Information System Security Compliance Analyst (Multiple Levels)
$78.9k - $123.3kNoblis
Responsibilities
Position Overview
We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal cybersecurity requirements, and maintaining the documentation necessary to support Authorization to Operate (ATO) decisions.
The ideal candidate will have experience working with NIST RMF, NIST SP 800-53 controls, security authorization packages, POA&M management, and compliance documentation. Candidates should be comfortable working with technical teams to assess control implementation, identify compliance gaps, and provide guidance to support remediation efforts and POA&M closure.
Key Responsibilities
Manage the security authorization lifecycle for one or more information systems in accordance with Federal Risk Management Framework (RMF) requirements.
Coordinate activities required to obtain and maintain Authorization to Operate (ATO) approvals.
Assess and track implementation of NIST SP 800-53 security controls and associated compliance requirements.
Develop, review, update, and maintain authorization package documentation, including:
System Security Plans (SSPs)
Security Assessment Reports (SARs)
Plan of Action and Milestones (POA&Ms)
Risk Assessments
Continuous Monitoring documentation
Security-related policies and procedures
Manage POA&M activities by tracking findings, monitoring remediation progress, validating corrective actions, and supporting closure efforts.
Provide technical guidance and compliance recommendations to system owners, engineers, administrators, and security stakeholders to facilitate POA&M remediation and closure.
Coordinate with technical teams to gather evidence supporting security control implementation and compliance requirements.
Review vulnerability scan results, assessment findings, and security documentation to identify compliance gaps and areas requiring remediation.
Support continuous monitoring activities by tracking security posture, compliance status, and ongoing control effectiveness.
Participate in security assessments, audits, and compliance reviews conducted by internal and external stakeholders.
Assist in the development of risk mitigation strategies and recommendations for addressing identified security weaknesses.
Track authorization milestones, compliance deadlines, and remediation activities to ensure timely completion.
Communicate compliance status, risks, findings, and recommendations to both technical and non-technical stakeholders.
Support audits and reporting activities related to Federal cybersecurity requirements and organizational security programs.
Required Qualifications
Experience supporting cybersecurity compliance, security authorization, risk management, or information security programs.
Experience working with the NIST Risk Management Framework (RMF).
Subject matter expertise with NIST SP 800-53 security controls and Federal cybersecurity compliance requirements.
Experience supporting the development, maintenance, or review of authorization package documentation, including SSPs, SARs, POA&Ms, and Risk Assessments.
Understanding of the Authorization to Operate (ATO) process and continuous monitoring requirements.
Experience tracking and managing POA&M findings through remediation and closure.
Ability to review technical security information and translate findings into compliance documentation and actionable recommendations.
Understanding of cybersecurity principles, security controls, vulnerability management, and risk management concepts.
Strong organizational skills with the ability to manage multiple systems, priorities, and compliance activities simultaneously.
Strong written and verbal communication skills, including the ability to develop and review formal security documentation.
Proficiency with Microsoft Office applications, particularly Excel, Word, and PowerPoint.
U.S. Citizen or Green Card Permanent Resident with a minimum of three (3) years of U.S. residency.
Ability to obtain and maintain an FAA Public Trust.
Education & Experience Substitutions
Substitutions are subject to government customer review and approval.
Mid
Bachelor's degree in Cybersecurity, Information Technology, Telecommunications, or a related field.
9+ years of experience in cybersecurity or network security roles
Substitutions: For anything requiring a substitution, the government customer is subject to further review and either approve or deny the request.
A High School degree with a total of 15 years of experience in cybersecurity or network security roles
Masters degree with a total of 6 years of experience in cybersecurity or network security roles.
Compensation Ranges: for D.C., NJ, Remote: $78,900 - $123,300
Mid to Senior:
Bachelor's degree in Cybersecurity, Information Technology, Telecommunications, or a related field.
12+ years of experience in cybersecurity or network security roles
Substitutions: For anything requiring a substitution, the government customer is subject to further review and either approve or deny the request.
A High School degree with a total of 16 years of experience in cybersecurity or network security roles
An Associates Degre with a total of 14 years of experience in cybersecurity or network security roles
Masters degree with a total of 9 years of experience in cybersecurity or network security roles
Compensation Ranges: for D.C., NJ, Remote: $95,500 - $180,525
Senior
Masters degree in Cybersecurity, Information Technology, Telecommunications, or a related field.
16+ years of experience in cybersecurity or network security roles
Substitutions: For anything requiring a substitution, the government customer is subject to further review and either approve or deny the request.
A Bachelors degree with a total of 19 years of experience in cybersecurity or network security roles
Compensation Ranges: for D.C., NJ, Remote: $115,500 - $218,475
Desired Qualifications
Experience supporting federal government programs, preferably within the FAA, Department of Transportation, or other civilian federal agencies.
FAA or transportation sector experience preferred.
Experience serving as an Information System Security Officer (ISSO), Security Control Assessor (SCA), Information System Security Manager (ISSM), or similar cybersecurity compliance role.
Experience managing authorization packages for multiple systems simultaneously.
Strong knowledge of NIST SP 800-53 Rev. 5, NIST RMF, FISMA, and related Federal cybersecurity requirements.
Experience developing, reviewing, and maintaining SSPs, SARs, POA&Ms, Risk Assessments, Contingency Plans, and other authorization artifacts.
Experience conducting control assessments, compliance reviews, and security documentation audits.
Ability to interpret technical findings from vulnerability scans, configuration assessments, and security reviews to support risk-based decision-making.
Experience providing technical guidance to engineering and operations teams to support corrective actions and POA&M closure.
Familiarity with continuous monitoring programs and ongoing authorization requirements.
Experience working with vulnerability management tools, compliance dashboards, and governance, risk, and compliance (GRC) platforms.
Knowledge of cloud security compliance, Zero Trust Architecture, and modern Federal cybersecurity initiatives.
Industry certifications such as:
CISSP
CAP (Certified Authorization Professional)
Security+ CISM
GSLC
CGRC
or equivalent certifications
Strong written, verbal, analytical, and interpersonal communication skills, with the ability to interact effectively with technical teams, auditors, system owners, and government stakeholders.
Overview
Noblis ( and our wholly owned subsidiaries, Noblis ESI , and Noblis MSD tackle the nation's toughest problems and apply advanced solutions to our clients' most critical missions. We bring the best of scientific thought, management, and engineering expertise together in an environment of independence and objectivity to deliver enduring impact on federal missions. Noblis works with a wide range of government clients in the defense, intelligence and federal civil sectors. Learn more at Noblis -About Us (
Why work at a Noblis company?
Our employees find greater meaning in their work and balance the other things in life that matter to them. Our people are our greatest asset. They are exceptionally skilled, knowledgeable, team-oriented, and mission-driven individuals who want to do work that matters and benefits the public. Noblis has won numerous workplace awards ( . Noblis maintains a drug-free workplace.
- Remote/hybrid status is subject to change based on Noblis and/or government requirements
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to race, color, ethnicity, sex, age, national origin, religion, physical or mental disability, pregnancy/childbirth and related medical conditions, veteran or military status, or any other characteristics protected by applicable federal, state, or local law.
If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact us ( .
EEO is the Law ( | E-Verify ( | Right to Work (
Total Rewards
At Noblis we recognize and reward your contributions, provide you with growth opportunities, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, and work-life programs. Our award programs acknowledge employees for exceptional performance and superior demonstration of our service standards. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in our benefit programs. Other offerings may be provided for employees not within this category. We encourage you to learn more about our total benefits by visiting the Benefits ( page on our Careers ( site.
Compensation at Noblis is determined by various factors, including but not limited to, the combination of education, certifications, knowledge, skills, competencies, and experience, internal and external equity, location, clearance level, as well as contract-specific affordability, organizational requirements and applicable employment laws. The projected compensation range for this position is based on full time status. For part time or on-call staff, compensation is proportionately adjusted based on hours worked. While monetary compensation is important, it's just one component of Noblis' total compensation package.
Posted Salary Range
USD $78,900.00 - USD $218,475.00 /Yr.
- ...Responsibilities As an Information SecurityAnalyst I , you will assist the Program Manager... ...Framework (RMF) related activities including Security Control Assessments (SCA) and assisting system owners in the transition to RMF compliance. In assuming this position, you will be...Information SystemFor contractorsWork at office
- ...Security Analyst â Identity and Access Management (IAM) HIGHLIGHTS... ...on the companyâs identity systems and single sign-on systems (... ...This includes enhancing the information security management framework... ...interact with personnel at all levels. Strong project management...Information SystemHourly payContract workRemote work
- ...SOC Analyst Seeking a skilled and motivated... ...data and systems. The ideal... ...experience in security operations and... ...week) Experience Level : Mid-Level (... ...security audits, compliance activities,... ...cybersecurity, or information security role.... ...and manage multiple alerts/...SuggestedContract work3 days per week
- ...Information Security Analyst Our mission is simple. We make business travel less complicated for travelers... ...-thinking companies modernize their systems, improve travel management and save... ..., or equivalent ~ Expertise in compliance standards, most notably PCI and SSAE1...SuggestedWork at office
$105k - $130k
...CampusGuard, a Nelnet company, provides information security and privacy consulting and compliance services primarily for campus-... ..., network infrastructure, IT system configurations and physical security as it all relates to multiple compliance requirements. Performing...Information SystemTemporary workFixed term contractLocal areaRemote workWork from homeHome office- Position Summary The Security Operations Analyst will be responsible... ...and access control systems. Conduct remote guarding... ...in security audits, compliance checks, and risk... ...apparent. Additional Information The statements used... ...general nature and level of the work being performed...Contract workTemporary workRemote workShift workNight shift
- ...ensuring scalability, security, and cost... ...Certification - Certified Information Systems Security Professional... ...Security Standards & Compliance – Knowledge of cybersecurity... ...- Ability to oversee multiple projects... ...adhered to. Seniority Level Mid-Senior level Employment...Information SystemFull timeWork at office
- ...The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role in evaluating and reducing... ...orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability...Summer holidayFlexible hours
- ...Entry Level Data Science Analyst (Remote) About the job Entry Level Data Science... ...digestible and actionable information Conduct in-depth data... ...: Ability to manage multiple projects concurrently Experience... ..., management information systems, computer programming or...Information SystemPermanent employmentWork at officeRemote workWork from homeHome office
$35.62 - $52.99 per hour
...for the Sr Financial Analyst role at CommonSpirit Health... ...and analytics within multiple revenue cycle... ...optimize performance information flow and accessibility... ...or health information systems. MBA or CMA preferred.... ...99 per hour Seniority Level Mid‑Senior level Employment...Information SystemHourly payFull time$100k
...are also competing for entry level job positions. Acquiring the... ...are able to achieve multiple job offers and $100k+ salaries... ...Python/Java developers, data analysts/data scientists, data engineers... ...engineering, electrical engineering, information systems, IT Knowledge of core...Information SystemFull time$40 per hour
A leading AI cybersecurity company is seeking experienced cybersecurity professionals to evaluate AI-generated security content and solve technical problems. You will work remotely, with flexible hours, and start with pay at $40+ per hour. Candidates should have at least...Remote jobHourly payFlexible hours$100k
...candidates are able to achieve multiple job offers and $100k+... ...Currently, we are looking for entry-level software programmers, Java... .../Java developers, data analysts/data scientists, and machine... ...engineering, electrical engineering, information systems, IT project work on the...Information SystemFull timeH1b$40 per hour
A leading cybersecurity firm is seeking experienced cybersecurity professionals to evaluate AI-generated security content and solve technical problems. Candidates should have a minimum of 2 years of hands-on experience in cybersecurity, coding skills, and strong analytical...Remote jobHourly payFull timePart time- ...The Finance Business Analyst assists in the daily... ...years of professional level finance experience.**... ...Arizona State Retirement System* Paid sick and... ...performance data using multiple information systems and prepares... ....* Grant management, compliance and monitoring, and reporting...Information SystemContract workWork at officeRemote workRotating shift
$51.81 per hour
...organization! For additional information, please visit the El... ...class is the second level in a four-level Sworn... ...ensure the safety and security of municipal streets,... ...justice and court systems, procedures and protocols... ..., subtraction, multiplication, division and percentages...Information SystemHourly payRelocationShift work- ...Qualifications Are you an Information System Security Engineer (ISSE) looking for... ...Assurance Technical (IAT) Level II baseline certification... ...Please note, due to EEOC/OFCCP compliance, Serco is unable to accept... .... For roles available in multiple states, the range may vary...Information SystemFull timeContract workPart timeInterim roleLocal areaFlexible hours
$20 - $22 per hour
A leading compliance recruitment firm is seeking an entry-level Senior Technical Recruiter in Phoenix, AZ. This position is perfect for detail-oriented college students or recent graduates with an interest in compliance, focusing on sanctions and PEP screening. Responsibilities...Contract work- ...Description The Application Security Engineer is responsible... ...the management of information security risk, system resilience, and compliance activities. This role... ...assets and data across multiple platforms. This role... ...of application-level security incidents, collaborating...Information SystemFlexible hours
- ...is seeking qualified Junior Compliance Officer to support a federal... ...requirement is an Associate’s Level degree. Education is... ...Business, Accounting, Finance, Information Systems or a similar field. 1–3 years... ...processes in a government location. Security Requirements All candidates...Information SystemContract workFor contractorsLocal areaRemote workWeekend work
- ...recruiters to obtain personal information from job seekers. Please be... ...sensitive information such as Social Security numbers or bank details... ...Erbil, Iraq Clearance Level Department of State - Secret... ...alternate position. For OFCCP compliance, the taxable entity associated...Local areaWorldwideOverseasLong distance
$185k - $190k
...Objectives: The Director of Information Technology (" Director... ...the organization's IT systems • Develop and manage... ..., performance, and security of all IT systems.... ...industry. Previous director-level experience required.... ...in IT governance, compliance, and data security....Information SystemFull time$35k - $48k
...Corporation seeks a Junior Compliance Officer (Operations, Jr. Analyst) to support a federal... ...designated DHS and ICE systems and spreadsheets. Utilize... ...employment eligibility information, and document query results... ...such as information security, records management, and...Information SystemFull timeContract workFor contractorsWork at officeRemote workWeekend work- ...Overview We’re looking for an entry-level Financial Data Analyst who’s passionate about transforming... ...standardize financial datasets from internal systems, spreadsheets, and reporting tools.... ...Analyst, or FP&A roles. Additional Information Credit Score Requirement Due to the...
- ...clients. Currently, we are looking for entry-level software programmers, IT enthusiasts, Python/Java developers, data analysts/data scientists. We welcome candidates... ...engineering, electrical engineering, information systems, IT Highly motivated, self-learner, and...Information System
- ...Title: Governance, Risk, and Compliance Analyst (GRC) Location: Phoenix -... ...and modernizing digital systems. We are seeking a Governance... ...Compliance Analyst to join their security team. In this role, you... ...to track enterprise information dependencies. Formulating...Information System
- ...the branch, team and/or market level; performs analysis and... ...to ensure accurate data and information gathering. Performs analysis/... ...information into appropriate systems and preparation of presentation... ...party contracts and monitors compliance with financial terms and obligations...Information SystemWork experience placementWork at office
- About the job Senior Systems Administrator The position duties include: Working closely with other IT teams including Information Security, Service Desk, Quality Assurance, Production Support... ...and effectively with all levels of staff. Proven organizational skills...Information SystemFull timeContract workTemporary workRemote work
- ...Support Office. The IT Compliance Manager is... ...ensuring Sprouts’ IT systems, policies, and... ...cultivate an empowered security culture where... ...to protect information assets. Team Leadership... ...compliance analysts. Assign and prioritize... ...nature and level of the work being...Information SystemTemporary workWork at officeImmediate startFlexible hours
$85 per hour
...technical team of six system administrators and engineers... .... The manager ensures compliance with industry... ...deployment of mission-critical information systems while... ...Kofax). Knowledge of data security/privacy practices and... ...and agreed-upon service levels. Position...Information SystemHourly payFull timeTemporary workWork experience placementCasual workWork at officeRemote workFlexible hoursAfternoon shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information System Security Compliance Analyst (Multiple Levels). Be the first to apply!
- remote data analyst intern Phoenix, AZ
- data warehouse analyst Phoenix, AZ
- neuroscience data analyst Phoenix, AZ
- data solutions analyst Phoenix, AZ
- data integrity analyst Phoenix, AZ
- entry level healthcare data analyst Phoenix, AZ
- entry level data analyst Phoenix, AZ
- data analyst bank Phoenix, AZ
- data analyst - r python sql Phoenix, AZ
- data analyst full time Phoenix, AZ


