Senior Information Security Analyst
Company: MindPoint Group
Location: Washington
Posted on: May 24, 2025
Job Description:
Career Opportunities with MindPoint GroupA great place to
work.Current job opportunities are posted here as they become
available.Tyto Athene is searching for a Senior Information
Security Analyst to support our federal client in Washington, DC.
This role is responsible for researching, generating, and
validating security controls that support the customers' Risk
Management Framework (RMF). Responsibilities include defining,
creating, and maintaining Systems Security Plans (SSP) and other
related documentation to support Accreditation and Authorization
(A&A) reviews and to achieve Authority to Operate (ATO).
Additionally, ISSOs review systems to identify potential security
weaknesses, recommend improvements to remediate vulnerabilities,
and assist with implementing changes and documenting
upgrades.Responsibilities:
- Developing and updating security authorization packages in
accordance with the client's requirements and compliant with FISMA.
Core documents that you will be responsible for include but are not
limited to: System Security Plan (SSP), Risk Assessment Report,
Security Assessment Plan and Report, Contingency Plan, Incident
Response Plan (IRP), Standard Operating Procedures (SOP), Plan of
Actions and Milestones (POA&M), Remediation Plans,
Configuration Management Plan (CMP), etc.
- Validate that protective measures for physical security are in
place to support the system's security requirements
- Maintain an inventory of hardware and software for the
information system
- Develop, coordinate, test, and train staff on Contingency Plans
and Incident Response Plans
- Manage emerging and defined risks associated with the
administration and use of assigned information systems
- Coordinate with relevant stakeholders to achieve and maintain
the information systems' compliance and authorization to operate
(ATO)
- Perform risk analyses to determine cost-effective and essential
safeguards
- Support Incident Response and Contingency activities
- Able to perform security control assessments using NIST 800-53A
publication as well as OMB A-130 and OMB A-123 circulars
- Conduct independent scans of the application, network, and
database (where required)
- Provide continuous monitoring to enforce client security policy
and procedures and create processes that will provide oversight for
the system owner
- Coordinate with multiple stakeholders to complete mandatory
agency data calls in a timely manner
- Train and mentor less experienced team membersRequired:
- Minimum of five (5) years of hands-on experience as an ISSO
with at least three (3) of those years spent leading system
authorizations for federal government high and moderate
systems.
- Minimum 1 of the following relevant certifications (currently
active and maintained over the life of the contract): CISSP, CISM,
CGRC, CRISC, ISSMP, CISA, CCSP, CEH, Security+, PMP.
- Advanced speaking, writing, and presentation skills with
experience briefing up to CISO level.
- Advanced knowledge of FISMA, RMF, NIST, and cyber-related OMB
memoranda.
- Knowledge of cyber network defense concepts and security tools
(e.g., SIEM, EDR, Tenable).
- Excellent organizational skills to support tracking detailed
tasks and meeting deadlines 100% of the time.
- Excellent interpersonal skills to build and nurture strong
working relationships with all stakeholders.
- Bachelor's Degree or higher in Cybersecurity, Management
Information Systems, Information Technology, or a related
field
- Understanding and experience using JCAMLocation:
- This role will be on client site in Washington, DC.Clearance:
- Public Trust EligibleCompensation:
- Compensation is unique to each candidate and relative to the
skills and experience they bring to the position. The salary range
for this position is typically $140K-$150K. This does not guarantee
a specific salary as compensation is based upon multiple factors
such as education, experience, certifications, and other
requirements, and may fall outside of the above-stated range.
- Highlights of our benefits include Health/Dental/Vision, 401(k)
match, Flexible Time Off, STD/LTD/Life Insurance, Referral Bonuses,
professional development reimbursement, and maternity/paternity
leaveAdditional Information:Tyto Athene is a trusted leader in IT
services and solutions, delivering mission-focused digital
transformation that drives measurable success. Our expertise spans
four core technology domains-Network Modernization, Hybrid Cloud,
Cybersecurity, and Enterprise IT-empowering our clients with
cutting-edge solutions tailored to their evolving needs. With over
50 years of experience, Tyto Athene proudly support Defense,
Intelligence, Space, National Security, Civilian, Health, and
Public Safety clients across the United States and worldwide.At
Tyto Athene, we believe that success starts with our people. We
foster a collaborative, innovative, and mission-driven environment
where every team member plays a critical role in shaping the future
of technology. Are you ready to join #TeamTyto?Tyto Athene, LLC is
an Equal Opportunity Employer; all qualified applicants will
receive consideration for employment without regard to race, color,
religion, sex, [sexual orientation, gender identity,] national
origin, disability, status as a protected veteran, or any
characteristic protected by applicable law.
#J-18808-Ljbffr
Keywords: MindPoint Group, Leesburg , Senior Information Security Analyst, Professions , Washington, Virginia
Didn't find what you're looking for? Search again!
Loading more jobs...