Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr Information Security Analyst II - IT

$140.5k

Federal Reserve Board

Summary Oversees and/or participates in designing and implementing security measures to meet the needs of the organization’s IT systems. Develops an expert understanding of system architecture and the ability to design security solutions that can be applied to multiple systems. Uses data analytics to identify potential security risks and make data‑driven decisions about how to improve security across the organization. Oversees collaboration with other cybersecurity professionals to develop and implement security solutions that can withstand potential threats. With limited guidance, provides technical and analytical information security support to ensure Board information and systems are adequately protected. Duties and Responsibilities Oversees and/or participates in implementing risk management and continuous monitoring activities for technology portfolios. Utilizes expert knowledge of risk management principles to evaluate and mitigate potential risks and identify emerging risks using established frameworks and guidelines. Oversees the assessment of the causes and sources of risk, the impacts, and the probability of occurrence. With limited guidance, proactively supports planning and implementation of the cybersecurity initiative, such as Cybersecurity Executive Order directives including Zero Trust Architecture. Oversees coordination with leadership to create and communicate plans (action, operating, automation, strategic plans), options, approaches, and roadmaps to ensure continuous service and process improvement. Defines, designs, and/or develops new policies and procedures to address cybersecurity and operational risk and advises senior management on resilience, information technology, and critical infrastructure. With limited guidance, improves upon business processes by employing a systematic approach of evaluating and optimizing underlying processes. Utilizes expert knowledge of and adherence to applicable governing standards to work closely with the Division of IT security teams to support compliance with the Board Information Security Program (BISP). Oversees and/or facilitates the initiation and completion of all security assessments and meeting agreed upon schedules by the supported divisions and certifying agents. With limited guidance, provides premier IT and business consulting support to provide expert recommendations and function as a trusted advisor to clients and stakeholders. May include subject matter expertise of IT systems, strategic planning, researching new and emerging technologies, evaluating proposed IT solutions, supporting IT procurement activities, and briefing leadership. Oversees initiatives and/or works with clients and vendors to implement information system security lifecycle plans in compliance with applicable security statutes and regulations. With limited guidance, works on project team to implement and measure the effect of complex security, data loss prevention and privacy strategies. Effectively plans, prioritizes, and executes assignments and work activities with minimal supervision. Utilizes expert knowledge of system security standards, best practices, trends, preventative measures, and disaster recovery processes to verify the effectiveness of the security controls protecting systems, which may entail developing and implementing test scripts and running security scans. Recommends and may decide on security enhancements. Oversees and/or develops techniques and procedures for conducting cybersecurity risk assessments and compliance audits and evaluating and testing hardware, firmware, and software. Oversees more junior staff and/or enhances techniques and procedures for conducting cybersecurity risk assessments and compliance audits and evaluating and testing hardware, firmware, and software. Coaches more junior staff and/or conducts cybersecurity risk assessments and compliance audits and evaluating and testing hardware, firmware, and software. Applies expert understanding of the implications and impact of provisioning unnecessary access within systems. Oversees the process for designing reporting dashboards and creating data visualizations and reports for a variety of audiences. Defines controls and reporting processes as needed to meet the Board’s information security requirements. Effectively communicates technical terms to provide guidance and/or summarize complex data and information in a succinct and compelling manner. Highly skilled in developing written and oral communication to articulate technical concepts, ideas, and recommendations to various audiences. Support ad-hoc information security initiatives and special assignments. Position Requirements FR‑27 Minimal Qualifications Requires a bachelor’s degree in information technology (IT), computer science, cybersecurity, auditing, accounting, business administration or a master’s degree in a related field and 6 years related experience. Must have expert knowledge in the following areas: Business process improvement Risk management System security System design Information security Security standards Compliance Project management Must be able to work effectively with staff. Must be able to direct one or more of the following: designing security systems, investigating and resolving security breaches, consulting, technical writing, and communication. FR‑28 Minimal Qualifications Requires a bachelor’s degree in information technology (IT), computer science, cybersecurity, auditing, accounting, business administration or a master’s degree in a related field and 8 years related experience. Must have expert knowledge in the following areas: Business process improvement Risk management System security System design Information security Security standards Compliance Project management Must be able to work effectively with staff. Must be able to direct one or more of the following: designing security systems, investigating and resolving security breaches, consulting, technical writing, and communication. Remarks The Principal Information Security Analyst is a senior individual contributor responsible for ensuring compliance with internal and external information security requirements at the Board. Applicants must possess a comprehensive and deep understanding of federal cybersecurity regulations including the NIST Risk Management Framework, NIST Cybersecurity Framework, and NIST AI Risk Management Framework. The Principal Information Security Analyst evaluates complex IT systems, identifies weaknesses, and effectively communicates processes and results to stakeholders. The Principal Information Security Analyst coordinates with stakeholders to effectively manage both internal and external audits. The Principal Information Security Analyst identifies, assesses, and prioritizes risks for information systems, vendors, and security programs. Highly Desirable Ability to conduct the technical evaluation and interpret technical findings of security controls for IT systems against established frameworks. Expert knowledge of the following: NIST CSF, NIST RMF, NIST SP 800‑53 series, NIST SP 800 series, NIST SP 1800 series, NIST SP 500 series, NIST FIPS, NIST AI RMF, FedRAMP 20x, and others. The successful candidate must be able to bridge technical and compliance domains, understand both how security technologies work (firewalls, encryption, access controls, etc.) and be able to validate their effectiveness against regulatory and/or contractual requirements. The successful candidate will be required to provide on‑the‑job training to junior staff, work with auditors, translate complex security concepts for non‑technical stakeholders, and make risk‑based recommendations for control improvements and/or remediation priorities. Expert knowledge in the following areas is highly desirable: governance process development; risk management; System Development Life Cycle Management (SDLC); supply chain risk management; cloud security principles; and AI/ML security principles. Ability to plan, schedule, control, and conduct various activities and projects simultaneously and act independently within areas of responsibility. Excellent written and oral communication. Demonstrated ability to innovate and utilize critical thinking skills to recommend solutions for complex compliance matters. Ability to work on multiple tasks that involve a high degree of critical thinking and analytical skills. Preferred But Not Required Understanding of security‑as‑code principles and DevSecOps methodologies for integrating security throughout the software development lifecycle. Experience implementing agile methodologies (Scrum, Kanban) and utilizing tools (Jira) for workflow tracking and team collaboration. Knowledge of supply chain risks and quantum-resistant cryptography from a compliance perspective. Knowledge of Software Bill of Materials (SBOM) practices. Certifications (Preferred But Not Required) Certified Information Systems Auditor (CISA) Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Additional Information US Citizenship is required. This position requires an in‑office presence in Washington, DC. Primary Location: DC‑Washington Employee Status: Regular Overtime Status: Exempt Job Type: Standard Relocation Provided: Yes Compensation Grade (Low): FR PAY GRADE 27 Compensation Grade (High): FR PAY GRADE 28 Minimum Salary: $140,500.00 Maximum Salary: $243,400.00 #J-18808-Ljbffr Federal Reserve Board

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Sr Information Security Analyst II - IT in Washington DC vacancy
  • $102.06k - $158.18k

     ...NEASO NEA Staff Organization, OO114 Information Technology Services Department (ITS) Position...  ...in the development and implementation of security standards, procedures and guidelines for...  ...management of security for one or more IT functional areas across the enterprise; implementing... 
    Senior
    Work at office
    Night shift

    National Education Association

    Washington DC
    5 days ago
  • $128k - $160k

    A leading law firm is seeking an Information Security Analyst III in Washington, DC. This role is crucial for monitoring security threats, analyzing...  ...on security controls to protect the organization's IT infrastructure. Candidates should possess a Bachelor’s degree... 
    Senior

    Dechert LLP

    Washington DC
    21 hours ago
  • Artech Information Systems is the #12 Largest IT Staffing Company in the U.S. and an employer of choice for over 7...  ...insightful market intelligence has secured long‑term partnerships with Fortune...  ...Level I - 2+ years of experience Level II - 5+ years of experience Level III... 
    Suggested
    Shift work
    Rotating shift
    Weekend work

    Artech Information System LLC

    Washington DC
    2 days ago
  • $175k - $225k

     ...Virginia Secret Hybrid schedule Information Technology Overview GovCIO...  ...experienced SME Information Security Analyst to support critical...  ...Certifications: DoD 8570 IAM Level II or III (e.g., CISSP, CISM, CAP...  ...Demonstrated experience leading complex IT systems through the complete... 
    Suggested
    Full time
    Currently hiring
    Flexible hours

    GovCIO

    Alexandria, VA
    3 days ago
  • $120k - $145k

    Cape Fox Corporation is looking for an experienced Information Security Analyst (SME) to join their team in Washington, DC. The ideal candidate will have a Bachelor's Degree and over 4 years of experience in security analysis and incident response. Responsibilities include... 
    Senior

    Cape Fox Corporation

    Washington DC
    4 days ago
  •  ...The Federal Reserve Board is seeking a Principal Information Security Analyst to oversee and implement IT security measures. Located in Washington, DC, the role requires expertise in cybersecurity regulations and a deep understanding of system architecture. The ideal... 
    Relocation package

    Federal Reserve Board

    Washington DC
    4 days ago
  • $100k - $120k

     ...Journeyman Information Security Analyst OCT Consulting is a business management and technology consulting firm that provides support to Federal...  ...experience in information security, cyber risk management, or IT security operations ● At least 3 years of hands-on... 
    Contract work
    Temporary work
    Work at office

    OCT CONSULTING LLC

    Washington DC
    6 days ago
  •  ...technology solutions provider in Washington, DC is seeking an Information System Security Analyst to safeguard sensitive data and computer systems....  ...candidates should have strong analytical skills and a passion for IT security. The position offers a competitive salary,... 

    TLA Inc

    Washington DC
    1 day ago
  •  ...Information Security Analyst (FISMA/NIST) ProSidian is a Management And Operations Consulting Services firm that focuses on providing value to...  ...solutions for Risk Management | Compliance | Business Process | IT Effectiveness | Engineering | Environmental |... 
    Full time
    Contract work
    H1b
    Work at office

    ProSidian Consulting

    Alexandria, VA
    4 days ago
  • $105.89k - $116.17k

     ...association based in Arlington, VA is seeking a dedicated Information Security Analyst to safeguard its digital ecosystem, member applications, and...  ...dedicated professional experience in an information security or IT systems defense role. An active, recognized industry... 
    Permanent employment
    Temporary work
    Work experience placement

    Randstad

    Arlington, VA
    3 days ago
  • $65k - $75k

     ...Information Security Analyst We are searching for an Information Security Analyst to monitor an organization's networks for security threats or...  ...security requirements of the business. # Protect Systems and IT Infrastructure # Upgrade systems to ensure security... 
    Work experience placement
    Work from home
    Flexible hours

    Tree Top Staffing LLC

    Washington DC
    6 days ago
  •  ...TENAX has openings for Information Technology support services for the Office of Naval Intelligence. These are...  ...positions requiring Top Secret / SCI clearances, and IT certifications. The Information Security Analyst plans, implements, upgrades, or monitors security... 
    Full time
    Work at office

    TENAX Technologies

    Washington DC
    5 days ago
  • People Technology And Processes is seeking an Information Security Analyst III in Washington D.C. This full-time position focuses on leveraging data analysis techniques and intelligence databases to support senior leadership. Candidates should have 4-10 years of relevant... 
    Senior
    Full time

    People Technology And Processes

    Washington DC
    21 hours ago
  •  ...TLA is seeking a detail-oriented and proactive Information System Security Analyst to join our IT department. This critical role involves safeguarding our organization's sensitive data and computer systems from evolving cyber threats. The analyst will be responsible for... 

    TLA Inc

    Washington DC
    1 day ago
  •  ...IT Security Analyst / Assessor NXTKey Corporation has been delivering Information Technology, Information management, Information Assurance (IA) and cybersecurity solutions to US Federal Government since 2005. NXTKey Corporation is an agile Small Business that places... 
    Contract work
    Work experience placement
    Work at office

    NXTKey Corporation

    Washington DC
    6 days ago
  •  ...Baltimore, known for delivering sophisticated IT and Health solutions with a commitment to...  ...Responsibilities Implement and assess security controls in accordance with FISMA,...  ...Requirements Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related... 
    For contractors
    Local area
    Remote work

    Delmock Technologies Inc.

    Washington DC
    3 days ago
  • $128k - $160k

    The Information Security Analyst III is a key member of the Security Operation Center (SOC) team who will be responsible for detecting and responding...  ...rules for anomaly detection or visualizations. Represent IT Security on incident bridges or other security calls.... 
    Temporary work
    Work experience placement
    Work at office

    Dechert LLP

    Washington DC
    2 days ago
  • Artech Information Systems is the #12 Largest IT Staffing Company in the U.S. and an employer of choice for over 7...  ...insightful market intelligence has secured long‑term partnerships with Fortune...  ...WebLogic, Web Methods, Apache, Tomcat, MQ, IIS, etc). 3 - 5 years of collective... 
    Work experience placement
    Weekend work

    Artech Information System LLC

    Mc Lean, VA
    1 day ago
  • $93.5k - $126.5k

    Job Openings >> 1801 - Information Security Analyst - Hybrid - Active Secret Required 1801 - Information Security Analyst - Hybrid - Active Secret...  ...Analyst to work 3 Days Per Week Onsite supporting enterprise IT for our War‑fighter customer who upholds America's status... 
    Temporary work
    Local area
    3 days per week

    Rollout Systems, LLC

    Arlington, VA
    21 hours ago
  • Arlo Solutions LLC is seeking a Law Enforcement & Security IT Technical Program Analyst in Arlington, VA. You will provide expert technical and analytical support to complex law enforcement and security initiatives. The position requires an active TS/SCI Clearance and a... 
    Senior

    Arlo Solutions LLC

    Arlington, VA
    1 day ago
  •  ...Description Position: Security Analyst II Location: Rosslyn, VA, Clearance:...  ...cybersecurity threats to protect government IT systems and data. This role focuses on...  ...Methodology, Project Management, Information Systems Security, Systems Integration and... 

    ActioNet

    Arlington, VA
    4 days ago
  • Arlo Solutions, located in Arlington, VA, is seeking a skilled Law Enforcement & Security IT Technical Program Analyst to provide senior-level technical and program management support for Department of War initiatives. The ideal candidate will have expertise in LE and Security... 
    Senior

    Arlo Solutions

    Arlington, VA
    21 hours ago
  •  ...missions for government and commercial customers. For more information, visit Why Saliense? In addition to providing a fun, energetic...  .... Saliense has a new opportunity for an Information Security Analyst to support the U.S. Marshals in Arlington, VA. This is a... 
    Local area
    Immediate start
    2 days per week

    Saliense Consulting

    Arlington, VA
    5 days ago
  • $30 per hour

     ...training and professional development in fields such as information technology, technical/systems consulting, technical support...  ...Compliance and Federal Sales Teams. The Information Security Compliance Analyst is expected to work with the GDI Performance Management team... 
    Hourly pay
    Temporary work
    Internship
    Flexible hours

    Oracle

    Washington DC
    5 days ago
  •  ...Security Analyst II The Security Analyst II is responsible for monitoring, analyzing, and responding to cybersecurity threats to protect government IT systems and data. This role focuses on vulnerability assessments, incident response, and ensuring compliance with standards... 

    ActioNet

    Arlington, VA
    4 days ago
  •  ...Information Security Analyst - SME Zantech is looking for a talented Information Security Analyst - SME to provide specialized cybersecurity expertise supporting risk management operations, conduct security assessments, implement continuous monitoring solutions, and... 
    Contract work

    Zantech

    Suitland, MD
    4 days ago
  • $125k - $158k

     ...Job Description We are seeking an experienced Information Systems Security Analyst to support NAVSEA Professional Support Services for Engineering Support by providing analytical, cybersecurity, and intelligence support to Navy systems and operations. Responsibilities... 
    Temporary work
    Interim role
    Monday to Friday

    International Executive Service Corps

    Washington DC
    1 day ago
  • A technology solutions provider in Arlington, VA is seeking an experienced Information Security Analyst. This hybrid role requires an active Secret security clearance and involves safeguarding information systems and network security. The ideal candidate has significant... 

    Rollout Systems, LLC

    Arlington, VA
    21 hours ago
  • $105k - $125k

     ...Details Job Location: Washington D.C., DC 20376 Position Type: Full Time Salary Range: $105,000.00 - $125,000.00 Title: Information Security Analyst III (Mid) Clearance Type: None Scope: Ability to leverage data analysis techniques, intelligence databases, and open-source... 
    Full time

    People Technology And Processes

    Washington DC
    21 hours ago
  • $145k - $165k

     ...Advanced Analytics, Artificial Intelligence/Machine Learning, Cyber Security and Cutting-Edge Technology across the US Government. Be a...  ...Team's role - providing technical advice and NIST based information on assurance governance guidance. Providing technical support... 
    Flexible hours

    Halvik

    Alexandria, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr Information Security Analyst II - IT. Be the first to apply!