Information Assurance Security Analyst – Now Hiring

Deal Score0
Deal Score0
  • Full Time
  • Dulles

Website Leidos

Description
Job Description:

The Senior Information Assurance Security Analyst is a senior member of the Leidos – Antarctic Support Contract (ASC) Information Security (InfoSec) team responsible for applying cybersecurity principles and best practices to proactively protect and maintain the confidentiality, integrity, and availability, of USAP data, information systems, and enterprise network1-on-1 mentorship, training and advice to help users land their next job. Pay only if you succeed in getting hired and start work at a high-paying job first. Personnel in this position must have an elevated level of trust, with access to sensitive and private information, which must be handled with integrity and respect in accordance with USAP policies and proceduresAd:

Ready to find your dream job? Click here.

The Senior Information Assurance Security Analyst will be responsible for coordination, oversight, execution and enhancement of consistent security practices for all information systems within the USAP The Senior Information Assurance Security Analyst will apply the NIST Risk Management Framework (RMF) to ensure effective information security controls are documented and delivered to safeguard USAP business operations, prevent unauthorized system access, and to protect sensitive informationAd:

Unsure about your career? Use this free career assessment test to figure it out.

Primary Responsibilities:
• Provides leadership and support for all security compliance initiatives, such as:
• Leads annual plan to identify, document and update applicable security controls in the System Security Plan in accordance with NIST SP 800-53 rev 5, Security and Privacy Controls for Federal Information Systems and Organizations, and NIST SP 800-37, Risk Management Framework
• Ensures configuration control over Security Assessment and Authorization (SA&A) and Certification & Accreditation (C&A) packages1-on-1 mentorship, training and advice to help users land their next job. Pay only if you succeed in getting hired and start work at a high-paying job first.
• Manages and coordinates both external Office of Inspector General (OIG) and internal Security Controls Assessment (SCA) audits, and creation and delivery of audit artifactsAd:

Stop spending hours editing your resume to fit job descriptions. 1,000,000+ job seekers have improved their odds of landing an interview by 80%. Optimize my resume now.

• Coordinates with Security Engineers, IT Operations teams and customers to develop and maintain the Plan of Actions and Milestones (POA&M), Acceptance of Risk (AOR) and other required security documentation, processes, and procedures
• Conducts and documents security assessments to determine the effectives and compliance of planned and implemented security controls
• Performs systems security evaluations, audits, and server logging reviews to verify secure operations and recommends mitigations and corrective actions
• Organizes and facilitates contingency planning and incident response exercises
• Supports Incident Response activities to mitigate damage, determine impact, document activities, and implement corrective actions
• Creates, publishes and manages content for the information security awareness and training program
• Develops and presents information security reports for stakeholders, customers and management based on Information Security operational metrics, security assessments and security reviews
• Evaluates proposed enhancements and changes to the operational / business systems, and develops appropriate security requirements
• Develops privacy impact assessments, information categorization and sensitivity assessments, security test and evaluation assessments

Qualifications:
• Bachelor’s degree in Cybersecurity and 8 years’ relevant experience Additional years of experience and relevant certifications will be considered in lieu of degree
• Must have experience in system vulnerability assessments and developing certification and accreditation packages
• Candidate must have experience with Federal Information Security Management Act (FISMA) requirements and National Institute of Standards and Technology (NIST) Risk Management Framework
• Current Information Security certification(s) (eg CISM, CISSP, CISSO, CISA, Security+)
• Highly knowledgeable in the application of FISMA requirements such as NIST SP 800-53 rev 5 and NIST SP 800-37 to US Government programs
• Experience implementing and administering Governance, Risk and Compliance (GRC) tools
• Understanding and application of IT Infrastructure Library (ITIL)
• Capable of managing projects within an established project management framework
• Familiar with patch and vulnerability management processes and tools (eg Tenable Nessus)
• Proficient in validating baseline security configurations and policies (eg, DISA, CIS Benchmarks)
• Effective at interacting with compliance auditors and managing delivery of audit artifacts
• Excellent written and verbal communication skills

US Citizenship or permanent residence is required

Must be able to obtain a Public Trust security clearance
Pay Range:Pay Range $94,25000 – $145,00000 – $195,75000

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law

#Remote

To apply for this job please visit www.snagajob.com.

The Tech Career Guru
Tech Jobs Here
Logo

Get Alerts on the Latest Job Posts in your Inbox- Daily!

 

 



 

We will not spam you. Don't forget to add us to your contacts!