Jobs
>
Oregon

    Information Security Specialist - Oregon, United States - Cape Fox Corporation

    Cape Fox Corporation
    Cape Fox Corporation Oregon, United States

    1 month ago

    Default job background
    Description
    Information Security Specialist

    Share this job as a link in your status update to LinkedIn.
    Job Title
    Information Security Specialist
    Job Description

    Cape Fox is seeking a highly qualified Information Security Specialist/InfoSec Engineer to join our team in support of a government customer.

    The ideal candidate will have direct experience developing IT security policies, architectures, and standard operating procedures with a strategic perspective.

    Extensive knowledge of and practical experience with implementing standard methodologies used in the Risk Management Framework (RMF) process (Formerly referred to as Certification and Accreditation (C&A)).

    Expert-level knowledge and experience with National Institute of Standards and Technology (NIST) guidelines and industry best practices for: Risk Assessment and Management, Vulnerability Analysis, Contingency Planning, Disaster Recovery, Configuration Management, Security Assessments and developing Mitigation Plans.

    This position is contingent upon award.
    Provide multi-disciplined security administrative and technical security support to the organization; areas of responsibility include Physical, Computer, Personnel, Information, Administrative, Operational, and Communications Security analysis, assessment, and reporting
    Provide recommendations to organizational stakeholders for the integration of security processes and compliance with Federal regulations and Departmental policy
    Direct security efforts to increase efficiencies and enforce a global security mindset
    Provide strategic guidance for the further development of the security program
    Develop policies and procedures supporting regulations, directives, and Departmental policy
    Assist senior management with establishing a plan of action for the remediation of weaknesses
    Provide direct information assurance guidance pertaining to the development and modification of information systems and industrial control systems
    Provide strategic insight and continuous support for the integration of the system development life cycle
    Provide recommendations concerning new and existing projects and assist project managers with security oversight
    Coordinate with representatives and Subject Matter Experts (SME) from other Federal Agencies and commercial organizations to maintain awareness of upcoming changes to regulations and technologies
    Develop Risk Assessments in accordance with NIST guidance and deliver risk analysis and guidance as needed to organizational leadership
    Work with and be supported by NPS security personnel to perform the following tasks:

    Responsible for the mapping and implementation of the necessary defined security controls as they relate to the NPS infrastructure on NPS owned devices in accordance with government identified General Support Systems (GSS) and Subsystems
    Develop, implement, and maintain security related documents to include:

    System Security Plans (SSP)
    Risk Assessments
    Risk Acceptance documentation
    Security Impact Analyses
    Contingency Plans
    Incident Response Plans
    Plan of Actions & Milestones (POA&M)
    Independent Security Assessment (ISA)
    Memorandum of Understanding (MOU)
    Service Level Agreements (SLA)
    Assessment & Authorizations (A&A)

    Provide input to auditors, to include providing artifacts to support current configurations
    Assess existing systems, applications, and tools, in addition to existing security processes for security implications and recommend improvements to strengthen security posture based on assessment
    Conduct continuous monitoring to include maintenance of current ATO, monitoring compliance, conducting assessments, conducting periodic scans, auditing events and review of audit logs, and ensuring media is properly secured before transit or sanitized before disposal
    Provide recommendations to the NPS on methods to minimize security impacts of new requirements, technologies in accordance with policies, federal laws, and mandates
    Coordinate and facilitate meetings and regular interaction with System Owner, NPS IT Security personnel, data center personnel, change control board personnel, and data center end users providing technical and non-technical security-based expertise, guidance, and documentation
    Develop, communicate, and enforce security policies, procedures, and safeguards for all systems and staff, based upon Data Center and other government standards
    Travel Requirements

    0 - 10%
    Salary Grade
    Job Requirements
    Bachelor's Degree and six (6) years' relevant experience
    OR
    Master's Degree and five (5) years' relevant experience
    OR
    Eight (8) years' relevant experience
    Industry-recognized technical certification accepted in lieu of one year experience
    Minimum of four (4) years' direct full-time experience conducting security assessments and developing all deliverables within a system authorization package
    Must have detailed and extensive experience with implementing, evaluating, and documenting all technical, management, and operational security controls as defined by the NIST SP as amended)
    Direct experience developing IT security policies, architectures, and standard operating procedures with a strategic perspective

    Extensive knowledge of and practical experience with implementing standard methodologies used in the Risk Management Framework (RMF) process (Formerly referred to as Certification and Accreditation (C&A)).

    Expert-level knowledge and experience with National Institute of Standards and Technology (NIST) guidelines and industry best practices for:
    risk assessment and management, vulnerability analysis, contingency planning, disaster recovery, configuration management, security assessments and developing mitigation plans
    Extensive knowledge and experience in delivering security administration support to the data center which includes incident reporting, planning, standards compliance, platform configuration management, cyber security vulnerability tracking (to include coordinating with customers and creating artifacts showing compliance), and the secure user access and management processes for the NPS Enterprise Data Centers
    Experience creating and submitting an Assessment & Authorizations (A&A) package and all related documents
    Knowledge of hybrid (on-premises and cloud) data center environments to include evaluation and guidance on security control implementation on network, storage, server (Windows, Linux, Oracle), and platform (Microsoft Hyper-V and Azure preferred)
    Required to pass a Moderate Background Investigation (MBI) prior to starting work
    Must have authorization to work in the United States as defined by the Immigration Reform Act of 1986
    Category

    Skilled Labor
    Location
    Reston - Dept. of Interior - Reston, VA 20192 US (Primary)

    #J-18808-Ljbffr


  • U.S. Department of the Treasury Oregon, United States

    Click on "Learn more about this agency" button below to view · Eligibilities · being considered and other · IMPORTANT · information. · WHERE CAN I FIND OUT MORE ABOUT OTHER IRS CAREERS? · Visit us on the web at · Federal experience is not required. The experience may have ...


  • Livingston County Area Chamber of Commerce Oregon, United States

    Communications and Security Specialist at SUNY Geneseo · The University Police at SUNY Geneseo · is seeking a Communications and Security Specialist. In this role, you will provide communications, security, and public safety services within a 24/7 operation in the University Po ...


  • FusionTech Forreston, United States

    Training Specialist for Protection and Security (m/f/d) · We are looking for you as an apprentice Start your three-year training as a "Specialist for Protection and Security" with us in Karlsruhe now. · Our offer: · • Varied training in a dynamic company · • Personal and individu ...


  • Plixer International Oregon, United States

    Plixer is a leading global Network Detection and Response (NDR) Cybersecurity platform, providing unparalleled visibility across the entire network. Our lightning-fast deployment and advanced AI empower enterprises to swiftly detect and combat sophisticated security threats, enab ...


  • Rcubeitllc Oregon, United States

    Join to apply for the · Quality Assurance Consultant · role at · RCube IT Mexico · 2 weeks ago · Be among the first 25 applicants · Join to apply for the · Quality Assurance Consultant · role at · RCube IT Mexico · Save this job with your existing LinkedIn profile, or crea ...


  • Techconsult AS Oregon, United States

    Kontakt · Techconsult is the link between jobs and professionals. · For one of our customers we are now looking for a · Technical lead process · for our customers department "extended modification project organization" – maturing and executing topside investment projects typic ...


  • Department of Homeland Security Oregon, United States

    This position is located in the Department of Homeland Security, United States Coast Guard, Surface Forces Logistics Center, Contracting and Procurement Division, and may be filled in Baltimore, MD or Norfolk, VA. · Applicants must meet the following basic requirements: Completed ...


  • HashiCorp Oregon, United States

    The Infrastructure Solutions Architecture Specialist (SA) serves as a product or solution subject matter expert, providing Customers with deep technical guidance at strategic points throughout the lifecycle of our partnership with our Customers. Through targeted engagement, SAs h ...


  • 3M Group Oregon, United States

    Senior Computer Systems Validation Compliance Specialist page is loaded · Senior Computer Systems Validation Compliance Specialist · 申请 · remote type · Remote · locations · Remote - Minnesota · Remote-United States · time type · Full time · posted on · 发布于 2 天前 · job ...


  • Entry Oregon, United States

    [Full Time] Head of Demand Generation at Entry (United States) | BEAMSTART Jobs · Head of Demand Generation · Entry United States · Date Posted · 19 Jul, 2022 · Work Location · Oregon, United States · Salary Offered · Not Specified · Job Type · Full Time · Experience Required · ...


  • WISC Oregon, United States

    Introduction · The Department of Corrections is focused on public safety through the custody and supervision of those in our care. Corrections employees have the opportunity to positively impact the lives of others through careers in a variety of fields. Using cutting-edge resea ...


  • Amazon Oregon, United States

    AWS Infrastructure Services (AIS) owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we're the people who keep the cloud running. We support all AWS data centers and all of the servers, storage, networking, power, and cooling equi ...


  • Department of Homeland Security Oregon, United States

    This position is located in the Department of Homeland Security, United States Coast Guard, Surface Forces Logistics Center, Contracting and Procurement Division, and may be filled in Norfolk, VA or Baltimore, MD.Applicants must meet the following basic requirements: Completed a ...


  • Norstella Group Oregon, United States

    You are viewing a preview of this job. Log in · or register · to view more details about this job. · This is a permanent Health Services Consultant 3 position. · About Us: · The Executive Office of Resiliency and Health Security (ORHS) strives to respond to all-hazards public h ...

  • State of Oregon

    Software Engineer

    3 weeks ago


    State of Oregon Oregon, United States

    Software Engineer (Information Systems Specialist 6) page is loaded · Software Engineer (Information Systems Specialist 6) · Apply · remote type · Hybrid Work · locations · Salem | OED | Revenue Building | 4th Floor · time type · Full time · posted on · Posted 2 Days Ag ...


  • Nutanix Oregon, United States

    Company: · Qualcomm Technologies, Inc. · Job Area: · Sales, Business Development & Marketing Group, Sales, Business Development & Marketing Group > Marketing Communications · General Summary: · Qualcomm relentlessly innovates to deliver intelligent computing everywhere, helpi ...


  • IntelligenceCareers, Inc. Oregon, United States

    Click on "Learn more about this agency" button below for · IMPORTANT · additional information. · The primary purpose of this position is as an Air Reserve Technician, to serve as the Intelligence Surveillance and Reconnaissance (ISR) Flight NCOIC. The incumbent has overall res ...


  • Radiant Technologies Byron, United States

    Are you looking for a new professional development opportunity? Then we have an exciting challenge for you. · On behalf of our client, a primary and regular care provider with approximately 180 beds, we are looking for you as a surgical assistant physician (m/f/d). Extensive trai ...


  • State of Oregon Oregon, United States

    Senior Systems Analyst (Information Systems Specialist 8) page is loaded · Senior Systems Analyst (Information Systems Specialist 8) · Apply · locations · Salem | OHA | Fairview Industrial Drive 3990 · time type · Full time · posted on · Posted 2 Days Ago · job requisiti ...


  • NeighborImpact Oregon, United States

    Are you passionate about making a difference and have a knack for data management? Join us as an HMIS Specialist, where your expertise will directly contribute to providing solutions for people in need. Be the change by leveraging technology to create a meaningful impact in the c ...