- Company Name
- IMCS Group
- Job Title
- Information Security Analyst
- Job Description
-
Job Title: Information Security Analyst
Role Summary: Safeguard organizational information assets and ensure compliance with federal and agency security requirements. Monitor, detect, analyze, and respond to security threats while managing vulnerabilities, maintaining documentation, and supporting audit readiness.
Expactations: Protect systems handling Controlled Unclassified Information (CUI), comply with NIST, FISMA, IRS Pub 1075, CMS, and SSA standards. Provide actionable insights to leadership through reporting and coordinate cross-functional incident response.
Key Responsibilities:
- Monitor enterprise systems using CrowdStrike, Splunk, and Tenable for threat detection and incident response.
- Conduct vulnerability assessments, track remediation, and validate closure of findings.
- Maintain System Security Plans (SSPs) and prepare documentation for audits (IRS, CMS, SSA, NIST).
- Lead incident triage, analysis, and remediation efforts with IT/business stakeholders.
- Design and deliver security awareness programs focused on CUI handling, phishing, and insider risk mitigation.
- Generate leadership reports on risk posture, incident trends, and compliance status using Splunk and Tenable.
Required Skills:
- Hands-on experience with Splunk, CrowdStrike Falcon, Tenable Nessus/Tenable.sc.
- Strong understanding of CUI protection and compliance frameworks (NIST, FISMA, IRS Pub 1075, CMS, SSA).
- Demonstrated proficiency in incident response, vulnerability management, and risk assessment.
- Analytical, documentation, and communication skills.
Required Education & Certifications:
- Bachelor’s degree in information security, cybersecurity, IT, or related field (or 1 year of equivalent experience).
- Professional certifications (CompTIA Security+, CySA+, CISSP, CISM, GIAC) preferred (upload if held).
- Experience managing System Security Plans and audit readiness highly desired.