Lead Analyst - Info Sec
Description & Requirements
The Maximus DoD Cloud Information Systems Security Officer (ISSO) will work directly with the Maximus Federal Business Information Security Officer (BISO) to identify and manage implementation of security policies, standards, and procedures that support federal customers with federal requirements to include FISMA, applicable FAR and DFAR Clauses, Executive Orders, and OMB's applicable to IL5 Cloud Environments.
The primary role of the ISSO will be the creation, management, and administration of a System Security Plan (SSP) to include all required artifacts needed to obtain a DISA IL5 certification and to maintain compliance with NIST 800-53 and associated NIST 800 series publications.
The ISSO will be responsible for all continuous monitoring of the IL5 environment supporting federal customers and will be the SME for control management and the establishment of Inheritance which will be used to support future DoD projects
Essential Duties and Responsibilities:
- Performs application vulnerability assessments to identify application vulnerabilities.
- Performs network vulnerability assessments to identify host vulnerabilities.
- Identifies, analyzes, and prioritizes vulnerability findings.
- Analyzes system configurations to identify possible security gaps andor compliance violations.
- Establishes collaborative working relationships with internal resources to provide security assessments, reports, and recommendations.
- Performs other related duties as assigned.
Additional Duties and Responsibilities:
- Create and manage System Security Plan and creation and or validation of all associated artifacts required to obtain DISA IL5 certification as well as NIST 800-53 compliance to include but not limited to a System Level Continuous Monitoring (SLCM) Strategy, HW/SW lists, Information Flow Diagrams, System Categorization Forms, System Topologies, Configuration Management Plan, Configuration Control Board (CCB) Charter, System and Services Acquisition Plan, System and Information Integrity Plan, System and Communication Protection Plan, Security Assessment and Authorization Plan, Risk Assessment Plan, Program Management Plan, Security Planning, Physical and Environmental Protection Plan, Personnel Security Plan, Media Protection Plan, Identification and Authentication Plan, Contingency Plan, Audit and Accountability Plan, Security Awareness and Training Plan, Incident Response Plan, Access Control Plan, Risk Assessment Review (RAR) and Plan of Action and Milestone (POA&M).
- Liaison with Maximus Federal business units, Maximus Corporate business units, and external stakeholders to ensure all legal and contractual requirements pertaining to cybersecurity, physical security, and Information Assurance are being met.
- Communicate federal requirements to Maximus Information Security Office (ISO) and advise implementation of applicable security controls and hardening standards to governance and technical teams.
- A...
- Rate: Not Specified
- Location: Fort Wayne, US-IN
- Type: Permanent
- Industry: Finance
- Recruiter: Maximus
- Contact: Not Specified
- Email: to view click here
- Reference: 33631_IN_Fort Wayne
- Posted: 2025-10-31 07:34:26 -
- View all Jobs from Maximus
More Jobs from Maximus
- Outpatient Liaison - Occupational therapists, BONUS $5K
- Outpatient Liaison - Physical Therapists - BONUS $5K
- Financial Reporting Accountant - Evernorth - Hybrid
- Sign on BONUS $5K - Licensed Physical Therapists Assistant
- Postbote für Pakete und Briefe (m/w/d)
- Accounts Receivable Clerk - Draft
- Clinical Concierge (LVN-Cert Medical Assistant) PD
- Patient Relations And Accred Coordinator (RN)
- Epic Analyst Laboratory Lead
- Director Care Management
- Endocrinologist
- Security Officer Trainee
- Sortierer für Pakete (m/w/d)
- Production Supervisor 11:30pm to 8:00 am
- Housekeeping Supervisor
- Postbote für Pakete und Briefe (m/w/d)
- Lagermitarbeiter / Sortierer für Briefe (m/w/d) in Langenfeld - Spätschicht
- LPN
- RN, part-time
- Business Office Manager