Find your dream job faster with JobLogr
AI-powered job search, resume help, and more.
Try for Free
Strategic Innovation Group, LLC

Strategic Innovation Group, LLC

via LinkedIn

All our jobs are verified from trusted employers and sources. We connect to legitimate platforms only.

System Security Analyst

Anywhere
Full-time
Posted 7/10/2026
Verified Source
Key Skills:
Cybersecurity Program Management
Product Management
Security Research

Compensation

Salary Range

$100K - 145K a year

Responsibilities

Analyze production systems for security vulnerabilities and manage remediation plans to ensure compliance and audit readiness.

Requirements

Requires 3+ years security analysis experience, relevant certifications, and strong knowledge of security frameworks and remediation processes.

Full Description

Strategic Innovation Group (SIG) is seeking multiple System Security Analysts to support the security, compliance, and risk management of production systems and applications for client programs. This role is responsible for analyzing production systems and applications to identify security vulnerabilities, documenting security requirements, and identifying the security controls and control families necessary to protect production environments. The successful candidate will inherit and manage existing Plans of Action and Milestones (POA&Ms) and security findings, develop mitigation and implementation strategies, drive remediation through structured planning and task scheduling, and provide advisory support to program-level security and development teams to strengthen control effectiveness and audit readiness. SIG Is a Fast Growing 8(a) Government Contractor Based In Arlington, Virginia. We Offer a Broad Range Of Technical Expertise And Experience In Digital Transformation, Data Management/Data Science, And Systems Modernization. At SIG, Our People Are Our Mission. Come Join Our Team! A Successful Candidate Will Be Offered The Following • Great work/life balance • Eligibility for performance-based participation in cash bonuses • Potential to participate in growth of the company through incentives • Excellent benefits, including health, dental, vision, generous PTO, a 401(k) with match, life insurance, short- and long-term disability, and a health savings account (HSA) Essential Duties And Responsibilities The essential functions include, but are not limited to the following: • Analyze current production systems and applications to identify security vulnerabilities and risks. • Document security requirements for production systems and applications. • Identify and recommend the security controls and control families necessary to secure production environments. • Define and document system security boundaries in coordination with system owners and technical teams. • Inherit, review, and manage current Plans of Action and Milestones (POA&Ms) and prior security findings. • Develop mitigation and implementation strategies to remediate identified vulnerabilities and findings. • Build planning schedules and task timelines to drive POA&Ms toward closure. • Track and report POA&M status and remediation progress to stakeholders. • Conduct control assessments and control testing (e.g., NIST SP 800-53A) to validate control implementation and support audit readiness. • Perform continuous monitoring activities to sustain system authorization and ongoing control effectiveness. • Support audit readiness activities, including review of vendor SOC reports and third-party penetration test results. • Test and maintain contingency plans (ISCP/DRP/IRP) to support system resiliency. • Integrate automated security scanning into CI/CD pipelines and review findings with development teams. • Provide advisory support to program-level security teams and development teams on security best practices and compliance requirements. Required Experience/Qualifications • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field (equivalent experience considered). • Must have a relevant certifications (e.g., Security+, CISSP, CAP, or similar) - candidates with certifications will be given priority. • 3+ years of relevant security analysis experience (senior candidates with more experience encouraged to apply). • Demonstrated experience conducting security assessments of production systems and applications. • Working knowledge of security control frameworks and control families (e.g., NIST SP 800-53 or equivalent). • Experience managing and remediating POA&Ms and security findings, including inherited/legacy findings. • Ability to develop mitigation and remediation plans, including task sequencing and scheduling. • Experience conducting formal control assessments/testing to validate control implementation. • Experience with continuous monitoring processes and sustaining system authorization. • Experience reviewing third-party/vendor risk artifacts (e.g., SOC reports, penetration test results). • Strong written communication skills for documenting security requirements and findings. • Experience advising both security and engineering/developer teams on remediation approaches. • Must be a US Citizen and able to obtain a Public Trust Clearance Preferred Experience/Qualifications • Familiarity with Risk Management Framework (RMF) processes. • Experience with vulnerability scanning and reporting tools. • Familiarity applying security controls to Cloud applications. Salary: $100000 - $145000 per year

This job posting was last updated on 7/15/2026

Ready to have AI work for you in your job search?

Sign-up for free and start using JobLogr today!

Get Started »
JobLogr badgeTinyLaunch BadgeJobLogr - AI Job Search Tools to Land Your Next Job Faster than Ever | Product Hunt