GovCIO · 2 days ago
Senior Information Security Analyst
GovCIO is currently hiring for a Senior Information Security Analyst to lead efforts in STIG compliance, system hardening, and vulnerability remediation for a mission-critical U.S. Coast Guard program. This role involves leading remediation efforts, validating compliance, and supporting the continuous improvement of security posture.
ConsultingIT InfrastructureIT ManagementManagement Consulting
Responsibilities
Lead remediation of legacy STIG and vulnerability findings across all Areas of Responsibility (AOR)
Review vulnerability data, prioritize remediation efforts based on risk, and coordinate with system administrators for focused resolution of backlog vulnerabilities
Validate all remediation activities to ensure compliance with applicable standards and security policies
Collaborate with ISSOs to resolve data inconsistencies and meet ATO deadlines for system boundaries
Document all remediation processes and outcomes to establish repeatable procedures and maintain compliance
Support continuous improvement of security posture through proactive identification and mitigation of vulnerabilities
Qualification
Required
Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field with 8+ years (or commensurate expertise)
Clearance: Active Secret clearance
Certifications: DoD 8570 IAT Level II (e.g., Security+ CE, CySA+)
STIG Expertise: Advanced hands-on experience with STIG configuration and remediation for Windows and Linux servers
Security Leadership: Proven ability to lead security initiatives and coordinate cross-functional teams
Risk Management: Strong understanding of vulnerability management, risk assessment, and prioritization strategies
Compliance: Deep knowledge of DoD RMF, NIST frameworks, and other security standards
Documentation: Ability to produce detailed, clear documentation for technical and executive audiences
Preferred
Experience supporting DoD or U.S. Coast Guard environments
Scripting & Automation: Proficiency in PowerShell, Python, or similar scripting languages for automation of security tasks
Cloud Security: Experience with AWS, Azure, or other cloud platforms in secure environments
Database Security: Familiarity with Oracle or SQL Server hardening and vulnerability remediation
Certifications: CISSP or equivalent preferred
DevSecOps: Understanding of CI/CD pipelines and integration of security controls in DevOps environments
Benefits
Employee Assistance Program (EAP)
Corporate Discounts
Learning & Development platform, to include certification preparation content
Training, Education and Certification Assistance*
Referral Bonus Program
Internal Mobility Program
Pet Insurance
Flexible Work Environment
Company
GovCIO
GovCIO is a business consulting firm that focuses on cyber security, digital, data, management and mission services, and IT services.
Funding
Current Stage
Late StageLeadership Team
Recent News
Washington Technology
2026-01-14
2026-01-14
Washington Technology
2025-11-26
Company data provided by crunchbase