Security Analyst
SynergyAbout the role
Synergy Business Innovation & Solutions is a premier implementer of cutting-edge software solutions. Synergy brings the experience and expertise necessary to deliver capability that provides tangible ROI to our customers. Synergy’s core areas of expertise are in the fields of Digital Transformation, Cloud Solutions, SaaS and Low-Code/No-Code solutions, Emerging Technologies, Data analytics and Visualization, Information Assurance, and Business Process Re-Engineering.
Synergy offers its employees a generous portfolio of core and voluntary benefits including: group medical, dental, and vision insurance, company paid life, short-term, and long-term disability insurance; HSA, FSA; 401(k) with immediately vested company match; PTO/Sick Leave, 11 paid federal holidays, parental leave; tuition and training reimbursement; a referral bonus program; and life management programs.
At Synergy, you’ll be challenged and given the opportunity to grow in your career path. In fact, growth is such a big deal to us that you will have dedicated career coaches available for every employee, company-funded certification opportunities, education reimbursement, and a general open-door policy so that you have support when you need it. Our team is eager to learn, fast-paced, and quality-driven—if that sounds like you, Synergy has a position for you!
Description:- We are seeking a mid-level Security Analyst. The candidate will work for the engineering division that supports developing and managing a suite of enterprise services and applications. As a member of the DevSecOps team, the candidate will focus on integrating security requirements with automated testing, code integration, and deployment processes and procedures. The candidate will work closely with our Development, DevOps, Support, and administrative teams in an agile environment to maintain the security posture of systems in compliance with federal government standards.
- Execution of Risk Management Framework
- Perform Security Impact Assessment for all application and environment updates.
- Coordinate between multiple teams to ensure user stories have accurate and specific acceptance criteria that support compliance and control requirements.
- Develop an in-depth understanding of customer requirements to quantify security and application risks, and perform impact assessments
- Identification, authoring, and monitor of necessary controls to achieve and maintain compliance
- Oversight, expertise, technical security strategy, standards, and best practices for security categorizations (low, moderate and high).
- Reviews, testing and implementation of security requirements within project plan timelines.
- Research and tracking of security standards, policies, and procedures.
- Support for multiple project assignments with strong and effective communication, time management and collaboration skills.
- Documented experience executing Risk Management Framework (RMF, NIST-800-53)
- Control identification, definition, implementation, and monitoring
- Experience with agile software development
- General knowledge of security best practices and compliance requirements
- Excellent organizational and communication skills are mandatory for various stakeholder audiences
- Experience collaboratively establishing secure configuration baselines for technologies
- Knowledge or experience with conducting Assessment and Authorization (A&A) and Continuous Monitoring following NIST guidelines
- Knowledge or experience developing security documentation and conducting reviews for A&A packages
- Review and verify policies and procedures are developed in line with all applicable federal and LOC security standards and regulations
- Maintain, track, and communicate detailed project tasks
- Develop and update security documentation including but not limited to:
- Determine baseline IT security requirements in accordance with FIPS 199
- Identify and visually demonstrate system boundaries, select security controls, and ensure implemented controls are adequate for COTS or proprietary web applications. Provide recommendations as necessary to meet or improve controls
- Ensure security policies are developed, maintained and updated to meet IT security best business practices and standards, including Federal Info Security Manage
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s