Cybersecurity Specialist-

Information Management Group, Inc.
Goose Creek, SC, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
1 year minimum
Working hours
Regular working hours

Tech stack

Microsoft Windows Active Directory Configuration Management CompTIA Security+ Cyber Security Information Systems Data Centers Microsoft Office Security Software Server Virtualization Software Vulnerability Management Wide Area Networks
+2 more
Information Technology Vulnerability Analysis

Job description

i. Support development and maintenance of Authorization to Operate (ATO) documentation and processes ii. Ensure systems remain compliant with applicable federal cybersecurity standards (e.g., applying hardening guides to new and existing hardware and software resources, remediating vulnerabilities) iii. Assist in the identification, assessment, tracking, reporting, and closure of cybersecurity findings and vulnerabilities iv. Contribute to system security planning, continuous monitoring, and documentation updates v. Facilitate onboarding of new software, hardware, or functionality into the network, ensuring that security requirements are met while enabling timely user adoption vi. Provide service-oriented support to users and project teams for cybersecurity compliance questions, reviews, and approvals vii. Familiarity with cybersecurity tools, compliance reporting platforms, and vulnerability scanning/management processes viii. Assist with, complete, and/or review required cybersecurity documentation ix. Be proficient in MS Windows operating environment and MS Office Suite

Requirements

Education: Bachelor’s degree in Computer Science, Information Technology, or related field. Active DoD Top Secret or DoE “Q” security clearance

Shall be experienced in: i. Minimum of two (2) years of relevant experience ii. At least one year of experience working on IT security project teams iii. At least one year of experience managing IT projects iv. Knowledge of IT infrastructure and services (data centers, physical and virtual servers, local and wide area networks, Active Directory administration, etc.). v. Knowledge of federal security policies such as NIST Special Publications, Security Technical Implementation Guides (STIGs), and Security Resource Guides (SRGs). vi. Knowledge of NIST Cybersecurity Risk Management Framework vii. Knowledge of infrastructure security, endpoint protection, and vulnerability management tools and their applications

ii. Desired Experience:

  1. CompTIA Security+, CompTIA CySA+, or equivalent cybersecurity certification
  2. Current DoE Q-level clearance
  3. Previous experience working on classified DoE or DoD information systems
  4. Developing or maintaining ATO packages in accordance with NIST Risk Management Framework (RMF)

  5. Experience with configuration management, security test procedures, and technical inspections in DOE environments About IMG

Benefits & conditions

IMG Benefits: Health, dental, vision, and life insurance

  • Short term and long term disability insurance
  • 401(k) with generous company match
  • Health Savings Accounts (HSA)
  • Personal leave plus paid federal holidays
  • Professional development and training assistance

About the company

Founded in 1987, IMG is a leading small business that exemplifies competence, integrity and follow-through. We consistently provide customer focused professional services, which ensures our company is recognized for continually exceeding expectations. We believe that at the core of our success stand our people. Our people have provided professional services in the Information Technology field for our customers with a commitment to customer satisfaction for over 35 years.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

51 sec

Repurposing hardware and operating underwater data centers

Chris Heilmann +1 · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:45 min

Evolution from manual setups to automated monolith deployments

Axel Barbier · WWC 2023

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:18 min

Eliminating passwords using Azure managed identities

Markus Möller · WWC 2021

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all