Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Information System Security Compliance Analyst (Multiple Levels)

$78.9k - $123.3k

Noblis

Responsibilities

Position Overview

We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous monitoring activities within a Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems, ensuring compliance with Federal cybersecurity requirements, and maintaining the documentation necessary to support Authorization to Operate (ATO) decisions.

The ideal candidate will have experience working with NIST RMF, NIST SP 800-53 controls, security authorization packages, POA&M management, and compliance documentation. Candidates should be comfortable working with technical teams to assess control implementation, identify compliance gaps, and provide guidance to support remediation efforts and POA&M closure.

Key Responsibilities

  • Manage the security authorization lifecycle for one or more information systems in accordance with Federal Risk Management Framework (RMF) requirements.

  • Coordinate activities required to obtain and maintain Authorization to Operate (ATO) approvals.

  • Assess and track implementation of NIST SP 800-53 security controls and associated compliance requirements.

  • Develop, review, update, and maintain authorization package documentation, including:

  • System Security Plans (SSPs)

  • Security Assessment Reports (SARs)

  • Plan of Action and Milestones (POA&Ms)

  • Risk Assessments

  • Continuous Monitoring documentation

  • Security-related policies and procedures

  • Manage POA&M activities by tracking findings, monitoring remediation progress, validating corrective actions, and supporting closure efforts.

  • Provide technical guidance and compliance recommendations to system owners, engineers, administrators, and security stakeholders to facilitate POA&M remediation and closure.

  • Coordinate with technical teams to gather evidence supporting security control implementation and compliance requirements.

  • Review vulnerability scan results, assessment findings, and security documentation to identify compliance gaps and areas requiring remediation.

  • Support continuous monitoring activities by tracking security posture, compliance status, and ongoing control effectiveness.

  • Participate in security assessments, audits, and compliance reviews conducted by internal and external stakeholders.

  • Assist in the development of risk mitigation strategies and recommendations for addressing identified security weaknesses.

  • Track authorization milestones, compliance deadlines, and remediation activities to ensure timely completion.

  • Communicate compliance status, risks, findings, and recommendations to both technical and non-technical stakeholders.

  • Support audits and reporting activities related to Federal cybersecurity requirements and organizational security programs.

Required Qualifications

  • Experience supporting cybersecurity compliance, security authorization, risk management, or information security programs.

  • Experience working with the NIST Risk Management Framework (RMF).

  • Subject matter expertise with NIST SP 800-53 security controls and Federal cybersecurity compliance requirements.

  • Experience supporting the development, maintenance, or review of authorization package documentation, including SSPs, SARs, POA&Ms, and Risk Assessments.

  • Understanding of the Authorization to Operate (ATO) process and continuous monitoring requirements.

  • Experience tracking and managing POA&M findings through remediation and closure.

  • Ability to review technical security information and translate findings into compliance documentation and actionable recommendations.

  • Understanding of cybersecurity principles, security controls, vulnerability management, and risk management concepts.

  • Strong organizational skills with the ability to manage multiple systems, priorities, and compliance activities simultaneously.

  • Strong written and verbal communication skills, including the ability to develop and review formal security documentation.

  • Proficiency with Microsoft Office applications, particularly Excel, Word, and PowerPoint.

  • U.S. Citizen or Green Card Permanent Resident with a minimum of three (3) years of U.S. residency.

  • Ability to obtain and maintain an FAA Public Trust.

Education & Experience Substitutions

Substitutions are subject to government customer review and approval.

Mid

  • Bachelor's degree in Cybersecurity, Information Technology, Telecommunications, or a related field.

  • 9+ years of experience in cybersecurity or network security roles

  • Substitutions: For anything requiring a substitution, the government customer is subject to further review and either approve or deny the request.

  • A High School degree with a total of 15 years of experience in cybersecurity or network security roles

  • Masters degree with a total of 6 years of experience in cybersecurity or network security roles.

Compensation Ranges: for D.C., NJ, Remote: $78,900 - $123,300

Mid to Senior:

  • Bachelor's degree in Cybersecurity, Information Technology, Telecommunications, or a related field.

  • 12+ years of experience in cybersecurity or network security roles

  • Substitutions: For anything requiring a substitution, the government customer is subject to further review and either approve or deny the request.

  • A High School degree with a total of 16 years of experience in cybersecurity or network security roles

  • An Associates Degre with a total of 14 years of experience in cybersecurity or network security roles

  • Masters degree with a total of 9 years of experience in cybersecurity or network security roles

Compensation Ranges: for D.C., NJ, Remote: $95,500 - $180,525

Senior

  • Masters degree in Cybersecurity, Information Technology, Telecommunications, or a related field.

  • 16+ years of experience in cybersecurity or network security roles

  • Substitutions: For anything requiring a substitution, the government customer is subject to further review and either approve or deny the request.

  • A Bachelors degree with a total of 19 years of experience in cybersecurity or network security roles

Compensation Ranges: for D.C., NJ, Remote: $115,500 - $218,475

Desired Qualifications

  • Experience supporting federal government programs, preferably within the FAA, Department of Transportation, or other civilian federal agencies.

  • FAA or transportation sector experience preferred.

  • Experience serving as an Information System Security Officer (ISSO), Security Control Assessor (SCA), Information System Security Manager (ISSM), or similar cybersecurity compliance role.

  • Experience managing authorization packages for multiple systems simultaneously.

  • Strong knowledge of NIST SP 800-53 Rev. 5, NIST RMF, FISMA, and related Federal cybersecurity requirements.

  • Experience developing, reviewing, and maintaining SSPs, SARs, POA&Ms, Risk Assessments, Contingency Plans, and other authorization artifacts.

  • Experience conducting control assessments, compliance reviews, and security documentation audits.

  • Ability to interpret technical findings from vulnerability scans, configuration assessments, and security reviews to support risk-based decision-making.

  • Experience providing technical guidance to engineering and operations teams to support corrective actions and POA&M closure.

  • Familiarity with continuous monitoring programs and ongoing authorization requirements.

  • Experience working with vulnerability management tools, compliance dashboards, and governance, risk, and compliance (GRC) platforms.

  • Knowledge of cloud security compliance, Zero Trust Architecture, and modern Federal cybersecurity initiatives.

  • Industry certifications such as:

  • CISSP

  • CAP (Certified Authorization Professional)

  • Security+ CISM

  • GSLC

  • CGRC

  • or equivalent certifications

  • Strong written, verbal, analytical, and interpersonal communication skills, with the ability to interact effectively with technical teams, auditors, system owners, and government stakeholders.

Overview

Noblis ( and our wholly owned subsidiaries, Noblis ESI , and Noblis MSD tackle the nation's toughest problems and apply advanced solutions to our clients' most critical missions. We bring the best of scientific thought, management, and engineering expertise together in an environment of independence and objectivity to deliver enduring impact on federal missions. Noblis works with a wide range of government clients in the defense, intelligence and federal civil sectors. Learn more at Noblis -About Us (

Why work at a Noblis company?

Our employees find greater meaning in their work and balance the other things in life that matter to them. Our people are our greatest asset. They are exceptionally skilled, knowledgeable, team-oriented, and mission-driven individuals who want to do work that matters and benefits the public. Noblis has won numerous workplace awards ( . Noblis maintains a drug-free workplace.

  • Remote/hybrid status is subject to change based on Noblis and/or government requirements

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to race, color, ethnicity, sex, age, national origin, religion, physical or mental disability, pregnancy/childbirth and related medical conditions, veteran or military status, or any other characteristics protected by applicable federal, state, or local law.

If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact us ( .

EEO is the Law ( | E-Verify ( | Right to Work (

Total Rewards

At Noblis we recognize and reward your contributions, provide you with growth opportunities, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, and work-life programs. Our award programs acknowledge employees for exceptional performance and superior demonstration of our service standards. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in our benefit programs. Other offerings may be provided for employees not within this category. We encourage you to learn more about our total benefits by visiting the Benefits ( page on our Careers ( site.

Compensation at Noblis is determined by various factors, including but not limited to, the combination of education, certifications, knowledge, skills, competencies, and experience, internal and external equity, location, clearance level, as well as contract-specific affordability, organizational requirements and applicable employment laws. The projected compensation range for this position is based on full time status. For part time or on-call staff, compensation is proportionately adjusted based on hours worked. While monetary compensation is important, it's just one component of Noblis' total compensation package.

Posted Salary Range

USD $78,900.00 - USD $218,475.00 /Yr.

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Information System Security Compliance Analyst (Multiple Levels) in Columbia, SC vacancy
  •  ...Intrusion Prevention Systems (IPS), Switching and...  ...Routing Infrastructure Security Information and Event Management...  ...SCDHHS security and compliance efforts. Audit and Assess...  ...and coordinate with multiple teams and vendors....  ...non-technical skill-levels to ensure effective alignment... 
    Information System
    Work at office
    Local area
    Flexible hours

    US IT Solutions Inc

    Columbia, SC
    1 day ago
  •  ...Management, Copilot/AI data security, auditing, vendor...  ...patching. The analyst will review and triage...  ...of sensitive information, perform system and vendor audits, document...  ..., or an Associate level CISSP. Security Analyst...  ...Security Auditing & Compliance Support... 
    Information System

    Tech Army

    Columbia, SC
    4 days ago
  • $30 per hour

     ...development in fields such as information technology, technical/systems consulting, technical...  ...supporting Federal Compliance and Federal Sales Teams. The Information Security Compliance Analyst is expected to work...  ...remains posted. Career Level - IC0 About Us Only... 
    Information System
    Hourly pay
    Temporary work
    Internship
    Flexible hours

    Oracle

    Columbia, SC
    4 days ago
  •  ...program by protecting sensitive information, monitoring security risks, and strengthening...  ...management. The Security Analyst is responsible for...  ...sensitive information, conducting system and vendor security...  ...decisions. Security Auditing & Compliance Support internal and... 
    Information System

    Tech Army

    Columbia, SC
    2 days ago
  •  ...opportunities. We made the Staffing Industry Analyst's 'Fastest Growing' list in 2013, 2014 and 2015. Job Description Summary: Information Technology Services team members are responsible for securely managing information systems throughout their life-cycle, including;... 
    Information System

    PSG Global Solutions

    Columbia, SC
    1 day ago
  •  ...Seeking an experienced Security Analyst for a 12 month contracted opportunity...  ...and movement of sensitive information, perform system and vendor audits,...  ...decisions. Security Auditing & Compliance Support cybersecurity...  ...SC200, CEH, or an Associate level CISSP. #J-18808-Ljbffr... 
    Information System
    Work at office
    Local area

    Core Technology Solutions

    Columbia, SC
    2 days ago
  •  ...Under limited supervision, Security Analyst III position is responsible for technical aspects of information security within the South Carolina...  ...users or email filtering system. Updates email filtering...  ...Hybrid environment, and with multiple physical or virtual site locations... 
    Information System
    Temporary work
    Work at office
    Local area
    Remote work
    Flexible hours

    State of South Carolina

    Columbia, SC
    1 day ago
  •  ...has an opening for a Security Analyst rec 10902-1This position...  ...the organization’s information & cyber security...  ...information technology systems and networks.  The...  ...support security and compliance risk mitigation efforts...  ...and coordinate with multiple teams and vendors... 
    Information System
    Work at office
    Local area
    Remote work
    Flexible hours

    Focused HR Solutions

    Columbia, SC
    26 days ago
  • Security Analyst Managed Security Services Hybrid Remote Permanent Apply for this job About Bridewell...  ...securely. Bridewell holds the Gold level, Investors in People award which we...  ...cutting edge security technologies across multiple vendors and tools as part of the... 
    Permanent employment
    Work at office
    Remote work
    Flexible hours

    Bridewell Consulting Limited

    Columbia, SC
    3 days ago
  • $105k - $130k

     ...CampusGuard, a Nelnet company, provides information security and privacy consulting and compliance services primarily for campus-...  ..., network infrastructure, IT system configurations and physical security as it all relates to multiple compliance requirements. Performing... 
    Information System
    Temporary work
    Fixed term contract
    Local area
    Remote work
    Work from home
    Home office

    Nelnet

    Columbia, SC
    2 days ago
  •  ...Description The Compliance Analyst supports the Compliance Department...  ..., examinations, and information requests. Maintain...  ...compliance-related systems and applications....  ...and ability to manage multiple priorities simultaneously...  ...effectively with all levels of the organization.... 
    Information System
    Work at office

    Security-Federal-Bank-2

    Columbia, SC
    2 days ago
  •  ...Bachelor’s degree in cybersecurity, information technology, computer science,...  ...may be considered. Security certification such as CompTIA...  ...SC‑200, CEH, or an Associate level CISSP. Experience working with...  ...manage sensitive data used by AI systems. Experience finetuning DLP... 

    Software Technology Inc

    Columbia, SC
    2 days ago
  • » » Security Analyst – AdvancedLocationSouth Carolina, Columbia### Description**Job Description...  ...than one IT functional area (e.g., data, systems, network and/or Web) across the...  ...systems and/or Web operations.-More junior level position primarily focuses on security... 

    MFM Jobs

    Columbia, SC
    1 day ago
  •  ...customer focus to the business. Overview : The IT Security Analyst will support the Company’s ability to protect...  ..., and availability of its physical and information assets by establishing, monitoring, and enforcing system access controls and security solutions. Responsibilities... 

    Loop Recruiting

    Columbia, SC
    1 day ago
  •  ...Information Security Specialist Are you passionate about protecting critical systems through secure identity and access management? Do you enjoy balancing security, compliance, and exceptional customer service? Want to help protect the technology that supports students... 
    Information System

    University of South Carolina

    Columbia, SC
    3 days ago
  •  ...partners, and vendors. Responsibilities Security Program & Compliance Provide leadership within FISMA/RMF-...  ...assess RMF/A&A artifacts including: System Security Plans (SSPs) Privacy Impact...  ..., including: Network design and information flow System and data access models Firewall... 
    Work at office

    Talent Software Services

    Columbia, SC
    4 days ago
  • $40 per hour

    A cybersecurity company is seeking experienced professionals for a remote role focused on evaluating AI-generated security content. Candidates will handle tasks such as evaluating threat analysis and designing technical solutions for AI models. The ideal applicant has... 
    Remote job
    Hourly pay
    Flexible hours

    DataAnnotation

    Columbia, SC
    5 days ago
  • The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role in evaluating and reducing...  ...orientation, gender identity/expression, pregnancy, genetic information, national origin, protected veteran status, disability... 
    Summer holiday
    Flexible hours

    Ernst & Young Oman

    Columbia, SC
    4 days ago
  • $40 per hour

    A cybersecurity solutions company is seeking experienced professionals to evaluate AI-generated cybersecurity content and solve technical cybersecurity problems. This remote role requires at least 2 years of experience in cybersecurity and offers the flexibility to choose...
    Remote job
    Hourly pay

    DataAnnotation

    Columbia, SC
    3 days ago
  • $80k - $90k

     ...enhancement (DM&E) and operation of multiple FAA Systems. All employees must be able...  ...commitments with a high level of quality under the...  ...Requires a Bachelor's Degree in Information systems, business systems,...  ..., Hibernate, Spring Security, JSON, JavaScript, Angular,... 
    Information System
    Work experience placement
    H1b
    Work at office
    Local area

    Karsun Solutions, LLC

    Columbia, SC
    3 days ago
  •  ...and experienced Special Security Technician to join our...  ...programs, ensuring compliance with all security protocols...  ...classified information. This position requires...  ...Qualifications Experience Level: 9 years w/o a degree...  ...Personnel Adjudication System (JPAS) or Defense Information... 
    Information System

    Peraton

    Columbia, SC
    3 days ago
  •  ...The Cloud Security Architect designs and governs secure...  ..., security, and compliance teams to define standards...  ...decisions throughout the system lifecycle Demonstrate...  ...resources across multiple environments with infrastructure...  ...in Computer Science, Information Security, Information... 
    Information System

    Atlantic Partners

    Columbia, SC
    4 days ago
  •  ...Administration's (Admin) Division of Information Security (DIS) is seeking an Information Systems Security Officer (ISSO) to join...  ...IT, business operations, and compliance teams, you will identify risks,...  ...outside the field and to executive-level staff. Knowledge of South... 
    Information System
    Contract work
    Work at office

    South Carolina Department of Administration

    Columbia, SC
    4 days ago
  •  ...scale projects centered around ISSM (Information Systems Security Manager) expectation involves...  ...policies, managing risks, ensuring compliance. Ensuring alignment with PMO standards...  ...oriented work efforts. Responsible for multiple work efforts of any size, from minimum... 
    Information System
    Full time
    Work experience placement
    Second job
    3 days per week

    Systemtec

    Columbia, SC
    1 day ago
  • $21 per hour

     ...Advisor – Work From Home (Multiple Locations) |2026 ~...  ...a significant level of peace of mind to participants...  ...and verify members information, and set an appointment...  ...proprietary computer systems   •    Experience in...  ...The applicant will secure and be responsible for... 
    Hourly pay
    Full time
    Temporary work
    Seasonal work
    Work at office
    Immediate start
    Remote work
    Work from home
    Visa sponsorship
    Work visa
    Shift work

    WTW

    Columbia, SC
    more than 2 months ago
  • $10k

     ...The Role The Financial Analyst role is crucial to...  ...accuracy, integrity, and compliance of individual scholarship...  ...records, and data systems. You'll communicate directly...  ..., even when the information is complex or sensitive Able to manage multiple priorities with accuracy... 
    Information System

    Southern Arkansas University

    Columbia, SC
    2 days ago
  •  ...client has an opening for a Security Analyst 11585-1. This position...  ...experience in the area of Information Security Management. REQUIRED...  ...with and/or auditing IBM System 390/zSeries, Windows, Linux...  .... Information security compliance standards Yes 1 Advanced... 

    Focused HR Solutions

    Columbia, SC
    26 days ago
  •  ...0% on site. Our direct client has an opening for an Security Analyst 11299-1. This position is up to 12 months, with the...  ...or in a related area. Rate Details: Education Information security compliance standards Yes 1 Advanced Currently Using 2 - 4 Years.... 

    Focused HR Solutions

    Columbia, SC
    26 days ago
  •  ...the District to ensure the safety and security of patients, visitors, and staff. Minimum...  ...weapons), Criminal Justice Information Systems Security and Awareness, Restraint Application...  ...safe and responsible manner. Ensures compliance of accreditation standards within the... 
    Information System
    Shift work

    Lexingtononcology

    Lexington, SC
    2 days ago
  •  ...Job Title: Information Technology Professional (IT/CTN/IS) Category /...  ...• Both Overview Information Systems Technicians, Cryptologic Technician...  ...connected, informed, and secure by operating and defending networks...  ...at the Secret or Top Secret level depending on the billet.... 
    Information System
    Apprenticeship
    Worldwide
    Shift work

    US Navy

    Columbia, SC
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Information System Security Compliance Analyst (Multiple Levels). Be the first to apply!