AI Summary
Conduct risk assessments, monitor controls, and ensure compliance with NIST and related frameworks. Develop and maintain security policies, standards, and procedures. Lead incident response and remediation activities.
Key Highlights
Risk assessment and incident response
Compliance with NIST and related frameworks
Security policy development and maintenance
Technical Skills Required
Benefits & Perks
$35-$36/hr pay rate
Job Description
Dice is the leading career destination for tech experts at every stage of their careers. Our client, Apetan Consulting, is seeking the following. Apply via Dice today!
Information Security Analyst 100% Remote
Notes from call:
- Analyst-level resource (not engineer) with risk assessment, incident response, and compliance exposure; someone operationally focused who can support audits, monitoring, and reporting.
- Government/municipal experience or veteran background preferred (they specifically like military profiles, but not mandatory).
- Strong written communication and ability to liaise across IT, Legal, and business units, someone who can "bridge the gap" between security and operations.
- Client: Presidio
- End Client: The City of Stamford (Government)
- Location: Stamford, CT (5 days onsite)-Need locals only
- Duration: 6 months to start, potential extension or FTE conversion
- Hours: 35-hour work week
- Interview Process: Two virtual interviews, possible onsite final
- C2C Pay Rate: $35-$36/hr
Our client is seeking an Information Security Analyst to strengthen their end client's security posture. Reporting to the CIO, this role will conduct risk assessments, monitor controls, ensure compliance with NIST and related frameworks, and advise on cybersecurity threats.
Key Responsibilities:
- Develop and maintain security policies, standards, and procedures.
- Conduct risk assessments, vulnerability scans, and SOC audits.
- Maintain the City's risk taxonomy, register, and control inventory.
- Lead incident response and remediation activities.
- Monitor and analyze security events across enterprise systems.
- Support SIEM, IDS/IPS, DLP, and endpoint protection tools.
- Provide employee security awareness training.
- Ensure compliance with federal regulations (e.g., NIST, FISMA).
- 3-5 years in information security, risk management, or IT security operations.
- Experience with SIEM, IDS/IPS, firewalls, endpoint protection, and vulnerability management.
- Knowledge of frameworks such as NIST Cybersecurity Framework 2.0, ISO 27001, CIS Controls.
- Strong analytical, communication, and problem-solving skills.
- Veteran/military background preferred, not required.