Security Analyst

Novalink Solutions LLCMadison, WI
Onsite

About The Position

The Department of Health Services (DHS) is one of the largest and most diverse state agencies in Wisconsin, employing over 7,000 staff across ten divisions and seven 24/7 institutions. DHS administers programs including Medicaid, human services, alcohol and drug abuse prevention, mental health, public health, and long-term care. The Information Security Section (ISS) aims to foster an information security culture and enable the business, focusing on risk identification and mitigation, limiting the impact of security events, and managing security controls. ISS is organized into Security Awareness and Governance, Compliance, Architecture, and Portfolio Management, emphasizing cross-team collaboration. The DHS Liaison role serves the Division of Medicaid Services, championing security initiatives and integrating information security into program operations by engaging security staff, communicating risks, and developing risk reduction strategies. This role requires strong communication and interpersonal skills to present to diverse audiences, including executive and non-technical individuals. A federally recognized (ANSI) information security certification, aligned with Department of Defense (DOD) 8570 Baseline Certifications, must be obtained within 6 months of the start date and maintained.

Requirements

  • Broad knowledge of information security.
  • Experience in application development, technical architecture, contracting, audit, or vendor management.
  • Familiarity with NIST or another recognized framework.
  • Demonstrated ability to solve complex problems.
  • Demonstrated ability to convey both oral and written instruction.
  • Demonstrated ability to handle multiple task interruptions while providing services in a professional and courteous manner.
  • Demonstrated attention to detail and organizational skills.
  • Demonstrated ability to work effectively with customers to solve business challenges while balancing the need for confidentiality, integrity, and availability.
  • Demonstrated commitment to fostering a diverse working environment.
  • Demonstrated ability to work independently, as part of a team of peers, and to support and contribute to a multidiscipline team environment.
  • A federally recognized (ANSI) information security certification must be obtained within 6 months of the start date and maintained. The Department of Defense (DOD) 8570 Baseline Certifications defined by Defense Information Systems Agency (DISA) is the baseline to consider when reviewing the relevance of the certification.

Responsibilities

  • Integrate security into program operations by partnering with organizational leaders to incorporate information security best-practices, providing recommendations to improve security posture and reduce risk, communicating risks in simple terms with mitigation options, drafting security requirements for charters and procurements, documenting and communicating analysis, and escalating issues if acceptable risk levels cannot be achieved.
  • Act as a liaison between the program area and the Information Security Section by being a solutions-focused advocate, championing projects through ISS workstreams, gathering necessary information for analysis, communicating workstream deliverables and verifying customer needs, coordinating within ISS, and coordinating with other relevant staff and departments.
  • Support audit, assessment, incident response, and other regulatory activities by gathering compliance artifacts, facilitating communications between stakeholders, assessing audit results with ISS to develop corrective action plans, providing oversight to resolution, testing for compliance, responding to regulatory inquiries, and drafting necessary documents.
  • Participate and support Program Integration related activities, including backing up other security liaison roles, drafting and delivering status reports, establishing and maintaining positive working relationships with stakeholders, and documenting standard operations.
  • Support Vulnerability Management for DMS and its vendors by fostering transparency and timely resolution of vulnerabilities, supporting adherence to regulations and policies, and drafting and monitoring plans of action for non-compliance.
  • Support DHS's transition from MARS-E to ARC-AMPE compliance requirements by conducting GAP analysis in partnership with relevant teams, drafting and maintaining the ARC-AMPE System Security and Privacy Plan (SSPP), and drafting and monitoring plans of action for non-compliance.
  • Support DHS in completing software reviews, cloud brokerage reviews, and AI Use Case reviews.
  • Perform other duties as assigned, including backing up other security staff and writing concept papers, proposals, briefs, and other documentation.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service