More jobs:
Systems Analyst
Remote / Online - Candidates ideally in
Austin, Travis County, Texas, 78716, USA
Listed on 2026-02-22
Austin, Travis County, Texas, 78716, USA
Listing for:
Sistema Technologies Inc.
Remote/Work from Home
position Listed on 2026-02-22
Job specializations:
-
IT/Tech
Cybersecurity, Information Security
Job Description & How to Apply Below
Location: Austin, TX
Position: Systems Analyst
Solicitation #:
Employer: Texas Health and Human Services Commission (HHSC)
The Security Engineer will project work by leading security governance, compliance, and risk management activities, with a strong focus on System Security & Privacy Plans (SSP/SSPP). This role bridges technical security operations and regulatory compliance, ensuring audit readiness, effective vulnerability remediation, and secure delivery of public-facing services across complex, multi-platform environments.
Remote Work: Position will be 3 days remote with 2 days (Mon & Thu) required onsite. Candidates must be local to the Austin area within a 50-mile radius. Subject to change per hiring team.
Responsibilities- Lead end to end System Security & Privacy Plan (SSP/SSPP) development, maintenance, and updates for enterprise systems
- Drive remediation activities through POA&M management, ensuring timely closure of compliance gaps
- Translate penetration testing and vulnerability findings into actionable remediation work items (EPICs/user stories)
- Coordinate with application, infrastructure, and security teams to validate remediation through re-testing and evidence
- Oversee risk-based vulnerability management, including prioritization and SLA-driven remediation
- Provide governance oversight for endpoint protection, web application security, and cloud security controls
- Produce assessor ready documentation, including configurations, monitoring evidence, approvals, and incident traceability
- Support continuous audit readiness and reduce repeat findings through disciplined governance and documentation practices
- 12+ years of experience deep focus on Governance, Risk, and Compliance (GRC), Enterprise Security and Security Architecture, Vulnerability Management and Penetration Testing, Cloud Security and hybrid environments
- 10+ years of proven experience owning SSP development end to end
- 10+ years of hands‑on experience with CMS MARS E v2.2 or comparable federal/state security frameworks
- 10+ years of strong expertise in control implementation documentation, audit evidence collection and validation, POA&M creation, tracking, and remediation management
- 8+ years of ability to translate technical security issues into compliance‑aligned remediation actions
- 8+ years of strong stakeholder management skills across security, infrastructure, and application teams
- 8+ years of excellent written and verbal communication skills, particularly for executive stakeholders
- 8+ years of knowledge of NIST 800‑53, NIST RMF, and privacy controls
- 8+ years of knowledge of Secure SDLC and Dev Sec Ops practices
- 5+ years preferred experience operating in multi‑vendor, multi‑platform environments
- 5+ years preferred demonstrated ability to reduce repeat audit findings and improve compliance maturity
- 5+ years preferred experience mentoring or guiding teams on security governance best practices
- 1+ year preferred experience supporting HHSC systems, including SSP development and compliance
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×