Senior Security Analyst
Remote, United States
Full Time Senior-level / Expert Clearance required USD 88K - 163K * est.
Planned Systems International
Planned Systems International proactively understands the needs of customers and then dedicates our capabilities to providing innovative and effective Information Technology solutions.Overview
Planned Systems International (PSI) is currently seeking a Senior Security Analyst is responsible for supervising and coordinating Authorization & Accreditation (A&A) security activities and requirements for software products, including attaining Authority to Operate (ATOs) for multiple applications and systems within a software development Product Line at the Department of Veterans Affairs (VA).
Essential Functions and Job Responsibilities
- Act as system steward, advocate, and action manager by ushering products, applications, and systems through VA’s Risk Management Framework (RMF) stages to successfully award and maintain an ATO.
- Work with the VA security engineering teams and development teams to ensure that all requirements and artifacts for a product’s ATO are completed in a timely manner and maintained and updated in the Enterprise Mission Assurance Support Service (eMASS).
- Manage eMASS workflows and assist VA teams in developing documentation, addressing compliance gaps, coordinating reviews, and eliminating blockers.
- Post all required security artifacts in eMASS on behalf of VA employees and developers
- Develop and implement a Security Plan for the products within the Product Line to describe how the ATO will be maintain
- Review software application requirements to assure that the necessary security elements are identified
- Work with the VA engineers, Information Security Officers (ISO), and third-party development vendors to conduct vulnerability assessments on all software products i.
- Provide training on all pertinent security requirements to stakeholders, business sponsors, and PMO and development team members.
- Provide regularly scheduled status reports that summarize all security-related activity, with emphasis on high-risk activities and potential/actual security breaches and violations
- Develop and track Program Objective and Milestones (POAM) to reflect current status of addressing gaps in ATO and security requirements.
- Facilitate working sessions with security and information assurance teams for eMASS issue resolution.
- Document security related planning activities, capture and mitigate risks, and maintain the schedule of planned security activities and document analysis, as needed, on various systems and tools
- Facilitate virtual meetings to review RMF actions and status or to perform deep dives on specific security controls and POAMs, and update eMASS directly based on the meeting outcomes.
- Stay up to date with VA policy, industry trends, and advancements in program management and software development.
- Work proactively and independently to carry out assignments to completion within parameters of instructions given, prescribed routines, and standard accepted practices.
- Function as part of an integrated team sharing products, best practices, and information across the PMO Support Team.
- Perform related duties as assigned by supervisor.
Minimum Requirements
- Bachelor's degree
- 3-5 years of relevant experience
- Experience in managing security requirements and ATOs
- Experience working as a federal contractor or employee.
- Excellent written and verbal communication skills, including the ability to communicate with brevity and clarity to government clients and develop work products that meet professional quality standards with minimal supervision.
- Experience working as a consultant, with an understanding of how to effectively manage and support government clients and stakeholders.
- Strong understanding of software development life cycle (SDLC) and Agile methodologies.
- Proficiency in project management tools (e.g., JIRA, MS Project) and methodologies.
- Ability to schedule, organize, and facilitate executive-level virtual meetings and summarize outcomes.
- Ability to self-organize, balance workload, complete tasks on time (without reminders), proactively seek out assignments, and offer improvements to client delivery.
Required Technical/Business Tools Experience
- eMASS or security risk management framework tool
- MS Office (Word, Excel, PowerPoint, Outlook, Teams)
- MS SharePoint
- MS Visio
- Jira or comparable development management tool
Desired Qualifications
- eMASS experience
- Experience working as a VA contractor or employee.
Physical Demands
- Ability to effectively communicate in English, including talking and hearing.
- Ability to operate productively in a fully remote work environment, including the ability to take meetings and phone calls from a quiet and private space during business hours.
- Ability and willingness to actively participate in virtual meetings throughout most of the workday and be responsive to messages (MS Teams) and emails (MS Outlook) within reasonable timeframes set by the supervisor or client.
- Ability to be responsive and working during Eastern time zone standard business hours (8:00am to 4:00pm EST).
- Ability to satisfy security clearance and onboarding requirements:
- Print, sign, scan, and return onboarding documentation.
- Travel at personal expense to nearest government facility to get fingerprinted, apply for a PIV badge, pick-up the PIV badge, and pick-up government equipment.
Company Benefits
PSI offers full-time, benefits eligible employees a competitive total compensation package that includes paid leave, and options for employer sponsored group medical, dental, vision, short-term and long-term disability, life insurance, AD&D coverage, legal services, identity theft, and accident insurance. Flexible spending account and health saving account options offer pre-tax savings for qualified medical, dental, and vision expenses. The company sponsored 401(k) retirement plan has an employer contribution match that is immediately vested. We invest in the professional growth of our employees through professional courses, certifications, and tuition reimbursement programs.
EEO Commitment
It is company policy to promote equal employment opportunities. All personnel decisions, including, but not limited to, recruiting, hiring, training, promotion, compensation, benefits, and termination, are made without regard to race, color, religion, age, sex, sexual orientation, pregnancy, gender identity, genetic information, national origin, citizenship status, veteran status, protected veteran status, disability, or any other characteristic protected by applicable federal, state, or local law. Reasonable accommodations for applicants and employees with disabilities will be provided. If a reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact Human Resources by emailing HRDepartment@plan-sys.com, or by dialing 703-575-8400.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Clearance Compliance eMASS Jira Risk management RMF SDLC Security Clearance SharePoint
Perks/benefits: 401(k) matching Career development Competitive pay Flex hours Flexible spending account Health care Insurance Medical leave Startup environment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.