Deloitte logo

Cyber Services BISO Analyst

Deloitte

Midland, MI · HybridJob$66–136K/yrSeen 1w agoSeen in employer's feed 2 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
$66–136K/yr
Location
Midland, MIHybrid
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

Bachelor's degree

Job overview

Deloitte Technology US seeks a highly skilled professional to join the Government & Public Services BISO team, documenting security of information systems, ensuring compliance with frameworks such as NIST, FedRAMP, SOC 2, ISO27001, and implementing security measures, risk assessments, and guidance to protect sensitive data.

Skills & qualifications

RequiredNice to have

Skills

Ability to Work Independently and Collaborate as Part of a TeamEffective Written and Verbal Communication SkillsMeticulous Attention to Detail and Quality of Work ProductAbility to Build and Sustain Professional RelationshipsAbility to Lead Projects or WorkstreamsAbility to Manage and Prioritize Multiple Tasks in a Fast-Paced and Dynamic EnvironmentStrong Interpersonal Skills and Professional DemeanorAbility to Meet DeadlinesAbility to Provide Clear Guidance to Others

Qualifications

Bachelor's Degree or Equivalent in Information Technology, Computer ScienceMinimum 2 Years of Various Technology ExperienceMinimum 2 Years of Experience in Cybersecurity, Compliance, or Risk Management With Focus DOD/Federal FrameworksMust Be Legally Authorized to Work in the United States Without SponsorshipAbility to Travel 0-10%Working Knowledge of Information Security Standards and Risk Assessment Frameworks Such as FedRAMP, Nist 800-53, Soc 2, Nist 800-171, Cloud Control Matrix DesiredFamiliarity With Federal Regulations and Compliance Requirements Related to Cybersecurity (e.g. DFARS, FAR)Strong Understanding of Nist Standards, Security Controls, and Risk Management PracticesUnderstanding of Cloud Service Models (Iaas, Paas, Saas) and Deployment Models (Public, Private, Hybrid)Experience Across Multiple Security Domains Such as Identity and Access Management (Iam), Access Control, Incident Response, Threat & Vulnerability ManagementRelevant Certifications (Cissp, Cism, Cisa, Security + or Cmmc Registered Practitioner)

Full job description

Are you passionate about technology and interested in joining a community of collaborative colleagues who respectfully and courageously seek to challenge the status quo? If so, read on to learn more about an exciting opportunity with Deloitte Technology US (DT - US). We are curious and life-long learners focused on technology and innovation.

Recruiting for this role ends on 10/10/2026.

Work you'll do

We are seeking a highly skilled and motivated professional to join our Government & Public Services (GPS) BISO team. The ideal candidate will be responsible for documenting the security of information systems within the organization. The GPS BISO Analyst ensures compliance with relevant regulations and standards, including NIST 800-53, NIST 800-171, FedRAMP, SOC 2, ISO27001 and other cybersecurity frameworks. This role involves implementing security measures, conducting risk assessments, and providing guidance on security best practices to protect sensitive information and maintain integrity of the organization's IT infrastructure.

Responsibilities:

  • Collaborate with other analysts on the BISO team. Develop, implement and maintain information security implementation statements and system security plan documentation.

  • Assist with regular risk assessments and vulnerability assessments of information systems.

  • Support daily GPS operation tasks. Ensure support for compliance requirements.

  • Monitor security alerts and respond to security incidents in a timely manner.

  • Ensure compliance with applicable security frameworks and regulations

  • Maintain documentation related to security policies, procedures, and compliance.

The successful candidate would possess these skills

  • Ability to work independently and collaborate as part of a team

  • Effective written and verbal communication skills

  • Meticulous attention to detail and quality of work product

  • Ability to build and sustain professional relationships

  • Ability to lead projects or workstreams

  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment

  • Strong interpersonal skills and professional demeanor

  • Ability to meet deadlines

  • Ability to provide clear guidance to others

The team

Deloitte Technology US (DT - US) helps power Deloitte's success, which serves many of the world's largest, most respected organizations. We develop and deploy cutting-edge internal and go-to-market solutions that help Deloitte operate effectively and lead in the market. Our reputation is built on a tradition of delivering with excellence.

The ~3,000 professionals in DT - US deliver services including:

  • Cyber Security

  • Technology Support

  • Technology & Infrastructure

  • Applications

  • Relationship Management

  • Strategy & Communications

  • Project Management

  • Financials

Cyber Security

Cyber Security vigilantly protects Deloitte and client data. The team leads a strategic cyber risk program that adapts to a rapidly changing threat landscape, changes in business strategies, risks, and vulnerabilities. Using situational awareness, threat intelligence, and building a security culture across the organization, the team helps to protect the Deloitte brand.

Areas of focus include:

  • Risk & Compliance

  • Identity & Access Management

  • Data Protection

  • Cyber Design

  • Incident Response

  • Security Architecture

  • Business Partnership

Qualifications

Required:

  • Bachelor's degree or equivalent in Information Technology, Computer Science.

  • Minimum 2 years of various technology experience.

  • Minimum 2 years of experience in cybersecurity, compliance, or risk management, with a focus DOD/Federal Frameworks.

  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

  • Ability to travel 0-10%, on average, based on the work you do and the clients and industries/sectors you serve

Preferred:

  • Working knowledge of information security standards and risk assessment frameworks such as FedRAMP, NIST 800-53, SOC 2, NIST 800-171, Cloud Control Matrix (CCM) desired.

  • Familiarity with federal regulations and compliance requirements related to cybersecurity (e.g. DFARS, FAR)

  • Strong understanding of NIST Standards, security controls, and risk management practices.

  • Understanding of cloud service models (IAAS, PAAS, SAAS) and deployment models (public, private, hybrid)

  • Experience across multiple security domains such as identity and access management (IAM), Access Control, incident response, threat & vulnerability management.

  • Relevant certifications (CISSP, CISM, CISA, Security + or CMMC Registered Practitioner).

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $66,200 to $135,800.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

EA_ExpHire, 000256-01

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.