Senior Cybersecurity Analyst / Information Security Manager - Top Secret Clearance
Space Capital · Rockville, MD · 1 wk ago
Information Technology$150k–$190k/yrFull-time
Responsibilities
- Plan, coordinate, and implement security measures to safeguard information systems and data.
- Supervise cybersecurity personnel and oversee daily security operations.
- Develop, monitor, and conduct testing of cybersecurity plans and controls using government-approved tools and methodologies.
- Document test results, risk assessments, and residual risk reports, and provide recommendations for corrective actions.
- Ensure compliance with cybersecurity policies and best practices, including National Institute of Standards and Technology (NIST) Special Publications.
- Demonstrate expertise in Security Assessment and Authorization (SA&A), including NIST 800-37, NIST 800-53, CNSSI standards, and other federal cybersecurity requirements.
- Develop and maintain EHSS Security Policies, including the EHSS Privacy Plan, EHSS Configuration Management Plan, and other security-related documentation.
- Create and maintain baseline documentation and oversee policy development and reviews for EHSS security programs.
- Implement and support Incident Response, Vulnerability Management, and Plan of Action and Milestone (POA&M) management.
- Apply expertise in Zero Trust Architecture, cloud security requirements, security assessments, and Continuous Diagnostics and Mitigation (CDM)/Continuous Monitoring.
Qualifications
- Bachelor's degree in Information Technology, Cybersecurity, Information Assurance, or a related field from an accredited university or college.
- Minimum of five (5) years of experience in IT security, risk management, and policy development.
- Minimum of two (2) years of supervisory experience in a cybersecurity or IT security role.
- Proficiency in NIST frameworks, risk assessments, security controls, and federal cybersecurity policies.
- Must be knowledgeable in Incident Response practices, vulnerability management, Plan of Action and Milestone management, Zero Trust Architecture, cloud requirements and assessments, Continuous Diagnostics Mitigations/Continuous Monitoring, etc.
- Strong understanding of Security Assessment and Authorization (SA&A) processes and federal security compliance requirements.
- Top Secret clearance required.
- Certifications: GIAC Information Security Professional (GISP), ISC2 Certified Information Systems Security Professional (CISSP), or equivalent.
Pay
$150,000 - $190,000
Benefits
The company offers a comprehensive benefits program, including medical, dental, vision, life insurance, 401(k) and a range of other voluntary benefits. Paid Time Off (PTO) is offered to regular full-time and part-time employees.