The Cybersecurity Analyst III performs senior-level security work with emphasis on cloud security, web application protection, and governance, risk, and compliance (GRC). The role supports on-premises and cloud environments by evaluating, implementing, and monitoring security controls to protect agency systems and data. Governance & Risk role is responsible for leading the enterprise cybersecurity governance framework and enterprise risk-management activities to ensure full alignment with legislative mandates, NIST 800‑53, HIPAA, and State of Texas DIR mandates. This position provides senior-level expertise in secure architecture standards, vendor risk management, and data governance. Ensuring that cybersecurity policies, controls, and risk-management practices are upheld and aligned with State of Tx DIR, NIST 800‑53, agency objectives, and regulatory requirements. The Governance & Risk Analyst advises on regulatory changes, develops the enterprise system risk posture, stays current with industry’s best practices and emerging technologies, participates in compliance and regulatory audits, and supports the implementation of enterprise security improvements. This position serves as a critical architect of the agency’s security policy framework, ensuring that every vendor, system architecture, and data flow aligns with legislative requirements and adheres to agency governance standards. This position performs highly complex information security and cybersecurity analysis work. Works under limited supervision, with considerable latitude for the use of initiative and independent judgment. May research and implement new security risk and mitigation strategies, tools, techniques, and solutions for the prevention, detection, containment, and correction of data security breaches. Reviews penetration testing results, supports vulnerability remediation efforts, and uses security tools to evaluate and track risk. The Analyst also provides expert guidance on HHS Security Policy, TAC 202, HIPAA, and other applicable regulations; partners with program, security, project managers, and technical teams; and supports staff on security, risk, and compliance matters.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior