System Analyst 6 - Security & Compliance

Lansing, MI, US • Posted 1 hour ago • Updated 1 hour ago
Contract W2
Contract Corp To Corp
On-site
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Azure DevOps
  • Process Improvement
  • Application Life Cycle
  • GAP Analysis
  • USE Cases
  • Workflow Analysis
  • Business Process Analysis
  • Regulatory Compliance
  • Security Documentation
  • Requirements Gathering
  • Stakeholder Management
  • User Stories
  • Cross-functional Team Leadership
  • Impact Analysis
  • System Security Plans (SSP)
  • User Acceptance Testing (UAT)
  • Requirements Documentation
  • Agile SDLC
  • Governance Frameworks
  • NIST 800-53
  • Vulnerability Management
  • Audit Readiness
  • Compliance Tracking
  • Copilot said: Security & Compliance Analysis
  • Security Controls Assessment
  • Security Compliance Management
  • Risk Assessment & Mitigation
  • Governance Risk & Compliance (GRC)
  • NIST Cybersecurity Framework (NIST CSF)
  • FISMA Compliance
  • Security Audits & Reviews
  • Control Validation
  • Vulnerability Scanning
  • Threat & Risk Analysis
  • Security Assessment Reports (SAR)
  • Authorization Packages
  • Policy Review & Implementation
  • Data Protection & Privacy
  • Access Control Management
  • Security Incident Response
  • Security Awareness Training
  • Compliance Training
  • Secure Software Development Lifecycle (SSDLC)
  • Disaster Recovery Planning (DRP)
  • Business Continuity Planning (BCP)
  • Business Impact Analysis (BIA)
  • Recovery Time Objectives (RTO)

Summary

Job Title: Security & Compliance Analyst

Duration: 1 year with possible extension

Work Mode: Hybrid

Interview Process: In-person in Lansing, MI

Candidate Requirements:

  • Local candidates are strongly preferred within 75 miles of Lansing, MI.
  • Candidates outside of this range may be considered; however, if selected, they must relocate on their own within 2 weeks of their start date.
  • Candidates must be willing to work onsite from Day 1, two days per week (Tuesday/Wednesday).
  • Candidates must meet all requirements from the beginning.

Top Skills & Years of Experience Required:

  • 5+ years of experience with knowledge of security and compliance frameworks relevant to public sector environments, such as NIST CSF, NIST 800-53, and state IT security standards.
  • 5+ years of experience and proficiency in tools used to support security documentation, compliance tracking, and workflow management, such as Azure DevOps and GRC platforms.
  • 5+ years of experience contributing to the development, documentation, and testing of Disaster Recovery Plans (DRPs) for critical systems.
  • 5+ years of experience assisting in defining Recovery Time Objectives (RTOs) and Recovery Point Objectives (RPOs).
  • Previous government or military experience is preferred.
  • Bachelor's degree in information security, cybersecurity, information systems, public administration, or a related field is preferred.

Job Description:

The Security & Compliance Analyst supports the integrity, security, and compliance of systems and processes used in administering retirement benefits for public sector employees. This role ensures that technology solutions, operational practices, and policy implementations adhere to state regulations, security standards, and organizational governance requirements. The analyst will collaborate with cross-departmental teams to strengthen security controls, improve business processes, and ensure consistent delivery of secure and reliable services to stakeholders and citizens.

Key Responsibilities:

  • Analyze, document, and validate security processes, system requirements, and interagency interactions supporting retirement benefits administration.
  • Collaborate with program offices, technical teams, and subject matter experts to define and refine security and compliance requirements for system enhancements, policy updates, and new initiatives.
  • Create and maintain clear, audit-ready documentation, including security requirements, user stories, workflows, and use cases aligned with public sector standards and oversight expectations.
  • Support solution design and participate in testing phases, including UAT, to verify that security controls and compliance requirements are properly implemented.
  • Recommend improvements that strengthen security posture, improve process efficiency, and support program accountability and service quality.
  • Monitor project deliverables, timelines, and milestones to ensure alignment with organizational security objectives, compliance mandates, and governance frameworks.
  • Assist in developing training materials and delivering security and compliance education to program staff and stakeholders.
  • Conduct gap analyses and assess impacts of legislative, regulatory, or policy changes on business operations and system security.
  • Perform data analysis and generate reports to support compliance monitoring, performance evaluation, risk tracking, and data-driven decision-making.

Leadership & Collaboration Responsibilities:

  • Provide guidance and informal leadership to cross-functional teams by promoting best practices in security, compliance, and risk management.
  • Lead discussions with program offices, technology partners, and stakeholders to ensure alignment on security objectives, policy interpretations, and compliance expectations.
  • Serve as a mentor to analysts by offering support in interpreting security frameworks, documenting requirements, and navigating governance processes.
  • Champion a culture of security awareness and continuous improvement by fostering collaboration, communicating risks clearly, and influencing adoption of secure and compliant operational behaviors.
  • Take ownership of key security and compliance initiatives, driving progress, managing expectations, and ensuring deliverables meet organizational standards and regulatory requirements.
  • Provide leadership during security incidents, compliance issues, and audit activities by coordinating responses, ensuring timely communication, and supporting decision-making with clear, accurate analysis.

Security & Compliance Support:

  • Perform tasks in support of internal and external security and standards reviews.
  • Conduct security risk assessments and recommend mitigation strategies.
  • Assist with development and maintenance of security documentation, including System Security Plans, Assessment Reports, and Authorization packages.
  • Support security audits by gathering documentation and demonstrating control effectiveness.

Disaster Recovery & Business Continuity Planning:

  • Collaborate with business units to develop and maintain Business Continuity Plans (BCPs).
  • Conduct business impact assessments and ensure DRP/BCP strategies align with operational needs.
  • Participate in tabletop exercises and simulations to test and validate plans, documenting and addressing gaps.
  • Ensure DRP/BCP efforts comply with applicable organizational policies, NIST, FISMA, and other applicable standards.

Vulnerability Management:

  • Coordinate and schedule system, application, and network vulnerability scans in collaboration with infrastructure and security teams.
  • Analyze scan results, prioritize risks, and support mitigation planning.

Minimum Qualifications:

  • Seven years of professional experience in security, compliance, risk management, or a closely related discipline within a government agency, public retirement system, or regulated financial environment.
  • Demonstrated experience developing, documenting, and evaluating security controls, compliance requirements, and governance processes.
  • Experience supporting security or compliance assessments, audit activities, policy reviews, and control validations.
  • Working knowledge of security and compliance frameworks relevant to public sector environments, such as NIST CSF, NIST 800-53, and state IT security standards, with 5+ years of experience.
  • Experience participating in system or process changes with a focus on ensuring data protection, access controls, regulatory adherence, and secure implementation.
  • Knowledge of Agile SDLC practices with an emphasis on integrating security and compliance into requirements, testing, and release processes.
  • Ability to assess common vulnerabilities such as XSS, CSRF, SQL Injection, and authentication weaknesses.
  • Proficiency in tools used to support security documentation, compliance tracking, and workflow management, such as Azure DevOps and GRC platforms, with 5+ years of experience.
  • Experience contributing to the development, documentation, and testing of Disaster Recovery Plans (DRPs) for critical systems.
  • Experience assisting in defining Recovery Time Objectives (RTOs) and Recovery Point Objectives (RPOs).

Preferred Qualifications:

  • Bachelor's degree in information security, cybersecurity, information systems, public administration, or a related field; or equivalent experience.
  • Experience supporting security and compliance needs within public pension or retirement administration programs.
  • Working knowledge of security capabilities and data protection requirements within pension administration platforms or enterprise benefits systems.
  • Experience using SQL or analytics tools such as Power BI and advanced Excel to support compliance monitoring, security metrics, reporting, and data validation.
  • Professional security or compliance certifications such as CGRC, CAP, Security+, CISA, or similar.
  • Knowledge of state and federal regulations governing data security, privacy, and compliance within public sector retirement systems, including IRS, SSA, state statutes, and audit standards.
  • Familiarity with Java or the .NET framework.
  • High-level understanding of how web applications function.

Primary Skills:

  • Security & Compliance
  • Risk Management
  • NIST CSF
  • NIST 800-53
  • Security Controls
  • Disaster Recovery Planning
  • Business Continuity Planning
  • RTO/RPO
  • Vulnerability Management
  • Azure DevOps
  • GRC Platforms

Secondary Skills:

  • Security Risk Assessments
  • Security Audits
  • System Security Plans
  • Assessment Reports
  • Authorization Packages
  • Agile SDLC
  • UAT
  • SQL
  • Power BI
  • Advanced Excel
  • Data Analysis
  • XSS
  • CSRF
  • SQL Injection
  • Authentication Security
  • FISMA
  • Java
  • .NET
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10515154
  • Position Id: 2026-7225/42957
  • Posted 1 hour ago

Company Info

About Aroha Technologies

Michael Arrington, founder and co-editor of Tech Crunch once famously said that ‘The best startups generally come from somebody needing to scratch an itch’.

 Quite true to the thought, Aroha Technologies Inc was launched in 2008 in Florida. While we began our journey with a powerful Staffing Specialist & Software Development, Today our procedure has amplified into a more robust and simplified solution for Marketers looking for consistent and long term.

In our quest to do better, we resolve to simplify user acquisition, retention, engagement and large Business without blinking an eyelid! A semi-remote team spread across the globe, we are here to help you one step at a time.

Unmatchable growing excellence When AROHA was formed, we interviewed many potential clients and business colleagues and asked what a single important question seemed: “If you could design a firm to meet your needs, what would it look like?” The answers to that question have guided our thinking and planning on an ongoing basis, and form the core of our thinking about how we treat our clients and our employees, whom we call associates.

At a most basic level, we have stated our mission in a promise to our clients and our associates: “Unmatchable growing excellence.” This alignment governs superior service to our customers and supports our associates who perform that work, which cannot be matched by our competitors.

In short, we believe that care of our associates, disciplined financial management, and constant attention to the fundamentals of good delivery adds up to a successful, scalable business.

About_Company_OneAbout_Company_Two
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Dimondale, Michigan

Today

Easy Apply

Third Party, Contract

Atlanta, Georgia

Today

Easy Apply

Third Party, Contract

Phoenix, Arizona

Today

Easy Apply

Third Party, Contract

Search all similar jobs