Hello Friends

Hope you are doing great



We do have this position for Business Analyst in Owing Mills, MD So if you
have any consultant then please share it on m...@gemini-us.com



*Job Title:             Business Analyst (Security BA) –SOC2*

*Location:             Mill Run Circle Owings Mills MD*

*Interview:           Phone interviews and Skype*

*Duration:             12+ months contract*



*Responsibilities:*
* Serves as a liaison between the internal/external business community and
the IT organization in order to provide technical solutions to meet user
needs.
* Translates business requirements into functional specifications, manages
changes to such specifications, and educates the IT organization on the
direction of the business.
* Gathers information about the organization’s work processes and
information flows.
* Documents existing process in technical model format in order to evaluate
and define new IT solutions and implementation processes.
* Possesses an understanding of technological trends and uses this
knowledge to bring solutions to business groups supported to enhance the
enterprise’s competitive edge.
* Has basic knowledge in functions they support.
* Has knowledge and background of other technologies and tools.
* Has basic understanding of business, market and industry issues facing a
specific business unit or function.
* Supports several simple to moderately complex business processes.
* Investigate and analyze feasibility of low to moderately complex
enhancements, automations and processes.
* Analyze, define and interpret business needs and issues by gathering,
analyzing, documenting and validating the Business area(s) and user(s)
technical (functional/non-functional) requirements.
* Participates in requirements analysis and verification sessions for
complex projects and may lead requirements analysis and verification
sessions for less complex projects.
* Participates in the tracking and management of open issues and assists in
planning for resolution for complex projects. Maintain communications with
technical counterparts to adopt best practices and ensure integration of
specific application architecture into overall enterprise technology
strategy.
* Lead testing efforts by defining, developing and implementing practices
and procedures for complete end user test plans.
* Ensures all user acceptance tests are conducted and documented according
to standards. Identifies and documents system deficiencies and recommends
solutions.
* Responsible for overall success of user acceptance testing, including
results verification and release.
* Participates in the exploration of alternative business solutions for
moderately complex processes, programs or applications, and may lead
exploration of alternative business solutions for less complex processes,
programs or applications to create, maintain and enhance business value.
Works closely with system analysts to help create Proof Of Concepts (POCs)
and alternative.
* Reviews, edits, analyze and create detailed documentation of business
systems and user needs.

Requirements:
* Requires a bachelor’s degree in Information Technology, Computer Science
or Business or relevant work experience in business analysis, systems
analysis and/or testing background.
* 3-6 years of direct Business Analyst experience.
* Demonstrated ability to elicit, document, analyze and verify requirements.
* Experience developing and conducting security tests
* Five plus years experience with NIST 800-53, 800-53A, 800-37, 800-115.
* Experience in or expose to business process analysis, Work flow, task
analysis, user acceptance testing and requirements analysis.
* Must demonstrate understanding of industry standard Business Analysis
Best Practices.
As the SOC2 - NIST CI, 768.02 continues, the project requires people with a
blend of strong technical expertise and the ability to translate
complicated processes into easy to follow SOPs, standards and requirements.
* Strong hands-on technical experience with servers, firewalls, LAN and WAN
networks, encryption and system support.
* Active CISSP strong preferred
* Four or more years of IT and/or business experience in a health insurance
or regulatory compliance environment
* Five or more years of experience in compliance review and remediation OR
two or more years of experience in audit.



Best Regards,



Notes from call:

·         EPA mapping, sensitive data putting permissions on them, tracking
data, adhoc data, metric stream product, SOC 2 project,

·         Understands technology, ability to translate technology into
policy and procedure.

·         BA- meeting stake holders, getting info on platforms how they
run, who bus. Owners, tech owners, developing system plans. Need plans for
each system- unix, facets, etc.

·         Take controls and upload info into metric stream so when auditor
comes in they can get in to it. how we comply with controls.,

·         It is a new role. Need someone with a strong tech background.

·         GRC tools- metric stream is the one they are using. preferred to
have experience with this.

·         NIST, SOC2, technical component is more important than
healthcare.

·         Audit and IT background is what is required. already have audit
people that know soc 2.

·         Duration –all of 2017.

·         100% on site.

·         Interview- phone screen.

·         Industry: Government background would be helpful.

·         Security certifications- CISSP. – strongly preferred. Prefer that
it is current.

·         IT background – networking, worked with servers, PKI, diff
operating systems. Level where they moved on diff tech system levels. CNA
background from gov. NIST risk assessment. Translate all info and turn into
opportunity to improvement.

·         Top 3 skills: technology-networking, servers, developing a
systems security plan, experience in certification/accreditation.

·         Interviews can start this week.



*Kind Regards ..*



*Mani Sharma*

*Team Lead*

*Gemini Consulting & Services LLC , **MBE &WBENC*

*3636 S Geyer Road, Suite 270, Sunset Hills, MO 63127*

m...@gemini-us.com, www.gemini-us.com

-- 
You received this message because you are subscribed to the Google Groups "SAP 
BASIS" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to sap-basis+unsubscr...@googlegroups.com.
To post to this group, send email to sap-basis@googlegroups.com.
Visit this group at https://groups.google.com/group/sap-basis.
For more options, visit https://groups.google.com/d/optout.

Reply via email to