Job Closed
This listing is no longer active.
GovCIO is a service-disabled-veteran-owned small business (SDVOSB) that offers technology services to improve business performance for government organizations.
Senior Information Security Analyst
Location
United States
Posted
60 days ago
Salary
$115K / year
Seniority
Senior
Job Description
Senior Information Security Analyst
GovCIO
Role Description GovCIO is currently hiring for Senior Information Security Analyst with an active Secret clearance to plan and coordinate IT security programs and policies. This position will be located in Arlington, VA and will be a fully remote position. - Plan and coordinate IT security programs and policies. - Manage and control changes to systems, assessing the security impact of related changes. - Provide security testing for code changes/development, and prepare/review documentation to include: - System Security Plans (SSPs) - Risk Assessment Reports - Certification and Accreditation (C&A) packages - System Requirements Traceability Matrices (SRTMs) - Provide Subject Matter Expertise (SME) for disaster recovery (DR) contingency plans (ISCP). - Write expert IT Security evaluations of audits findings. - Assist with creating, updating and closing all Plans of Action and Milestones (POAMs). - Develop security guidelines and processes for new and existing networks as needed. - Provide IT Security analysis by reviewing all System Change Requests (SCR). - Review vulnerability scan reports and work with technical SMEs to develop and track plans to remediate findings. Qualifications - Bachelor's with 5 - 8 years system security (or commensurate experience) Requirements - Clearance Required: Active Secret with the ability to obtain and hold DEA suitability Benefits - Posted Salary Range: USD $115,000.00 - USD $115,000.00 /Yr.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Information Governance Analyst
National Cooperative Bank - NCBNational Cooperative Bank (NCB) is a mission-driven financial institution dedicated to serving cooperatives, member-owned organizations, socially responsible en
Title: Information Governance Analyst Location: Arlington, Virginia, 22932, United States Department: Information Technology Job Category: Information Technology Requisition Number: INFOR001511 Job Description: Information Governance Analyst VA Office Role Description Summary: The Enterprise Content Management (ECM) Information Governance Analyst supports the ECM Information Governance Lead in managing the ECM system and ensuring regulatory compliance and proper records governance. This role assists with content stewardship, maintaining high-quality metadata and aligning the ECM platform with business processes. The Analyst will have exposure to information governance frameworks, records management policies, and business process enablement, while developing foundational skills in ECM operations and compliance. Role Responsibilities: Information Governance Support - Assist in maintaining ECM governance documentation, policies, and procedures - Help monitor metadata quality and document classification, escalating issues to the Lead - Support alignment with regulatory requirements (FFIEC, state/federal laws, privacy, legal hold) under Lead’s guidance - Collaborate with business units to validate metadata and template usage Business Process Enablement - Support onboarding of new business processes, repositories, and workflows into the ECM platform - Help ensure standardized use of templates, metadata, and naming conventions - Assist in translating business requirements into ECM documentation and specifications Risk, Audit & Regulatory Support - Assist with audit, exam, and risk assessment activities related to ECM usage - Help track and document governance findings, issues, and remediation actions - Support validation of retention schedules, privacy requirements, and access models Training & Adoption - Assist in delivering training sessions on ECM use and governance expectations - Guide users to documentation and training to promote self-serve capabilities Metrics & Value Management - Help collect data for ECM governance KPIs, including metadata compliance and adoption rates Minimum Qualifications: - 2+ years of experience in information governance, records management, data stewardship, or business analysis. - Experience using or managing ECM platforms (e.g., Laserfiche) and Microsoft Office applications. - Understanding of information lifecycle, metadata, and records management concepts. - Strong attention to detail, willingness to learn, and ability to follow established procedures. - Good communication and documentation skills. - Ability to work collaboratively and take direction from senior team members. Education: - Bachelor’s Degree in the field of business, information sciences, information systems, or comparable field of study and/or related experience is required. Work Environment: Hybrid – Employees will work from both remote and onsite locations. Employees must live within a reasonable commuting distance of the office and are required to be onsite at least two (2) days per week, specifically on Tuesdays and Wednesdays. Certain positions or business needs may require additional in-office days.
Role Description This is your opportunity to step into cyber security and build real, hands-on experience in a high-performing environment. As a Junior Security Analyst, you’ll support the implementation and monitoring of security controls across customer and internal environments. You’ll be part of a team that takes security seriously—learning, contributing, and building the foundations of a strong cyber career. This role is perfect for someone early in their career who wants exposure to real incidents, real systems, and real outcomes. What you’ll be doing - Monitor security alerts, incident queues, and escalate where needed - Assist in investigating security incidents and suspected threats - Support vulnerability assessments and basic security reviews - Review access controls and permissions against policy - Contribute to risk identification and mitigation activities - Apply and maintain security controls aligned to policy and ISMS - Research emerging threats and recommend improvements - Work closely with senior analysts to build capability and confidence Qualifications - Exposure to IT or cyber security (study, certs, or hands-on experience) - Willingness to obtain Microsoft certifications such as AZ-900 or SC-200 - Relevant tertiary qualification or equivalent practical experience Requirements - Australian Citizenship - Ability to obtain or hold a NV1 Security Clearance - Willingness to undergo a National Police Check Benefits - Work with a fast-growing organisation where your ideas can genuinely influence direction and outcomes - Be part of a high-performing team that values collaboration, ownership and innovation - Exposure to exciting customers and complex projects across government and enterprise sectors - Opportunities to learn, grow and build your career alongside experienced industry leaders - Flexible and modern ways of working focused on outcomes, trust and accountability - Access to leading technologies across cloud, cyber, infrastructure and digital transformation - Join a business where culture matters and people are encouraged to challenge thinking and continuously improve
Role Description The SAP Security Analyst II is responsible for designing, supporting and continually enhancing security across McCormick’s global SAP landscape (e.g. S/4HANA, Fiori, ECC, BW, GRC etc.) as well as integrated SAP and cloud-based applications (e.g., IBP, SAC, Ariba, etc.). This position requires a strong understanding of SAP security concepts, role design, and authorization management, as well as the ability to work directly with business and IT stakeholders to gather, analyze, and translate security requirements into effective technical solutions. The incumbent will take ownership of self-directed security projects, drive continuous improvements and provide advanced support for complex security issues. This role will also contribute to the design and implementation of security strategies that align with enterprise policies, compliance requirements, and audit standards as established by the Director of Information Systems Security. The SAP Security Analyst II must demonstrate strong communication and collaboration skills, proactively partnering with business process owners, functional teams, and technical experts to ensure secure and efficient system access that supports business operations and transformation initiatives. Key Responsibilities - Lead the analysis and resolution of complex security issues involving SAP related applications, ensuring timely, compliant solutions that maintain system integrity and user productivity. - Manage and execute SAP security deliverables for projects and system enhancements, ensuring role design, testing, and implementation activities meet business requirements, compliance standards, and project timelines. - Partner with business process owners, functional teams, and technical leads to gather, analyze, and document security requirements for new functionality and system changes. Provide expert guidance on secure design principles, risk mitigation, and alignment with enterprise security architecture. - Provide advanced technical expertise in SAP authorization concepts, including role and profile creation, segregation of duties (SoD) analysis, and risk mitigation. Lead the design and maintenance of complex roles supporting cross-functional and global business processes. - Execute and monitor SOX and internal audit compliance activities, including user access reviews, sensitive access monitoring, and remediation of findings to ensure sustained control effectiveness. - Contribute to the development and implementation of SAP security policies, standards, and procedures, ensuring alignment with corporate information security objectives and regulatory requirements. - Mentor junior security analysts and specialists, providing technical guidance, reviewing deliverables for quality and consistency, and fostering continuous improvement within the SAP Security team. Qualifications - Bachelor's Degree in Computer Science / Management Information Systems preferred. May consider 8 years of relevant experience in lieu of degree. - 6+ years of experience in IT, with exposure to business process design, systems analysis and application support. - 4+ years focused on SAP Security and user access management across multiple modules and environments (e.g. ECC, S/4HANA, Fiori, BW). - Demonstrates a solid understanding of end-to-end business processes, their interdependencies, and role-based access requirements. - Experience working in a manufacturing or global enterprise environment with ERP systems, applying security best practices to balance compliance, usability, and operational efficiency. - Advanced or fluent English (spoken and written). - Ability to work effectively as part of a team and develop effective working relationships. - Demonstrated organizational, verbal and written communication skills. - Easily interacts with peers, manager and business partners. - Performs role in a professional manner with the ability to develop effective working relationships. - Strong analytical and organizational skills with the ability to adapt quickly to evolving security requirements and shifting project priorities. - Sound judgment and critical thinking skills to assess last-minute changes, ensuring security controls remain compliant while enabling projects to progress efficiently. - Maintains a proactive and solution-oriented mindset that balances risk management with business agility. Benefits - Competitive compensation - Career growth opportunities - Flexibility and Support for Diverse Life Stages and Choices - We prioritize our communities and the planet we share - Wellbeing programs including Physical, Mental and Financial wellness Company Description McCormick is a leader in herbs, spices, seasonings, and condiments, with a global workforce of 14,000 employees who contribute to making it a great place to work.
Cybersecurity Analyst
Sentara HealthcareFounded in 1888 as a 25-bed Retreat for the Sick, Sentara Healthcare is now the largest integrated health care provider in Virginia and northeastern North Carol
Title: Cybersecurity Analyst - Remote Location: Myrtle Point United States Job Description: Full time job requisition id JR-99241 City/State Norfolk, VA Work Shift First (Days) Overview: Sentara is hiring for a Cybersecurity Analyst! This position is fully remote! Overview Responsible for day-to-day support and optimization of software applications, including builds, upgrades, and system enhancements. Analyzes business / clinical needs, evaluate software releases and/or new products, and gives recommendations to optimize processes and decrease expenses. Possesses in-depth business / clinical and application knowledge and experience. Performs and documents workflow assessments to determine functional requirements for optimal utilization of applications. Develops system test plans and performs testing of software upgrades and patches. Maintains a record of test progress and test results. Responsible for problem, incident, and change management and service requests. Provides daily on-call support to the customer base for application-related issues. Works within a cross-functional team and with end-users to achieve application integration to meet business / clinical needs. Responsible for the communication of software issues, requirements, upgrades, and enhancements. Oversees smaller-sized projects or components of projects. Coordinates implementation or project planning around software application releases. Possesses a key certification(s) or other credential(s) which is determined central to the systems or applications supported. An Experienced Professional applies practical knowledge of job areas typically obtained through advanced education and work experience. Responsibilities typically include: • Works independently with general supervision. • Problems faced are difficult but typically not complex. • May influence others within the job area through explanation of facts, policies, and practices. Position Summary: Our Cybersecurity Analyst role specializes in incident response, Endpoint Detection & Response (EDR), and Security Information and Event Management (SIEM). In this critical role, you will help protect sensitive patient and organizational data by proactively detecting, analyzing, and responding to cybersecurity threats, while ensuring compliance with HIPAA and other healthcare regulations. This position requires participation in a 24/7 on-call rotation to respond promptly to security incidents. Key Responsibilities: - Monitor all platforms for security incidents - Lead and support incident response efforts—from identification and analysis to containment, eradication, and recovery—with a focus on safeguarding Protected Health Information (PHI) and ensuring minimal impact to patient care. - Analyze logs, forensic data, and network traffic across a complex healthcare IT environment - Help to develop and tune SIEM correlation rules and alerting to detect threats. - Serve as part of a 24/7 on-call rotation, responding rapidly to incidents and escalations as they arise, including after-hours and weekends. - Ensure incident handling aligns with HIPAA and other relevant regulations; participate in incident debriefs and continuous improvement initiatives. - Collaborate with clinical, IT, compliance, and third-party vendors to assess risk and remediate vulnerabilities across critical systems and devices. - Document incident response actions in detail, maintaining records for legal, compliance, and audit purposes. - Participate in healthcare-specific threat hunting, vulnerability assessments, and security exercises to strengthen organizational resilience. - Maintain current knowledge of emerging cyber threats, vulnerabilities, and regulatory changes that could impact healthcare operations. Required Skills and Qualifications: - Bachelor’s degree in Cybersecurity, Computer Science, IT, or a related field; or equivalent experience. - 3+ years of experience in a SOC, incident response, or health IT cybersecurity role. - Proven experience with EDR tools and SIEM solutions, with preference for healthcare environments. - Familiarity with HIPAA and healthcare risk management practices. - Strong communication, teamwork, and documentation skills; able to communicate effectively with technical and clinical stakeholders. - Availability to participate in a 24/7 on-call rotation and respond to security incidents outside of standard business hours. Minimum Education Qualifications - 3 years of relevant experience with a degree (Required) or - 5+ years of relevant experience without a degree (Required) - Experience in lieu of Bachelor’s Degree Certification/Licensure - Relevant certifications (CISSP, CEH) are preferred. Minimum Experience Qualifications - 3 to 5+ years of relevant experience We provide market-competitive compensation packages, inclusive of base pay, incentives, and benefits. The base pay rate for Full Time employment is: $80,204.80 - $133,681.60. Additional compensation may be available for this role such as shift differentials, standby/on-call, overtime, premiums, extra shift incentives, or bonus opportunities. Talroo-IT, #LI-DS1, #Indeed, #Dice, #Monster Keywords: Incident response (SOC), end point detection (EDR), cybersecurity analyst, SIEM, CISSP, CEH Benefits: Caring For Your Family and Your Career • Medical, Dental, Vision plans • Adoption, Fertility and Surrogacy Reimbursement up to $10,000 • Paid Time Off and Sick Leave • Paid Parental & Family Caregiver Leave • Emergency Backup Care • Long-Term, Short-Term Disability, and Critical Illness plans • Life Insurance • 401k/403B with Employer Match • Tuition Assistance – $5,250/year and discounted educational opportunities through Guild Education • Student Debt Pay Down – $10,000 • Reimbursement for certifications and free access to complete CEUs and professional development •Pet Insurance •Legal Resources Plan •Colleagues have the opportunity to earn an annual discretionary bonus if established system and employee eligibility criteria is met. Sentara Health is an equal opportunity employer and prides itself on the diversity and inclusiveness of its close to an almost 30,000-member workforce. Diversity, inclusion, and belonging is a guiding principle of the organization to ensure its workforce reflects the communities it serves. In support of our mission “to improve health every day,” this is a tobacco-free environment. For positions that are available as remote work, Sentara Health employs associates in the following states: Alabama, Delaware, Florida, Georgia, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, North Carolina, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Virginia, Washington, West Virginia, Wisconsin, and Wyoming.


