via Careerplug
$55K - 85K a year
Perform security risk assessments, compliance reviews, and audit support to ensure adherence to frameworks like NIST 800-53 and collaborate with teams to strengthen enterprise security and compliance.
Strong experience with NIST 800-53 Rev. 5, Risk Management Framework, security auditing in Windows and Unix, and preferred certifications like CISSP; must be local to Phoenix, AZ.
Job Title: IT Security Analyst Job Code: AZ 13235 Client: State of Arizona – AZDES (Department of Economic Security) Location: Phoenix, Arizona (Hybrid) Duration: 4-Month Contract-to-Hire Work Schedule: Monday–Friday | 8:00 AM – 5:00 PM (40 Hours/Week) Work Location: 1400 W. Washington St., Phoenix, AZ 85007 Closing Date: 08/18/2026 at 3:00 PM Position Overview The State of Arizona (AZDES) is seeking an experienced IT Security Analyst (Governance, Risk & Compliance - GRC) to support the Division of Technology Services. The selected candidate will perform IT security risk assessments, compliance reviews, audit support, and security documentation while ensuring compliance with security frameworks including NIST 800-53 Rev. 5 and the Risk Management Framework (RMF). This role requires collaboration with business and technical teams to strengthen enterprise security, governance, and compliance initiatives. Required Skills Strong experience with NIST 800-53 Rev. 5 Experience implementing the Risk Management Framework (RMF) Experience with Windows and Unix environments Experience performing IT security risk assessments, compliance reviews, and security audits Knowledge of information security governance, risk management, and internal controls Experience preparing audit documentation, security reports, findings, and POA&Ms Knowledge of security and privacy regulations (NIST, IRS Pub 1075, HIPAA/HITRUST, CJIS, MARS-E) Experience investigating security incidents and suspicious network activity Strong written, verbal, analytical, and communication skills Ability to work collaboratively with technical teams, business units, and project managers Preferred Skills Project Management experience Professional certifications such as CISSP, CCSP, GSTRT, GSNA, or CAP Experience developing security policies, standards, and procedures Experience supporting enterprise GRC programs Knowledge of database administration, networking, and software development environments Important Notes Local Phoenix, AZ candidates only (within approximately a 1-hour driving distance) Hybrid work schedule (All work must be performed within Arizona) Contract-to-Hire (4 Months) – Candidates must be eligible for full-time conversion No Visa Sponsorship W2 Only (No C2C) Candidates previously submitted to Req #10482 or Req #11481 will not be considered Resume must clearly mention the candidate's current location Candidate must be available for in-person interviews within one week of the posting closing Candidate must be able to start within two weeks of receiving an offer HireRight Background Check, Drug Screening, and Global ID Verification are mandatory Primary Skills NIST 800-53 Rev. 5, Risk Management Framework (RMF), Governance Risk & Compliance (GRC), Information Security, Risk Assessment, Security Audits, Compliance, Security Governance, Windows, Unix, Cybersecurity, Internal Controls, Security Policies, POA&M, Incident Response, NIST Compliance, CJIS, HIPAA/HITRUST, IRS Pub 1075, MARS-E, Project Management, CISSP, CCSP, GSNA, GSTRT, CAP Certification.
This job posting was last updated on 8/18/2026