Enter a job title or keyword

Network Security Analyst


Job Location:

Austin, TX - USA

Monthly Salary: Not provided by the employer
Posted: 8 September 2026 (4 hours ago)
Application Deadline: 6 December 2026
Vacancies: 1 Vacancy

Job Summary

Level Description

4-7 years of experience in the field or in a related area. Familiar with standard concepts practices and procedures within a particular field. Relies on limited experience and judgment to plan and accomplish goals. A certain degree of creativity and latitude is required. Works under limited supervision with considerable latitude for the use of initiative and independent judgment. Ability to maintain the security and integrity of critical infrastructure systems by preventing unauthorized access and ensuring compliance with laws and regulations related to national security and foreign ownership restrictions.

Job Description

A network security analyst ensures that information systems and computer networks are secure. This includes protecting the company against hackers and cyber-attacks as well as monitoring network traffic and server logs for activity that seems unusual. Additionally these analysts are responsible for finding vulnerabilities in the computer networks and creating recommendations for how to minimize these vulnerabilities. The network security analyst investigates security breaches develops strategies for any security issues that arise and utilizes the help of firewalls and antivirus software to maintain security. DISCLAIMER: Candidates for this position will be subject to a pre-employment security review to determine employment eligibility.

Title: Network Security Analyst II System Security & Risk (GRC) Specialist

Contract Type: ITSAC Staff Augmentation

Client:

Texas Health and Human Services Commission (HHSC)

Office of the Chief Information Security Officer (CISO)

Location: Austin Texas (Hybrid / Remote per Agency Policy)

Contract Term: Initial term with potential renewal based on performance and project needs.

Project Scope

HHSC requires an experienced Network Security Analyst II System Security & Risk Specialist to support enterprise cybersecurity Governance Risk and Compliance (GRC) operations. The contractor will support System Security Plan (SSP) development Security Assessments (SA) and Risk Assessments (RA) across HHSC and DSHS application and infrastructure portfolios. The contractor will work directly with program areas Information Owners (IO) Information Custodians (IC) technical teams and the CISO Office to ensure security documentation assessments and risk records are completed in accordance with NIST SP 800-53 NIST Risk Management Framework (RMF) DIR Security Control Standards and HHSC CISO Office procedures. RSA Archer GRC serves as the system of record for SSPs SAs RAs risks POA&Ms and compliance reporting.

Key Responsibilities

System Security Planning (SSP)

Develop update and maintain System Security Plans for HHSC applications and systems.

Work with program teams Information Owners and Custodians to gather control implementation evidence.

Ensure System Security Plans align with NIST DIR and HHSC CISO Office standards.

Security Assessments (SA)

Plan and conduct Security Assessments to validate implementation and effectiveness of security controls.

Review technical administrative and operational evidence.

Document assessment results and track remediation activities.

Risk Assessments (RA)

Facilitate Risk Assessment workshops with Information Owners and Custodians.

Identify threats vulnerabilities likelihood and impact.

Document risks mitigation plans and Risk-Based Decisions in RSA Archer.

GRC & Compliance Operations

Maintain security artifacts risks and remediation plans in RSA Archer GRC.

Support system authorization (ATO) activities and continuous monitoring.

Prepare audit and oversight evidence.

Produce leadership reports and security posture metrics.

Stakeholder Engagement

Serve as liaison between program areas technical teams and CISO Office leadership.

Provide guidance and training on System Security Plans Security Assessments and Risk Assessment processes.

Deliverables

Completed and updated System Security Plans (SSPs)

Documented Security Assessment reports and findings

Completed Risk Assessments and Risk-Based Decisions

RSA Archer risk and compliance records

Remediation tracking and status reports

Audit-ready security documentation packages

Required Qualifications

4 years of experience in cybersecurity GRC system security planning or information assurance.

Hands-on experience developing System Security Plans (SSPs) conducting Security Assessments and facilitating Risk Assessments.

Knowledge of NIST SP 800-53 and NIST NIST Risk Management Framework.

Experience using GRC platforms (RSA Archer preferred).

Experience working with Information Owners and Custodians.

Strong technical writing and documentation skills.

Ability to work independently on complex assignments.

Required Certifications

At least one of:

CompTIA Security

GIAC GSEC

CAP

CISSP

Preferred Qualifications

Experience in state or federal government cybersecurity programs.

Familiarity with DIR Security Control Standards.

Experience supporting ATO and continuous monitoring.

CRISC or CISA certification.

Work Requirements

Must pass background check.

Must comply with HHSC confidentiality and security requirements.

Occasional after-hours support during audits or major assessments.

This position directly supports HHSCs enterprise cybersecurity compliance audit readiness and system authorization program. The contractor will play a key role in ensuring every system has an SSP every system has a Security Assessment and every system has a documented Risk Assessment exactly the accountability model your CISO Office is driving.



II. CANDIDATE SKILLS AND QUALIFICATIONS
Minimum Requirements:
Candidates that do not meet or exceed the minimum stated requirements (skills/experience) will be displayed to customers but may not be chosen for this opportunity.
YearsRequired/PreferredExperience
4Required4 years of experience in cybersecurity GRC system security planning or information assurance.
4RequiredHands-on experience developing System Security Plans (SSPs) conducting Security Assessments and facilitating Risk Assessments.
4RequiredKnowledge of NIST SP 800-53 and NIST Risk Management Framework.
4RequiredExperience using GRC platforms (RSA Archer preferred).
4RequiredExperience working with Information Owners and Custodians.
4RequiredStrong technical writing and documentation skills.
4RequiredAbility to work independently on complex assignments.
3PreferredFamiliarity with DIR Security Control Standards.
3PreferredExperience supporting ATO and continuous monitoring.
2PreferredExperience in state or federal government cybersecurity programs.
1PreferredCRISC or CISA certification.




***Lumen and / or its clients will not provide equipment (Laptop monitor etc.) to the selected contractor. The contractor must have their own equipment. Access to a virtual desktop set up (software) will be provided by Lumens client allowing the user access to the required systems and technology.***

Lumen Solutions Group Inc. is an Equal Opportunity Employer and does not discriminate in employment on the basis of Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans.

Required Experience:

IC