Unknown Company

Security Analyst – Consultant (Information Systems Security Officer – ISSO)

columbia, sc • Posted 6 days ago
Onsite Contract General

Security Analyst – Consultant (Information Systems Security Officer – ISSO)Position Type: Contract Duration: 12 MonthsWork Location: Columbia, SC 29201 (Onsite)Candidate must be a South Carolina resident OR relocate to SC prior to start at own expenseInterview Process:Round 1: VirtualRound 2: In-PersonRole OverviewThe Security Analyst – Consultant (ISSO) will serve as a senior cybersecurity consultant within the Client Office of Cybersecurity.

The role is responsible for leading and supporting security, risk, and compliance activities for complex information systems supporting Medicaid and other agency programs. The ISSO will ensure alignment with Federal, State, and Agency security requirements including FISMA, NIST, CMS MARS-E, and HIPAA.Key ResponsibilitiesSecurity & Compliance LeadershipLead and support FISMA / NIST RMF-compliant security programsDevelop, maintain, and review RMF artifacts including SSPs, PIAs, ISAs, CMAs, and related documentationIntegrate RMF and A&A activities into the System Development Life Cycle (SDLC)Serve as a cybersecurity advisor to agency leadership, business units, and vendorsRisk Assessment & Technical ReviewsPerform architectural and security risk reviews for systems and applicationsReview network designs, data flows, and access control modelsReview firewall rule requests (ports, protocols, services)Evaluate configuration deviation requests and vulnerability management activitiesAudit and assess internal systems and third-party/vendor security controlsAudit, Documentation & Stakeholder SupportServe as primary point of contact for third-party audits and assessmentsReview contracts, Business Associate Agreements, and data-sharing agreements for security complianceDocument findings and recommendations using Microsoft Office, Archer eGRC, Service Manager, Atlassian, Bizagi, and related toolsCollaborate across multiple teams and vendors to support agency cybersecurity initiativesRequired Skills & Experience• 5+ years of experience in IT working with and/or auditing:IBM System 390 / zSeriesWindows and Linux serversRelational and Non-Relational databasesNetworking infrastructureWeb-based applications• Prior experience working within a FISMA-compliant program• Prior experience working with eGRC systems• Strong working knowledge of FISMA, NIST, CMS MARS-E, and HIPAA Security and Privacy• Ability to work independently and collaboratively in a team environment• Strong written and verbal communication skillsRequired Certifications• ISC(2), ISACA, SANS GIAC, and/or other recognized Information Security certification (Required)Preferred Skills & Qualifications• Bachelor's degree in Computer Science, Information Security, or related field OR 10+ years of experience in the field or a related area• Prior ITIL experience in Information Security Management• Experience with SIEM, IAM, cloud security, and vendor risk management• Public sector or government experience preferredAbout UsInterSources Inc. is a Small, Woman, and Minority-Owned Business Enterprise, ISO/IEC 27001, SOC 2 Type 2 certified company with massive 18+ years of diversified experience in providing IT Consulting Services, Artificial Intelligence, Data Analysis, Application Development, Cloud Services, Cybersecurity, Digital Marketing, ERP Management, Custom Software Development, Web Development, UI/ UX Design, System Integration, QA Support etc. We make reasonable accommodations for clients and employees, and we do not discriminate based on any protected attribute including race, religion, color, national origin, gender sexual orientation, gender identity, age, or marital status. We also are a Google Cloud and Oracle partner company.

Back to Job Search