Job ID: GA-776405 (97290911)
Hybrid/Local Security Analyst (CySA+/CISSP/CISM/GIAC/copies must/12+) with Splunk, CrowdStrike Falcon, Nessus/Tenable.sc, CUI, NIST/FISMA/IRS Pub 1075/CMS/SSA and Vulnerability/Risk Management experience
Location: Atlanta, GA (DHS)
Duration: 9 Months
Position: 1 (2)
Skills:
Bachelor's degree in information security, Cybersecurity, IT, or related field; or equivalent 1 year; State of GA experience Preference. Required
Hands-on experience with Splunk, CrowdStrike Falcon, and Tenable Nessus/Tenable.sc. Required
Strong understanding of CUI protection requirements and compliance frameworks (NIST, FISMA, IRS Pub 1075, CMS, SSA). Required
Experience with incident response, vulnerability management, and risk assessments. Required 1 Years
Strong analytical, documentation, and communication skills. Required 1 Years
Professional certifications (e.g., CompTIA Security+, CySA+, CISSP, CISM, GIAC). (MUST UPLOAD CERTIFICATION) Highly desired
Experience managing System Security Plans (SSPs) and supporting audit readiness. Highly desired
Familiarity with cloud and endpoint security technologies. Highly desired
Prior experience delivering security awareness training. Highly desired
Description:
The Information Security Analyst will play a key role in safeguarding the organization's information assets, including systems that process and store Controlled Unclassified Information (CUI).
This role is responsible for monitoring, detecting, analyzing, and responding to security events, managing vulnerabilities, and ensuring compliance with federal, agency, and organizational security requirements (NIST, FISMA, IRS Pub 1075, CMS, SSA). The analyst will also support audit readiness, maintain the System Security Plan (SSP), and lead targeted security awareness initiatives.
Key Responsibilities
Security Operations & Monitoring
Conduct continuous monitoring of enterprise systems using CrowdStrike (EDR), Splunk (SIEM), and Tenable (Vulnerability Management).
Detect, investigate, and respond to potential threats and incidents impacting CUI and overall system security.
Maintain dashboards, alerts, and reports to ensure proactive detection and escalation of risks.
Vulnerability & Risk Management
Perform ongoing vulnerability assessments with Tenable, track remediation efforts, and validate closure of findings.
Support patch management and configuration management processes to reduce the attack surface.
Deliver metrics and risk posture updates to leadership.
Compliance & Documentation
Maintain and update System Security Plans (SSPs) to document the implementation of security controls.
Support external and internal audits (IRS, CMS, SSA, NIST, FISMA) by providing required evidence, documentation, and remediation tracking.
Assist in compliance with evolving frameworks (e.g., NIST SP 800-53 Rev. 5).
Incident Response
Triage, analyze, and document security incidents across enterprise systems.
Coordinate with IT and business stakeholders on containment, eradication, and recovery efforts.
Deliver incident reports, root cause analysis, and lessons learned documentation.
Security Awareness & Training
Develop and deliver security awareness programs, emphasizing CUI handling, phishing defense, and insider threat mitigation.
Conduct specialized training for privileged users and administrators.
Track participation and report effectiveness of awareness initiatives.
Reporting & Communication
Provide leadership with actionable insights through Splunk dashboards, Tenable vulnerability reports, and CrowdStrike incident summaries.
Deliver executive-level updates highlighting risks, compliance status, and incident trends.
Track remediation activities and ensure timely closure of findings.
Required Qualifications
Bachelor's degree in information security, Cybersecurity, IT, or related field; or equivalent 1 year; or Preference will be given to candidates with relevant State of Georgia Experience
Hands-on experience with Splunk, CrowdStrike Falcon, and Tenable Nessus/Tenable.sc.
Strong understanding of CUI protection requirements and compliance frameworks (NIST, FISMA, IRS Pub 1075, CMS, SSA).
Experience with incident response, vulnerability management, and risk assessments.
Strong analytical, documentation, and communication skills.
innoSoul, Inc. is an Information Technology company and offers technology solutions in various platforms to different business domains. More specifically, business solutions for Application Development, System integration, network or software installation support, Custom Web Development, Hosting solutions. Our value-added solutions leverage technology to enhance business performance, increase productivity and secure data.
...for up to 2 months at a time. About the company : A leading provider of maritime cellular networks, supporting the cruise, ferry, yacht, and shipping industries worldwide. As award-winning technology leaders, enables digital transformation shaping the future of...
...assistance to Air Framer / Airline customers during the build of the Aircraft specific to installation issues, damaged parts, reworking... ...and repairs required. Professional Skills-* Natural mechanical ability with hand and power tools * Basic working knowledge...
...launching pad for a prosperous career. Sports minded individuals tend to find our culture... ...find your "place"! Let's grow! All entry level candidates will participate in the... ...Company Description Skys The Limit Marketing changes the world by starting conversations...
...School Nurse / Registered Nurse (RN) or Licensed Practical Nurse (LPN) School Nurses Needed on ALL Hawaiian Islands!! We are currently recruiting Registered Nurses & Licensed Practical Nurses to join our school nursing team in Oahu. Registered Nurse or Licensed...
...Ski and snowboard while advancing your career in Child Development! Mammoth Childcare seeks energetic, responsible, and nurturing teachers for its two locations. We offer flexible schedules and the best paying entry-level job in the company for qualified individuals...