Tech Stack
AzureCloudCyber SecurityServiceNow
About the role
- Collaborates with the Control Owner(s) for the collection of evidence in support of compliance requirements
- Assists or implements remediations when gaps or non-compliant controls are identified
- Partners with Control Owner(s) and Cybersecurity Analysts to update control documentation
- Establish test standards, conduct tests, and analyze results
- Identify areas to improve audit gaps, productivity, and compliance, including automation opportunities
- Support IT operations teams to assess and fix security vulnerabilities, gaps, and weaknesses across IT infrastructure
- Assist and participate with internal and external compliance audits
- Focus on ensuring IT assets, systems, and services meet legal and regulatory requirements (NIST800-171 and CMMC)
- Perform digital data gathering and analysis across computers, networks, endpoints, operating systems, and mobile devices
Requirements
- Bachelor's Degree in a related field with at least 2 or more years of relevant experience
- Higher education may substitute for relevant experience
- Relevant experience may be considered in lieu of required education
- Experience participating in audits and assessments
- Understanding cybersecurity principles and best practices as is relates to industry compliance standards
- Knowledge of security protocols, encryption, and data protection
- Familiarity with identity management to include Microsoft Active Directory and Azure Entra
- Experience with compliance reporting tools and methodologies
- Experience with Endpoint Engineering
- Proficiency with computers, networks, end-point devices, various operating systems, and mobile devices
- Understanding of security controls that protect systems and networks, with a focus on NIST compliance
- Knowledge of general governance, compliance, and audit concepts
- Skilled in applying risk management principles, assessments, and metrics
- Ability to obtain and maintain a Secret U.S. Security Clearance (U.S. Citizenship required)