Job Description :

Job Title: Information Security Analyst (776405)
Duration: 10 Months Contract(Extendable)
Position: Hybrid
Client: Georgia Department of Human Services(GA-DHS).
Description:
This role is responsible for monitoring, detecting, analyzing, and responding to security events, managing vulnerabilities, and ensuring compliance with federal, agency, and organizational security requirements (NIST, FISMA, IRS Pub 1075, CMS, SSA). The analyst will also support audit readiness, maintain the System Security Plan (SSP), and lead targeted security awareness initiatives.
Key Responsibilities
Security Operations & Monitoring
  • Conduct continuous monitoring of enterprise systems using CrowdStrike (EDR), Splunk (SIEM), and Tenable (Vulnerability Management).
  • Detect, investigate, and respond to potential threats and incidents impacting CUI and overall system security.
  • Maintain dashboards, alerts, and reports to ensure proactive detection and escalation of risks.
Vulnerability & Risk Management
  • Perform ongoing vulnerability assessments with Tenable, track remediation efforts, and validate closure of findings.
  • Support patch management and configuration management processes to reduce the attack surface.
  • Deliver metrics and risk posture updates to leadership.
Compliance & Documentation
  • Maintain and update System Security Plans (SSPs) to document the implementation of security controls.
  • Support external and internal audits (IRS, CMS, SSA, NIST, FISMA) by providing required evidence, documentation, and remediation tracking.
  • Assist in compliance with evolving frameworks (e.g., NIST SP 800-53 Rev. 5).
Incident Response
  • Triage, analyze, and document security incidents across enterprise systems.
  • Coordinate with IT and business stakeholders on containment, eradication, and recovery efforts.
  • Deliver incident reports, root cause analysis, and lessons learned documentation.
Security Awareness & Training
  • Develop and deliver security awareness programs, emphasizing CUI handling, phishing defense, and insider threat mitigation.
  • Conduct specialized training for privileged users and administrators.
  • Track participation and report effectiveness of awareness initiatives.
We are an equal opportunity employer. All aspects of employment including the decision to hire, promote, discipline, or discharge, will be based on merit, competence, performance, and business needs. We do not discriminate on the basis of race, color, religion, marital status, age, national origin, ancestry, physical or mental disability, medical condition, pregnancy, genetic information, gender, sexual orientation, gender identity or expression, national origin, citizenship/ immigration status, veteran status, or any other status protected under federal, state, or local law.

             

Similar Jobs you may be interested in ..