Jobs
>
Oregon

    Information Security Specialist - Oregon, United States - Cape Fox Corporation

    Cape Fox Corporation
    Cape Fox Corporation Oregon, United States

    1 week ago

    Default job background
    Description
    Information Security Specialist Share this job as a link in your status update to LinkedIn.

    Job TitleInformation Security SpecialistJob DescriptionCape Fox is seeking a highly qualified Information Security Specialist/InfoSec Engineer to join our team in support of a government customer.

    The ideal candidate will have direct experience developing IT security policies, architectures, and standard operating procedures with a strategic perspective.

    Extensive knowledge of and practical experience with implementing standard methodologies used in the Risk Management Framework (RMF) process (Formerly referred to as Certification and Accreditation (C&A)).

    Expert-level knowledge and experience with National Institute of Standards and Technology (NIST) guidelines and industry best practices for: Risk Assessment and Management, Vulnerability Analysis, Contingency Planning, Disaster Recovery, Configuration Management, Security Assessments and developing Mitigation Plans.

    This position is contingent upon award.
    Provide multi-disciplined security administrative and technical security support to the organization; areas of responsibility include Physical, Computer, Personnel, Information, Administrative, Operational, and Communications Security analysis, assessment, and reportingProvide recommendations to organizational stakeholders for the integration of security processes and compliance with Federal regulations and Departmental policyDirect security efforts to increase efficiencies and enforce a global security mindsetProvide strategic guidance for the further development of the security programDevelop policies and procedures supporting regulations, directives, and Departmental policyAssist senior management with establishing a plan of action for the remediation of weaknessesProvide direct information assurance guidance pertaining to the development and modification of information systems and industrial control systemsProvide strategic insight and continuous support for the integration of the system development life cycleProvide recommendations concerning new and existing projects and assist project managers with security oversightCoordinate with representatives and Subject Matter Experts (SME) from other Federal Agencies and commercial organizations to maintain awareness of upcoming changes to regulations and technologiesDevelop Risk Assessments in accordance with NIST guidance and deliver risk analysis and guidance as needed to organizational leadershipWork with and be supported by NPS security personnel to perform the following tasks: Responsible for the mapping and implementation of the necessary defined security controls as they relate to the NPS infrastructure on NPS owned devices in accordance with government identified General Support Systems (GSS) and SubsystemsDevelop, implement, and maintain security related documents to include: System Security Plans (SSP)

    Risk AssessmentsRisk Acceptance documentationSecurity Impact AnalysesContingency PlansIncident Response PlansPlan of Actions & Milestones (POA&M)Independent Security Assessment (ISA)Memorandum of Understanding (MOU)Service Level Agreements (SLA)Assessment & Authorizations (A&A)Provide input to auditors, to include providing artifacts to support current configurationsAssess existing systems, applications, and tools, in addition to existing security processes for security implications and recommend improvements to strengthen security posture based on assessmentConduct continuous monitoring to include maintenance of current ATO, monitoring compliance, conducting assessments, conducting periodic scans, auditing events and review of audit logs, and ensuring media is properly secured before transit or sanitized before disposalProvide recommendations to the NPS on methods to minimize security impacts of new requirements, technologies in accordance with policies, federal laws, and mandatesCoordinate and facilitate meetings and regular interaction with System Owner, NPS IT Security personnel, data center personnel, change control board personnel, and data center end users providing technical and non-technical security-based expertise, guidance, and documentationDevelop, communicate, and enforce security policies, procedures, and safeguards for all systems and staff, based upon Data Center and other government standardsTravel Requirements 0 - 10%Salary GradeJob RequirementsBachelors Degree and six (6) years relevant experienceORMasters Degree and five (5) years relevant experienceOREight (8) years relevant experienceIndustry-recognized technical certification accepted in lieu of one year experienceMinimum of four (4) years direct full-time experience conducting security assessments and developing all deliverables within a system authorization packageMust have detailed and extensive experience with implementing, evaluating, and documenting all technical, management, and operational security controls as defined by the NIST SP as amended)Direct experience developing IT security policies, architectures, and standard operating procedures with a strategic perspective

    Extensive knowledge of and practical experience with implementing standard methodologies used in the Risk Management Framework (RMF) process (Formerly referred to as Certification and Accreditation (C&A)).

    Expert-level knowledge and experience with National Institute of Standards and Technology (NIST) guidelines and industry best practices for:
    risk assessment and management, vulnerability analysis, contingency planning, disaster recovery, configuration management, security assessments and developing mitigation plansExtensive knowledge and experience in delivering security administration support to the data center which includes incident reporting, planning, standards compliance, platform configuration management, cyber security vulnerability tracking (to include coordinating with customers and creating artifacts showing compliance), and the secure user access and management processes for the NPS Enterprise Data CentersExperience creating and submitting an Assessment & Authorizations (A&A) package and all related documentsKnowledge of hybrid (on-premises and cloud) data center environments to include evaluation and guidance on security control implementation on network, storage, server (Windows, Linux, Oracle), and platform (Microsoft Hyper-V and Azure preferred)Required to pass a Moderate Background Investigation (MBI) prior to starting workMust have authorization to work in the United States as defined by the Immigration Reform Act of 1986Category Skilled LaborLocationReston
    • Dept.
    of Interior - Reston, VA 20192 US (Primary)#J-18808-Ljbffr


  • IT-Total Sweden AB Oregon, United States

    Vill du arbeta med teknik i framkant med specialister inom nätverk och kommunikation med stort fokus på säkerhet? Vill du arbeta på en trygg och innovativ arbetsplats, där du sätts i fokus? Då vill vi komma i kontakt med dig · Om rollen · Du kommer vara en del av nätverks-teamet ...


  • Cape Fox Corporation Oregon, United States

    Information Security Specialist · Share this job as a link in your status update to LinkedIn. · Job Title · Information Security Specialist · Job Description · Cape Fox is seeking a highly qualified Information Security Specialist/InfoSec Engineer to join our team in support of ...


  • FusionTech Forreston, United States

    Training Specialist for Protection and Security (m/f/d) · We are looking for you as an apprentice Start your three-year training as a "Specialist for Protection and Security" with us in Karlsruhe now. · Our offer: · • Varied training in a dynamic company · • Personal and individu ...

  • PCI Pharma Services

    Security Specialist

    1 week ago


    PCI Pharma Services Rockford, United States Full time

    Life changing therapies. Global impact. Bridge to thousands of biopharma companies and their patients. · We are PCI. · Our investment is in People who make an impact, drive progress and create a better tomorrow. Our strategy includes building teams across our global network to ...


  • Omega Dynamics Byron, United States

    A company - many possibilities · Are you looking for an apprenticeship that offers you variety, responsibility, security, and diverse future prospects? We are looking for go-getters, curious learners, team players, questioners, and out-of-the-box thinkers who really want to achie ...


  • Radiant Technologies Byron, United States

    Are you looking for a new professional development opportunity? Then we have an exciting challenge for you. · On behalf of our client, a primary and regular care provider with approximately 180 beds, we are looking for you as a surgical assistant physician (m/f/d). Extensive trai ...


  • Boone County Council on Aging Belvidere, United States

    **Join Our Team: Information & Assistance Specialist** · **Are you passionate about ensuring safe and efficient transportation services for Boone County residents?** · Boone County Council on Aging seeks a dedicated Information & Assistance Specialist to make a difference in the ...


  • Perfetti Van Melle Loves Park, United States

    **OVERVIEW**: · Perfetti Van Melle (makers of Mentos, Airheads, Dentyne, Trident and Bubblicious) is one of the world's largest manufacturers and distributors of confectionery and chewing gum with global brands that are being enjoyed in more than 150 countries worldwide. We're cu ...

  • Savant Wealth Management

    IT Specialist 1

    1 day ago


    Savant Wealth Management Rockford, United States

    **Description & Requirements for Our IT Specialist 1** · We are looking for a professional with a friendly attitude and the ability to help problem solve, troubleshoot, and deploy our firm wide technology In this position, you will be responsible for the performance, availability ...


  • Mercyhealth Rockford, United States

    Overview: · - Patient Access Specialist, Days, Rockford, 80 Hrs / 2 wks · - Location: Rockton Ave Campus; Rockford, IL · - Hybrid and flexible work schedule opportunities available after probationary period. · Responsible for correctly prioritizing and completing all steps of the ...


  • Mercyhealth Rockford, United States

    Overview: · - Patient Access Specialist, Days, 80 Hrs / 2 wks · - Location: Rockton Ave Campus; Rockford, IL. Hybrid schedule opportunities available after probationary period. · - Responsible for correctly prioritizing and completing all steps of the scheduling, referral managem ...


  • Collins Aerospace Rockford, United States

    **Date Posted**: · **Country**: · United States of America · **Location**: · A01: Rockford - Aerospace 4747 Harrison Avenue, Rockford, IL, 61125 USA · **Position Role Type**: · Unspecified · Collins Aerospace is looking for a Principle Specialist Business Operations at their Rock ...


  • ROCKFORD PARK DISTRICT Rockford, United States

    **Title** · - Recruiter and Talent Acquisition Specialist · **Department** · - Human Resources · **Status** · - Full Time · **Office Location** · - Webbs Norman Center · **Reports To** · - HR Operations Manager · **Grade Level** · - A9 · **FLSA Status** · - Exempt · **Position De ...


  • Plixer International Oregon, United States

    Plixer is a leading global Network Detection and Response (NDR) Cybersecurity platform, providing unparalleled visibility across the entire network. Our lightning-fast deployment and advanced AI empower enterprises to swiftly detect and combat sophisticated security threats, enab ...

  • DQS South Africa (Pty) Ltd.

    TISAX Auditors

    1 week ago


    DQS South Africa (Pty) Ltd. Oregon, United States

    For almost four decades, the DQS group has been known internationally for the highest quality and reliability in the certification of processes or management systems. Above all, our success is based on a high level of customer and service orientation that goes far beyond verifyin ...

  • Ferguson Enterprises

    Cyberthreat Engineer

    2 weeks ago


    Ferguson Enterprises Oregon, United States

    Cyberthreat Engineer - Incident Response (Remote) page is loaded · Cyberthreat Engineer - Incident Response (Remote) · Apply · locations · Remote · time type · Full time · posted on · Posted 2 Days Ago · job requisition id · R · Job Posting: · Ferguson is North America ...


  • KBR Oregon, United States

    Data/Configuration Management Analyst Specialist page is loaded · Data/Configuration Management Analyst Specialist · Apply · locations · Point Mugu, California · time type · Full time · posted on · Posted 3 Days Ago · job requisition id · R · Title: · Data/Configuratio ...


  • Honeywell Oregon, United States

    Join a team recognized for leadership, innovation and diversity · Support the development of on-site installation, servicing and repair processes of complex equipment and systems. You will provide technical presentations to an audience of customers, other industry peers and comp ...


  • ESR Healthcare Oregon, United States

    IAM consultant · REC · Remote / Telework · Updated 17h ago · Fees · 9% of Salary · My fee % [?] · 50.0% · Positions · 18 · Type · Direct Hire · Salary · $115,000 - $145,000/year · My new applicants · 0 · My candidates · submitted · 0 · Total invited candidates · 2 · Total active ...


  • Dedham Group Oregon, United States

    You are viewing a preview of this job. Log in · or register · to view more details about this job. · Information Technology Specialist (Customer Support) (DT) (Fort Irwin, CA) · This position is part of the Army Fellows Program and is a CIVILIAN position with the Department of ...