Infolabs - Columbia, SC

posted 4 days ago

Full-time - Mid Level
Columbia, SC
Professional, Scientific, and Technical Services

About the position

The Business Analyst - Project Lead (Information Security) role is a critical position within the South Carolina Department of Health and Human Services (SCDHHS), focusing on developing, managing, and ensuring compliance with information security policies and standards. This position requires a detail-oriented individual who excels in technical writing and compliance, particularly within the government and Medicaid agency space. The role involves significant collaboration with various stakeholders to align security practices with organizational goals and regulatory requirements.

Responsibilities

  • Lead the development, modification, and maintenance of information security policies, standards, and procedural documentation to ensure compliance with Federal and State regulations.
  • Work closely with technical and non-technical staff to create structured and comprehensive security policies and standards.
  • Serve as a primary liaison between business and IT teams, collaborating with agency leaders, project managers, and security experts.
  • Oversee the Plans of Action and Milestones (POA&M) documentation process, ensuring corrective actions and risk mitigation strategies are documented and monitored.
  • Develop accessible documentation for diverse audiences, including executive summaries and detailed compliance artifacts.
  • Facilitate and document security-related meetings, capturing essential details and follow-up action items.
  • Generate and analyze technical reports on data quality and system effectiveness.

Requirements

  • 5+ years of experience in technical writing, including developing structured written materials and documentation.
  • 2+ years of experience in facilitating corrective activities to mitigate security and compliance risks.
  • Proficiency in verbal and written English, with strong communication skills for diverse audiences.
  • Proven ability to work effectively with vendors, project teams, and stakeholders.
  • Skilled in creating and editing technical documentation using Microsoft Office (Word, Excel, PowerPoint, Visio, Project).
  • Hands-on experience with IT security practices and compliance frameworks like NIST 800-53 and CMS MARS-E.
  • High attention to detail with the flexibility to prioritize and adapt in a fast-paced environment.
  • Ability to quickly absorb and understand complex processes and drive solutions.

Nice-to-haves

  • Experience with CMS MARS-E 2.2 or other NIST-compliant risk management frameworks.
  • Previous involvement in eGRC tools and solutions.
  • Knowledge of data protection principles, risk assessments, and threat modeling.
  • Strong familiarity with Microsoft Visio for process flow diagrams and technical illustrations.

Benefits

  • 401(k)
  • Dental insurance
  • Health insurance
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service