Source Job

US

  • Provide advanced cybersecurity expertise to support secure system operations and compliance initiatives.
  • Analyze system designs and architectures to ensure appropriate security controls and protection mechanisms.
  • Collaborate with technical teams and security organizations to align priorities and security objectives.

Cybersecurity Risk Management NIST SP 800-53 CISSP Security Architecture

20 jobs similar to Information Security Analyst Principal

Jobs ranked by similarity.

US

  • Lead ISSO activities to ensure confidentiality, integrity, availability, and compliance of enterprise applications and information systems.
  • Manage RMF processes including ATO packages, continuous monitoring, risk assessments, and accreditation documentation within eMASS.
  • Implement and maintain compliance with DISA STIGs, NIST 800-53 controls, and federal cybersecurity requirements.

Jobgether is a platform that uses AI-powered matching to connect candidates with job opportunities. The company facilitates the hiring process by sharing top-fitting candidate shortlists with partner companies, focusing on efficiency and objectivity.

US

  • Lead RMF authorization activities, including SSP, SAP, SAR, and POA&M development.
  • Conduct vulnerability assessments and enforce secure configurations using CIS Benchmarks and DISA STIGs.
  • Support cloud security initiatives in AWS GovCloud and advise on AI-enabled system security.

This company provides cybersecurity solutions for federal government systems. They are a mid-sized organization with a collaborative culture focused on security and compliance.

$120,000–$140,000/yr
US

  • Conduct IT and cybersecurity risk assessments across systems, applications, and business processes.
  • Lead audit readiness activities for frameworks like SOC 2, HIPAA, and NYDFS.
  • Manage security policies, third-party vendor assessments, and develop risk dashboards.

Jobgether uses an AI-powered matching process to connect candidates with hiring companies. They focus on efficient, objective application review and are a remote-first organization.

$55,000–$55,000/yr
US

  • Perform project tasks independently while contributing to cybersecurity assessment engagements and client deliverables.
  • Collect, organize, and analyze documentation, evidence, and technical artifacts required for security reviews.
  • Support assessments related to cybersecurity, compliance, and information security programs.

Our partner is a company focused on helping organizations strengthen their security posture and maintain compliance with industry standards. They offer a dynamic and collaborative work environment with career growth opportunities in cybersecurity.

US

  • Lead end-to-end service delivery operations for cybersecurity and cloud security professional services engagements.
  • Own the delivery lifecycle for FedRAMP advisory, implementation, continuous monitoring, and related security programs.
  • Develop operational strategies and governance models ensuring compliance with NIST 800-53, FedRAMP, and DoD frameworks.

This company specializes in cybersecurity and cloud service delivery for federal agencies, managing mission-critical environments with strict compliance requirements. They are a mid-sized organization focused on scalable operations and measurable outcomes.

$77,800–$85,341/yr
US

  • Design and implement enterprise security controls aligned with NIST SP 800-53 and Zero Trust Architecture principles.
  • Conduct continuous security monitoring, incident response, and vulnerability management across cloud, network, and endpoint environments.
  • Develop and maintain cybersecurity SOPs, security baselines, and asset inventories to support audit readiness.

DMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA, supporting public sector agencies and commercial enterprises globally. Recognized as a Top Workplace, the company delivers secure, efficient, and cost-effective solutions through a culture guided by five core values.

$105,000–$130,000/yr
US

  • Consult onsite and remotely with customers to collect and analyze data related to policies, infrastructure, and compliance requirements.
  • Perform gap analyses of current environments and recommend remediation steps.
  • Assist with sales and marketing activities as a subject matter expert and prepare industry presentations.

CampusGuard provides information security and privacy consulting and compliance services for campus-based organizations. It is a full-service firm leveraging industry standards to deliver world-class security and compliance services.

Brazil

  • Structure, implement, and improve cybersecurity governance processes.
  • Manage cybersecurity risks and ensure compliance with frameworks like NIST and ISO 27001.
  • Collaborate with technical and business teams to promote security awareness and continuous improvement.

US

  • Design and implement cybersecurity architectures, controls, and technologies for secure government systems.
  • Manage Authority to Operate (ATO) activities, including security documentation, compliance tracking, and continuous monitoring.
  • Apply NIST SP 800 security controls and support Risk Management Framework (RMF) implementation.

The partner organization provides advanced cybersecurity solutions for critical government technology environments. They operate in a mission-driven, collaborative culture with a focus on protecting federal systems.

Canada

  • Support cybersecurity operations by monitoring threats, improving security controls, and protecting systems and data.
  • Respond to security incidents, analyze threats, and assist with vulnerability management and remediation.
  • Collaborate with technical and business teams to assess risks and implement effective security solutions.

The company is a large, technology-driven organization focused on cybersecurity. It offers a collaborative environment with experienced security professionals and an inclusive workplace culture.

US

  • Lead enterprise IT infrastructure and cybersecurity operations for a government contracting company.
  • Ensure compliance with CMMC 2.0, NIST, and DFARS regulations across all systems.
  • Manage risk, business continuity, and enterprise systems governance including DAR and COOP planning.

Lynker Corporation is a leading provider of innovative solutions in weather and climate science. As an employee-owned business, Lynker combines scientific expertise with mature, results-driven processes to serve government clients and employs a team of 500-1000 staff.

$70,000–$77,000/yr
US

  • Perform enterprise risk assessments using NIST CSF, SOC 2, and CIS frameworks.
  • Develop and execute security awareness programs including training and phishing simulations.
  • Support governance and control management by maintaining policies and control libraries.

Protective helps protect customers against life's uncertainties by providing insurance and peace of mind. The company offers a collaborative environment with a focus on employee wellbeing and work-life balance.

US

  • Lead the design and governance of control frameworks and risk workflows within the GRC platform, ensuring alignment with compliance requirements like HIPAA, HITRUST, and NIST.
  • Oversee risk assessments, control testing, and vendor evaluations to identify and mitigate security risks.
  • Manage policy lifecycle, audit coordination, and reporting on control effectiveness and risk indicators.

USAP is a healthcare organization focused on providing anesthesia services and patient safety. It is a growing company with a culture of security, compliance, and collaboration.

Canada United States

  • Execute the security architecture process for business initiatives, from engagement through to implementation.
  • Support the Information Security Architect across analysis, reviews, and outputs as needed.
  • Act as a point of contact for InfoSec queries and use security tooling to identify and analyze risks.

StackAdapt is a leading technology company that provides an AI-powered marketing platform for programmatic advertising. The company has a diverse, remote-first culture with a supportive workplace.

US

  • Maintain Risk Management Framework artifacts for DevSecOps pipeline inheritance of NIST SP 800-53 controls.
  • Complete and validate STIG/SRG checklists quarterly and provide monthly application STIG status reports.
  • Evaluate program risks, document mitigation strategies, and recommend courses of action to ensure continuous ATO compliance.

DecisionPoint is a company providing cloud services and DevSecOps solutions, supporting ARTRANS AWS environments. It is a regular full-time employer fostering a culture of security and compliance, with an active Secret clearance required for this role.

Canada

  • Act as a strategic cybersecurity advisor, guiding clients through security strategy and technology adoption.
  • Design scalable security solutions across network, SASE, and operational technology domains.
  • Lead client discussions, workshops, and presentations with technical teams and senior leadership.

Our partner provides cybersecurity advisory services, helping organizations strengthen their security posture through innovative solutions. They foster a collaborative and inclusive culture with employee resource groups and volunteer programs.

Brazil

  • Define, implement, and evolve cybersecurity strategy aligned with business priorities.
  • Establish security policies and frameworks such as ISO 27001, NIST, and LGPD, and conduct risk assessments.
  • Lead incident response, optimize security tools, and promote security awareness across teams.

Jobgether is an AI-powered job matching platform connecting candidates with hiring companies. They use technology to ensure fair and efficient application reviews, processing personal data in compliance with GDPR.

$175,000–$265,000/yr
US Unlimited PTO

  • Develop and execute cybersecurity strategy, roadmap, and governance to protect Voyager's information systems and mission-critical environments.
  • Lead security operations, incident response, vulnerability management, and compliance with government regulations like CMMC and NIST.
  • Oversee security architecture, risk management, and team leadership to enable secure innovation in aerospace and defense.

Voyager is an innovative space, defense, and national security technology company delivering transformative, mission-critical solutions. It fosters a culture where innovation thrives, curiosity is rewarded, and impact is real, with a team of doers, thinkers, and builders united by purpose.

Global

  • Provide expert cybersecurity advice to hedge funds and family offices.
  • Implement and maintain security programs, including vulnerability management and incident response.
  • Conduct best practice reviews and develop actionable security plans.

Arootah is a talent solutions firm purpose-built for the alternative investment industry, covering the full talent spectrum from entry to exit. They have a network of 700+ vetted advisors and 600+ coaches, with a team of experienced operators who have run alternative investment firms at the highest levels.

$127,453–$152,944/yr
US

  • Design, implement, and maintain scalable security architectures across IT, OT, cloud (Azure/M365), and on-premise environments, balancing risk reduction with operational reliability.
  • Lead security architecture reviews, M&A due diligence, and cross-functional initiatives to ensure secure-by-design solutions and measurable risk reduction.
  • Serve as senior subject matter expert for incident response, vulnerability management, and OT/ICS security, partnering with SOC and engineering teams.

SOLV Energy is a leading provider of infrastructure services to the power industry, designing, building and maintaining utility scale solar, battery storage and high voltage substation facilities across the United States. It is a national organization that offers broad opportunities for career growth, rooted in core values of Safety, Quality, Innovation and Teamwork.