Senior Information Security GRC Analyst

DP Professionals

Columbia, SC(remote)

JOB DETAILS
SKILLS
Archer Tools, Business Processes, CISA - Certified Information Systems Auditor, Communication Skills, Computer Security, Documentation, GSLC - GIAC Security Leadership Certificate, Government, HIPAA (Health Insurance Portability and Accountability Act), Information Technology/Systems Audit, Information/Data Security (InfoSec), Maintain Compliance, PCI Express (PCI-E), Policy Development, Procedure Development, Process Analysis, Project Estimates, Reengineering, Regulatory Compliance, Schedule Development, Security Analysis, Security Auditing, Security Monitoring, Team Player, Time Management, U.S. National Institute of Standards and Technology (NIST)
LOCATION
Columbia, SC(remote)
POSTED
4 days ago
DPP is seeking a Senior Information Security GRC Analyst for an opportunity with our client based in Columbia, SC.
 
Work location: Fully remote. Some onsite work will be required.
Duration: 12 months, with the possibility of extension
Terms: W2 contract
Candidate location: Preference will be given to local candidates who can come to the office as needed for client and departmental meetings, trainings, and other onsite activities.
 
Scope of the project:
  • Supporting agencies during their development of the information security program with direct tactical implementation assistance.
  • Developing and tracking agency information security implementation plans.
  • Interview administrators, managers and third parties to aid in development of program artifacts.
  • Ensuring high-level assessments of agencies’ INFOSEC work to ensure progress is made.
  • Providing high-level analysis of process and procedures work to ensure compliance with state standards. 
Duties:
  • Interviewing business and technical owners to determine policies and procedures used for each agency process.
  • Developing and tracking INFOSEC implementation plan progress.
  • Documenting information gathered during both interviews and
  • Document reviews to assist with developing formal process and procedures.
  • Assessing agency documentation to ensure adequate approaches are used to comply with controls. 
Required skills:
  • 10+ years of experience in Information Security and Compliance.
  • 2+ years of experience with security audits based on a standard control set as an auditor or responding Information System Security Officer.
  • Must have a strong working knowledge of NIST 800-53 (2 years of experience).
  • Prior experience with POA&M or CAP.
  • Strong communication experience.
  • Experience with using a GRC tool (Archer or similar) (3 years of experience).
  • Bachelor's degree - field of study is open, but the degree must be complete and verifiable 
Preferred skills:
  • Have completed an information security plan or system security plan notebook.
  • Simultaneously, manage multiple infosec work efforts.
  • Knowledge of IRS 1075, HIPAA, CJIS, MARS-E and/or PCI-Agency.
  • Government sector experience
  • CISA, GSLC, or equivalent certification 
Additional skills:
  • Ability to identify, map and re-engineer business processes.
  • Strong schedule management and resource planning skills.
  • Ability to work at a high-volume and fast pace.
  • Strong collaborator and strong ability to meet deadlines. 
Interested? Learn more:
Click the apply button or contact our recruiter Harrison at Harrison.Donahue@dppit.com to learn more about this position (#26-00697).

Authorized US Worker - US Citizens and those authorized to work in the US are encouraged to apply. We are unable to sponsor at this time. EOE/AA/V/D

DPP offers a range of compensation and benefits packages to our employees and their eligible dependents. Call today to learn more about working with DPP.


 

About the Company

D

DP Professionals