Elegant Enterprise-Wide Solutions, Inc. · 7 hours ago
Information Security Analyst
Elegant Enterprise-Wide Solutions, Inc. is seeking an Information Security Analyst to ensure compliance with security frameworks and regulations. The role involves monitoring compliance, performing risk assessments, and collaborating with various teams to uphold security standards.
Responsibilities
Monitor and assess compliance with applicable security frameworks (e.g., NIST 800- 53, CMS ARC-AMPE, IRS Pub 1075, HIPAA)
Perform risk assessments, security control evaluations, and compliance gap analyses
Track regulatory changes and ensure security practices remain up to date with evolving requirements
Collaborate with IT, Security, and business units to ensure compliance obligations are met
Review and provide best practice feedback on vendor and third-party compliance documents (SOC reports, security attestations, penetration test results, etc.)
Support audit activities by preparing documentation, evidence, and reports for internal and external assessors
Document and track corrective actions and risk mitigation efforts
Maintain security documentation such as System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), and related compliance artifacts
Draft, review, evaluate, and provide security best practice feedback on documentation, solution designs, processes, risks, issues, and other items as requested
Qualification
Required
Monitor and assess compliance with applicable security frameworks (e.g., NIST 800-53, CMS ARC-AMPE, IRS Pub 1075, HIPAA)
Perform risk assessments, security control evaluations, and compliance gap analyses
Track regulatory changes and ensure security practices remain up to date with evolving requirements
Collaborate with IT, Security, and business units to ensure compliance obligations are met
Review and provide best practice feedback on vendor and third-party compliance documents (SOC reports, security attestations, penetration test results, etc.)
Support audit activities by preparing documentation, evidence, and reports for internal and external assessors
Document and track corrective actions and risk mitigation efforts
Maintain security documentation such as System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), and related compliance artifacts
Draft, review, evaluate, and provide security best practice feedback on documentation, solution designs, processes, risks, issues, and other items as requested
Experience working within a Security Framework such as NIST, CMS ARC-AMPE, and IRS Publication 1075
Experience working within at least two Security Domains
Security and Risk Management
Security Architecture and Engineering
Communications and Network Security
Security Assessment and Testing
Security Operations
Excellent oral and written communication skills
Ability to work within a team
Ability to meet shifting deadlines
Ability to work within a set budget
Annual Cyber Security
CJIS
HIPAA
PMP Certification
IIBA Certification
Prosci Certification
Other: Annual State Compliance Training
Company
Elegant Enterprise-Wide Solutions, Inc.
Elegant Enterprise-Wide Solutions, Inc is a disruptively innovative Government-focused IT professional service provider and high end specialized consultancy with decades of practical experience assessing, planning, educating, implementing, integrating, managing and improving Information Technology enterprise solutions within large, complex, global, environments including State, local , Federal Civilian, Defense, and Intelligence communities.
H1B Sponsorship
Elegant Enterprise-Wide Solutions, Inc. has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2021 (2)
2020 (2)
Funding
Current Stage
Growth StageCompany data provided by crunchbase