Systems Analyst 3 (Security / GRC Focus)

Medcomps Corporation3 months ago
Austin, TX, United States
Hybrid
Full-time
Junior Level (1-3 years)

Job Description

📢 Hiring: Systems Analyst 3 (Security / GRC Focus)

📍 Location: Austin, TX (Hybrid – 2 days onsite)

We are seeking a senior Systems Analyst with a strong Security and GRC background to lead governance, compliance, and risk management activities. This role focuses heavily on System Security & Privacy Plans (SSP/SSPP), vulnerability remediation, and audit readiness across complex enterprise environments.

🔍 Key Responsibilities

  • Lead end-to-end SSP/SSPP development and maintenance
  • Drive remediation through POA&M management
  • Translate penetration test and vulnerability findings into remediation actions
  • Coordinate with application, infrastructure, and security teams
  • Oversee risk-based vulnerability management
  • Provide governance for endpoint, web, and cloud security
  • Produce audit-ready documentation and compliance evidence
  • Support continuous audit readiness and reduce repeat findings

✅ Required Skills & Experience

12+ years in:

  • Security Governance, Risk & Compliance (GRC)
  • Enterprise Security Architecture
  • Vulnerability Management & Penetration Testing
  • Cloud and hybrid security environments
  • 10+ years owning SSP development end-to-end
  • Experience with CMS MARS-E v2.2 or similar federal/state frameworks

Strong expertise in:

  • Control implementation documentation
  • Audit evidence collection
  • POA&M tracking and remediation

Knowledge of:

  • NIST 800-53
  • NIST RMF
  • Privacy controls
  • Secure SDLC and DevSecOps

Required Skills

Vulnerability Management
Audit Evidence Collection
Hybrid Security Environments
Cloud Security
Enterprise Security Architecture
Risk & Compliance (GRC)
NIST 800-53
Control Implementation Documentation
Secure SDLC
POA&M Tracking
Penetration Testing
DevSecOps
NIST RMF
SSP Development
Privacy Controls
Security Governance
CMS MARS-E v2.2