
Cybersecurity Assessment Expert
Information Technology Strategies, Inc
full-time
Posted on:
Location Type: Office
Location: United States
Visit company websiteExplore more
Tech Stack
About the role
- Serves as a cybersecurity Subject Matter Expert (SME) with regards to Assessment and Authorization (A&A) of information systems and all associated cybersecurity policies and procedures.
- Performs a DOD cybersecurity process while either authorizing an information system or serving as a SME for an information system undergoing authorization.
- Possess an understanding of how the security controls identified in the NIST 800-53 apply to the process of assessing and authorizing a large organization’s IT infrastructure such as DLA’s.
- Determines the applicable severity value for an identified vulnerability (e.g., non-compliant security control) and determines the possible ramifications on the system’s current or future authorization.
- Briefs senior management on the progress or results of an information system undergoing the Risk Management Framework (RMF) process.
Requirements
- Must possess IT-II security clearance or have a current National Agency Check with Local Agency Check and Credit Check (NACLC).
- Must have DLA CERT Analyst will maintain CSSP Analyst certification: CySA+, CFR (CyberSec First Responder), or CEH (Certified Ethical Hacker) certifications.
- Five (5) years of relevant Risk Management Framework (RMF) and NIST A&A experience.
- Must have DOD cybersecurity experience.
- Experience in assessing security controls and conducting authorization reviews for large, complex organizations.
- Experienced in the general tenets supporting the overall DOD implementation of its authorization process, to include supporting cybersecurity policy, procedures, and processes.
- Knowledgeable in the cybersecurity of emerging technology areas such as Cloud and Industrial Control Systems (ICSs), warehouse execution systems and Operational Technology (OT) infrastructures.
- Excellent oral and written communication skills.
Benefits
- Four Medical/Vision options including an HSA plan
- Dental and Orthodontia plan
- Vision Materials plan
- Paid Life, Short-Term Disability, and Long-Term Disability
- 401K Retirement Program with company contribution
- Paid Vacation, Holidays, Sick Leave, Floating Holidays, Bereavement Leave
- Semi-monthly pay cycle
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Assessment and Authorization (A&A)NIST 800-53Risk Management Framework (RMF)cybersecurity policysecurity controls assessmentauthorization reviewsvulnerability assessmentCloud securityIndustrial Control Systems (ICS)Operational Technology (OT)
Soft Skills
communication skillsbriefing senior management
Certifications
IT-II security clearanceNACLCCySA+CFR (CyberSec First Responder)CEH (Certified Ethical Hacker)