Job Summary (Information Security Analyst GRC Team, State of Arizona)
- Serve as an Information Security Analyst contractor on the Governance Risk and Compliance (GRC) Team. - Engage with business units to understand reporting, data, and product needs. - Define project requirements, identify data dependencies, and develop logical/physical data models and data flows. - Write specifications for managing enterprise information policies. - Develop plans and materials for user adoption, training, and customer service. - Work directly with users across divisions to provide insights and prioritize system enhancements. - Support technical project managers by ensuring high-quality information analysis and requirements gathering. - Perform risk assessments, audit reviews, and generate findings reports with recommendations for improvement. - Track outcomes and report for DES compliance requirements. - Prepare and edit audit documentation and findings to align with agency standards. - Research and ensure compliance with agency and industry IT security standards, laws, and regulations (e.g., NIST 800-53 R5, IRS Pub1075, HIPAA/HITRUST, CJIS, MARS-E). - Manage and update security and risk plan documentation. - Investigate suspicious network activity and generate incident reports. - Utilize knowledge of security principles, information security risk management, and internal auditing. - Collaborate across teams and departments; build strong relationships. - Produce high-quality work products for both IT and senior management. - Develop and maintain key project artifacts. - Ensure security practices are followed throughout business and IT processes. - Work within a flexible, hybrid work environment (local to Phoenix, within 1-hour drive). - Position is a 4-month contract-to-hire role; must be eligible for FTE conversion (no visa sponsorship).
Let me know if you'd like a shorter summary or a more tailored version!
Numbers & Facts
Location
Phoenix, AZ
Skills
Business Processesunmatched
Computer Securityunmatched
Consultingunmatched
Customer Acquisitionunmatched
Customer Support/Serviceunmatched
Customer Trainingunmatched
Data Encryption Standard (DES)unmatched
Data Modelingunmatched
Data Qualityunmatched
Documentationunmatched
Documentation Planunmatched
Establish Prioritiesunmatched
HIPAA (Health Insurance Portability and Accountability Act)unmatched
Industry Standardsunmatched
Information/Data Security (InfoSec)unmatched
Internal Auditunmatched
Maintain Complianceunmatched
Regulationsunmatched
Regulatory Complianceunmatched
Reporting Skillsunmatched
Requirements Managementunmatched
Riskunmatched
Risk Analysisunmatched
Risk Managementunmatched
Security Analysisunmatched
Security Monitoringunmatched
Technical Leadershipunmatched
Technical Supportunmatched
U.S. National Institute of Standards and Technology (NIST)unmatched
🎯
Be found by employers
5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.
Level up your application
Professional resume templates
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.