Expert Jcip Network Technical Reviewer - Chantilly, United States - Pueo Business Solutions LLC

Mark Lane

Posted by:

Mark Lane

beBee recruiter


Description

Pueo has an opportunity for an experienced TS/SCI cleared Network Technical Reviewer to join our team in Reston, VA, Washington, D.C, Maryland Square, or Chantilly, VA.

The Network Technical Reviewer is responsible to exercise technical support as a Reviewer during an inspection conducted within the Intelligence Community Integrated Environment (IC IE).

This requires a Reviewer to be an expert in their technical area or multiple areas, to remain agile, and diligent in support of a groundbreaking effort to secure and modernize the JWICS environment.


This is an on-site role

Must be willing to travel up to 30%, including local travel within the National Capital Region (NCR) of Northern Virginia, Maryland, and Washington, DC.

Responsibilities:


JCIP Technical Reviewers play a pivotal role in evaluating the cybersecurity posture of enterprise environments across the Intelligence Community (IC).

They conduct comprehensive assessments through detailed analysis of vulnerability scans to ensure compliance with Intelligence Community Directives (ICDs), IC Technical Implementation Guides (TIGs), Security Technical Implementation Guides (STIGs), Security Requirement Guides (SRGs), and NIST rev 5 security controls.

Utilizing automated tools, including Tenable and Splunk, these professionals perform documentation reviews, employ checklists and guides to write report and develop a qualitative risk assessment on target organizations.

Their assessments examine the mission owners' critical capabilities and mission impacts if secure operations lack security protections needed to defend their cyber infrastructure and mitigate high-risk vulnerabilities to the enterprise.

Beyond inspection duties, Technical Reviewers contribute to maturing organizational processes, training initiatives, and program-wide support through cross-functional collaboration.

JCIP Reviewers are integral to conducting inspections of environments across the Intelligence Community (IC)


They are responsible for:

  • Interacting with leadership and site technical staff in advance of conducting inspections to facilitate scoping, data to support security controls assessment input, and execution of operational inspection plans,
  • Collect data in support of reviewing a comprehensive Threat Informed Critical Controls List (TICCL), provide written input on review of required security controls, potential vulnerability exploitation, and how MITRE ATT&CK techniques are plausibly successful based on organizational weaknesses. Ensure inputs link back to security controls,
  • Participating in the planning, execution, and reporting of security audits and network vulnerability assessments with mínimal supervision,
  • Assisting in preparation of assessment deliverables Security Risk Assessments input, compliance data, STIG data, etc.,
  • Communicating on impact of vulnerabilities verbally, through presentations and written deliverables,
  • Plan, execute, and report on information technology, privacy, and operational reviews to identify mission, privacy, security, compliance, information technology, and regulatory risks,
  • Familiar with a variety of cybersecurity concepts, practices, and procedures. Relies on extensive experience and judgment to plan and accomplish goals.

Required Qualifications

Experience:
At least five (5) years of experience in system administration, specifically with HBSS platforms such as Trellix.

A minimum of twelve (12) years of experience in Cyber/Information Assurance, with a comprehensive understanding of cybersecurity disciplines including but not limited to the Risk Management Framework, DevSecOps, and cybersecurity engineering.


Demonstrate an understanding of:

  • VLANs and VLAN Trunking: Demonstrated capability in configuring and managing Virtual Local Area Networks (VLANs) and VLAN trunking to support secure network segmentation and operational efficiency, aligning with industry best practices
  • Spanning Tree Protocol (STP): Expertise in implementing STP to prevent network loops, ensuring resilient and secure network topologies
  • OSPF, BGP, and GRE Tunneling: Solid foundation in key routing protocols (Open Shortest Path First (OSPF) and Border Gateway Protocol (BGP)) and Generic Routing Encapsulation (GRE) tunneling, crucial for secure and efficient network routing and connectivity
  • Switching Topology Security: Knowledge in securing switching topologies against unauthorized access and threats, ensuring data integrity
  • Remote Administration: Skills in the secure remote management of network devices, maintaining network integrity and availability
  • ACL Configuration and Validation: Ability to configure and validate Access Control Lists (ACLs) to regulate traffic flow and bolster network security, in compliance with established standards
  • User Management: Experience in the secure management of network user access and permissions, safeguarding against unauthorized access
  • Firewall Auditing, Validation & Monitorin

More jobs from Pueo Business Solutions LLC