Security Assessment Lead - Washington, DC

Only for registered members Washington, DC, United States

3 days ago

Default job background
$120,000 - $180,000 (USD) per year
Description · gTANGIBLE Corporation (gTC), , is a C corporation and a registered Government contractor that provides services and solutions in: · National Security Programs · Professional, Administrative, and Management Support · Mission and Warfighter Support · We are a Service ...
Job description

Description


gTANGIBLE Corporation (gTC), , is a C corporation and a registered Government contractor that provides services and solutions in:

  • National Security Programs
  • Professional, Administrative, and Management Support
  • Mission and Warfighter Support

We are a Service Disabled Veteran Owned Small Business (SDVOSB) and the founder has years of successful experience in the Government contracting arena. Our leadership team is an exceptional group of Government contracting professionals. gTANGIBLE is in the process of identifying candidates for the following position.

Requisition Type: Full Time

Position Status:  Contingent

Position Title: Security Assessment Lead

Location: Washington, DC

Clearance: Secret

 

Duties and Responsibilities

The Security Assessment Lead will oversee primary assessors to assist TSA in conducting the approvals for National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) steps 1 – 3 and completing the assessment package and activities associated with RMF steps 4 – 6 and for all of TSA systems. Duties include the following:

  • Serve as the main liaison and driving force for completing all Security Authorization (SA), OA, Preliminary Risk Assessment, and ad hoc Risk Assessment efforts.
  • Complete SA Activities:
    • Assess all applicable security controls defined in the mandated DHS Compliance Tool and applicable to the systems under their purview
    • Ensure Information Systems Security Officers (ISSO) complete a FIPS-199, Privacy Threshold Analysis (PTA), E-Authorizations, Contingency Plans (CPs), Contingency Plan Tests (CPTs), Security Plans (SPs), and 800.53A test cases
    • Ensure ISSOs complete a FIPS-199, Privacy Threshold Analysis (PTA), E-Authorizations, Contingency Plans (CPs), Contingency Plan Tests (CPTs), Security Plans (SPs), and 800.53A test cases
    • Develop the SA Package documentation to include Security Assessment Plans (SAP), Security Assessment Reports (SAR), Authority to Operate (ATO) Letters, ATO Recommendation Memo, Risk Assessment Memos, CFO Designation Memo, POA&M finding matrices, Executive Data Sheet (EDS), OA artifacts, etc.
  • Ensure results are documented completely and accurately in the mandated DHS Compliance Tool at the operating system, application and database levels.
  • Gather evidence for ATO efforts and store results in the mandated DHS Compliance Tool and/or in a separate Governance, Risk and Compliance (GRC) repository.
  • Review POA&M closure and waiver packages in accordance with the IAD POA&M Standard Operating Procedures.
  • Review RFC or upgrades and provide recommendation on whether this will result in major or minor changes and overall cybersecurity impact and utilize IAD tool for tracking of changes.
  • Conduct, evaluate, and analyze vulnerability results from ATO assessments, penetration tests, or ad hoc risk assessments from the following set of tools, to include but not limited to: NESSUS, AppDetective, WebInspect, AppScan and Nipper and create POA&M Matrices from results.
  • Conduct Audit of Privileged Accounts (APA) as part of ATO activities and annually review ISSO Privileged Account Audits.
  • Execute responsibilities as outlined in the SA and OA Standard Operating Procedures and assist the policy manager in the review of these, and other SOP-related processes for updates.
  • Provide recommendations for refining and/or improving existing RMF processes and procedures and support implementation of these changes.

Knowledge and Qualifications

  • A minimum of 10 years of IT cybersecurity experience including direct support for the US Government and 7 years acting as an ISSO, assessor, or compliance analyst for enterprise IT systems OR a relevant Master's Degree in IT, Computer Science, or Engineering and 7 years' of IT cybersecurity experience including direct support for the US Government and 5 years acting as an ISSO, assessor, or compliance analyst
  • At least one of the following security certifications: Certified Authorization Professional (CAP), Certified Information Systems Security Officer (CISSO), Certified Information Security Manager (CISM), or Certified Information Systems Security Professional (CISSP)
  • Knowledge of NIST Guidelines and FISMA Cybersecurity compliance requirements
  • Technical knowledge of complex enterprise IT systems
  • Knowledge of and experience using relevant cybersecurity and analysis tools such as Archer, Nessus Security Center, Splunk, etc.
  • Experience communicating effectively, both oral and written, with technical, non-technical, and executive-level customers.

gTANGIBLE Corporation is an equal opportunity employer and does not discriminate against any employee or applicant because of race, age, sex, color, physical or mental disability, religion, sexual orientation, marital status, national origin, or political affiliation.




Similar jobs

  • Work in company

    Cybersecurity Assessment Lead

    Only for registered members

    We are seeking a Cybersecurity Assessment Lead who will own client engagements from cultivation to completion. · Guidehouse is seeking a Managing Consultants who will guide client engagements from cultivation to completion. The candidate will lead the planning and execution of Hi ...

    Washington

    2 weeks ago

  • Work in company

    Cybersecurity Assessment Lead

    Only for registered members

    We are seeking a Managing Consultants who will own client engagements from cultivation to completion. This role involves leading the planning and execution of High Value Asset (HVA) Cybersecurity Assessments on the federal government's most critical systems across. · An ACTIVE an ...

    Washington $130,000 - $216,000 (USD) Full time

    2 weeks ago

  • Work in company

    Cybersecurity Assessment Lead

    Only for registered members

    The Cybersecurity Assessment Lead will own client engagements from cultivation to completion and lead the planning and execution of High Value Asset (HVA) Cybersecurity Assessments on the federal government's most critical systems across. · ...

    Washington, DC

    2 weeks ago

  • Work in company

    Cybersecurity Assessment Lead

    Only for registered members

    · ...

    Washington $130,000 - $216,000 (USD)

    2 weeks ago

  • Work in company

    Cybersecurity Assessment Lead

    Only for registered members

    · Serve as the Assessment Lead and responsible for overall assessment execution and guidance of technical and operator team members. · ...

    Washington, DC

    2 weeks ago

  • Work in company

    Mission Assurance Assessment Team Lead

    Only for registered members

    Come make your mark with Watermark · We are proud to be a Service-Disabled Veteran Owned Small Business. · ...

    Arlington, VA

    1 month ago

  • Work in company

    Mission Assurance Assessment Team Lead

    Only for registered members

    In this role you will lead teams that assess the security and resilience of critical U.S. Air Force mission systems infrastructures and assets. · ...

    Arlington

    1 month ago

  • Work in company

    Mission Assurance Assessment Team Lead with Security Clearance

    Only for registered members

    Job Summary · Mission Assurance Assessment Team Lead with Security Clearance: Conduct assessments of critical U.S. Air Force mission systems, infrastructures, and assets to protect personnel, assets, and missions from physical attacks and hazards. · Key Responsibilities: · Conduc ...

    Arlington

    4 days ago

  • Work in company

    Cybersecurity Application Risk Assessment Analyst, Lead

    Only for registered members

    The Cybersecurity Risk Assessment Analyst is responsible for identifying, assessing, and managing cybersecurity risk associated with enterprise applications used across the organization. This role executes risk assessments according to a defined risk-based schedule, assigns risk ...

    Washington $100,000 - $120,000 (USD)

    2 days ago

  • Work in company

    Vulnerability Assessment Team Lead

    Only for registered members

    Gritter Francona busca un Líder para un equipo de Evaluación de Vulnerabilidades para apoyar un proyecto potencial con el Departamento de Seguridad Nacional. · ...

    Ashburn

    4 days ago

  • Work in company

    Vulnerability Assessment Team Lead

    Only for registered members

    Tyto Athene is searching for a Vulnerability Assessment Team (VAT) Analyst Lead to support a law enforcement customer in Ashburn, VA. · ...

    Ashburn

    1 month ago

  • Work in company

    Vulnerability Assessment Team Lead

    Only for registered members

    Tyto Athenesa busca a un Analista Lider VAT para apoyar a un cliente en Ashburn VA. · En este rol se trabajará con cazarrecompensas e analistas amenazantes como parte crítica al identificar mitigar y defender contra las amenazas más avanzadas globales. · ...

    Ashburn

    2 weeks ago

  • Work in company

    Vulnerability Assessment Team Lead

    Only for registered members

    Tyto Athene is searching for a Vulnerability Assessment Team (VAT) Analyst Lead to support a law enforcement customer in Ashburn, VA. · In this role, you will work closely with threat hunters, threat analysts and an established SOC—playing a critical part in identifying assessing ...

    Ashburn

    1 week ago

  • Work in company

    Vulnerability Assessment Team Lead

    Only for registered members

    Tyto Athene is searching for a Vulnerability Assessment Team (VAT) Analyst Lead to support a law enforcement customer in Ashburn, VA. · In this role, you will work closely with threat hunters, threat analysts, · and an established SOC-playing a critical part in identifying, · ass ...

    Ashburn

    1 week ago

  • Work in company

    Vulnerability Assessment Team Lead

    Only for registered members

    +We are looking for a Vulnerability Assessment Team (VAT) Analyst Lead to support our law enforcement customer in Ashburn VA. · +Lead enterprise vulnerability assessment efforts and security testing activities. · Perform vulnerability scanning and analysis across complex networks ...

    Ashburn, VA

    1 week ago

  • Work in company

    Vulnerability Assessment Team Lead

    Only for registered members

    Gritter Francona is looking for a Vulnerability Assessment Team Lead to support a potential project with the Department of Homeland Security. · ...

    Ashburn, VA

    3 days ago

  • Work in company

    Vulnerability Assessment Team Lead

    Only for registered members

    Gritter Francona is looking for a Vulnerability Assessment Team Lead to support a potential project with the Department of Homeland Security. · ...

    Ashburn

    3 days ago

  • Work in company

    Vulnerability Assessment Team Lead

    Only for registered members

    We are searching for a Vulnerability Assessment Team (VAT) Analyst Lead to support a law enforcement customer in Ashburn, VA. In this role you will work closely with threat hunters threat analysts and an established SOC playing a critical part in identifying assessing and mitigat ...

    Ashburn, VA

    1 month ago

  • Work in company

    Vulnerability Assessment Team Lead with Security Clearance

    Only for registered members

    Tyto Athene is searching for a Vulnerability Assessment Team (VAT) Analyst Lead to support a law enforcement customer in Ashburn, VA. · In this role, you will work closely with threat hunters, threat analysts and an established SOC- playing a critical part in identifying assessin ...

    Ashburn

    1 month ago

  • Work in company

    Cyber Operations Readiness Assessment Technical Team Lead

    Only for registered members

    We are seeking a Cyber Operations Readiness Assessment Technical Team Lead to join our team supporting the Defense Threat Reduction Agency (DTRA) in Fort Belvoir, VA.CORA offers an exciting opportunity to apply deep technical expertise, collaborate with top cyber professionals, a ...

    Fort Belvoir

    1 month ago