DecisionPoint Corporation

Cyber Security Analyst

DecisionPoint Corporation

full-time

Posted on:

Location Type: Hybrid

Location: Arlington • Virginia • 🇺🇸 United States

Visit company website
AI Apply
Apply

Job Level

Mid-LevelSenior

Tech Stack

AzureCloudCyber SecurityPMP

About the role

  • Support system A&A activities, to include pre-assessment control reviews, artifact gathering, system security and associated plan updates, and other documentation review and updates for the migrated website and other OIG systems and applications
  • Support creation and maintenance of OIG Federal Risk and Authorization Management Program (FedRAMP) cloud solutions documentation
  • Perform security control reviews of OIG facilities, systems, and applications to support the OIG continuous monitoring strategy plan and annual reviews.
  • Identify and track findings in Plan of Actions and Milestones (POA&Ms)
  • Support and initiate the incident response process in accordance with guidelines.
  • Assist System Owner and support staff by providing timely advice, guidance, and templates to complete required tasks and documentation
  • Support annual incident response and contingency plan training and testing activities.
  • Complete review of system and application configuration settings using automated and manual method.
  • Complete vulnerability scanning of all assets.
  • Compile data to assist remediation activities; coordinate with systems administrators to implement corrective actions.
  • Assist in the development of POA&Ms for outstanding risks.
  • Coordinate with system administrators and application/database support to research and resolve security concerns and revise documentation
  • Assist in the preparation of official memorandums, such as Chief Information Officer risk acceptance, POA&Ms, and various appointment letters.
  • Research user questions and requests; make recommendations based on Department and OIG policy; complete file transfer requests in accordance with federal and Department of State guidance.
  • Assist in compiling data to support data calls and quarterly Federal Information Security Modernization Act (FISMA) reporting.
  • Support the configuration management process through the completion of preliminary security impact analyses
  • Track user cybersecurity awareness training and rules of behavior agreements.
  • Monitor the Department continuous monitoring system; coordinate with system administrators to initiative corrective actions
  • Provide detailed weekly status reports

Requirements

  • Active Secret Clearance required.
  • Information Assurance (IA) subject matter expert with 5-7 years of Federal government knowledge and experience in applying and implementing the NIST Risk Management Framework and Special Publications 800-53, 800-37; FedRAMP, NIST Cybersecurity Framework, and other FISMA requirements
  • Experience in configuring and running vulnerability and configuration compliance (SCAP) scans, troubleshooting issues, and analyzing data to identify trends and recommend remediation actions.
  • Complete understanding of Department of Homeland Security Continuous Diagnostics and Mitigation (DHS CDM) program requirements and implementation requirements at a general level
  • Experience in host-based and network-based security tools, analyzing alerts, and initiating the incident response process, working with operations team and management to analyze and categorize level of threat, take appropriate and timely actions to mitigate threat and associated vulnerabilities
  • Understanding of operating in multi-network environments that are multi-tiered and risks associated with this type of network architecture
  • Experience working with security information management (SIM) and/or security information and event management (SIEM), user behavior analytics (UBA), and anti-malware tools
  • Experience with cloud hosted infrastructure and applications environments such as Microsoft Office 365 and Microsoft Azure
  • Understanding of threats specifically related to mobile users and mobile devices
  • Experience in researching different types of technical security threats and recommending mitigating actions
  • Proficient in writing and maintaining system security plans, information security policies, and official memorandums intended for executive leadership.
  • Familiar with use of Information Technology Infrastructure Library (ITIL), Capability Maturity Model Integration (CMMI), and/or Project Management Professional (PMP) processes
Benefits
  • Health insurance
  • 401(k) matching
  • Paid time off
  • Professional development opportunities

Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard skills
NIST Risk Management FrameworkNIST Special Publications 800-53NIST Special Publications 800-37FedRAMPNIST Cybersecurity FrameworkFISMAvulnerability scanningconfiguration complianceincident responsesecurity information management
Soft skills
communicationadviceguidancecoordinationresearchrecommendationdocumentationtraininganalysisreporting
Certifications
Active Secret ClearanceProject Management ProfessionalInformation Technology Infrastructure LibraryCapability Maturity Model Integration
Progressive Drilling Concepts LLC

Due Diligence Cyber Security Analyst

Progressive Drilling Concepts LLC
Senior · Leadfull-time$170k–$200k / yearVirginia · 🇺🇸 United States
Posted: 7 hours agoSource: www.paycomonline.net
AWSAzureCloudCyber Security
DLA Piper

Senior Information Security Analyst

DLA Piper
Seniorfull-time$93k–$134k / yearMaryland, Texas, Virginia, Washington · 🇺🇸 United States
Posted: 18 hours agoSource: dlapiper.wd1.myworkdayjobs.com
CloudCyber SecurityDNSFirewalls
Spry Methods, Inc.

IT Security Analyst

Spry Methods, Inc.
Mid · Seniorfull-timeVirginia · 🇺🇸 United States
Posted: 1 day agoSource: jobs.lever.co
CloudCyber SecuritySplunk
AeroVironment

Cybersecurity Analyst Intern

AeroVironment
EntryinternshipCalifornia, Virginia · 🇺🇸 United States
Posted: 16 days agoSource: avav.wd1.myworkdayjobs.com
AWSCyber Security