Senior Information Security GRC Analyst (Security Architect - Consultant)

InterSources Inc.

Columbia, SC(remote)

JOB DETAILS
SKILLS
Architectural Analysis, Artificial Intelligence (AI), Auditing, CISA - Certified Information Systems Auditor, Cloud Applications, Cloud Computing, Communication Skills, Computer Security, Consulting, Corrective Action, Data Analysis, Documentation, ERP (Enterprise Resource Planning), GSLC - GIAC Security Leadership Certificate, Government, HIPAA (Health Insurance Portability and Accountability Act), ISO (International Organization for Standardization), Information Technology Consulting, Information Technology/Systems Audit, Information/Data Security (InfoSec), International Electro-Technical Commission (IEC), Internet Security, Internet Service Providers, Interviewing Skills, Maintain Compliance, Online Marketing, Oracle, PCI Express (PCI-E), PCI-DSS, Presentation/Verbal Skills, Process Development, Process Improvement, Quality Assurance, Regulatory Compliance, Security Analysis, Security Architecture, Security Auditing, Security Compliance, Security Consulting, Security Monitoring, Software Development, System Integration (SI), Time Management, U.S. National Institute of Standards and Technology (NIST), User Experience Design (UXD), User Interface Design, Web Programming, Willing to Travel, Writing Skills
LOCATION
Columbia, SC(remote)
POSTED
3 days ago
Title: Senior Information Security GRC Analyst (Security Architect - Consultant) (11518)
Client: State of South Carolina – Department of Administration (Division of Information Security)
Location: Columbia, SC 29210 (Remote)
Duration: 12 Months
Interview Process: 1–2 Rounds of Virtual Interviews (In-person availability preferred)
Candidate Location: No South Carolina residency required. Open to nationwide candidates. Preference will be given to local candidates who can attend client meetings, trainings, and other onsite activities as needed. Travel expenses for onsite work are the responsibility of the consultant.

Daily Duties / Responsibilities:
  • Support DIS in executing the statewide Information Security Program.
  • Conduct interviews with business owners, technical teams, administrators, and third parties to understand agency security processes.
  • Develop and track agency Information Security implementation plans.
  • Review security documentation to ensure compliance with established security controls.
  • Document policies, procedures, and security processes.
  • Perform security compliance assessments using standard control frameworks.
  • Assess agency compliance with NIST 800-53 security controls.
  • Track POA&M and Corrective Action Plan (CAP) activities.
  • Utilize Archer or similar GRC tools to manage compliance activities.
  • Identify process improvements and assist agencies with security implementation.
  • Manage multiple information security initiatives while meeting project deadlines.
  • Collaborate with agency stakeholders to improve overall security compliance.
Required Skills:
  • 10+ years of Information Security and Compliance experience.
  • 2+ years of experience performing security audits using a standard control framework as an Auditor or Information System Security Officer (ISSO).
  • Strong working knowledge of NIST SP 800-53 (2+ years).
  • Experience with POA&M (Plan of Action & Milestones) or Corrective Action Plans (CAP).
  • 3+ years of experience using Archer or similar GRC tools.
  • Strong written and verbal communication skills.
  • Bachelor's Degree (completed and verifiable).
Preferred Skills:
  • Experience developing Information Security Plans (ISP) or System Security Plans (SSP).
  • Experience managing multiple information security work efforts simultaneously.
  • Knowledge of IRS 1075, HIPAA, CJIS, MARS-E, and/or PCI-DSS.
  • Government/Public Sector experience.
  • Strong business process analysis and documentation skills.
Required Education:
  • Bachelor's Degree (Required)
Preferred Certifications:
  • CISA
  • GSLC
  • Equivalent Information Security Certification
About Us:
InterSources Inc , is a Small, Woman, and Minority-Owned Business Enterprise, ISO/IEC 27001, SOC 2 Type 2 certified company with massive 18+ years of diversified experience in providing IT Consulting Services, Artificial Intelligence, Data Analysis, Application Development, Cloud Services, Cybersecurity, Digital Marketing, ERP Management, Custom Software Development, Web Development, UI/ UX Design, System Integration, QA Support etc. We make reasonable accommodations for clients and employees, and we do not discriminate based on any protected attribute including race, religion, color, national origin, gender sexual orientation, gender identity, age, or marital status. We also are a Google Cloud and Oracle partner company.

About the Company

I

InterSources Inc.

It’s all about harnessing the real power of data. InterSources Inc was founded in 2007 providing intelligent data solutions to clients across industries and geographies.

Over the years, we have built products on Business Intelligence & Big Data platform simplifying and transforming the way business intelligence and real-time data analytics empower Corporations and end-users using Softwares like Tableau, Business Objects, MicroStrategy, etc.

In the process, we have enabled companies to use data analytics to help better understand, predict and influence consumer behavior, identify new market opportunities as they emerge, provide to users the data they need, alert the user when and why key business metrics have changed and enable them to make smart decisions.

COMPANY SIZE
100 to 499 employees
INDUSTRY
Computer/IT Services
FOUNDED
2007
WEBSITE
https://www.intersourcesinc.com/