IT Security Analyst 3


Aroha Technologies
Dice Job Match Score™
🔢 Crunching numbers...
Job Details
Skills
- Process Improvement
- Change Management
- Data Management
- Hipaa
- PCI
- Requirements Analysis
- risk management
- Technical Documentation
- Project coordination
- Vendor coordination
- Meeting Facilitation
- security policy implementation
- IT Web Applications
- Security Governance
- Disaster Recovery Planning (DRP)
- Business Continuity Planning (BCP)
- Compliance Reporting
- Cybersecurity Compliance
- NIST Framework & Security Controls
- System Security Plan (SSP) Management
- Authority to Operate (ATO) Renewals
- Compliance & Regulatory Audits
- IT Compliance Analysis
- Security Risk Assessments
- Audit Evidence Collection
- Plans of Action & Milestones (POA&M) Management
- Incident Response Planning
- Security Control Validation
- Security Documentation Management
- IT Audit Support
- Gap Analysis & Remediation
- Incident Response & Recovery
- Security Incident Analysis
- Security Metrics & Trend Analysis
- Cross-Functional Stakeholder Management
- Business & IT Liaison
- Enterprise Security Governance
- Security Control Reviews
- Regulatory Compliance (NIST
- FERPA)
- ATO Lifecycle Management
- Security Evidence Management
- Leadership & Team Mentoring
- Oral & Written Communication
- Continuous Compliance Monitoring
- Security Control Remediation
Summary
IT Security Analyst 3 - MiLEAP, MCSC
Location: Lansing, MI
Interview Process:
- 1st round interviews will be held virtually with a potential for a 2nd round in-person.
- Candidates MUST be available for an in-person interview.
Duration:
- 1 year with extension likely.
Work Arrangement:
- Hybrid schedule.
- No remote-only option.
- Must be onsite from Day 1, two days a week.
- Local candidates ONLY.
- Candidates must be located within 90 miles of Lansing, MI at the time of submission.
Top Skills & Years of Experience:
- Experience providing audit evidence to comply with security standards such as NIST, PCI, HIPPA, FERPA - Required - 5 Years.
- Exposure to Complex IT web Applications, within the past 5 years - Required - 5 Years.
- Experience leading meetings and making oral and written reports - Required - 5 Years.
- Experience working as a liaison between different business and IT areas - Required - 5 Years.
Position Description:
- This Senior IT Business/Compliance Analyst position serves as a senior resource providing high-level oversight, guidance, and strategic direction for completing, updating, and maintaining System Security Plans (SSPs) and Disaster Recovery Plans (DRPs) for supported applications.
- The primary duty of this position is performing as the compliance authority and liaison among business partners, technical teams, security groups, and management.
- Ensures that requirements, processes, and documentation align with State standards, NIST protocols, and enterprise security governance.
- Guides stakeholders through complex compliance cycles and drives consistency across application areas.
- Collaborates with vendors, auditors, project managers, and analysts.
Job Responsibilities:
- Provide leadership and oversight for maintaining and updating System Security Plans (SSPs), ensuring documentation accuracy, completeness, and alignment with NIST protocol and compliance standards.
- Lead and coordinate the Authority to Operate (ATO) renewal process, including planning, preparing required materials, managing timelines, and ensuring successful approval and continuous compliance for all supported applications.
- Ensure all applications maintain a valid ATO on a three-year cycle and lead efforts to validate and maintain accurate security controls throughout each renewal period.
- Review and inform management on security risk assessment results and recommend corrective actions as necessary.
- Review and assess risks and scope for high-level security incidents. Develop new reports for management based on collected metrics across multiple areas and conduct trend analysis.
- Work with stakeholders to address and track Plans of Action & Milestones (POA&Ms) and other compliance requirements, ensuring timely reporting and closure.
- Provide senior-level support across multiple business areas, with a focus on standardized security plan updates, documentation improvements, and long-term process consistency.
- Analyze existing compliance documentation, identify gaps or risks, and guide corrective actions to meet regulatory and organizational requirements.
- Coordinate cross-functional collaboration with technical teams, business owners, enterprise security personnel, and project leadership to ensure all evidence and artifacts required for SSP and ATO processes are properly completed and maintained.
- Oversee review, updates, and remediation of security controls, ensuring issues are tracked, communicated, and resolved in collaboration with stakeholders.
- Lead efforts to identify procedural gaps, risks, or required updates during renewal cycles, ensuring consistent application of best practices across all supported systems.
- Contribute to enterprise security governance by providing guidance, maintaining accurate records, mentoring team members, and driving timely completion of compliance activities.
- Lead mid- to high-level Incident Responses when working to resolve incidents.
- Serve as the Incident Response Specialist for cyber event detection, correlation, response, and recovery.
Job Qualifications:
- Bachelor's degree in Cybersecurity, Information Assurance, Business Analytics, or IT-related field, OR 5 years of experience.
- Preferred advanced degrees: Master's in Cybersecurity, Information Assurance, Information Systems/IT Leadership, or an MBA with an IT or Security concentration.
- Educational or professional knowledge of NIST Framework and Controls is required.
- Strong aptitude for written and oral communication.
- Strong documentation skills.
- Ability to collaborate cross-functionally.
Required Skills and Experience:
- Experience providing audit evidence to comply with security standards such as NIST, PCI, HIPPA, FERPA - Required - 5 Years.
- Exposure to Complex IT web Applications, within the past 5 years - Required - 5 Years.
- Experience leading meetings and making oral and written reports - Required - 5 Years.
- Experience working as a liaison between different business and IT areas - Required - 5 Years.
- Knowledge or experience creating supporting documentation for IT system audits - Highly Desired - 2 Years.
- Experience with the creation of Disaster Recovery Plans, Business Continuity Plans, and Incident Response Plans - Highly Desired - 2 Years.
- Dice Id: 10515154
- Position Id: 2026-7348
- Posted 4 hours ago
Company Info
About Aroha Technologies
Michael Arrington, founder and co-editor of Tech Crunch once famously said that ‘The best startups generally come from somebody needing to scratch an itch’.
Quite true to the thought, Aroha Technologies Inc was launched in 2008 in Florida. While we began our journey with a powerful Staffing Specialist & Software Development, Today our procedure has amplified into a more robust and simplified solution for Marketers looking for consistent and long term.
In our quest to do better, we resolve to simplify user acquisition, retention, engagement and large Business without blinking an eyelid! A semi-remote team spread across the globe, we are here to help you one step at a time.
Unmatchable growing excellence When AROHA was formed, we interviewed many potential clients and business colleagues and asked what a single important question seemed: “If you could design a firm to meet your needs, what would it look like?” The answers to that question have guided our thinking and planning on an ongoing basis, and form the core of our thinking about how we treat our clients and our employees, whom we call associates.
At a most basic level, we have stated our mission in a promise to our clients and our associates: “Unmatchable growing excellence.” This alignment governs superior service to our customers and supports our associates who perform that work, which cannot be matched by our competitors.
In short, we believe that care of our associates, disciplined financial management, and constant attention to the fundamentals of good delivery adds up to a successful, scalable business.


Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs