Logo for Mindlance

IT Systems Compliance Analyst / Systems Engineer

Role overview

Qualifications

  • Experience implementing and supporting Security Frameworks: NIST 800-53, DISA Security requirements, CIS, HITRUST, PCI
  • Four or more years demonstrated proficiency in design, implementation, administration
  • Knowledge of information security principles including risk assessment and management
  • Ability to communicate technical information clearly and articulately

Responsibilities

  • Monitor compliance programs for Infrastructure Services
  • Interface with audit and security personnel, providing necessary documentation
  • Develop and maintain compliance policies and procedures
  • Provide evidence to assist with internal and external audits

Key facts

Hard skills

Other skills

  • Microsoft Windows
  • Critical Thinking
  • Adaptability
  • Communication
  • Teamwork

About the company

Mindlance logo

Mindlance

Staffing & Recruiting

Founded in 1999, Mindlance is one of the largest diversity-owned staffing firms in the US and has been on SIA’s list of Fastest Growing US Staffing Firms for 10 years. Mindlance has also been recognized as one of the consistently best performing partners to industry-leading MSP programs including Allegis, Kelly, TAPFIN, PROUnlimited, Pontoon, GRI, WorkforceLogiq and Agile-1.What started with contingent staffing has developed to a comprehensive portfolio of workforce solutions. Along with industry specific, talent-centric staffing across a range of specializations- Technology, Engineering, Scientific, Clinical Research, Digital, Creative, Marketing, Profession, Mindlance provides Managed Recruitment services- RPO and Direct + Diverse Sourcing, and Pay+ Services- EoR/Payroll, IC Compliance and AoR.Mindlance is also generating alternative talent pipelines that prioritize diversity through three Diverse Talent Acceleration offerings: (1) RebootTalent, a diverse returning talent acceleration service (2) Mindlance Diversphere, a private diverse talent pool aggregated from a network of diversity partnerships and (3) Quintrix Solutions, an upskilling recruit-train-deploy service.With a year-over-year growth rate of 20% and an annual revenue of over $400 million and growing, the Mindlance story is one of calculable achievement, made meaningful by the commitment to grow a mindful way that creates balance in the work and societal ecosystem.Visit www.mindlance.com to learn more about us and our latest job openings.STAFFING INDUSTRY ANALYSTS RECOGNITIONS:Fastest Growing U.S. Staffing Firms (2022, 2021, 2019, 2018, 2017, 2016, 2015, 2014, 2013, 2012, 2011)Largest U.S. Staffing Firms (2022, 2021, 2020, 2019, 2018, 2017, 2016, 2015)Largest Diversity-Owned U.S. Staffing Firms (2022, 2021, 2020, 2019, 2018, 2017, 2016, 2015)Largest IT Staffing Firms (2022, 2021, 2020, 2019, 2018, 2017)Largest Clinical & Scientific Staffing Firms (2022, 2021, 2020, 2019, 2018, 2017)

Company details

Company typeLarge
IndustryStaffing & Recruiting
Company size1001 - 5000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

100% Remote

Contract to Hire role

Sample resume attached

Important Notes from Hiring Manager:
Requirements:
1. Experience implementing and supporting the following Security Frameworks: NIST 800-53, DISA Security requirements, CIS, HITRUST, PCI for a major operating system or component such as FW, RHEL, Windows, DB, WEB in a large enterprise environment.
2. Familiarity with basic enterprise audits, including SOC2, FISMA, MAC ARS, DOD CCRI.
3. Experience interfacing with internal and external auditors.
4. Familiarity with utilizing Cloud tools such as WIZ, GAS and TeleForm templates


Job Description:
IT Systems Compliance Analyst
are responsible for monitoring our compliance programs for Infrastructure Services. This includes overseeing and evaluating government and commercial product and program regulations and requirements to promote and sustain organization integrity. The position is also responsible for identifying, defining, communicating, and managing the compliance program requirements and key performance indicators for government and commercial business.

Description
• IT Systems Compliance Analysts are responsible for maturing the Compliance Program.
• Resource will interface with various audit and security personnel, providing policies, procedures, and device evidence required for specific platforms.
• Collaboration with technology owners on application of policies, procedures and audit requirements
• Interpret policies and procedures for accuracy and technical sensibility.
• Manage documentation and evidence repositories for access during audit events (Automated Scans, Manual Scripting, etc.).
• Develop policies and procedures and ensure that the current procedures are updated with current information and available for review for compliance with CMS, ARS, HITRUS, SOC2, DISA policies, procedures, and standards.
• Ability to navigate the DOD DISA public-facing site to include the STIGS Document Library & the STIG Viewer application (xccdf).
• Participate in discussions with all levels of leadership to articulate current state of the program.
• Advise on mitigation and remediation strategies for any variances or ensure they are documented in a Corrective Action Plan (CAP).
• Perform hardware and software evaluations to maintain established baseline integrity.
• Provide evidence to assist with internal and external audits.
• Ensure self-inspection checklists are completed against policies, procedures, and evidence for compliance audits.
• Ensure self-inspection checklists are completed against defined infrastructure platform baselines.
• Gather evidentiary documentation to support audit findings from compliance audits periodically throughout the year.
• Ability to navigate a SQL relational database: clauses, expressions, predicates, queries, and statements.
• Working experience with excel
• Other duties as assigned.

Additional Required Qualifications:
• Four or more years demonstrated proficiency and experience in design, implementation, administration, monitoring and troubleshooting technology.
• Knowledge of information security principles, including risk assessment and management, threat and vulnerability management, incident response and identity and access management
• Competent working in one or more environments highly integrated with an operating system.
• Extensive experience implementing and administering/managing technical solutions in major, large-scale system implementations.
• High critical thinking skills to evaluate alternatives and present solutions that are consistent with business objectives and strategy.
• Ability to manage tasks independently and take ownership of responsibilities.
• Ability to learn from mistakes and apply constructive feedback to improve performance.
• Ability to communicate technical information clearly and articulately.
• Ability to adapt to a rapidly changing environment.
• Proficient working with various audit infrastructure tools/technologies such as Nessus, ACAS, and Nexpose.
• Knowledge of audit and assessment activities and processes such as configuration management
• Strong team-oriented interpersonal skills with the ability to interface with a broad range of people and roles

Requirements:
1. Experience implementing and supporting the following Security Frameworks: NIST 800-53, DISA Security requirements, CIS, HITRUST, PCI for a major operating system or component such as FW, RHEL, Windows, DB, WEB in a large enterprise environment.
2. Familiarity with basic enterprise audits, including SOC2, FISMA, MAC ARS, DOD CCRI.
3. Experience interfacing with internal and external auditors.
4. Familiarity with utilizing Cloud tools such as WIZ, GAS and TeleForm templates


Preferred:
1. Department of Defense (DOD) Experience
2. Experience as a primary liaison between Infrastructure Service organizations, Audit and Security organizations.
3. Managed requirements within simultaneous two-three audits.
4. This position has some accountability to consult independently with operational areas and senior leadership across the Enterprise.
5. Identifying, defining, communicating, and managing the compliance audit program requirements and performance indicators. – such as security controls from NIST800-53
6. Bachelor’s degree in an IT related field or equivalent work experience.
7. Certifications: Comptia Security Plus or CISSP.


EEO:
“Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans.”

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Security Compliance Analyst Related jobs

Other jobs at Mindlance

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.