Position

IT Security Analyst

Posted

06-Aug-2025

Location

Quincy, Massachusetts

Category

Other

Remote Friendly

Hybrid

Work Type

Contract

Reference

Salary Range

225941

Compensation: Competitive; Open to negotiation based on experience

Hybrid Details: Greater Boston Area, MA - Onsite/Remote
Duration: 10 months to start 


Job Overview: 

Our client is seeking to hire an   IT Security Analyst   to support their team. The IT Security Analyst will assist in identifying, deploying, and incorporating security controls into the team system so that the controls become an integral part of its operational capabilities. Additional responsibilities include participation in efforts to select appropriate DevSecOps tools and security methods, assistance with annual security audits, and reporting and triaging detected security vulnerabilities with internal & external stakeholders to ensure timely remediation of issues.

Essential Duties and Responsibilities:

  • Assist in efforts to implement a robust security posture as the team system migrates to the AWS cloud datacenter and beyond.
  • Work with the team Security Manager and agency enterprise security organizations to identify and remediate infrastructure and application code vulnerabilities and facilitate the operational process of continuous monitoring, remediation based on objective industry standards, measures of risk impact and probability, and reporting to stakeholders.
  • Participate in efforts to integrate Static Application Security, Dynamic Application Security and Software Composition Analysis Tools (SAST, DAST & SCA) into the team Software Development Lifecycle (SDLC) emphasizing “Shift Left” early detection and remediation of potential threats and vulnerabilities, and automation, and process integration.
  • Participate in efforts to implement security standards and secure common frameworks.
  • Participate in efforts to produce developer documentation and educational materials as well as create and update learning resources for application security.
  • Participate in efforts to present and explain threat modelling; as well as institute risk detection and risk mitigation strategies to business and IT stakeholders (including leadership) and effectively defend recommendations, where necessary.
  • Participate in efforts to define the team technical security software environment requirements.

Preferred Skills and Abilities:
  • Extensive hands-on experience with implementing security best practices for AWS cloudhosted applications including the appropriate utilization of AWS security and monitoring tools and resources.
  • Experience with DevOps practices and Continuous Integration/Continuous Development(CI/CD) using GitLab and pipelines.
  • Experience with web and API development technologies.
  • Knowledge of current development practices, including containerized applications, microservice architectures, serverless architectures, etc.
  • Experience with Medicaid systems or in IT healthcare settings desired.

Required Experience :
  • 3+ years of experience working in application and infrastructure security roles.
  • Strong technical knowledge of internet security issues, cloud architectures, and threat landscape.
  • Strong technical understanding of application and cloud security threats and vulnerabilities, including Common Vulnerabilities & Exposures (CVE), Common Weakness Enumeration (CWE), OWASP top 10, SANS top 25, etc.
  • Extensive knowledge of and experience with security standards such as NIST- 800-53, FEDRamp, and ISO 27xxx.
  • Strong understanding of AWS networking and security tools and resources.
  • Strong technical knowledge of AWS security and network management tools and resources.
  • Strong background in web application development and/or code auditing.
  • Strong consensus building and interpersonal communications skills
  • Strong analytical abilities.
  • Strong writing and technical documentation skills.
  • Strong attention to detail.
  • Strong sense of urgency.

Education and Certifications:
  • Associate degree in Computer Science, Information Systems/Technology, Business GIAC GSEC or GWEB, or other similar credentials a plus, Administration, or other related field, or equivalent work experience.
  • Professional security certification: CompTIA Security+, AWS Security Specialty, (ISC)2 CCSP

 

Talent Groups is an equal opportunity employer. Our goal is to promote an environment that helps our employees and clients appreciate the benefits that diversity provides.

APPLY NOW
Share this job
Interested in this job?
Save Job
CREATE AS ALERT

Similar Jobs

Recruiter Name: Nick Pierce

Recruiter Email:  nick.pierce@talentgroups.com

SCHEMA MARKUP ( This text will only show on the editor. )