Information Security Analyst (Hybrid)

Overview

On Site
Compensation information provided in the description
Accepts corp to corp applications
Contract - Independent
Contract - W2
Contract - 9 month(s)

Skills

Splunk
CrowdStrike Falcon
and Tenable Nessus/Tenable.
CUI protection requirements and compliance frameworks

Job Details

Job Title:

Information Security Analyst (Hybrid)

Location:

Atlanta, GA

Duration:

9 Months

Pay Rate:

$60/hr on C2C / 1099 all inclusive (OR) $55/hr on W2

Interview Process:

Web Cam Interview

Job Description

This role is responsible for monitoring, detecting, analyzing, and responding to security events, managing vulnerabilities, and ensuring compliance with federal, agency, and organizational security requirements (NIST, FISMA, IRS Pub 1075, CMS, SSA). The analyst will also support audit readiness, maintain the System Security Plan (SSP), and lead targeted security awareness initiatives.

Key Responsibilities

  • Security Operations & Monitoring

  • Conduct continuous monitoring of enterprise systems using CrowdStrike (EDR), Splunk (SIEM), and Tenable (Vulnerability Management).

  • Detect, investigate, and respond to potential threats and incidents impacting CUI and overall system security.

  • Maintain dashboards, alerts, and reports to ensure proactive detection and escalation of risks.

Vulnerability & Risk Management

  • Perform ongoing vulnerability assessments with Tenable, track remediation efforts, and validate closure of findings.

  • Support patch management and configuration management processes to reduce the attack surface.

  • Deliver metrics and risk posture updates to leadership.

Compliance & Documentation

  • Maintain and update System Security Plans (SSPs) to document the implementation of security controls.

  • Support external and internal audits (IRS, CMS, SSA, NIST, FISMA) by providing required evidence, documentation, and remediation tracking.

  • Assist in compliance with evolving frameworks (e.g., NIST SP 800-53 Rev. 5).

Incident Response

  • Triage, analyze, and document security incidents across enterprise systems.

  • Coordinate with IT and business stakeholders on containment, eradication, and recovery efforts.

  • Deliver incident reports, root cause analysis, and lessons learned documentation.

Security Awareness & Training

  • Develop and deliver security awareness programs, emphasizing CUI handling, phishing defense, and insider threat mitigation.

  • Conduct specialized training for privileged users and administrators.

  • Track participation and report effectiveness of awareness initiatives.

Reporting & Communication

  • Provide leadership with actionable insights through Splunk dashboards, Tenable vulnerability reports, and CrowdStrike incident summaries.

  • Deliver executive-level updates highlighting risks, compliance status, and incident trends.

  • Track remediation activities and ensure timely closure of findings.

Required Qualifications

  • Bachelor's degree in information security, Cybersecurity, IT, or related field; or equivalent 1 year; or Preference will be given to candidates with relevant State of Georgia Experience

  • Hands-on experience with Splunk, CrowdStrike Falcon, and Tenable NessTenable.sc.

  • Strong understanding of CUI protection requirements and compliance frameworks (NIST, FISMA, IRS Pub 1075, CMS, SSA).

  • Experience with incident response, vulnerability management, and risk assessments.

  • Strong analytical, documentation, and communication skills.

Top Skills & Years of Experience

Required/Desired Skills

Skill

Required /Desired

Amount

of Experience

Bachelor's degree in information security, Cybersecurity, IT, or related field; or equivalent 1 year; State of GA experience Preference.

Required

0

Hands-on experience with Splunk, CrowdStrike Falcon, and Tenable NessTenable.sc.

Required

0

Strong understanding of CUI protection requirements and compliance frameworks (NIST, FISMA, IRS Pub 1075, CMS, SSA).

Required

0

Experience with incident response, vulnerability management, and risk assessments.

Required

1

Years

Strong analytical, documentation, and communication skills.

Required

1

Years

Professional certifications (e.g., CompTIA Security+, CySA+, CISSP, CISM, GIAC). (MUST UPLOAD CERTIFICATION)

Highly desired

0

Experience managing System Security Plans (SSPs) and supporting audit readiness.

Highly desired

0

Familiarity with cloud and endpoint security technologies.

Highly desired

0

Prior experience delivering security awareness training.

Highly desired

0

Recruiter Details:

Name : Ananya at gsksolutions dot com

Contact : Eight three two-Nine nine zero-Two four two seven

About US:

GSK Solutions Inc. is a premier information technology services company dedicated to delivering exceptional consulting solutions and staff augmentation to our valued clients. With an unwavering commitment to quality, timeliness, and budgetary considerations, we consistently strive to exceed client expectations, building a strong reputation through our reliable execution. Our expertise spans commercial and custom product development, covering information security, software development, consulting, and IT audits. We excel in managing critical, time-sensitive projects for Fortune 500 clients nationwide, ensuring their success is always at the forefront of our mission.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About GSK Solutions Inc.