Salary
💰 $104,650 - $189,175 per year
About the role
- Assess infrastructure compliance with the Department of Defense Zero Trust Maturity Model
- Produce a Monthly Maturity Scorecard report based on customer driven parameters
- Create a dashboard for the Monthly Maturity Scorecard report
- Determine and report the percentage compliance achieved in each Zero Trust Pillar's capability grouping
- Evaluate each Zero Trust Pillar and recommend targeted areas for improvement
- Update the dashboard data from the Monthly Maturity Scorecard and underlying data
- Cover the assessment approach using the CISA/DoD Zero Trust Maturity Models
- Expand VA specific reference architecture target capabilities
- Document how VA needs to implement ZTA on the target architecture at the conceptual, logical, and implementation layers
- Work with the ZTA Pillar Leads to determine if existing toolsets can be utilized or if any additional tools are required
- Assist with assembling ZTA Engineering and Implementation plans to include process to implement the ZTA Use Cases on VA information systems, making considerations for all variations in VA information systems
- Update the plans based on new cases, deployments, stakeholder, and system owner feedback
- Complete 100 information system implementations in each period of performance
- Work with VA Office of Information Security (OIS) to board the systems to an Operations and Maintenance Risk Management Framework process
Requirements
- Bachelor's degree and 10+ years of cybersecurity engineering experience or 18+ years of established industry experience
- Must be able to obtain and maintain a Public Trust
- Experience in dashboard creation
- Proven experience as a Cyber Security Engineer, with a focus on implementing and maintaining Zero Trust architectures
- In-depth knowledge of Zero Trust principles, IAM, micro-segmentation, network security, and encryption techniques
- Experience with industry-leading security tools and technologies, such as firewall solutions, intrusion detection/prevention systems, and SIEM tools
- Familiarity with relevant industry regulations and compliance requirements, including NIST 800-207, OMB M-22-09, CISA Zero Trust Security Model, Executive Order 14028 – Improving the Nation’s Cybersecurity
- Strong problem-solving skills and the ability to work effectively in a fast-paced, collaborative environment
- Excellent communication skills to convey complex security concepts to technical and non-technical stakeholders
- Must be a US Citizen