Jobs
>
Herndon

    Host Based Security Technical Reviewer-Expert - Herndon, United States - OneZero Solutions

    OneZero Solutions
    OneZero Solutions Herndon, United States

    2 weeks ago

    Default job background
    Description

    Job Description

    Job Description

    We are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technically proficient and technically capable across a comprehensive range of cyber mission areas. OneZero full-time employees receive an extremely competitive benefits package that includes health/dental/vision/life insurance plans, 401K with company matching, PTO & paid holidays, employee referral program, and educational assistance. Additional details can be found on our website at:


    Position Title: Host Based Security Technical Reviewer-Expert

    Clearance: TS/SCI

    Location: Reston, VA

    This is an on-site role**

    **Must be willing to travel up to 30%, including local travel within the National Capital Region (NCR) of Northern Virginia, Maryland, and Washington, DC. **

    JCIP Technical Reviewers play a pivotal role in evaluating the cybersecurity posture of enterprise environments across the Intelligence Community (IC). They conduct comprehensive assessments through detailed analysis of vulnerability scans to ensure compliance with Intelligence Community Directives (ICDs), IC Technical Implementation Guides (TIGs), Security Technical Implementation Guides (STIGs), Security Requirement Guides (SRGs), and NIST rev 5 security controls. Utilizing automated tools, including Tenable and Splunk, these professionals perform documentation reviews, employ checklists and guides to write report and develop a qualitative risk assessment on target organizations. Their assessments examine the mission owners' critical capabilities and mission impacts if secure operations lack security protections needed to defend their cyber infrastructure and mitigate high-risk vulnerabilities to the enterprise. Beyond inspection duties, Technical Reviewers contribute to maturing organizational processes, training initiatives, and program-wide support through cross-functional collaboration.

    JCIP Reviewers are integral to conducting inspections of environments across the Intelligence Community (IC). They are responsible for:

    • Interacting with leadership and site technical staff in advance of conducting inspections to facilitate scoping, data to support security controls assessment input, and execution of operational inspection plans,
    • Responsible for interviewing organizational subject matter experts in conducting STIG, SRG, and IC policy checklists,
    • Collect data in support of reviewing a comprehensive Threat Informed Critical Controls List (TICCL), provide written input on review of required security controls, potential vulnerability exploitation, and how MITRE ATT&CK techniques are plausibly successful based on organizational weaknesses. Ensure inputs link back to security controls,
    • Participating in the planning, execution, and reporting of security audits and network vulnerability assessments with minimal supervision,
    • Assisting in preparation of assessment deliverables -Security Risk Assessments input, compliance data, STIG data, etc.,
    • Communicating on impact of vulnerabilities verbally, through presentations and written deliverables,
    • Plan, execute, and report on information technology, privacy, and operational reviews to identify mission, privacy, security, compliance, information technology, and regulatory risks,
    • Familiar with a variety of cybersecurity concepts, practices, and procedures. Relies on extensive experience and judgment to plan and accomplish goals.

    Required Qualifications

    Experience: At least five (5) years of experience in system administration, specifically with HBS platforms such as Trellix. Experience including other platforms such as Tanium and Carbon Black are a tremendous asset. A minimum of twelve (12) years of experience in Cyber/Information Assurance, with a comprehensive understanding of cybersecurity disciplines including but not limited to the Risk Management Framework, DevSecOps, and cybersecurity engineering. Demonstrate ability to create Trellix reports and dashboards. Familiarity with:

    • McAfee/Trellix Modules: VirusScan Enterprise (VSE), Endpoint Security (ENS), Data Loss Prevention (DLP), Asset Configuration Compliance Module (ACCM), Rogue System Detection (RSD), Policy Auditor (PA), and others as requried
    • IDS/IPS rules
    • DoD/IC Mandated Security Configurations
    • File Integrity Monitoring
    • HBSS Industry Best Practices
    • Experience developing or reviewing policy for ENS Firewall, application whitelisting, intrusion prevention, DLP, and VSE exclusions.
    • ENS Signatures
    • SQL Database administration experience
    • Server administration experience

    Education: Bachelor's degree from an accredited institute in an area applicable to the position in Cybersecurity, Computer Science, Software Engineering, Systems Engineering, Information Systems, or a related technical discipline; an additional four (4) years of relevant experience may be substituted in lieu of a degree.

    Certifications: Certification in DoD M Cybersecurity workforce, compliance with DoD Directive 8140 Cyberspace Workforce Management, and IAT Level III. HBSS 201 and 301 certificates or Trellix equivalents.

    Skills: Strong independent work ethic (auditor mentality), exceptional oral and written communication skills, and the ability to work unsupervised.

    Preferred Qualifications

    Technical Proficiency: Experience in engineering and operations & maintenance of enterprise HBSS platforms (e.g., Trellix).

    Advanced Skills: Proficiency in using advanced vulnerability assessment and reporting tools such as Tenable, Splunk, and Tableau.

    Interdivision Collaboration: Demonstrated ability to operate across departments to implement cybersecurity principles effectively.

    Multitasking and Time Management: Capable of multitasking with efficient time management and possessing a comprehensive understanding of cyber threats, vulnerabilities, and network security methodologies.

    OneZero Solutions, LLC is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

    If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access as a result of your disability.

    To request an accommodation, please contact us at or call

    Job Posted by ApplicantPro


  • ProCleared LLC Reston, United States

    JCIP Technical Reviewers play a pivotal role in evaluating the cybersecurity posture of enterprise environments across the Intelligence Community (IC). They conduct comprehensive assessments through detailed analysis of vulnerability scans to ensure compliance with Intelligence C ...


  • Pueo Business Solutions LLC Chantilly, United States

    Pueo has an opportunity for an experienced TS/SCI cleared Network Technical Reviewer to join our team in Reston, VA, Washington, D.C, Maryland Square, or Chantilly, VA. The Network Technical Reviewer is responsible to exercise technical support as a Reviewer during an inspection ...


  • OneZero Solutions Reston, United States

    **Position Title**: Network Technical Reviewer - Expert · **Clearance**: TS/SCI · **Location**: Reston, VA · *** This is an on-site role** · ***Must be willing to travel up to 30%, including local travel within the National Capital Region (NCR) of Northern Virginia, Maryland, and ...


  • Pueo Business Solutions Reston, United States

    Job Description · Job DescriptionPueo is known for bringing the best talent and unique tools to every opportunity. Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a small business with a flat organization that thrives on c ...


  • Pueo Business Solutions Reston, United States

    Job Description · Job DescriptionPueo is known for bringing the best talent and unique tools to every opportunity. Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a small business with a flat organization that thrives on c ...


  • Peraton Chantilly, United States

    **About Peraton** · **Responsibilities** · Peraton is seeking an **Expert Technical Specialist **to join our team of qualified and diverse individuals in Chantilly, VA. Telecommuting is permitted. Will work at various unanticipated end clients throughout the U.S. · **Day to Day W ...


  • OneZero Solutions Herndon, United States

    Job Description · Job DescriptionWe are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technic ...


  • ProCleared LLC Reston, United States

    JCIP Technical Reviewers play a pivotal role in evaluating the cybersecurity posture of enterprise environments across the Intelligence Community (IC). They conduct comprehensive assessments through detailed analysis of vulnerability scans to ensure compliance with Intelligence C ...


  • Pueo Business Solutions Reston, United States

    Job Description · Job DescriptionPueo is known for bringing the best talent and unique tools to every opportunity. Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a small business with a flat organization that thrives on c ...


  • Serco North America Washington, United States

    Position Description: · Serco is seeking a motivated Medical Review Subject Matter Expert to join our talented and fast-paced Public Sector Solutions team in supporting CMS' implementation of the Payment Error Rate Measurement (PERM) Program to produce national Medicaid and Child ...


  • Horus Technology Solutions Bethesda, United States

    Overview: · HORUS Technology Solutions is looking for a **Technical Peer Reviewer Consultant **to join our Grants Peer Review project team. · **Responsibilities**: · - Provide demonstrated expertise in the disciplines listed in the qualifications below · - Support likely to be pr ...


  • Kavaliro Herndon, United States

    Kavaliro is looking for a part time Information Review and Release Analyst. This position offers a flexible work schedule, ample and convenient parking at a great location in the Herndon, VA area, it is expected that this person will work 32 hours per week. * This position requir ...


  • Pueo Business Solutions LLC Reston, United States

    Job Description · Job Description · Pueo is known for bringing the best talent and unique tools to every opportunity. Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a small business with a flat organization that thrives ...


  • Pueo Business Solutions LLC Reston, United States

    Pueo is known for bringing the best talent and unique tools to every opportunity. Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a small business with a flat organization that thrives on career development and independenc ...


  • Pueo Business Solutions Reston, United States

    Job Description · Job DescriptionPueo is known for bringing the best talent and unique tools to every opportunity. Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a small business with a flat organization that thrives on c ...


  • Pueo Business Solutions Reston, United States

    Job Description · Job DescriptionPueo is known for bringing the best talent and unique tools to every opportunity. Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a small business with a flat organization that thrives on c ...


  • Pueo Business Solutions Reston, United States

    Job Description · Job DescriptionPueo is known for bringing the best talent and unique tools to every opportunity. Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a small business with a flat organization that thrives on c ...


  • ICF Reston, United States

    LOB/Portfolio: Energy International Development/Energy Efficiency · Location: US/Remote · Are you an expert on the topic of embodied carbon in buildings? We have a role for you. We're currently hiring an expert who can leverage their technical expertise in life cycle assessment a ...


  • Peraton Chantilly, United States

    Responsibilities · Peraton is seeking an Expert Technical Specialist to join our team of qualified and diverse individuals in Chantilly, VA. Telecommuting is permitted. Will work at various unanticipated end clients throughout the U.S. · Day to Day Work Responsibilities: · Desig ...


  • Peraton Chantilly, United States

    Responsibilities: · Peraton is seeking an Expert Technical Specialist to join our team of qualified and diverse individuals in Chantilly, VA. Telecommuting is permitted. Will work at various unanticipated end clients throughout the U.S. · Day to Day Work Responsibilities: · De ...