Information Systems Security Specialist
Responsibilities
- Work as part of a team of Information Assurance professionals to manage the full Risk Management Framework lifecycle for Information Technology systems
- Aiding technical/management leadership on major tasks or technology assignments
- Establishing goals and plans that meet project objectives
- Assisting in direction and control activities, having overall responsibility for security management, methods, and staffing to ensure that technical requirements are met
- Supporting decision making and domain knowledge that may have a critical impact on overall project implementation
- Providing support to plan, coordinate, and implement a cybersecurity lab’s information security
- Providing support for facilitating and helping the lab identify its current security infrastructure and define future programs, design and implementation of security related to lab systems
- Assisting the efforts of security staff to design, develop, engineer and implement solutions to security requirements
- Implementing and development of the DHS IT security standards
- Gathering and organizing technical information about the lab’s mission goals and needs, existing security products, and ongoing programs
- Performing risk analyses which also includes risk assessment
- Planning and leading major technology assignments
- Evaluating performance results and recommends major changes affecting short-term project growth and success
- Functioning as a cyber technical expert across multiple project assignments
- Working closely with ISSM and CISO to respond to Data Calls and satisfy requirements of ATOs
Requirements
- U.S. Citizenship
- Active TS/SCI clearance
- Ability to obtain DHS Suitability
- 5+ years of directly relevant experience in information security management
- Hands on experience with Linux operating systems or Amazon Web Services
- Experience supporting the NIST Risk Management Framework (RMF) process and contributing to a full ATO effort from initiation through authorization, including development of security documentation, control implementation statements, supporting assessment (audit) activities, and performing full POA&M management
- Beginning to end Knowledge of RMF and Assessment and Authorization (A&A) documentation to include SSP, Contingency, Incident & Configuration Mgmt planning and execution
- Knowledge of Computer Network Defense (CND) policies, procedures & regulations
- Knowledge of defense-in-depth principles and network security architecture
- Knowledge of ATO requirements and strong experience with POAMs
- Knowledge and experience with full range of Microsoft Office products (Word, Excel, Powerpoint, and Visio)
- Knowledge of boundary protection and network segmentation
- Knowledge of authentication and access management techniques
- Experience with implementing and assessing security controls for hardware, software, and network deployments
Qualifications
- BS Information Management, Cybersecurity, Computer Science or related degree, or High School Diploma and 7+ years of information security management experience
Skills
- Experience with Risk Management Framework software (CSAM, Xacta, Archer, RegScale)
- Experience with host and network scanning software (Nessus, Security Center, Tenable Vulnerability Management, nmap, wiz, burp)
- Experience with Endpoint Protection tools like CrowdStrike or CarbonBlack
- Working knowledge of SIEM tools like Splunk, SOAR, or ELK
- Familiarity with role-based account processing operations
- Familiarity with zero trust architectures
- Familiarity with scripting languages (python, AWS CLI, Lambda, bash, powershell)
Pay & Benefits
The salary associated with this position ($99,000-$206,000) is commensurate with the selected candidate’s qualifications, years of relevant experience, and demonstrated level of expertise. Compensation will be determined based on these factors to ensure alignment with skills, responsibilities, and market standards.
Nightwing offers medical, vision and dental insurance coverage in addition to a 401k plan, PTO, Holidays, and additional insurances.
Nightwing is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.