C-HIT logo
C-HIT

C-HIT, a CMMI Maturity Level 5 company, focuses on delivering information technology and professional services to Federal and State agencies. "C-HIT is an EOE, including disability and veterans.”

Information Security Analyst 3

Location

United States

Posted

1 day ago

Salary

0

Seniority

Mid Level

No structured requirement data.

Job Description

Information Security Analyst 3

C-HIT

Role Description The Information Security Officer (ISO) will work closely with Project and Technical management to plan, design and implement Dynamic Application Security Testing (DAST) and/or Static Application Security Testing (SAST) security methodologies into the technical solution of a program within the Centers for Medicare and Medicaid Services (CMS). The ISO will be responsible for assuring all CMS security and privacy considerations and requirements are assessed, addressed and documented for the given application, designing the solution so that it passes the required Annual Security Assessment Testing (within CMS referred to ACT or Adaptive Capabilities Testing) and maintains the system Authority to Operate (ATO). - Promote a professional work ethic with the ability to meet commitments, scheduled timelines and take ownership of problems. - Lead, support and document all security incident response activities. - Perform annual security assessment audits (such as ACT, PenTest, etc.). - Perform Web Application Penetration and Continuous Diagnostic Monitoring (CDM) testing. - Mitigate and/or address the security specific vulnerabilities and document via Plan of Action and Milestones (POA&M). - Support ad hoc security requests from the customer and program management. - Conduct security impact assessments for new or existing architecture changes. Qualifications - 3+ years of experience with NIST and Federal security documentation. - Active CISSP or equivalent security related certification. - Capable of obtaining Level Five: Public Trust security clearance. - Proven experience with FISCAM and FedRAMP requirements. - Experience writing and maintaining security related documents, including the System Security Plan (SSP), Contingency Plan and Test (CP), Information System Risk Assessment (ISRA), Security Assessment Plan/Report (SAP/SAR) and the Privacy Impact Assessment (PIA). - Ability to resolve complex support issues by leveraging user forums, support forums, or opening support cases with vendors and following them to closure. Strong ability to find mitigation and alternative approaches. - Knowledge of current as well as emerging security threats. - Understanding of and experience with Agile Development and DevSecOps/DevOps. - Proven experience with Cloud Technologies (AWS). - Proven experience with Microsoft Office Tools (Outlook, Word, Excel, PowerPoint). Requirements - Working experience within CMS including with CMS Information Systems Security and Privacy Policy (IS2P2), NIST 800-53, NIST 800-63, CMS Acceptable Risk Safeguards (ARS), CMS Risk Management Handbook (RMH) and CMS Federal Information Security Management Act (FISMA) Controls Tracking System (CFACTS). - Proven experience with Security tools such as Burp, SonarQube, AWS Security Tools. - Proven experience with networking concepts, such as, DHCP, DNS, VLANs, Routing and VPNs. Benefits - The actual salary offer will carefully consider a wide range of factors, including your skills, qualifications, experience, and location. - C-HIT offers Healthcare Benefits, Remote Working Options, Paid Time Off, PTO cash-out, Training/Certification opportunities, Healthcare Savings Account & Flexible Savings Account, Paid Life Insurance, Short-term & Long-term Disability, 401K Match, Employee Assistance Program, Paid Holidays, and much more perks and Voluntary benefits! - Employees of C-HIT shall, as an enduring obligation throughout their term of employment, adhere to all information security requirements as documented in company policies and procedures. Company Description C-HIT, a CMMI Maturity Level 5 company, focuses on delivering information technology and professional services to Federal and State agencies. “C-HIT is an EOE, including disability and veterans.”

Related Categories

Related Job Pages

More Analyst Jobs

Digital Media Solutions logo

Senior Revenue Analyst

Digital Media Solutions

Digital Media Solutions is a leading provider of technology-enabled digital performance advertising solutions.

Analyst1 day ago
Full TimeRemoteTeam 201-500H1B No Sponsor

• Build and maintain real-time revenue forecasting models that incorporate qualitative inputs, historical performance trends, and seasonal patterns • Align forecasting outputs with business unit targets and translate projections into actionable guidance for revenue teams • Develop and own dashboards and reports, in and out of Looker, that provide clear, objective visibility into revenue performance trends across BUs • Deliver WoW, MoM, and QoQ trend analysis that identifies key performance drivers and removes guesswork from actuals • Partner with the Data team to ensure reporting infrastructure supports RevOps analytical needs • Evaluate the revenue impact of proposed operational changes before they are implemented • Partner with business unit leaders to pressure-test revenue and GP assumptions with live data • Analyze pipeline KPIs against budget targets to identify gaps and opportunities • Proactively identify opportunities for revenue and GP growth, and flag areas of underperformance before they become problems.

Alabama + 27 moreAll locations: Alabama | Arizona | California | Colorado | Connecticut | District Of Columbia | Florida | Idaho | Illinois | Nevada | New Hampshire | New Jersey | New York | North Carolina | Ohio | Oregon | Maryland | Massachusetts | Michigan | Missouri | Pennsylvania | Rhode Island | Tennessee | Texas | Utah | Virginia | Washington | Wisconsin
$120K - $140K / year
Partner One Capital logo

QA Triage & Execution Analyst

Partner One Capital

At NetWitness, we believe in challenging the established mindsets, approaches, and product categories in the information security industry. Every product that we deliver to market is based on a core set of principles grounded in the major paradigm shifts in play and the implications that they have for our customers. Do the right thing – by our customers, employees, and shareholders...think long-term, but act with a sense of urgency. What we do matters – our work makes a difference in the world. We give a damn – about our customers, about what we’re doing, about each other...we’re in this together. We are a fun company – building cool products with technical insight that help our customers solve meaningful problems. Our mission is delighting our customers with everything we do. We provide thousands of customers around the world with essential security capabilities, leading with our Intelligence Driven Security Strategy and Vision, to protect their most valuable assets from cyber threats. With NetWitness’s award-winning products, organizations effectively detect, investigate, and respond to advanced attacks; reduce IP theft and cybercrime.

Analyst1 day ago

Role Description Owns the stability, accuracy, and signal quality of automated test execution by systematically analyzing, debugging, and resolving failing scripts across pipelines. Key Responsibilities: - Execute and monitor pipelines in Azure DevOps - Categorize failures: Test defect vs environment vs data vs code - Script-Level Debugging & Root Cause Analysis - Debug automation scripts written in: - Playwright - Selenium - Identify root causes such as: - Flaky selectors (dynamic DOM changes) - Synchronization/timing issues (wait conditions) - Assertion mismatches - Data dependency failures - Validate API failures using: - Postman - GraphQL tools - Inspect logs and telemetry (App Insights, pipeline logs) - Track trends and provide triage reporting - Strong debugging and analytical skills - Experience with logs, APIs, and UI troubleshooting - Familiarity with test automation lifecycle - Experience with observability tools (App Insights, Azure monitoring) Qualifications - Nice to Have: Mortgage/FinTech experience

Egypt
PartnerOne logo

Quality Control Analyst

PartnerOne

We are the leaders in Big Data management through hyper-automation, virtualized cloud tiering, metadata and AI

Analyst1 day ago
Full TimeRemoteTeam 201-500H1B No Sponsor

• Ensure the accuracy, completeness, and quality of mortgage-related documents • Perform comprehensive reviews of new documents and updates completed by Document Developers • Validate that all requirements have been met and deliverables adhere to established standards • Conduct independent testing, assessing customer impact, and ensuring all changes are implemented safely and accurately • Partner closely with Document Developers to identify issues, explain required corrections, and promote continuous improvement • Migrate validated work through development, staging, and production environments using proprietary tools

Egypt
Trakto logo

Customer Success Analyst – Bilingual (Mid-level)

Trakto

We are Trakto, the first online editing platform in Latin America🚀

Analyst1 day ago
Full TimeRemoteTeam 11-50Since 2013H1B No Sponsor

• Conduct onboarding and role-specific training for clients and users; • Serve clients across multiple platforms (WhatsApp, support software, email, etc.); • Manage your assigned client portfolio proactively and with personalized attention; • Develop and implement strategic planning for the routines under your responsibility; • Prepare periodic reports and performance reports; • Implement solutions and improvements; • Be prepared to handle multiple products and projects.

Brazil