1 день назад
Information Security Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Information Security Analyst (Cybersecurity) (NIST/DHS Compliance): Managing security authorization, compliance, and risk documentation for DHS and CBP systems with an accent on POA&M remediation, System Security Plans, continuous monitoring, and audit readiness. Focus on leading Authority to Operate efforts, categorizing systems under FIPS 199 and NIST SP 800-60, and documenting security impacts for change approval.
Location: Washington, District of Columbia; on-site
Company
provides advanced software solutions and professional services supporting customer mission and business goals.
What you will do
- Track and manage POA&Ms through creation, remediation, and closure.
- Lead Authority to Operate efforts for assigned Air and Marine Operations systems.
- Develop and maintain System Security Plans, Risk Assessments, Privacy Threshold Analyses, Privacy Impact Assessments, Security Test and Evaluation documentation, and continuous monitoring strategies.
- Review software Technical Requirement Models and ensure technical teams follow DHS and CBP security policies and procedures.
- Review audit logs, document risks and compensating controls, and support risk-based authorization decisions.
- Create Standard Operating Procedures and security impact analyses for Change Control Board approvals.
Requirements
- At least 7 years of experience developing System Security Plans, managing POA&Ms, performing continuous monitoring, and developing SOPs.
- Significant ISSO experience; two years of ISSO experience may substitute for a degree.
- Strong understanding of the NIST 800 series and experience applying FIPS 199 and NIST SP 800-60.
- Proficiency with Microsoft Word, Excel, PowerPoint, Outlook, and SharePoint.
- Positive adjudication from a CBP Background Investigation required.
Culture & Benefits
- Mission-focused work supporting DHS customers and organizational performance.
- Respectful and inclusive workplace that values fairness and diverse contributions.
- Open communication, adaptability, and employee engagement at all levels.
- Accountability for commitments with incentives supporting productive behavior.
- Environment that encourages initiative, risk-taking, and learning from mistakes.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
7 дней назад
Senior Information System Security Engineer (Cybersecurity)
5 дней назад
Senior Information System Security Officer (ISSO) (Cybersecurity)
119 000 - 170 000$
7 дней назад
Principal Information System Security Engineer (ISSE)
160 000 - 185 000$
6 дней назад
E01-T07 Junior Program Protection Security Analyst (Aerospace & Defense)
45 000 - 55 000$
3 дня назад
Cyber Security Engineer II
3 дня назад