Job Title: IT Security Analyst
Location: Michigan (Hybrid - In-office 2 days per week)
Duration: 1 Year with Possible Extension
Notes:
First Round: Virtual interview via MS Teams.
Second Round: In-person interview at the Dimondale, MI office.
Screenshot photo of candidate required for virtual interviews.
A vendor representative must be present at the beginning of the virtual interview to validate the candidate.
Hybrid: In-office 2 days per week (No remote-only option).
Local and non-local candidates accepted (Non-local candidates must relocate at their own expense with no delays).
Cover Sheet (attached).
Valid Right to Represent with hybrid work schedule acknowledgment confirmed by the candidate.
Candidate's Resume (Full legal first name & last name ONLY).
Job Description:
Assist the Michigan Cyber Security, Risk, and Compliance Division Director with enterprise risk management.
Assess enterprise data security policies, processes, procedures, and controls, recommending improvements where needed.
Conduct risk assessments for specific agencies, identifying gaps in security control environments and compliance requirements.
Perform gap analysis of security requirements in agency applications according to security regulations and policies.
Guide NIST controls and other security statutory and regulatory requirements.
Act as a subject matter expert, leading and mentoring within the Risk and Compliance Division.
Enter and manage information in Keylight to complete the risk assessment process.
Assist with MiSAP Risk Assessments and contribute to the development of a Cyber Security Framework for the State of Michigan.
Work with the MCS Keylight team to improve the MiSAP process.
Perform additional cybersecurity-related tasks as assigned
Skill Years of Experience Total Experience
IT security and audit experience6+ Years
Knowledge of national/international security standards (NIST, PCI, CJIS, CMS, ISO, SOX, HIPAA, HITECH)6+ Years
Security assessments and reviews6+ Years
Enterprise risk management process6+ Years
Data security policies, processes, procedures, and controls6+ Years
Risk assessment and compliance gap analysis6+ Years
Interpretation of NIST controls and regulatory requirements6+ Years
Experience using Keylight for risk assessment processes6+ Years
Experience with MiSAP Risk Assessment6+ Years
Cybersecurity framework implementation6+ Years
Strong communication and collaboration skills6+ Years
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Report this job...client experiences, with a focus on delivery, excellence, and obsession over customer outcomes. This position involves contributing to HashiCorp's offerings, now part of IBM, which empower organizations to automate and secure multi-cloud and hybrid environments. You will...
...talent with our technology and make the impossible possible.Our Cybersecurity Internship Program allows you to take the lead as part of our... ...of millions of customers around the world.As a summer intern in our Cybersecurity Internship Program, you'll spend 10-12 weeks...
...Job Description Domino's Pizza is seeking an enthusiastic and dedicated Assistant Manager to join our team at our 5219 Dixie Hwy location in Louisville, United States. As an Assistant Manager, you'll play a crucial role in ensuring the success of our store operations...
Amentum is seeking a talented Software Engineer/Software Developer to support DOD Operations. This engineer will be developing and testing software on an Agile Software Development team of 7 or less developers to create software for a current Naval program. Would you like...
...the United States with Middlesex Paving earning an equally solid regional presence and reputation. Position Summary: The Equipment Operator is responsible for the safe and efficient operation of assigned equipment, ensuring compliance with company safety policies and...