Vacancy: Security Requirements Analyst
OmniSystems · Frederick, MD · 1 wk ago
Business DevelopmentFull-time
About the role
The Security Requirements Analyst plays a crucial role in ensuring the security of systems and processes within the organization. They act as a liaison between the customer and IT security team, focusing on the development, maintenance, and review of critical security documentation.
Responsibilities
- Develop and maintain security documentation required for Authority to Operate (ATO).
- Participate in meetings with various business units to provide security insights.
- Perform Security Impact Analyses (SIAs) on changes to the system before implementation.
- Interface with customers to ensure all security requirements are met.
- Work with Security Compliance, Engineering, and Administration teams to maintain Standard Operating Procedures (SOPs).
- Ensure policies reflect current standards, including FISMA and other industry guidelines.
- Monitor compliance and conduct periodic reviews of policies.
Qualifications/Skills
- Bachelor's degree in a relevant field or equivalent experience.
- Minimum of 3 years of directly applicable work experience.
- Experience developing and maintaining security documentation for ATO.
- Understanding of NIST 800-53 r4 framework and implementation requirements.
- Experience developing and maintaining Standard Operating Procedures (SOPs).
- Strong technical background and ability to work effectively with multiple stakeholders.
- Familiarity with cloud platforms (PaaS, SaaS, IaaS) and protections as described in FedRAMP.
- Familiarity with AWS and Azure platforms.
- Knowledge of IT security architecture and design.
- Knowledge of Windows operating systems.
- Knowledge of configuration standards (CIS Benchmarks, DISA STIGs).
Desired Credentials
- Certification and Accreditation Professional (CAP)
- Certified Information Systems Security Professional (CISSP)
- Certified Information Security Manager (CISM)
- Certified Ethical Hacker (CEH)
- Certified Information Systems Auditor (CISA)
- CompTIA Security+
Benefits
This role offers the flexibility to work remotely during the pandemic, with the potential to transition to a hybrid model post-pandemic.
Pay
Competitive compensation package based on experience and qualifications.
Schedule
Flexible work schedule to accommodate remote work during the pandemic and potentially transitioning to a hybrid model post-pandemic.
Application
To apply, please send your resume to hr@omnisystems.com specifying the job opportunity you are applying for.