Security Compliance Analyst
Type of Requisition:
Regular
Clearance Level Must Currently Possess:
None
Clearance Level Must Be Able to Obtain:
None Public Trust/Other Required:
None
Job Family:
Cyber and IT Risk Management Job Qualifications:
Skills:
Cyber Risks, Security Compliance, Vulnerability Assessments, Vulnerability Management Certifications:
None Experience:
5 + years of related experience US Citizenship Required:
No
Job Description:
Seize your opportunity to make a personal impact supporting the Case Management Modernization (CMM) Program. The CMM program is an initiative to support the Administrative Office of the US Courts (AO) in developing a modern cloud-based solution to support all 204+ federal courts across the United States.
GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career. The Security & Compliance Analyst will work as part of the CMM Data Modernization and Governance team responsible for delivering an integrated data governance, engineering, data platform, reporting, analytics, and Artificial Intelligence (AI)/Machine Learning (ML) capabilities that support operational decision-making and fulfill AO's data and analytics objectives in support of the CMM program.
To protect the CMM program's operational environment, GDIT mandates 24/7 supplemental monitoring, rapid escalation within 30 minutes for critical, service-impacting issues, and monthly incident/problem reporting. Security analysts embedded here ensure operations remain compliant and responsive during and after releases.
The Security & Compliance Analyst defines data privacy, security, retention, and classification rules, and manages data classification, sensitive data governance, and data sharing agreements across the program.
The Security & Compliance Analyst will execute the following responsibilities:
- Support analysis of systems, programs, and/or planning activities across the CMM operational environment.
- Perform research in support of policies, procedures, and other technical documentation, and support analysis of IA/Cyber-related programs and initiatives.
- Research and analyze options to develop relationships and solutions that resolve problems within the specialty area.
- Analyze information assurance-related technical problems and provide engineering and technical support in solving them.
- Design, develop, engineer, and implement solutions that meet network security requirements.
- Perform vulnerability and risk analyses of computer systems and applications during all phases of the system development life cycle.
- Establish and satisfy complex system-wide information security requirements based on the analysis of user, policy, regulatory, and resource demands.
- Support customers in the development and implementation of security policies.
- Provide 24/7 supplemental monitoring of the operational environment and escalate critical, service-impacting issues within 30 minutes.
- Prepare monthly incident and problem management reports, ensuring operations remain compliant and responsive during and after releases.
- Define data privacy, security, retention, and classification rules; manage data classification, sensitive data governance, and data sharing agreements.
- Support Authority to Operate (ATO) documentation and gather supporting artifacts for ATO packages.
- Monitor performance scans and system logs, analyzing and reporting vulnerabilities.
- Investigate and analyze security issues and incidents, leveraging SIEM tools for monitoring and log analysis.
- Maintain awareness of emerging security threats and modern attack methods to inform monitoring and response activities.
QUALIFICATIONS
- BS/BA degree with 5+ years of experience of general experience in information systems providing enterprise cybersecurity through policy, architecture, and training processes.
- Experience developing plans to safeguard sensitive data against accidental or unauthorized modification, destruction, o
This role requires you to be in the United States. If that means relocating or flying in, it is worth checking fares before you commit to a start date.
Compare flights and hotels →Get remote jobs like this by email
10 hand-picked jobs, one email a day. No spam, unsubscribe anytime.
Similar for you
Get 10 hand-picked remote jobs like this one in your inbox every morning. One email a day, matched to what you browse. No spam, one-click unsubscribe.
No thanks — continue to the application ↗