IT Security Analyst

Shree Narayani Networking Solutions•Lansing, MI

About The Position

Serve as a senior IT Business/Compliance Analyst within the Department of Technology, Management and Budget (DTMB) for multiple Michigan state agencies (MDCR, MCSC, MiLEAP). Provide oversight and leadership for maintaining, updating, and ensuring accuracy of System Security Plans (SSPs) and Disaster Recovery Plans (DRPs). Act as compliance authority and liaison among business partners, technical teams, security groups, and management. Ensure all requirements, processes, and documentation align with State of Michigan standards, NIST protocols, and enterprise security governance. Lead and coordinate the Authority to Operate (ATO) renewal process for applications, ensuring continuous compliance and approval. Review and assess security risk assessments, develop and recommend corrective actions, and inform management of outcomes. Support and guide stakeholders through complex compliance cycles, driving consistency and best practices across application areas. Manage and track Plans of Action & Milestones (POA&Ms), ensuring timely closure and compliance with all regulatory requirements. Analyze and identify gaps in compliance documentation and implement corrective actions as needed. Facilitate cross-functional collaboration to ensure required evidence and artifacts for SSP and ATO processes are completed and maintained. Oversee review, remediation, and updates of security controls in cooperation with stakeholders. Lead incident response activities for mid to high-level security incidents, including detection, correlation, response, and recovery. Mentor team members, contribute to enterprise security governance, and drive timely completion of compliance activities.

Requirements

  • Serve as a senior IT Business/Compliance Analyst
  • Maintain, update, and ensure accuracy of System Security Plans (SSPs) and Disaster Recovery Plans (DRPs).
  • Align requirements, processes, and documentation with State of Michigan standards, NIST protocols, and enterprise security governance.
  • Lead and coordinate the Authority to Operate (ATO) renewal process.
  • Review and assess security risk assessments.
  • Develop and recommend corrective actions for security risks.
  • Support and guide stakeholders through compliance cycles.
  • Manage and track Plans of Action & Milestones (POA&Ms).
  • Analyze and identify gaps in compliance documentation.
  • Implement corrective actions for compliance gaps.
  • Facilitate cross-functional collaboration for SSP and ATO processes.
  • Oversee review, remediation, and updates of security controls.
  • Lead incident response activities for mid to high-level security incidents.
  • Mentor team members.
  • Contribute to enterprise security governance.

Responsibilities

  • Provide oversight and leadership for maintaining, updating, and ensuring accuracy of System Security Plans (SSPs) and Disaster Recovery Plans (DRPs).
  • Act as compliance authority and liaison among business partners, technical teams, security groups, and management.
  • Ensure all requirements, processes, and documentation align with State of Michigan standards, NIST protocols, and enterprise security governance.
  • Lead and coordinate the Authority to Operate (ATO) renewal process for applications, ensuring continuous compliance and approval.
  • Review and assess security risk assessments, develop and recommend corrective actions, and inform management of outcomes.
  • Support and guide stakeholders through complex compliance cycles, driving consistency and best practices across application areas.
  • Manage and track Plans of Action & Milestones (POA&Ms), ensuring timely closure and compliance with all regulatory requirements.
  • Analyze and identify gaps in compliance documentation and implement corrective actions as needed.
  • Facilitate cross-functional collaboration to ensure required evidence and artifacts for SSP and ATO processes are completed and maintained.
  • Oversee review, remediation, and updates of security controls in cooperation with stakeholders.
  • Lead incident response activities for mid to high-level security incidents, including detection, correlation, response, and recovery.
  • Mentor team members, contribute to enterprise security governance, and drive timely completion of compliance activities.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service