Xcelerate Solutions

    Aberdeen, MD
    4 days ago
  •  ...The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will...  ...guidance of the Exposure Management Lead, you will identify, assess and help mitigate...  .../expression, pregnancy, genetic information, national origin, protected veteran status... 
    Summer holiday
    Flexible hours

    Ernst & Young Oman

    Maryland
    3 days ago
  •  ...The Security Operations Center (SOC) Analyst II serves as a mid‑level cyber defender responsible for continuous...  ...’s Degree in Computer Science, Information Assurance, Cybersecurity, or a closely...  ...Qualifications Experience with leading SIEM and endpoint security platforms... 
    Contract work
    Work at office

    ASM Research, An Accenture Federal Services Company

    Maryland
    1 day ago
  • Job Description OVERVIEW Hendall Inc. is seeking a full-time Security Analyst to join our dynamic team. This position will support Health...  ...to ensure environments are appropriately secured Develop information security artifacts for Federal government programs at the low... 
    Full time

    6AM City, LLC

    Annapolis, MD
    1 day ago
  • $40 per hour

    A cybersecurity firm is seeking experienced professionals to evaluate AI-generated security content and solve technical cybersecurity problems. This role allows you to work remotely on your own schedule, contributing directly to the improvement of AI systems. Candidates... 
    Remote job
    Hourly pay
    Flexible hours

    DataAnnotation

    Annapolis, MD
    2 days ago
  •  ...outcomes by leveraging technology strategy as a game-changer for our clients. Summary Hartman Executive Advisors is seeking an information security professional in the Baltimore/Washington-Metropolitan region with operations, technical and managerial experience to work... 
    Full time
    Temporary work

    Hartman Executive Advisors

    Baltimore, MD
    17 hours ago
  •  ...applicants Get AI-powered advice on this job and more exclusive features. FirstDiv is seeking a Security Analyst III to support security operations and classified information management for JPM CBRN Sensors. The analyst will enforce compliance with NISPOM and DoDM 5200.... 
    Full time
    For contractors
    Work at office
    Local area

    First Division Consulting, Inc

    Edgewood, MD
    27 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information Security Analyst Lead. Be the first to apply!