Haystack
← Back to Jobs
Technology
DS

Sr Security Analyst

Dia Software SolutionsLansing, MI🇺🇸United StatesPosted Oct 2, 2026

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
Lansing, MI, United States
Posted
21 hours ago

Job Description

Hi,

Greetings from DIA SOFTWARE SOLUTIONS LLC!

We reaching out about an exciting Direct client opportunity with one of our clients. Please review the requirements and let me know if you are interested in this position?

Direct client Req:: Need Sr Security Analyst ,Hybrid, MI

PLEASE SEND THE RESUMES TO SKUMAR AT DIASOFTWARESOLUTIONS DOT COM !

Job Description:

This Senior IT Business/Compliance Analyst position serves as a senior resource within the Department

of Technology, Management and Budget (DTMB) Agency Services for Michigan Department of Civil

Rights (MDCR), Michigan Civil Service Commission (MCSC) and Michigan Department of Lifelong

Education, Advancement and Potential (MILEAP). The role provides high-level oversight, guidance, and

strategic direction for completing, updating, and maintaining System Security Plans (SSPs) and Disaster

Recovery Plans (DRPs) for the MCSC and MiLEAP applications.

The primary duty of this position is performing as the compliance authority and liaison among business

partners, technical teams, security groups, and management. The Senior Analyst ensures that

requirements, processes, and documentation align with State of Michigan standards, NIST protocols,

and enterprise security governance. This role guides stakeholders through complex compliance cycles,

drives consistency across application areas. They will also work and collaborate with people outside of

the DTMB Agency Services Compliance Team such as vendors, auditors, project managers, and analysts.

Job responsibilities:

  • Provide leadership and oversight for maintaining and updating System Security Plans (SSPs),

ensuring documentation accuracy, completeness, and alignment with NIST protocol and

SOM compliance standards.

  • Lead and coordinate the Authority to Operate (ATO) renewal process, including planning,

preparing required materials, managing timelines, and ensuring successful approval and

continuous compliance for all supported applications.

  • Ensure all applications maintain a valid ATO on a three-year cycle and lead efforts to validate

and maintain accurate security controls throughout each renewal period.

  • Reviews and informs management on security risk assessment results and recommends

corrective actions as necessary.

  • Reviews, assesses risks and scope for high level security incidents. Develops new reports for

management based on those collected metrics across multiple agencies: conducts trend

analysis.

  • Work with stakeholders to address and track Plans of Action & Milestones (POA&Ms) and

other compliance requirements, ensuring timely reporting and closure.

  • Provide senior-level support across multiple business areas, MDCR, MCSC & MiLEAP, with a

focus on standardized security plan updates, documentation improvements, and long-term

process consistency.

  • Analyze existing compliance documentation, identify gaps or risks, and guide corrective

actions to meet regulatory and organizational requirements.

  • Coordinate cross-functional collaboration with technical teams, business owners, enterprise

security personnel, and project leadership to ensure all evidence and artifacts required for

SSP and ATO processes are properly completed and maintained.

  • Oversee review, updates, and remediation of security controls, ensuring issues are tracked,

communicated, and resolved in collaboration with stakeholders.

  • Lead efforts to identify procedural gaps, risks, or required updates during renewal cycles,

ensuring consistent application of best practices across all supported systems.

  • Contribute to enterprise security governance by providing guidance, maintaining accurate

records, mentoring team members, and driving timely completion of compliance activities.

  • Leads mid to high-level Incident Responses when working to resolve incidents.
  • Serves as the Incident response specialist for cyber event detection, correlation, response,

and recovery.

Job Qualifications:

Bachelor s degree in cyber security, Information Assurance, Business Analytics, or IT Related

Field

o OR: 5 years of experience

  • Preferred Advanced Degrees, Master s in Cybersecurity, Information Assurance, Information

Systems / IT Leadership, or an MBA with an IT or Security Concentration

  • Educational or professional knowledge of NIST Framework and Controls a must
  • Strong aptitude for written and oral communication
  • Strong documentation skills
  • Can collaborate cross-functionally

Skill

Required

Amount of Experience

Experience providing audit evidence to comply with security standards such as NIST, PCI, HIPPA, FERPA

Required

5 Years

Exposure to Complex IT web Applications, within the past 5 years

Required

5 Years

Experience leading meetings and making oral and written reports

Required

5 Years

Experience working as a liaison between different business and IT areas

Required

5 Years

Knowledge or experience creating supporting documentation for IT system audits

Highly Desired

2 Years

Experience with the creation of Disaster Recover Plans, Business Continuity Plans, and Incident Response Plans

Highly Desired

2 Years

DIA SOFTWARE SOLUTIONS LLC.

VENKATESH| DIA SOFTWARE SOLUTIONS LLC.

Direct: Eight Zero Four Three Six Five Six Nine Three Four

DIA SOFTWARE SOLUTIONS is an Affirmative Action/Equal Opportunity Employer that supports workplace diversity. All employment decisions are made without regard to race, color, religion, sex, national origin, age, disability, veteran status, marital or family status, sexual orientation, gender identity, or genetic information. All Dia soft staff must be able to demonstrate the legal right to work in the United States. DIA SOFTWARE SOLUTIONS is an E-Verify employer

Similar jobs