Jobs
>
Raleigh

    IT Security Specialist st - Raleigh, United States - Serigor Inc

    Default job background
    Description
    Job Description

    Job Description


    Job Title:
    IT Security Specialist st (Remote)

    Location:
    Raleigh NC

    Duration:

    12+ Months


    Job Description:
    The client requiring services of an IT Security Compliance Specialist

    to assist and assess the client Application and Infrastructure Modernization(AIM) CMS, USDA and ACF requirements for the project.


    In addition this resource must also review the RFP, MOU and MOA for privacy, security, Business Continuity Planning, Disaster Recovery and audit requirements.

    This resource must identify the risks and assist in the development of mitigation strategies, and to establish the target

    security/infrastructure

    architecture.

    Duties include, are not limited to:


    The ideal candidate for this role plans, implements, upgrades, or monitors security measures for the protection of computer networks and information.

    This candidate will be expected to continuously assess the development process and suggest improvements.

    Supports the ISSO with the management of system security plans, ensure the systems obtain and maintain an authorization to operate (ATO), and meets all requirements for certification and provide support to achieve all activities associated with the Assessment and Authorization (A&A) process.

    Provides support and security compliance to meet the security standards for Applications and systems in Cloud environments (AWS or Azure or Google etc.).

    Provides Security compliance oversight of information systems security program for applications and systems within the ATO boundary leveraging MARS-E, NIST, and HIPPA Guidelines.

    Coordinates with the O&M and Infrastructure team to ensure COTS and other support software is current and compliant with current InfoSec policies; The program participates in the IT Continuous Monitoring Program.

    Provides support to Software Developers, Engineers and other team members on the optimal methods to meet security requirements while minimizing impact and delays in meeting mission requirements.

    Work closely with the Enterprise Architecture (EA), Database Administrator (DBA), Migration and Application Development teams to develop and implement automated Disaster Recovery capabilities including automated alerting, notifications, containment, data backup & recovery.

    Partner with EA, and Application Development teams to develop Security Event Logging and Monitoring processes.
    Perform internal assessments of security controls to ensure compliance with legislation, regulation, and technical standards with technical teams.
    Monitor infrastructure assets and services, evaluate application/system components through system compliance examinations and testing utilizing NIST

    Tracks and monitors remediation efforts stemming from IT assessment and financial audits through Plans of Actions and Milestones (POA&Ms) and Correction Action Plans (CAPs) and informing Senior Leadership of security measures in place.

    Ensure appropriate security controls are in place that will safeguard digital files and vital electronic infrastructure.

    It is imperative that the candidate possess and apply a comprehensive system security knowledge across key tasks and high impact assignments.

    5+ years of related work experience
    5 years' experience providing security compliance requirements for Applications in Cloud environments (AWS or Azure or Google etc.)
    5 years' experience updating or maintaining SSP/SSPP documents.
    5 years' experience participating in Assessment & Authorization (A&A/ATO)
    5 years' experience supporting infrastructure assets and services by proactive monitoring, evaluating application/system components through system compliance examinations and testing utilizing NIST 800-53
    5 years' experience providing security engineering review and recommendations.
    5 years' experience working with large teams in an Agile environment.
    5 years ISSO experience
    Experience coordinating and working under an ATO.
    Experience assessing system modifications such as major and minor releases and potential security impacts.
    Experience providing recommendations for improvement to amend vulnerabilities.
    Experience assisting Program Managers and Senior Leadership developing Correction Action Plans (CAPs) when responding to IT and Financial audits.

    The ideal candidate will have experience working with current and emerging information security technologies, privacy and development methodologies. Bachelor's degree in computer science, management information systems, or related field preferred.

    Candidate must have security architecture

    knowledge like TOGAF and MITA.


    Good analytical and creative problem solving skills, and relies on experience and judgment to plan and accomplish goals, independently performs a variety of complicated tasks, with a wide degree of creativity and latitude is expected.


    Skills:
    Skill

    Required / Desired

    Amount

    of Experience Experience implementing AWS Security

    configurationsRequired3YearsExperience

    performing Security Operations Center capabilities such as Logging and Monitoring, Incident Handling, Disaster

    Recovery.
    Required3YearsExperience

    providing security compliance requirements for Applications/ Systems in Cloud Environments (AWS, Azure, Google

    cloud)Required3YearsMust

    be able to review & assess MES systems throughout all phases of their life cycle in an effort to identify Privacy, Security

    ArchitectureRequired5YearsRisk

    Management - must be able to Identify gaps through risk management, and assist in the development of mitigation

    strategies.
    Required5YearsExperience

    updating privacy and security policies based on gaps found through an assessment

    process.
    Required5YearsExperience

    documenting vulnerability assessment results in a accurate, clear, actionable, and available way to appropriate

    personnelRequired5YearsMust

    be able to serve as a knowledge base for organizations as it relates to CMS and state compliance requirements & mitigation

    strategies.
    Required3YearsExperience

    Performing risk assessments based on NIST Rev 4. HIPAA, SSA and IRS Pub

    1075.Required5YearsExperience

    with network mapping and vulnerability scanning tools such as NESSUS and

    NMAP.Required5YearsExperience

    in reviewing RFP, RFQ, MOU and MOA for privacy and security architecture

    requiremetnsRequired5YearsExperience

    in reviewing the Business Continuity plans, Disaster Recovery Testing plans based on Federal and State

    requirementsRequired3YearsMITA

    (Medicaid Information Technology Architecture) ExperienceHighly

    desired3YearsExperience

    performing DevSecOps Engineering

    capabilitiesDesired3Years

    Powered by JazzHR
    k3zcgZZGEb

    #J-18808-Ljbffr


  • NR Consulting Raleigh, United States

    Job Description · Job Title: IT Security Specialist · Location: Dix Campus Raleigh, NC (Hybrid 2 days a week) · Position Type: Contract with possible extension · Duration: 12+ months Contract · Short Description: · Seeking an Information Technology (IT) professional with proven ...


  • NR Consulting Raleigh, United States

    Job Description · Job Title: IT Security Specialist · Location: Dix Campus Raleigh, NC (Hybrid 2 days a week) · Position Type: Contract with possible extension · Duration: 12+ months Contract · Short Description: · Seeking an Information Technology (IT) professional with pro ...


  • Cynet Systems Raleigh, United States

    Job Description: The client requires the services of an IT Security Specialist to perform application security testing, ethical hacking, and vulnerability management of MES applications. · Implement the security framework within the DevSecOps environment, leveraging security tes ...


  • Crescens Raleigh, United States

    Job title: · IT Security Specialist · Location: Raleigh, NC [Onsite] · Duration: 5+ months · Type: contract · Job Description : · Client - Privacy and Security Office (PSO) requiring services of an IT Security Specialist to aid county offices in the identification of gaps thro ...


  • Crescens Raleigh, United States

    Job title: IT Security Specialist · Location: Raleigh, NC [Onsite] · Duration: 5+ months · Type: contract · Job Description :Client - Privacy and Security Office (PSO) requiring services of an IT Security Specialist to aid county offices in the identification of gaps through ...


  • NR Consulting Raleigh, United States

    Job DescriptionJob Title: IT Security SpecialistLocation: Dix Campus Raleigh, NC (Hybrid 2 days a week)Position Type: Contract with possible extensionDuration: 12+ months Contract · Short Description:Seeking an Information Technology (IT) professional with proven Splunk (SIEM) S ...

  • Target

    Security Specialist

    1 week ago


    Target Raleigh, United States

    Target Brier Creek Pkwy [Asset Protection / Loss Prevention] As a Security Specialist at Target, you'll: Contribute to a team in the development of a secure work environment for all Target team members, temporary workers, vendors and visitors; Execute routines to identify and inv ...


  • Crescens Raleigh, United States

    Job Title: IT Security SpecialistLocation: Raleigh, NCDuration: 12+ Months · **Remote work is available with the manager's approval** · Job Description:The client requiring services of an IT Security Compliance Specialist to assist and assess the client Application and Infrastr ...

  • Cynet Systems

    Security Specialist

    17 hours ago


    Cynet Systems Raleigh, United States

    Job Description: The client Information Security Office (ISO) requires a contract information security specialist (expert) architect/analyst resource to provide compliance program development, leadership, and management for the client and the client business, in addition to infor ...

  • Focused HR Solutions

    Security Specialist

    2 days ago


    Focused HR Solutions Raleigh, United States Full time

    This job is remote and has been since 2020 and has not changed. All work will be completed onsite at the manager's discretion. · Our client has an opening for a Security Specialist - Sr · This position is for 12 months, with the option of an extension and the client is in Ralei ...

  • Focused HR Solutions

    Security Specialist

    3 weeks ago


    Focused HR Solutions Raleigh, United States Full time

    This job is remote and has been since 2020 and has not changed. All work will be completed onsite at the manager's discretion. · Our client has an opening for a Security Specialist - Sr · This position is for 12 months, with the option of an extension and the client is in Ralei ...


  • LanceSoft Raleigh, United States

    Responsibilities:Perform Business Impact Analysys · Create Business Continuity Planing (BCP), Disaster Recovery Testing (DR), Continuity of Operations (COOP) for the division · Conduct Access Control Reviews · Moniter Employee HIP nd Security Training · Perform NIST and HIPAA bas ...


  • LanceSoft Raleigh, United States

    Responsibilities:Perform Business Impact Analysys · Create Business Continuity Planing (BCP), Disaster Recovery Testing (DR), Continuity of Operations (COOP) for the division · Conduct Access Control Reviews · Moniter Employee HIP nd Security Training · Perform NIST and HIPAA bas ...


  • Cynet Systems Raleigh, United States

    Job Description: · Duties: · Perform Business Impact analyses Create Business Continuity Planning (BCP), Disaster Recovery Testing (DR), and Continuity of Operations (COOP) for the division.Conduct Access Control Reviews.Monitor Employee HIP nd Security Training.Perform NIST an ...


  • Cynet Systems Raleigh, United States

    Job Description: · Duties: Perform Business Impact analyses Create Business Continuity Planning (BCP), Disaster Recovery Testing (DR), and Continuity of Operations (COOP) for the division. · Conduct Access Control Reviews. · Monitor Employee HIP nd Security Training. · Perform ...


  • JSM Consulting Raleigh, United States contract

    Position IT Security Specialist - Sr. Location Raleigh North Carolina***All work must be performed on State premises at the manager's discretionJob Duties Risk Management - must be able to Identify gaps through risk management and assist in the development of mitigation strategie ...


  • Serigor Inc Raleigh, United States

    Job Title: Security Specialist- Expert (Remote) · Location: Raleigh, NC · Duration: 12+ Months · Job Description: · This supplemental staff position will be working with the Network Security team for the 1st half of 2024. The skills required are on the configuration processes of ...


  • raag solutions Raleigh, United States

    We are looking for an Information Technology (IT) professional with a strong background in application security testing, utilizing tools such as BURP Suite, Fortify, and manual testing. · NC DHHS - Privacy and Security Office (PSO) requiring services of an IT Security Specialist ...


  • WalkMe Raleigh, United States

    WalkMe pioneered the Digital Adoption Platform (DAP) to empower business leaders to realize the promise of technology in today's overwhelming digital world. Through WalkMe's guidance, engagement, insights, and automation, employees are more efficient, executives have better visib ...


  • Serigor Inc Raleigh, United States

    Job Title: Security Specialist- Expert (Remote) · Location: Raleigh, NC · Duration: 12+ Months · Job Description: · This supplemental staff position will be working with the Network Security team for the 1st half of 2024. The skills required are on the configuration processes ...