Information Security Analyst Lead
eSimplicity
Job Description
Job Description
Description:
About Us:
eSimplicity is modern digital services company that work across government, partnering with our clients to improve the lives and ensure the security of all Americans—from soldiers and veteran to kids and the elderly, and defend national interests on the battlefield. Our engineers, designers and strategist cut through complexity to create intuitive products and services that equip Federal agencies with solutions to courageously transform today for a better tomorrow for all Americans.
Purpose of Scope:
We are seeking an Information Security Analyst who is responsible for providing security support services while meeting security control compliance requirements for a portfolio of systems at various states of maturity and modernization. This role will provide support for continuously monitoring the cybersecurity posture of systems to secure against cyber threats.
The primary responsibility is to facilitate security tool and control implementation, security tool usage, and ensure tools and controls remain compliant and configured properly, all the while ensuring a successful program Authorization to Operate (ATO). Additionally, the expectation is to take ownership of communication and visualization of security issues, especially where coordination between product teams, information owners, engineering, and infrastructure staff is necessary for remediation.
The candidate will own coordination and response to the agency’s security-related inquiries, compliance with agency policy, security controls, and the maintenance of security documentation and artifacts. You will function as the primary liaison to provide timely and accurate responses to security-related data calls (System Security & Compliance Status, Vulnerability, and Compliance scanning issues) and provide security guidance throughout the system development lifecycle. This role requires interfacing with multiple stakeholders through multiple touchpoints weekly.
Responsibilities:
- Work closely with the Product Owners, ISSOs, engineering and infrastructure staff to provide guidance on implementation if security policies, standards, and procedures
- Analyze new or updated security requirements, collaborate with stakeholders, and develop responses that are clear and accurate.
- Support the review and update of ATO artifacts such as System Security Plans, Information System Contingency Plans, Configuration and Change Management Plans, Incident Response Plans, Privacy Impact Analysis, and more.
- Interpret security risk assessment, review security scan results, assess security vulnerabilities and support the development and remediation of vulnerability and compliance issues via Plan of Action and Milestones (POA&Ms).
- Support the development of implementation and design documentation relating to security feature implementation.
- Work with engineering and infrastructure personnel to document remediation for vulnerabilities and non-compliance issues.
- Analyze and interpret agency security requirements and provide governance communication to non-security personnel.
- Collaborate with product teams, ISSOs and other stakeholders in support of continuous monitoring and ATO efforts.
- Conducts vulnerability assessments and monitors systems, networks, databases and Web-based assets for potential system breaches. Recommends and takes the lead on implementing changes to enhance security systems, prevent unauthorized access, and help mitigate security vulnerabilities.
- Responds to alerts from information security tools. Reports, investigates, and resolves higher level security incidents.
- Responds to security tool outages, degradations in service, tune security rules and alerts, and setup/maintain security tool dashboards and reporting.
- Research security trends, new methods, and techniques used in unauthorized access of data to preemptively eliminate the possibility of system breach. Ensures compliance with regulations and privacy laws. Conducts research to identify new attack vectors.
- Educates and communicates security requirements and procedures to all users and new employees.
- Recommend process improvements to the information system for risk mitigation.
- Applies iterative security automation to all program aspects increasing overall security posture iteratively and never accepts the status quo.
- Provide audit log review in Splunk, present any findings to ISSO, and plan for any investigation or remediation activities.
- Periodic user and privileged access reviews.
Requirements
Required Qualifications:
- Minimum of eight years of experience in cybersecurity architecture, cloud security, DevSecOps, security engineering, or a related technical field. Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related field preferred but not required.
- Must hold a current Security+ certification.
- Experience designing security "baked-in" to architectures including Cloud and IaC, applications, web applications, data processing, data-centric applications, AI/ML, and CI/CD pipelines.
- A proven track record
- Familiarity with Agile methodologies.
- Working knowledge of AWS or Azure security tools, their functionality, and their purpose.
- Ability to assist customers with defining appropriate management processes (responsible for documenting application criticality, privacy, and security impact analysis).
- Knowledge of hardening standards (DISA STIG, CIS).
- Experience with the NIST Risk Management Framework, NIST 800-53 rev5, and NIST 800-171.
- Active secret clearance.
Desired Qualifications:
- Federal Government contracting work experience.
- Experience as an ISSO for the DoD.
- Highly preferred industry certifications such as CISSP, CEH, GIAC, etc.
- Experience with Security Information and Event Management (SIEM) systems (e.g., Splunk).
Location and Hours
Location: This role is primarily remote; however, the employee must be able to report on-site to Fort Meade, MD when requested due to customer or business needs. The frequency and timing of on-site support may vary and cannot be guaranteed in advance.
Hours: Expected hours are 9:00 AM to 5:00 PM Eastern Time unless otherwise directed by your manager.
Travel: Occasional travel for training and project meetings, estimated to be less than 5% per year.
Benefits:
eSimplicity offers a comprehensive benefits package, including medical, dental, and vision coverage, 401(k) retirement benefits, paid time off, paid holidays, life and disability insurance, and additional wellness and employee support programs. Eligibility may vary based on employment status and applicable plan terms.
Reasonable Accommodation:
eSimplicity is committed to providing reasonable accommodations to qualified individuals with disabilities during the application and hiring process. Applicants who need assistance or an accommodation should contact Human Resources.
Equal Employment Opportunity:
eSimplicity is an Equal Opportunity Employer, including disability and protected veteran status. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran status, disability, or any other legally protected status.
$79.16k - $127.67k
...Senior Threat Intelligence Analyst Work Location: Mount Laurel, New Jersey, United... .../or implements Technology Controls / Information Security related policies, programs, tools and... ...Who We Are: TD is one of the world's leading global financial institutions and is...SuggestedWork at officeLocal areaWork from homeFlexible hours$70 - $80 per hour
...Information Security Analyst Location: Mount Laurel, NJ Onsite Flexibility: Hybrid - 2 days in office, 3 days work from home (could potentially... .... Job Summary The RACA Exam Execution Management Lead is responsible for the end-to-end coordination, governance...SuggestedContract workFor contractorsWork at officeWork from homeWork visaMonday to FridayFlexible hoursShift work$100k
...AI National Security AnalystAre you searching for important work at the intersection of... ...challenges. As an AI National Security Analyst...You will develop and apply Generative... ...the requirements for access to classified information. Eligibility requirements include U.S. citizenship...SuggestedTemporary workWork experience placementInterim roleRelocation packageFlexible hours- ...Description Plan, implement, upgrade, or monitor security measures for the protection of computer networks and information. May ensure appropriate security controls are... ..., IT Risk Specialist, Network Security Analyst Requirements TBD Clearance Required: TS/SCI...SuggestedContract work
- ...Senior Information Security Analyst As a Senior Information Security Analyst, you will be a key member of our security team, responsible for safeguarding... ...completion of Plans of Action and Milestones (POA&Ms) Lead computer security incident response efforts including but...SuggestedContract workWork experience placementWork at office2 days per week
- We are seeking an experienced Info Security Analyst IV to support FIPS 140 validation projects within a hands-on lab environment. This role focuses on security analysis, cryptographic validation testing, product evaluations, automation, and technical reporting in support...Local area
- ...Job Description Job Description iQuasar is seeking to fill an Information Security Analyst IV position. At iQuasar, we strive to provide the next generation of cutting-edge technologies. Our growth means exciting career opportunities for talented professionals in...Contract work
- ...Description Job Description Description: Onsite in Fort Meade, MD Our client seeks a Security Analyst serving as an Information Systems Security Officer to lead implementation and enforcement of security policies aligned to NIST frameworks. The role will conduct...Hourly payContract workLocal area
$102.5k - $188.9k
...confidence, and proactively manage to secure success. Cyber threats... .... As a Cyber Exploitation Analyst, you will support cyber... ...relationships Ability to lead projects or workstreams Ability... ...Cybersecurity, Computer Science, Information Systems, Engineering, or a...Work at office$55 - $60 per hour
DescriptionPosition Overview The Information Security Analyst II (GRC) provides support for Governance, Risk, and Compliance activities aligned... ...law.About TEKsystems and TEKsystems Global Services We’re a leading provider of business and technology services. We...Contract workTemporary work- ...Job Description Job Description Lead Information Assurance (IA)/ Security SpecialistFull Time Ft. Meade, MDSecret clearance**This position is contingent upon contract award** Job Description Semper Valens Solutions is seeking an experienced Lead IA / Security Specialist...Contract work
$100k - $110k
...Job Description Job Description Journeyman Security Program Analyst Overview: Aether Aerospace is seeking a Journeyman Security Program... ...analysis, knowledge management, records administration, secure information handling, and operational coordination while ensuring...Night shift- ...Responsibilities:Program and Policy Administration:The Security Forces Readiness Analyst will provide on-site analytical support for Duties on War... ...Data System (MilPDS), Envision, Automated Readiness Information System (ARIS), Inspector General Evaluation Management System...For contractorsLocal areaRelocation
$19 - $20 per hour
...Job Description Job Description Junior Physical Security Specialist TSA is actively hiring for a Junior Physical Security Specialist at NAS Patuxent River to support security administration requirements at various facilities. Duties will include physical and/or industrial...Hourly pay$45k - $55k
...Job Description Job Description Junior Program Protection Security Analyst Overview: Aether Aerospace is currently seeking a Program... ...duties pertaining to personnel security, physical security, and information security. Implement security processes necessary to protect...- ...Job Description Job Description CyberLinx Solutions is seeking a SOC Analyst (Tier 1) / Security Monitoring Analyst to support our Security Operations Center (SOC). This role is responsible for continuous monitoring of security alerts generated by SIEM, provide continuous...
$107.9k - $195.05k
The C5ISR Center Cyber Security Service Provider (CSSP) is a premier defensive cyber operations organization supporting the Department... ...an immediate opportunity for an experienced Endpoint Security Analyst to support a highly visible, strategic Cybersecurity Task Order...Full timeImmediate start$69.4k - $158k
Security Operations Center AnalystThe Opportunity:Are you ready to take a strategic role... ...incident response, you want to be a SOC analyst. As an analyst on our SOC team, you’ll analyze... ...requirements for access to classified information;TS/SCI clearance with polygraph is...Full timeContract workPart timeWork at officeLocal areaRemote work- ...including the Department of the Navy, Department of Homeland Security, and Department of Veterans Affairs. We are dedicated... ...Overview F&A Technologies LLC is seeking a Senior Information Review and Release Analyst to support a high-priority, mission-critical program...For contractorsWork at office
- ...including the Department of the Navy, Department of Homeland Security, and Department of Veterans Affairs. We are dedicated... ...Position Overview F&A Technologies LLC is seeking Information Review and Release Analysts to support a dynamic Intelligence Community office at...16 hoursFull timePart timeWork at office
$69.4k - $158k
Information Systems Security Officer, LeadThe Opportunity:When our country’s cybersecurity is on the line, simply reacting is not enough—we need a... ...Information Systems Security Officer (ISSO) on our team, you’ll lead the assessment of the Department of War's IT infrastructure...Full timeContract workPart timeWork at officeLocal areaRemote work$99k - $225k
Security & Compliance AdministratorThe Opportunity: As an information security risk specialist on our team, you’ll use your experience to work with military clients to discover their cyber risks, understand applicablepolicies, and develop a mitigation plan. You’ll review...Full timeContract workPart timeWork at officeLocal areaRemote work$155k - $170k
...Security Engineer Lead TSTC is an award-winning, Woman Owned, HUBZone certified Small Business providing services to federal intelligence... ...-based tools, virtual environments, etc.) on the TSA information security program for TSA review and approval. The review of...Contract workTemporary workLocal areaRemote workFlexible hours$99k - $225k
...Security & Compliance Administrator The Opportunity: As an information security risk specialist on our team, you'll use your experience to work with military clients to discover their cyber risks, understand applicable policies, and develop a mitigation plan. You...Full timeContract workPart timeWork at officeLocal areaRemote work$77k - $163k
...Part Time Information Review and Release Analyst Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration... ...historical knowledge of client policies related to information security and classification; understanding of client missions...Part timeFor contractorsWork at officeFlexible hours- ...Information Review And Release Analyst Our partner is seeking information review and release analysts for their Ft. Meade, Maryland client in support... ...knowledge of client policies related to information security and classification; understanding of client missions and...Work at office
$131.3k - $237.35k
Leidos is seeking Information Security Professionals for programs in our Intelligence Sector, Cyber & Analytics Business Area (CABA). Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO), Mission Software, Analytical Methods...Full timeImmediate startFlexible hours- Job Description Responsible for providing security and risk analysis of engineering solutions, to include technical solution development... ...in the identification and implementation of appropriate information security functionality. Interfaces with IT and non-IT personnel...Remote work
- ...Owned Small Business. SUBJECT MATTER EXPERTS specializing in security and risk management. We’re intimately familiar with DOD... ...Control, program security administration to include personnel and information security functions as needed and is responsible to the Chief of...Hourly payContract workWork experience placementLocal area
- ...Description Job Description Evolver is an information technology, cybersecurity, and digital... ...500 organizations. We help customers secure critical systems, modernize enterprise technology... ...(POC) for the XT-CS-CIO. XT-CS CIO Task Lead shall provide overall management and...Flexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Analyst Lead. Be the first to apply!


