×
Register Here to Apply for Jobs or Post Jobs. X

Intermediate Information Security Analyst

Job in Fairfax, Fairfax County, Virginia, 22032, USA
Listing for: Data Systems Analysts, Inc.
Full Time position
Listed on 2026-01-02
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security
Salary/Wage Range or Industry Benchmark: 100000 - 125000 USD Yearly USD 100000.00 125000.00 YEAR
Job Description & How to Apply Below
Intermediate Information Security Analyst

DSA is hiring an Intermediate Information Security Analyst. This is a full-time position supporting a customer in the DC Metro area with a HYBRID Schedule. This position supports the Environmental Protection Agency (EPA). DSA is the Prime and has been working with this customer on this contract for more than 13 years. It is a dynamic team with a passion for supporting Federal programs that serve US Citizens.

Location is Hybrid:
Allows the candidate the ability to work onsite at DSA or customer site with potential for telework. DSA work locations include Fairfax VA.

Work Location is flexible with telework as approved. The ability to work onsite each week is required. Core work hours dedicated to DSA and our direct customer are 8 am est to 5 pm est.

The Environmental Protection Agency (EPA) Office of Information Security and Privacy (OISP) is responsible for developing and maintaining agency wide information security and privacy programs; developing and maintaining information security and privacy policies, procedures, and control techniques; training personnel with significant information security responsibilities and assisting senior agency officials with information security and privacy responsibilities.

The Intermediate Information Security Analyst will be an integral part of a team responsible for supporting the development and maturation of an Agency-wide information security (Info Sec) program for a large civilian Federal agency. The candidate will serve as a subject matter expert with regards to the Risk Management Framework (RMF) and all associated information security policies and procedures and should possess in-depth knowledge of applying, selecting and testing the NIST family of security controls.

Primary Responsibilities:

  • Advising stakeholders on Info Sec initiatives including compliance, awareness and training, and security operations.
  • Leading Independent Validation and Verification (IV&V) efforts on security authorization/ATO packages to ensure compliance to agency requirements.
  • Leveraging the existing Governance, Risk, and Compliance (GRC) tool, Telos Xacta (or an alternate like CSAM or RSA Archer), to track and reconcile findings from assessments, audits, and vulnerability scans.
  • Coordinating government data calls (FISMA, FMFIA, BDR, etc.) and monthly reports.
  • Assessing the effectiveness of the Info Sec and privacy training program and leading the collection, analyzing, and presentation of enterprise-level Info Sec performance metrics.
  • Managing Info Sec Program POA&Ms, including advising on remediation efforts.
  • Providing administrative support to Xacta (or equivalent GRC tool) users and authoring operational procedures.
  • Working closely with senior agency security officials, system owners, information system security officers (ISSOs) and other stakeholders to advise and implement security solutions.
  • Identifying opportunities for efficiencies in work process and innovative approaches.
  • Participating in team problem solving efforts and offer ideas to solve client issues.
  • Preparing and assisting in the development of policy and procedures.
  • Conducting relevant research, data analysis, and developing reports.
  • Preparing and assisting in the development of policy and procedures for program-level management and promoting consistency in program management best practices.
  • Implementing processes and procedures to monitor risk across programs / projects.
  • Preparing briefings to executive team to debrief the results of studies, analyses, and plans.

Required Qualifications:

  • Ability to obtain a Public Trust
  • Bachelor's degree in Information Technology or related field and 5 years of relevant IA experience. May substitute security certification (e.g. CISSP) for 2 years of experience.
  • Excellent written and verbal communication skills.
  • Possess in-depth knowledge of applying, selecting and testing the NIST 800-53 Rev 4 security controls.
  • Possess in-depth knowledge of NIST 800-37 Risk Management Framework.
  • Experience with a Governance, Risk and Compliance tool (e.g., Xacta, RSA Archer, CSAM or eMASS).
  • Excellent attention to detail.
  • Ability to handle and prioritize multiple tasks and deadlines.
  • Possible travel to DC Client site/DSA office for badging/equipment.

Desired Qualifications:

  • Intermediate level cybersecurity certification (e.g., CompTIA Security+, ISC2 CGRC).
  • In-depth knowledge of applying, selecting and testing the NIST 800-53 Rev 5 security controls.
  • Public Trust

#DSA
209

#LI-CW1

Many of DSA's positions require the ability to obtain a security clearance. Security clearances may only be granted to U.S. citizens. In addition, applicants who accept a conditional offer of employment may be subject to government security investigation(s) and must meet eligibility requirements for access to classified information. DSA is proud to be an Equal Opportunity Employer. DSA is committed to treating all employees and applicants for employment with respect and dignity and maintaining a workplace that is free from…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary