Lead Analyst - ISSO
Essential Duties and Responsibilities:
- Responsible for ensuring information security for an assigned area of Business/Project focusing on key areas of risk, as outlined in the Information Security policy, under the direction of the Information Security management team.
- Conduct Information Security risk assessments and compliance evaluations for infrastructure and application assets within required timeframes and to industry standards and regulatory specifications.
- Ensure controls are properly and fully implemented to address identified Information Security risks for assigned area of responsibility.
- Define, create and maintain the documentation for certification and accreditation of each information system in accordance with regulatory requirements.
- Lead and support audits and client reviews of security posture; coordinate the collection, review and submission of Information Security deliverables and track the remediation of audit findings and exceptions.
- Manage expectations with multiple stakeholders on projects and programs in conjunction with the Information Security team.
- Promotion of Information Security awareness through various communication channels within the organization.
- Collaborate with the Information Security team members on process improvements, secure design and recertification of MAXIMUS assets.
- Create and manage System Security Plan and creation and or validation of all associated artifacts required to maintain FedRAMP ATO and NIST 800-53 compliance to include but not limited to a System Level Continuous Monitoring (SLCM) Strategy, HW/SW lists, Information Flow Diagrams, System Categorization Forms, System Topologies, Configuration Management Plan, Configuration Control Board (CCB) Charter, System and Services Acquisition Plan, System and Information Integrity Plan, System and Communication Protection Plan, Security Assessment and Authorization Plan, Risk Assessment Plan, Program Management Plan, Security Planning, Physical and Environmental Protection Plan, Personnel Security Plan, Media Protection Plan, Identification and Authentication Plan, Contingency Plan, Audit and Accountability Plan, Security Awareness and Training Plan, Incident Response Plan, Access Control Plan, SCRM Plan, Risk Assessment Review (RAR) and Plan of Action and Milestone (POA&M).
(50%)
- Liaison with Maximus Federal business units, Maximus Corporate business units, system owner, and external stakeholders to ensure all legal and contractual requirements pertaining to cybersecurity, physical security, and Information Assurance are being met.
(20%)
-Communicate federal requirements to Maximus Information Security Office (ISO) and advise implementation of applicable security controls and hardening standards to governance and technical teams.
(10%)
- Assist the BISO and ISO Team in the identification and assignment of control owners throughout the organization and continually review controls on organizationally defined periodic...
- Rate: Not Specified
- Location: Mobile, US-AL
- Type: Permanent
- Industry: Finance
- Recruiter: Maximus
- Contact: Not Specified
- Email: to view click here
- Reference: 34095_AL_Mobile
- Posted: 2026-02-07 07:52:32 -
- View all Jobs from Maximus
More Jobs from Maximus
- Occupational Therapist - The Courtyard
- Physical Therapist
- Occupational Therapy Assistant
- Occupational Therapy Assistant
- Speech Language Pathologist
- Occupational Therapy Assistant
- Occupational Therapy Assistant
- Speech Language Pathologist
- Assistant Director of Nursing - RN or LVN
- Speech-Language Pathologist - Eastview Healthcare
- Advisor - Southport
- Optometrist, PT (PC) - Addison
- Physical Therapist
- Advisor - Natick Mall
- Occupational Therapy Assistant PRN
- Advisor - The Shops on El Paseo
- Valve Design Engineer
- Sr. Valve Design Engineer
- Housekeeping Staff-2
- Sales Supervisor - N Damen