Security Analyst (Senior, Expert)
Remote
Long-term Contract
Scope :
Security Analyst Resources plan, implement, upgrade, or monitor security measures for the protection of systems, networks, and information; ensures appropriate security controls are in place to safeguard digital files and vital IT infrastructure; and responds to computer security incidents and breaches. Security Analyst Resources do not access Federal Tax Information.
1. Senior Level Resource Requirements
Mandatory :
- A Bachelor's degree in Computer Science, Information Systems, Engineering, Cybersecurity, or related field.
- At least 7 years of Information Security experience in specialized roles such as penetration testing, application development, or security testing.
- 5-7 years in software development or IT security.
- 1-3 years of experience as a Cloud Security Architect or similar role.
Education substitution :
Master's degree = 1 year7 years of experience in :
Cloud computing technologies (IaaS, PaaS, SaaS).Security controls and tool design / assessment.Securing SDLC and integrating security into CI / CD pipelines.Threat modeling frameworks (e.g., STRIDE, MITRE ATT&CK).Application security testing and vulnerability management.Incident / breach investigation and response.Desired :
It's desirable for the Senior Level Resource to have :
Experience in Health Exchange environments.Certifications like Security , CISSP, etc.Object-oriented coding knowledge (e.g., Java, Python, .Net).Operational understanding of cryptography fundamentals.Familiarity with SIEM tools and emerging cybersecurity threats.Experience with :Cloudflare, Azure Sentinel, Tenable Nessus, BurpSuite, Microsoft Defender, Jira, Confluence, and other security tools.2. Expert Level Resource Requirements
Mandatory :
A Bachelor's degree in Computer Science, Information Systems, Engineering, Cybersecurity, or related field.At least 10 years of Information Security experience.7-10 years in software development or IT security.3-5 years as a Cloud Security Architect or similar role.Education substitution :
Master's degree = 1 year10 years of experience in :
Cloud computing technologies (IaaS, PaaS, SaaS).Securing SDLC, architecture, and IT operations.Threat modeling frameworks and vulnerability management.Security testing tools (e.g., DAST, SAST).Networking tools (e.g., Wireshark, tcpdump).Incident investigation and recovery planning.Desired :
It's desirable for the Expert Level Resource to have :
Certifications like Security , CISSP.Object-oriented coding knowledge (e.g., Java, Python).Familiarity with core Internet protocols and cryptography fundamentals.Experience with :Cloudflare, Azure Sentinel, Tenable Nessus, BurpSuite, Microsoft Defender, Jira, Confluence, and other security tools.