Cybersecurity Risk Management - Portsmouth, United States - P3S Corporation

    P3S Corporation
    P3S Corporation Portsmouth, United States

    2 weeks ago

    Default job background
    Description

    Job Description

    Job Description

    Type: Full-Time

    Clearance: Top Secret or TS/SCI preferred & US Citizen

    Certifications: IAT II or IAM II+ Certification - CCNA, CYSA, GICSP, GSEC, SECURITY+, CND, SSCP

    Education: Associate degree in computer science with 5 years' experience or related in an engineering related discipline

    Experience: 8 years of recent relevant experience in Cyber Security, auditing & policy security

    Location: Arlington, VA Hybrid position (85% remote & 2-3 visits to site per month)

    Schedule: Monday - Friday

    Salary: DOE starts at $85K+

    The Cybersecurity Risk Management &Authorization Professional provides support, responsible for executing, assisting in the completion of security certifications, development and implementation of a program to manage all aspects of compliance with government regulations.

    Facilitates Assessment & Authorization (A&A) activities with Risk Management Executive (RME) and IC for UNCLASSIFIED, SECRET and TS/SCI. Monitors and implements Cloud Computing Cybersecurity Plan for Operations (C3PO) practices e.g., receive, review, and coordination of intercepts, hardware reuse, and independent security assessments.
    Task Order Title. Joint Warfighting Cloud Capability (JWCC) Engineering/Program Management Office (PMO) Support

    This contract vehicle is designed to solve how the Department of Defense (DoD) can leverage commercial cloud capabilities within the DoD environment cloud capabilities directly with: (MUST HAVE THIS HANDS-ON EXPERIENCE)

    • Amazon
    • Google
    • Microsoft
    • Oracle

    ESSENTIAL DUTIES AND RESPONSIBILITIES

    • Implements, manages, and maintains current/future Cybersecurity standards, best practices.
    • Monitors and implements Cloud Computing Cybersecurity Plan for Operations (C3PO) practices e.g., receive, review, and coordination of intercepts, hardware reuse, and independent security assessments.
    • Support Joint & Co-Use Cybersecurity activities and information requests.
    • Facilitates Assessment & Authorization (A&A) activities with Risk Management Executive (RME) and IC for UNCLASSIFIED, SECRET and TS/SCI.
    • Supports Combatant Command and 4th Estate unique security inquiries and provide recommendations for tailored processes.
    • Helps facilitate and prioritize interactions between CSPs and Government entities to prioritize the review of authorization packages.
    • Responsible for aiding in own self-development by being available and receptive to all training made available by the company.

    Properly use Cybersecurity tools:

    • Endpoint Security System
    • Assured Compliance Assessment Solution (ACAS)
    • HaCC's ticketing system
    • Defense Information Technology Portfolio Repository
    • Enterprise Mission Assurance Support Service (eMASS)
    • Continuous Monitoring and Risk Scoring
    • Global Information Grid Interconnection Approval Process
    • Systems Network Approval Process
    • Ports, Protocols and Services Management
    • Security Technical Implementation Guides (STIG) Viewer
    • Web Application Firewall F5
    • IronPort, and Splunk.

    Cybersecurity Service Delivery

    • Evaluate CSP provided documentation and make recommendations to the government on acceptability of technical artifacts.
    • Interact with CSPs on a weekly basis to discuss CSO accreditation requirements and status.
    • Review C&A documentation, providing feedback on completeness and compliance of its content.
    • Perform system installation, configuration maintenance, account maintenance, signature maintenance, patch management, and troubleshooting of operational IA and Computer Network Defense systems.
    • Help facilitate and prioritize interactions between CSPs and Government entities to prioritize the review of authorization packages. System access includes NIPRNet and SIPRNet networks.

    "We're an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, s ex, sexual orientation, gender identity, national origin, veteran or disability status."