Cybersecurity Specialist - Washington, United States - Kingfisher Systems, Inc.

Mark Lane

Posted by:

Mark Lane

beBee recruiter


Description

Cybersecurity Specialist - Junior
Kingfisher Systems, Inc. (Kingfisher) specializes in providing a full range of Information Technology, Cybersecurity, Intelligence, and support services to the U.S. Government. Kingfisher's core competency is technology-enabled services with a specific focus on national security.

Since 2005 Kingfisher has established itself as a recognized and trusted partner whose mission is safeguarding sensitive information, operations, and programs for our Federal customers and U.S.

warfighters.


Responsibilities
Kingfisher is seeking an
Cybersecurity Specialist - Junior
The Cybersecurity Specialist - Junior defines designs and develops system requirements. Performs tradeoff analyses of performance, life-cycle cost, risk, productivity, and other system or program requirements.

Assesses architecture and current hardware limitations defines and designs system specifications, and evaluates input/output processes and working parameters for hardware/software compatibility.

Coordinates design of subsystems and integration of total system. Defines system support requirements. Analyzes and resolves program support deficiencies. Conducts independent technical investigations in systems design. Evaluates vendor capabilities to provide required products or services.

Government customer information systems are considered in one of three states of

System Authorization:
Initial Authorization, Reauthorization, or Continuous Monitoring Assessment (CMA), also known as ongoing authorization.

The Information Systems Specialist/ Mid-Level must conduct comprehensive security assessments to yield a clear understanding of security status and risk to operations and executing the mission.



  • Cybersecurity Specialist

  • Junior must review the customer's System Authorization process as defined in the current customer Security Authorization and Continuous Monitoring Performance Guide and associated templates and provide recommendations for updates to create a draft Assessment Package for approval.


  • Cybersecurity Specialist

  • Junior activities within this task shall include a review of the existing information system's core documentation. This review shall include privacy requirements data to support the development of security assessment plans, to include level of rigor (depth and breadth), and schedules support authority decision anniversary dates.


  • Cybersecurity Specialist

  • Junior shall ensure the accuracy of the system inventory, categorization, plan of action and milestones (POA&Ms), and other technology and technology type within the authorization boundary.


  • Cybersecurity Specialist

  • Junior shall validate system support services (vulnerability scanning and security monitoring technology) and personnel roles, including but not limited to,
  • Authorization Official and Authorization Official Designated Representative
  • System Owner,
  • Information System Security Officer,
  • Privacy Officer,
  • Application/System Administrator,
  • Common Controls Provider (CCP), or
  • Cloud Service Provider (CSP).
  • FedRAMP access to packages will be approved (as required) to ensure the accuracy of information and notification of the assessment schedule.


  • Cybersecurity Specialist

  • Junior must review and establish an Annual Assessment Schedule in support of deliverables and artifacts.


  • Cybersecurity Specialist

  • Junior shall develop Security Assessment Motives in the customers Cybersecurity Assessment Management system (CSAM) to support controls selection commensurate to approved SAP.


  • Cybersecurity Specialist

  • Juniorr shall adhere to the approved SAP while conducting authorized security assessments. Contractor shall collect, and catalogue evidence of security controls assessment findings i.e., documents, screen captures, and interview session notes to support claims of control implementation status (in place or other).


  • Cybersecurity Specialist

  • Junior shall develop SAR in accordance with scope defined in the SAP. SAR must detail assessment findings of controls assessed with supporting evidence supporting claims.


  • Cybersecurity Specialist

  • Juniorr shall develop and update system qualitative risk assessment reports (RAR) compliant with NIST SP Guide for Conducting Risk Assessments.


  • Cybersecurity Specialist

  • Junior shall develop a Recommendation Report and draft a Plan of Action and Milestones in accordance with requirements in CSAM. The Recommendation Report must detail findings, applicable actions, and efforts to be considered for full weakness remediation and/or compensating measure to reduce risk (likelihood of occurrence or impact).


  • Cybersecurity Specialist

  • Junior must provide an Executive Summary Briefing at customer site or hosted virtually, as determined by the COR. The briefing will include presentations, reports, evaluations, reviews, meeting minutes, and working papers in support of all tasking. Final artifacts supporting assessment activities shall be uploaded in CSAM as design

More jobs from Kingfisher Systems, Inc.