Compliance & Security Analyst

Location

United States

Posted

87 days ago

Salary

0

No structured requirement data.

Job Description

Compliance & Security Analyst

Logicalis

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description - Architects and authors System Security Plans (SSPs), the "source of truth" for the client's security posture, detailing exactly how each NIST 800-171 control is implemented. - Develops and manages the Plan of Action and Milestones (POAM), tracking every deficiency and guiding the client’s IT team through remediation. - Drafts all formal security policies, ensuring they are not just "templates" but functional, defensible documents that reflect the client’s real-world operations. - Designs and facilitates annual Incident Response (IR) and Disaster Recovery (DR) tabletop drills. - Leads the Evidence Collection phase, verifying that the client’s logs and configurations meet the rigorous sufficiency standards of a C3PAO auditor. - Demonstrates and actively promotes an understanding and commitment to the mission of Logicalis through performing behaviors consistent with the organization's values. - Maintains a working knowledge of applicable Federal, State, and Local laws and regulations as well as policies and procedures of Logicalis in order to ensure adherence in a manner that reflects honest, ethical and professional behaviors. - Supports and conducts self in a manner consistent with customer service expectations. Qualifications - Bachelor’s degree in a related field. - Compliance Enclaves: Advising on how to segment CUI to limit audit scope and cost. - FIPS 140-2/3 Validation: Verifying that encryption modules (VPNs, Wi-Fi, Storage) meet federal standards. - Network Architecture: Interpreting network diagrams and identifying gaps in boundary protection and data flow. Previous Network Engineer or Administrator experience is valued. - Log Logic: Knowing exactly what a "passing" audit log looks like for MFA, access control, and system monitoring. - Framework Expert: Mastery of CMMC 2.0 (Level 2) and NIST SP 800-171. - Technical Writing: Superior ability to write clear, audit-proof documentation (SSPs, SOPs, and Policies). - Knowledge of SOC2, ISO 27001, HIPAA, or GDPR. - Certifications: CCP (CMMC Certified Professional), CISA, Security + Requirements - Ability to work with C-Suite Executives and across client technical teams throughout the consulting process. - Portfolio Management: Proven ability to manage ~10 concurrent clients/projects without sacrificing quality or missing milestones. - Ability to manage through high level of ambiguity and multiple requests from variety of sources. - Ability to work on multiple projects simultaneously and translate business data into digestible information that improves corporate processes. - Outstanding technical/business communication skills. Physical Demands The physical demands described here are representative of those that should be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. - While performing the duties of this Job, the employee is constantly required to sit, talk, see, hear, and use hands and arms. - The employee is frequently required to stand; move about, climb steps or balance and stoop, kneel, crouch, or crawl. - The employee may occasionally lift and/or move up to 10 pounds. Salary Compensation Range $90,321 - $121,934

Job Requirements

  • Bachelor’s degree in a related field.
  • Compliance Enclaves: Advising on how to segment CUI to limit audit scope and cost.
  • FIPS 140-2/3 Validation: Verifying that encryption modules (VPNs, Wi-Fi, Storage) meet federal standards.
  • Network Architecture: Interpreting network diagrams and identifying gaps in boundary protection and data flow. Previous Network Engineer or Administrator experience is valued.
  • Log Logic: Knowing exactly what a "passing" audit log looks like for MFA, access control, and system monitoring.
  • Framework Expert: Mastery of CMMC 2.0 (Level 2) and NIST SP 800-171.
  • Technical Writing: Superior ability to write clear, audit-proof documentation (SSPs, SOPs, and Policies).
  • Knowledge of SOC2, ISO 27001, HIPAA, or GDPR.
  • Certifications: CCP (CMMC Certified Professional), CISA, Security +
  • Ability to work with C-Suite Executives and across client technical teams throughout the consulting process.
  • Portfolio Management: Proven ability to manage ~10 concurrent clients/projects without sacrificing quality or missing milestones.
  • Ability to manage through high level of ambiguity and multiple requests from variety of sources.
  • Ability to work on multiple projects simultaneously and translate business data into digestible information that improves corporate processes.
  • Outstanding technical/business communication skills.
  • Physical Demands
  • The physical demands described here are representative of those that should be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
  • While performing the duties of this Job, the employee is constantly required to sit, talk, see, hear, and use hands and arms.
  • The employee is frequently required to stand; move about, climb steps or balance and stoop, kneel, crouch, or crawl.
  • The employee may occasionally lift and/or move up to 10 pounds.
  • Salary Compensation Range
  • $90,321 - $121,934

Related Job Pages

More Security Analyst Jobs

CACI International Inc logo

SAP Security Specialist

CACI International Inc

Expertise and Technology for National Security

Security Analyst87 days ago
OtherRemoteTeam 10,001+Since 1962H1B No Sponsor

Job Title: SAP Security Specialist Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: Public Trust Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Continental US * * * The Opportunity: The Opportunity: CACI’s growing Agile Digital Solutions Operating Group is searching for a SAP Application Security Specialist supporting the modernization and transformation of a large portfolio of enterprise business solutions used by the National Aeronautics and Space Administration (NASA). The candidate will be part of a team where complex problem solving, and communication skills are critical to success. Responsibilities: - Translate functional specifications into SAP role design, Design of SAP security roles to meet business requirements. - Technical role, user and authorization management for SAP Systems, and Segregation of Duties conflict remediation related projects. Including Customized transaction technical validation - Map client business requirements, processes and objectives; develops necessary product modifications to satisfy clients' needs - Provide subject matter expertise and technical direction to clients and Agency stakeholders. - Work closely with customers, business analysts, and other team members to understand, transform and implement the Agency’s business requirements into flexible Business Processes using SAP standard functionality and custom extensions which are aligned with the Agency’s mission and are in compliance with the organization's architectural IT standards - Communicate technical and business issues/solutions to all levels of individuals, including manager, directors and executives - Provide day to day sustainment support related to the ongoing operation day sustainment and operational support to ensure continued system reliability and performance. Qualifications: Required: - 2 or more years of SAP experience supporting SAP Security in a Public Sector environment - Deep understanding of SAP authorization concept. - Knowledge of Segregation of Duties (SOD) with an understanding of business processes and applicable mitigating controls - Experience in maintaining GRC risk library, roles and authorizations (R/3/ECC, BW4HANA, S4HANA), user administration - Proficient with GRC (10.1/12.0) configuration - Firefighter configuration and maintenance - Bachelor’s degree in Computer Science, Software Engineering, Information Management Systems or a related discipline. Equivalent professional experience will be considered in lieu of degree. - Must be able to obtain and maintain a NASA Public Trust background investigation Desired: - Experience supporting NASA programs - Experience with SAP Activate Methodology - SAP Certification in one or more of the following disciplines: SAP Security - What You Can Expect: A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation. An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy. Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Since this position can be worked in more than one location, the range shown is the national average for the position. The proposed salary range for this position is: $90,300-$189,600 CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

United States
$90.3K - $189K / year
Job Closed
Flashpoint logo

Analyst I - Tactical Threat Monitoring

Flashpoint

Flashpoint is the pioneering leader in threat data and intelligence. We empower commercial enterprises and government agencies to decisively confront complex security challenges, reduce risk, and improve operational resilience amid fast-evolving threats.

Security Analyst87 days ago
OtherRemoteTeam 312Since 2010

Flashpoint is the pioneering leader in threat data and intelligence. We empower commercial enterprises and government agencies to decisively confront complex security challenges, reduce risk, and improve operational resilience amid fast-evolving threats. Through the Flashpoint Ignite platform, we deliver unparalleled depth, breadth and speed of data from highly relevant sources, enriched by human insights. Our solutions span cyber threat intelligence, vulnerability intelligence, geopolitical risk, physical security, fraud and brand protection. The result: our customers safeguard critical assets, avoid financial loss, and protect lives. Discover more at flashpoint.io Are you an Analyst early in their intelligence journey who enjoys helping others monitor the cyber environment while being a part of a global intelligence team that covers all corners of the world? This role is for a threat intelligence analyst to conduct tactical threat monitoring (TTM) and detection activities, leveraging internal tools, and to assess and communicate risks to customers via tactical-level reports. We have a role for you if you: - have patience and superior attention to detail - have experience processing large volumes of data without losing focus - are a native or near-native speaker of at least one of the following languages: Russian, Spanish, Arabic, Portuguese, French, Chinese, Vietnamese, Korean, or Japanese - dream of breaking into the cybersecurity industry What you will get to do on our team: - Produce high-quality tactical assessments to inform risk intelligence decision-making process and prevent cybercrime - Leverage Flashpoint proprietary tools and systems to support assigned tasks - Build patterns/queries according to syntax rules to highlight high signal data within Flashpoint tools - Manage customer alerting profiles and work cross-functionally with Customer Success to resolve alerting-related issues - Synthesize quantitative and qualitative data to identify information credibility and deduce relevance for client requests and overall clientbase. - Understand and articulate security safeguards required to perform job responsibilities - Nominate new collection sources in support of Flashpoint collections - Safely navigate virtual environments for supporting assigned tasks as applicable - Comply with Flashpoint org-wide and Intel team policies and procedures, including Rules of Engagement What you will achieve: - Within 30 days - You will have been fully onboarded and integrated into a team of professional intelligence analysts and assigned a mentor to guide you through your initial journey at Flashpoint. Your team will have provided you with accesses, resources, and training necessary to begin tackling deliverables - Within 60 days - You will have completed onboarding and familiarized yourself with internal team operations - You will have developed a solid understanding of customers’ alerting requirements and started producing high-quality tactical-level reports for assigned customers. - By 90 days - You will have become completely comfortable with handling day-to-day deliverables and tasks on your own and become confident in your abilities to work independently or on a team. - You will have become comfortable developing high-precision keywords and patterns, testing them in the FP platform, refining to eliminate irrelevant mentions, and uploading them to customer alerting profiles without supervision - You will have carried out your own investigations in support of requests for information - You will have become familiar with teams outside of your own team and begun building working relationships to assist you in becoming successful in your career To be successful in this role, you will need: - Experience sifting through large amounts of data to identify relevant information - Patience and superior attention to detail - Ability to focus for long periods of time - To be native or near-native proficiency in at least one of the following languages: Russian, Spanish, Portuguese, French, Chinese, Vietnamese, Arabic or Japanese Salary: Salary ranges are determined by role, level, and location. Individual pay is determined by state, work location, and additional factors including job-related skills, experience, specialized skills or certifications, and relevant education or training. This position is eligible for incentive bonus compensation, and medical, dental, vision, life insurance, and 401K. Your recruiter can share more about the specific details of the compensation and benefits package during the interview process. Why Flashpoint is a Great Place to Work: - Diversity. Flashpoint is committed to fostering, cultivating and preserving a culture of diversity, inclusion, belonging, and equity. We recognize that diversity is key to achieving our vision. We believe that every person and their experiences contribute to building a work environment and products and services that will change the world. - Culture and Belonging. Our company’s culture isn’t something you join, it’s something you build and shape, and each person's unique backgrounds and experiences contribute to who Flashpoint is and will become. You will have ample opportunities to connect with coworkers through various communication channels and company-funded virtual events: book clubs, happy hours, committees, DIBE discussion group, Donut mixers, local team member meetups and much more. - Perks. Flashpoint understands that personal wellness is one of the keys to a happy, healthy and productive work environment. That’s why we also prioritize health and wellness perks like gym reimbursements, expensed lunches, cool cultural initiatives and inclusive employee events. - Career Growth. Flashpoint is invested in the growth of our team members and understands that frequent, two-way feedback is critical to that growth. We encourage regular one-on-ones with your manager, a regular schedule of performance reviews, learning and development opportunities, and guidance through formalized career paths; whether that be towards being a great manager, being a great individual contributor, or a lateral move to gain breadth of knowledge and experience. Are you unsure if this role suits you or not? Unsure about the timing? Interested in future opportunities? Stay connected by joining our Talent Network. By doing so, you'll stay updated with Flashpoint news and upcoming career opportunities. Even if you're not ready to apply now, being part of our Talent Network ensures you won't miss out on exciting opportunities in the future.

United States
Job Closed
OtherRemoteTeam 51-200Since 2021H1B No Sponsor

This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description AGE Solutions is looking for a Security Control Assessor, Mid to join our team in support of a cybersecurity risk management and assessment program with our DoD customer. - Conduct cybersecurity assessments, audits, and inspections for DoD organizations and partners handling DoD information or connecting to the DoDIN. - Evaluate systems and Defensive Cyberspace Operations using cyber threat emulation and performance-based testing. - Adhere to policies and processes for each assessment type. - Support assessment development and execution to ensure security expertise is properly applied. - Coordinate logistics, test plans, and scope with the SCA Team Lead. - Perform vulnerability assessments, capture results using STIG Viewer or designated tools, and document findings in eMASS. - Analyze security gaps and provide mitigation recommendations. - Validate cybersecurity controls, TTPs, STIGs, RMF controls, and compliance with DoD policies and guidelines. - Provide risk analysis and assessment results for authorization recommendations. - Participate in daily assessment reviews, in-briefs, and out-briefs, sharing findings with the SCA-R. Qualifications - Bachelor's degree (IT-related field preferred) - Five (5) years of overall experience in cybersecurity or network security position - Three (3) years of experience in a Certification and Accreditation/A&A role - Must have and maintain an active DoD Top Secret clearance with SCI eligibility - DoD 8570 IA Technical (IAT) Level II certification Requirements - Demonstrated experience with STIGs (Security Technical Implementation Guides), Security Requirement Guides (SRGs), Plan of Action and Milestones (POA&Ms) and cybersecurity best practices - Strong understanding of the RMF process, NIST SP 800-37, NIST SP 800-53, CNSSI 1253 - Demonstrated experience with relevant tools such as eMASS, STIG Viewer, Nessus, ACAS, SCAP, or HBSS - Demonstratable understanding of key technologies areas/domain such as: Network, Mobility, Windows, UNIX, Cloud Environments and Cloud Native Tools/Services, Host Based Security System (HBSS)/Endpoint Security Solutions (ESS), Databases, Applications - Strong written and verbal communication skills for reporting assessment findings. Benefits - 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it. - Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact. - 401(k) with Match: We match 3% of your contributions with immediate vesting. - Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents. - Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs. - Parental Leave: 15 days of fully paid leave for new parents, because family matters. - Military Differential Pay: We bridge the gap for employees on active duty, so they don’t take a financial hit while serving. - Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right. - Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.

United States
Job Closed
COR Partners logo

Digital Forensics Technician

COR Partners

Envista Forensics embraces diversity and is proud to be an equal opportunity employer. We are committed to building a team that represents a variety of backgrounds and perspectives. Envista Forensics believes that Veterans arrive with not only translatable skills and technical expertise but in addition come with the intangibles; leadership and values that we believe align with our 5 Guiding Principles. Simply put, these qualities enable our success, so we encourage all Guardsmen, Reservists, and Veterans to consider Envista as their next career destination.

Security Analyst87 days ago
OtherRemoteTeam 201-500

Inspiring People - Impactful Experiences If there was one common theme to describe what our team members get from a career with Envista Forensics, it’s: An Experience. Envista prides itself on being One Company/One Team. Forensic Consulting relies on scientific principles to investigate all types of failures impacting service, people, and business production— from minor to catastrophic. It’s our job to analyze and determine why it happened. We’re always looking for great professionals, in all disciplines and locations – contact us for more information about other opportunities. We’re looking for someone who: - Is Passionate. You have a genuine passion to problem solve. - Is motivated and cultivates innovation. You’re driven to be the very best. You challenge yourself to grow and learn every day and are encouraged by other team members. - Is collaborative. You’re excited to work with others throughout a global organization to help foster a superior workplace and culture. You are constantly thinking of new ways to make Envista successful. - Wants to make an impact to drive results. You’re looking to do amazing work. You’re all about helping our clients both internally and externally. - Operates with integrity and instills trust. You always conduct yourself with honesty and operate ethically in everything you do. Job Description Are you passionate about solving complex puzzles and uncovering hidden truths? As a Digital Forensics Technician you’ll play a pivotal role in supporting high-stakes legal and insurance cases by providing expert technical consulting. Your work will directly impact civil and criminal investigations, helping clients navigate the intricacies of digital forensics. What You’ll Do: - Preserve and analyze digital evidence—from computers and mobile devices to GPS and cell tower data. - Provide Expert Consulting - processing and interpreting forensic data to support legal strategies. - Collaborate with legal and insurance professionals - to deliver clear, actionable insights in critical cases. PRIMARY JOB RESPONSIBILITIES: - Conducts digital forensic examinations of digital media from a variety of sources. - Performs onsite data collections of digital media and collects relevant technical and non-technical information handling evidence, media collections and preservations, and appropriate chain of custody.  - Maintains established relationships with current clients and consultants and assists with marketing of services. - Utilizes industry accepted forensic tools such as EnCase, FTK, Blacklight, Celebrite UFED, and more. - Stays abreast of office and company policies, procedures, and practices; participates in ongoing training and development as assigned or approved to assure knowledge and skills remain current and comprehensive. Required Skills/Abilities/Experience: - 3+ years of experience in Digital Forensics - Sound written and oral communication skills, problem-solving, influencing, and critical thinking skills. - Strives to ensure high levels of internal and external customer service. - Must be willing and able to handle cases involving both civil and criminal matters, on either side of the case. - Experience with one or more digital forensic tools such as, Encase, FTK, Cellebrite, Magnet Axiom or Graykey and other tools - Practical experience in digital forensic examinations in the context of litigation matters. - The ability to travel +/-20% at short notice. Preferred Skills/Abilities/Experience: - Certifications from Cellebrite, Magnet, IACIS, Sans or other digital forensic training providers. - Confidence/charisma for public speaking engagements to small and large groups. Education: - A bachelor’s degree in Computer Science, Digital Forensics or a related field is preferred. However, we welcome candidates with equivalent professional experience or a combination of education and experience that demonstrates the ability to perform the role effectively. One Company/One Team is not just one of our 5 Guiding Principles, it’s we how separate ourselves from our competitors. We learn together, we win together and through our team members voices, we bring certainty to an uncertain world. At Envista Forensics, we recognize that our potential team members come with a wealth of experience and talent beyond just the technical requirements of a role. We strive to reflect the communities and clients we serve to drive innovation, excellence, and meaningful work—We want you to bring your authentic self to Envista. If your experience is close to what you see listed here, please still consider applying. Please let us know if you require reasonable accommodations during the interview process. ​ Envista Forensics embraces diversity and is proud to be an equal opportunity employer. We are committed to building a team that represents a variety of backgrounds and perspectives Envista Forensics believes that Veterans arrive with not only translatable skills and technical expertise but in addition come with the intangibles; leadership and values that we believe align with our 5 Guiding Principles. Simply put, these qualities enable our success, so we encourage all Guardsmen, Reservists, and Veterans to consider Envista as their next career destination.

United States
Job Closed