IT Security Lead
Under IT Security, the staff shall operate, maintain, and enhance NICHD’s computing environments so that all IT services to the end-users are provided without threats and vulnerabilities. The following areas shall be served: Cybersecurity and FISMA Compliance Support.
About the role
Join a premier technology firm specializing in innovative solutions. Be part of a collaborative, inclusive, and innovative work culture. Enjoy tremendous growth potential in a high-performing team environment.
Benefits
- Health, dental, and vision insurance
- Life insurance
- Short- and long-term disability
- Paid time off (PTO)
- 401k retirement plan with employer match
- Annual Professional Development Reimbursement Program
- And more!
Responsibilities
Cybersecurity
- Oversee routine vulnerability scanning capabilities across networks and systems
- Oversee patching, hardening, and baselining activities across networks; ensure other stakeholders are in compliance with established patching/hardening policies
- Maintain, configure, and ensure the successful deployment of logging/auditing tools across the networks; ensure logging activities are functional across all networks
- Maintain system baseline and configuration management items, including security event monitoring policies in a manner determined and agreed to by the program management
- Interact with both Systems engineers and O&M personnel to ensure a complete and functioning system that meets requirements
- Ensure all Network Defense capabilities are kept current, patched, securely configured, and communicate status to management
- Analyze the data flows into, out of, and across networks to ensure security gaps do not exist and data exchange is in line with system classification level
FISMA Compliance Support
- Research, analyze, and report on different trends using publicly available or collected data
- Ensure effective implementation of annual FISMA reporting review requirements
- Review security documentation of various NICHD systems to assure FISMA Compliance is effectively implemented and monitored
- Ensure the necessary organization, experience, and technical controls are in place
Requirements
- Four (4) to six (6) years of hands-on experience providing technology leadership for IT Security and FISMA Compliance
- Three (3) or more years of experience with new and emerging cybersecurity technologies including but not limited to: hands-on tool usage of BigFix, Splunk, Tripwire, Cylance, Tenable, etc.
- Knowledge of vulnerability information dissemination sources (e.g., alerts, advisories, errata, and bulletins)
- Experience with incident response and handling methodologies
- Experience with Security Assessment and Authorization in a Federal environment
- Knowledge of current industry methods for evaluating, implementing, and disseminating IT security assessment, monitoring, detection, and remediation tools and procedures utilizing standards-based concepts and capabilities
- Bachelor's degree in Computer Science, Engineering, Cybersecurity, or related STEM field. An additional four (4) years of relevant experience may be substituted for the degree requirement
- Must be a US Citizen and able to obtain a security clearance
Qualifications
- CISSP, CISA, CISM, and/or SSCP certifications
- Strong skills in strategic thinking, multi-tasking, negotiation, conflict management, time management, planning, and executing to a defined schedule/budget
- Able to communicate complex technical concepts and project information clearly and concisely to both technical and non-technical audiences
- Ability to work effectively as a member of an integrated team and negotiate reasonable compromises among a diverse group of stakeholders
- Ability to work in a fast-paced, technically challenging area; ability to anticipate changes, problems, or activities, assess impacts, and recommend sound solutions
- Able to work independently, motivated, and capable of working across teams and organizations
- Experience with data analytics and combining data sets from multiple sources to provide reports for identifying risk and measuring security posture (preferred)
- Expert-level experience with Microsoft products: Word, PowerPoint, Excel, and Visio
- Prior experience using a helpdesk ticketing system such as ServiceNow (preferred)
- Prior federal government IT Security experience (preferred)
Pay
The general salary range for this position is $135,000.00 - $170,000.00.
About the company
JCS Solutions (JCS) is a premier technology firm providing innovative solutions and high-quality services in defense, national security, and civilian sectors. JCS offers enterprise-wide solutions including cloud computing, software development, cybersecurity, digital modernization, and management consulting for the federal government. At JCS, we elevate our customers’ mission through the application of technology and professional services. Our commitment to investing in our workforce drives innovation and progress for our clients, employees, and communities.
- Customer Experience: Strive for excellence and delight our clients
- Innovation: Embrace creative thinking to enable continual growth and powerful solutions
- Accountability: Take ownership of and pride in our actions and service delivery
- Inspire: Be inspired to be your best self and have fun in the process
- Integrity: Do the right thing, the right way, every time!
- Stewardship: The careful and responsible management of something entrusted to our care