Senior Information Security Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

GovCIO · 2 days ago

Senior Information Security Analyst

GovCIO is currently hiring for a Senior Information Security Analyst to lead efforts in STIG compliance, system hardening, and vulnerability remediation for a mission-critical U.S. Coast Guard program. This role involves leading remediation efforts, validating compliance, and supporting the continuous improvement of security posture.

ConsultingIT InfrastructureIT ManagementManagement Consulting
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Lead remediation of legacy STIG and vulnerability findings across all Areas of Responsibility (AOR)
Review vulnerability data, prioritize remediation efforts based on risk, and coordinate with system administrators for focused resolution of backlog vulnerabilities
Validate all remediation activities to ensure compliance with applicable standards and security policies
Collaborate with ISSOs to resolve data inconsistencies and meet ATO deadlines for system boundaries
Document all remediation processes and outcomes to establish repeatable procedures and maintain compliance
Support continuous improvement of security posture through proactive identification and mitigation of vulnerabilities

Qualification

DoD 8570 IAT Level IISTIG configurationVulnerability managementDoD RMF knowledgePowerShellPythonCloud SecurityDatabase SecurityCISSP certificationDocumentation skillsDevSecOps understandingSecurity LeadershipRisk Assessment

Required

Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or related field with 8+ years (or commensurate expertise)
Clearance: Active Secret clearance
Certifications: DoD 8570 IAT Level II (e.g., Security+ CE, CySA+)
STIG Expertise: Advanced hands-on experience with STIG configuration and remediation for Windows and Linux servers
Security Leadership: Proven ability to lead security initiatives and coordinate cross-functional teams
Risk Management: Strong understanding of vulnerability management, risk assessment, and prioritization strategies
Compliance: Deep knowledge of DoD RMF, NIST frameworks, and other security standards
Documentation: Ability to produce detailed, clear documentation for technical and executive audiences

Preferred

Experience supporting DoD or U.S. Coast Guard environments
Scripting & Automation: Proficiency in PowerShell, Python, or similar scripting languages for automation of security tasks
Cloud Security: Experience with AWS, Azure, or other cloud platforms in secure environments
Database Security: Familiarity with Oracle or SQL Server hardening and vulnerability remediation
Certifications: CISSP or equivalent preferred
DevSecOps: Understanding of CI/CD pipelines and integration of security controls in DevOps environments

Benefits

Employee Assistance Program (EAP)
Corporate Discounts
Learning & Development platform, to include certification preparation content
Training, Education and Certification Assistance*
Referral Bonus Program
Internal Mobility Program
Pet Insurance
Flexible Work Environment

Company

GovCIO

twittertwittertwitter
company-logo
GovCIO is a business consulting firm that focuses on cyber security, digital, data, management and mission services, and IT services.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Lynn Oakes
Sr. Vice President, Contracts at GovCIO
linkedin
leader-logo
Andre Green
Vice President Special Operations Support Solutions (SOSS) GOVCIO
linkedin
Company data provided by crunchbase