IT Security Analyst 164083
Job Description
Job Description
Come build, innovate, disrupt, and thrive!
KēSTA I.T is actively seeking a IT Security Analyst for an immediate contract engagement with our government client.
Work Location: This position is Hybrid
Job Description :
We Are Seeking an IT Security Analyst to support enterprise security compliance, governance, and risk management initiatives by developing, maintaining, and validating System Security Plans (SSPs) for new and existing information systems. This role is responsible for collaborating with cross-functional technical and business teams to ensure systems comply with security standards, regulatory requirements, and organizational policies. The ideal candidate will have experience with security governance, NIST security controls, Governance, Risk, and Compliance (GRC) tools, risk assessments, and security documentation, along with strong analytical, communication, and problem-solving skills.
Responsibilities:
· Develop, maintain, and update System Security Plans (SSPs) for new and existing enterprise applications and systems.
· Collaborate with project managers, system owners, security administrators, technical leads, product owners, and business stakeholders to establish and document security processes and controls.
· Support Authority to Operate (ATO) activities and ensure compliance with organizational security accreditation processes.
· Create and maintain security documentation within Governance, Risk, and Compliance (GRC) platforms.
· Coordinate system registration activities and maintain required security documentation throughout the system lifecycle.
· Perform risk assessments and document responses for security control implementation.
· Identify security vulnerabilities and collaborate with technical teams to develop remediation plans.
· Validate security controls to ensure compliance with NIST standards, organizational policies, and applicable regulatory requirements.
· Lead security testing, vulnerability scanning, and system assessment activities.
· Monitor Plans of Action and Milestones (POA&Ms) and Corrective Action Plans (CAPs) to ensure timely remediation of identified risks.
· Coordinate security scanning and assessment activities with internal security teams, project teams, and business stakeholders.
· Lead data classification activities as part of the SSP and ATO processes.
· Collect, review, and validate security artifacts required for compliance assessments and audits.
· Develop recommendations to strengthen system security posture and improve compliance with security standards.
· Maintain technical documentation and provide ongoing support for enterprise security governance initiatives.
Required Skills:
Required Qualifications
· Bachelor's degree in Information Technology, Computer Science, Cybersecurity, Computer Information Systems, Mathematics, or a related field, or an associate degree with qualifying technical coursework and relevant professional experience, or a high school diploma (or equivalent) with qualifying information technology experience, or an industry-recognized IT or Cybersecurity certification.
· 1–3 years of experience in information security, cybersecurity, compliance, governance, risk management, or a related field.
· Knowledge of System Security Plans (SSPs), security governance, and compliance processes.
· Familiarity with Governance, Risk, and Compliance (GRC) tools and security documentation.
· Understanding of NIST security frameworks, security controls, and cybersecurity best practices.
· Experience supporting security assessments, risk assessments, vulnerability management, and compliance initiatives.
· Knowledge of Authority to Operate (ATO), Plans of Action and Milestones (POA&Ms), and Corrective Action Plans (CAPs).
· Experience coordinating with technical teams, business stakeholders, and security personnel to implement security requirements.
· Strong analytical, troubleshooting, and problem-solving skills.
· Excellent written and verbal communication skills with the ability to create clear technical documentation.
· Ability to manage multiple priorities while working independently and collaboratively in a team environment.
Preferred Qualifications
· Experience using Keylight or similar Governance, Risk, and Compliance (GRC) platforms.
· Experience supporting enterprise application security compliance initiatives.
· Knowledge of Secure Application Development Life Cycle (SADLC) practices.
· Experience with vulnerability scanning, security testing, and security accreditation processes.
· Familiarity with data classification methodologies and enterprise security governance.
· Experience working within regulated or large enterprise IT environments.
Available Benefits:
· Medical Benefits (Platinum level plans available)
· Work from home / Hybrid / Onsite options
· PTO
· Holiday Pay
· VTO
· 401K
· Charitable Match
· Training reimbursement
About KēSTA I.T.:
Our name says it all; KēSTA I.T. (Keys-to-I.T.) AND our people are our keys to our success!
KēSTA I.T. is a premier Utah-based technical staffing and consulting services firm. We specialize in temporary and permanent placement of Software, Hardware, Network, Cloud, CRM/ERP, Data, End-User support, Web and Executive / leadership-based positions on a full time and consulting basis.
If you're interested in a role where top performance is rewarded, personal time is valued, and excellence is demanded at every level we want to talk to you today!
Where do you want to go? We've got the keys! ~ KēSTA I.T.
Recommended Jobs
Cybersecurity Analyst
Apply here- Job Title: Cybersecurity Analyst CyberInterviewPrep is dedicated to empowering the next generation of cybersecurity professionals through AI-driven career preparation. The company f…
Agent in Training - Farmers Insurance
Job Description Job Description Farmers Insurance | Kyle Campbell AgencyLaunch Your Career with a Leading Insurance Agency! Are you motivated, outgoing, and ready to build a rewarding career with…
Teller Part Time Rock Springs
Why Wells Fargo: Are you looking for more? Find it here. At Wells Fargo, we're more than a financial services leader – we’re a global trailblazer committed to driving innovation, empowering commun…
Quality Engineer (General)
Job Description Job Description Title: Quality Engineer Reports to: Quality Engineering Manager Location: Holland, MI or Pheonix, AZ LG Energy Solution Michigan Inc. (LGESMI) develops…
Regional Sales Manager- Automotive
Job Description Job Description VAC Magnetics LLC JOB TITLE : Regional Sales Manager - Automotive About: VACUUMSCHMELZE is a leading global manufacturer of advanced magnetic materials an…
BURGER SHIFT MANAGER
Job Description Job Description Position Description: GENERAL PURPOSE OF POSITION: Assists in managing the operations of a Halo Burger unit and assumes responsibility for unit operations in the a…
Sales Support Representative
Job Title: Sales Support Representative Location: Portage, MI Type: Contract Compensation: $21/hr Work Model: Hybrid – onsite and remote Hours: 8-4:30 to 9-5:30 ET (candidate should ha…
CIPP Install Laborer
Job Description Job Description Description: Position Details Position Title: Utility Construction Laborer Reports To: Foreman/Project Manager Department: Field Operations FLSA: …
Systems Engineer (Cameo)
Job Description Job Description For the right candidate that meets criteria- we can offer 80/hr+ and $900 a week in Per diem Job Title: Model Based Systems Engineer (Cameo) Job Description …
CNC Programmer
Job Summary: The CNC Programmer is responsible for developing, testing, and optimizing CNC machine programs to produce precision parts according to engineering drawings and specifications. They collab…