What are the responsibilities and job description for the Security Analyst position at Actify Systems LLC?
Position: Security Analyst with NIST
Location: Madison, WI / 100% Remote// But work must be performed from within Wisconsin
Duration: 3 months - likely will be extended for 2 Years
REQUIRED SKILLS: (Need Majority; 5 Years)
NIST 800-53 Framework (3-4 years)
Experience in standard audit procedures, including preparing an audit guide and identifying the steps taken in conducting the audit. (3-4 years)
Knowledge of/experience with information technology controls. (3-4 years)
DESCRIPTION OF ROLE:
- The Division of Enterprise Technology (DET) manages the state's information technology (IT) assets and uses technology to improve government efficiency and service delivery. DET administers enterprise solutions and consults on technology services for state agencies, local government and educational systems.
- Under the general supervision of the Security Audit and Compliance Section Chief / Deputy CISO, this position provides technical guidance, special analyses, and consulting services on the operations and adequacy of security controls and compliance with federal and state regulations (e.g., CJIS, FERPA, FTI, HIPAA, PCI, SSA). This position is responsible for:
- Reporting on whether electronic information systems operated and used by the DET are effectively managed and controlled.
- Assess whether the application and general computer controls are adequate and functioning as intended, especially in terms of privacy and security.
- Recommending and, as appropriate, assisting in documenting improvements to existing or design-stage information systems to increase efficiency or adequacy of controls.
- Evaluating the adequacy of policies and procedures related to the effective operation and control of the information systems.
- Facilitating the development of responses to external audit findings and resolving IT policy and procedural issues.
- Ensuring compliance with regulatory and other industry standards for infrastructure services provided by DET.
- This position requires 4-7 years of experience, familiarity with standard security concepts, practices, and procedures, and a certain degree of creativity and latitude. Strong communication skills, excellent customer service, and the ability to work with cross-functional teams are essential.
Other skills that might be valuable to the role:
- Considerable knowledge and skill in standard audit procedures, including preparing an audit guide and identifying the steps taken in conducting the audit
- Considerable knowledge of information technology controls
- Considerable knowledge of regulatory compliance requirements and assessment processes
- Considerable knowledge of security concepts, risk management, and investigation techniques
- Considerable skill in writing technical, management, and analysis reports and papers
- Considerable skill and experience in IT systems, software, and web-based applications
- Knowledge of practices of the Information Systems Audit and Control Association or any other applicable background for the audit of information systems
- Ability to deliver quality service and maintain positive working relationships with customers
- Ability to function as a team member, including the open sharing of information and willingness to help wherever needed
- Ability to communicate clearly and effectively to both technical peers and less technical customers in person and in writing
- Ability to learn quickly, synthesize complex information, identify key points, and communicate results accurately and effectively
- Knowledge of and ability to apply IT service-delivery management best practices and procedures
- Equipment:
- Not explicitly stated. (Assumed: Standard state-issued or remote-capable setup; if needed, candidate should confirm specifics.)
Job Type: Contract
Pay: $40.00 - $42.00 per hour
Schedule:
- 8 hour shift
Experience:
- NIST: 4 years (Preferred)
- Security analysis: 5 years (Preferred)
- Security Audit and Compliance: 4 years (Preferred)
- regulatory compliance: 3 years (Preferred)
- risk management: 3 years (Preferred)
Work Location: In person
Salary : $40 - $42