Position: Security Analyst (Ref: 17534)
Location: Denver, CO USA, 80203
Salary: DOE
Duration: 1 Years 0 Months 20 Days - Contract
Openings: 1
Deadline: 06/16/2025
Description:
***Remote
We are seeking a Security Analyst who is responsible for audits and compliance review in the development, enhancement and maintenance of the Management System and any additional subsystems.
This includes the following:
● Oversees the coordination of annual audits and serves as primary liaison to the audit teams during their review of the systems and their subsystems compliance with documented processes.
● Coordinates the collection of audit items/documents.
● Coordinates meetings and provides information as needed for audit requests.
● Performs Quality Assurance monitoring on documentation and other assigned items.
Duties
● Coordinate with the audit team and staff to provide responses to requests from service auditors as necessary.
● Serves as the primary lead Point of Contact for audits on the systems and their subsystems.
● Serves as lead point of contract for Independent Verification and Validations (IV&V) teams
● Serves as lead point of contract for auditors
● Collaboration with the program area leads, vendor representatives, IV&V members, management, and others to provide support to the auditors.
● Assist with the coordination of the collection and sharing of documentation and coordinate team members with the audit team.
● Coordinates all audit findings and responses to ensure items are addressed and resolved.
● Identity & access management - identify user roles, security groups that should exist, active directory cleanup assistance/coordination with appropriate teams
● Understanding of security architecture - network, cloud, data, etc.
● Risk assessments
● Vulnerability management
● Specific compliance/security policies
● Understanding of security configs.
● Validation of security testing in CI/CD pipelines for deployments
● Coordination with incident management and DR
Required / Desired Skills
• Security Analyst Required - 5 Years
• Quality Assurance monitoring Required - 5 Years
• Independent Verification and Validations (IV&V) Required - 5 Years
• Identity & access management Required - 5 Years
• Vulnerability management Required - 5 Years
• Risk assessments Required - 5 Years