Yakshna Solutions, Inc., (YSI) is a CMMI Level 3 assessed, ISO 9001, 20000:1, 27001 certified, woman-owned small business enterprises, headquartered in Herndon, Virginia, USA. YSI provides professional IT solutions and services to business corporations and government organizations. YSI is committed to serve its business communities as a leading IT vendor providing innovative, quality, and cost-effective IT business solutions and services. We offer a competitive benefits package that includes the following: 401(k), health, dental, and vision insurance, Life insurance, short-term and long-term disability insurance, paid time off, training, and professional development assistance. YSI is seeking a highly qualified IT Security Analyst 3. The selected candidate will be able to communicate effectively (written/verbal), possess strong interpersonal skills, be self-motivated, and be innovative in a fast-paced environment. Work On-Site multiple days a week. YSI is seeking to fill the Information Technology (IT) Security Analyst position. This position reports to the Deputy Information Security Officer in the Office of Information Security located in Richmond, Virginia. The Virginia Department of Transportation is seeking to fill the Information Technology (IT) Security Analyst position. This position reports to the Deputy Information Security Officer in the Office of Information Security located in Richmond, Virginia. The IT Security Analyst supports the VDOT Information Security mission by implementing results-oriented strategic approaches, plans, programs, and procedures. This position helps to ensure that Commonwealth of Virginia Information Security Policies and Standards are followed by the Agency. The broad areas of responsibility for this position include; identity and access management, IT risk management, business continuity and IT disaster recovery planning, security awareness education and training, security vulnerability management and security incident management. Responsibilities: ·Documents processes and script narratives/executive summaries. ·Create Business focused documentation for circulation among readers with various technical understanding. ·Share insight of Security Architecture and IT Governance approaches and implementation methodologies ·Research and provide written guidance on alignment with security policies/standards. ·Perform tasks related to Security Compliance and Control Evaluation, Risk analysis, and exception documentation. ·Collaborate with Business areas and cross- functional Enterprise Architects to fully understand business needs and provide strategic consultation on data security and risk-averse implementation. ·Partner with architects, other technical team members and to develop roadmaps and strategies to support agency KPIs ·Design/Implement Enterprise Security/technology Patterns ·Consult with teams as needed on initiatives and provide tactical direction as well as provide architecture considerations on legacy solutions ·Research and share finding of architecture governance, controls, and peer review processed with regards to platform technology, security, and cloud. Qualifications: ·Comprehensive knowledge of Information Security principles; including information security trends, emerging technologies, best-practices, controls, models, architecture. ·Practical experience with identity and access management, IT risk management, business continuity and IT disaster recovery planning, security awareness education and training, security vulnerability management, and security incident management. ·Familiarity with the Commonwealth of Virginia’s Information Security Standards and/or the National Institute of Standards and Technology Publication 800-53. ·Able to communicate effectively in writing and orally, exercise judgment, interpret laws and policies, and maintain effective working relationships with a wide variety of individuals in both the public and private sectors ·Experience in monitoring IT Environment for compliance with information security architecture policies and standards. ·Substantial technical experience in 2 or more: Cloud-based technologies, Identity & Access Management, Vulnerability Management, firewalls, computer forensic techniques, databases, collaboration tools, web & mail services. ·Ability to provide input and security direction for future designs, information security capabilities, and strategic technology alternatives. ·Excellent written and oral communication and presentation skills (possessing the ability to breakdown complex technical terms into everyday language). ·Demonstrated ability to work with broad cross-section of personal including all levels of management and external entities such as VITA consultants and service providers to explain and security measures and collaborate and disseminate security related information in partnership with the Office of Information Security. ·Work experience in a fast-paced environment and acquire new skills/knowledge to meet customer needs. ·Thorough understanding of customers priorities and the business criticality of platforms, applications and services. YSI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status. |