Job Description
Description
SAIC is looking for an Information Systems Security Analyst to join our team supporting an important US government agency in the National Capital Region. This is an exciting opportunity to work with a team responsible for IT Security Risk and Compliance support by providing direct support to the Information System Security and Privacy Officer (ISSPO) in managing and documenting the ongoing security posture of the agency. The Information Systems Security Analyst will support IT management with control assessment, development, and maintenance, and risk assessment and response development. Specifically, this job requires the following:
· Develop and maintain IT security controls per NIST SP 800-53 and Agency Security Policy standards.
· Collect and validate control implementation statements from subject matter experts.
· Consult with experts to ensure work instructions align with agency security standards.
· Conduct risk assessments for security issues and propose resolutions.
· Document and communicate control deficiencies for POA&M consideration.
· Support Continuous Security Monitoring for compliance with agency Security Policy
· Assist in developing security policies, ensuring compliance, and updating documentation.
· Conduct security reviews for changes impacting hardware, software, baselines, connections, or applications.
· Review and assess POA&M outputs, recommending additional work or closure.
· Support IT Governance, Risk, and Compliance activities, including standards management.
· Provide information for status reports, briefings, schedules, and project plans in written and oral form.
Qualifications
EDUCATION & EXPERIENCE:
· Undergraduate degree with five years or Graduate degree with three years IT control or IT security experience in a technical environment with a variety of IT systems.
· One or more current Security certifications (CISSP, CISM, Security+).
REQUIRED SKILLS:
· Experience with NIST Risk Management and Cybersecurity Framework, FISMA, NIST 800-53, and IT control processes.
· Familiarity with GRC frameworks/tools (RSAM, CSAM) and SA&A tools (Xacta).
· Knowledge of cyber-attack patterns, Tactics, Techniques, and Procedures.
· Ability to adapt security processes/tools to evolving landscapes and risk scenarios.
· Understanding of PKI, encryption, hashing techniques, and OMB circulars A-123, A-130.
· Fluency in spoken/written English for technical content, with strong communication skills.
· High-quality deliverables with minimal edits, quick review, and feedback on federal security doctrine.
· Thrives in a fast-paced environment, outstanding customer service skills.
· Document processes, explain complex policies in simple terms.
· Stays updated on IT trends, security standards, excellent analytical thinking, and problem-solving skills.
Candidates for consideration must be eligible to obtain and maintain a Public Trust clearance.
DESIRED SKILLS: A solid understanding of IT security controls, tools, and concepts. Experience working in a technical environment with IT platforms such as Microsoft Office 365, Azure, Cisco, Oracle, etc. is also desired.
Covid Policy: SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site.
Overview
SAIC® is a premier Fortune 500® technology integrator driving our nation's technology transformation. Our robust portfolio of offerings across the defense, space, civilian, and intelligence markets includes secure high-end solutions in engineering, digital, artificial intelligence and mission solutions. Using our expertise and understanding of existing and emerging technologies, we integrate the best components from our own portfolio and our partner ecosystem to deliver innovative, effective and efficient solutions that are critical to achieving our customers' missions.
We are approximately 24,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer, fostering a culture of diversity, equity, and inclusion, which is core to our values and important to attract and retain exceptional talent. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.9 billion. For more information, visit saic.com. For ongoing news, please visit our newsroom.