Information Assurance Security Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
* Perform Computer Security Incident Response activities for a large organization; coordinates with other government agencies to record and report incidents in accordance with DoD, Air Force, and Local Operating Policies and Instructions. * Ensure that CCSD networked systems, RDT&E, and standalone systems and programs comply with AFI 17-101 and appropriate local Operating Instructions. which provides life-cycle management for Information Assurance (IA) and other critical systems. * Analyze complex network and IA systems in unclassified and classified environments for compliance with DoD and industry best practices security configuration requirements. * Write Standard Operation Procedures (SOP), COOP, Configurations, and other documentation in support of RMF as required. * Provide technical evaluation of proposed system(s) and application approaches. * Validate Information Assurance (IA) Controls. * Assist the Government with various IA, Security, EMSEC and other inspections. * Assist with the destruction of classified media.
Requirements
Three to five years of progressively responsible IT security consulting experience on government contracts * Must have eMASS experience * Must have experience creating RMF packages that demonstrate compliance with RMF controls * Must have strong understanding of NIST SP 800-37 (RMF for IT Systems) * Must have demonstrated STIG analysis experience (candidate need to be able to interpret them, assess systems for compliance, and document findings in the ATO packages) and knowledge of STIG tools * Individual must have high degree of skills with the MS Office toolsets. * Knowledge and experience in the certification and accreditation processes that require knowledge of DoD Guidance (DoDD 8500.1, DoDI 8500.2, 8520, AR 25-2), DITSCAP, RMF, Air Force Best Business Practices (BBP) and information assurance and auditing. * Knowledge and experience in C&A workflow in accordance with RMF requirements, preparation of system-related RMF artifacts, system security engineering, preparation of security test plans and their execution, remediation of system vulnerabilities, and preparation of IA documentation including PPS matrix, POA&M and system security plans. * Candidate must possess refined critical thinking skills, should be a self-starter, may direct the activities of other team members, diplomatic, multi-task capable, adaptive to a dynamic environment, dependable and reliable. * Strong verbal and written communication skills as well as the ability to work independently as required.
Certifications Required
- CompTIA Security+CE
Clearance Required
- DoD Top Secret/SCI is required.
About the company
Since 1976, SMS has specialized in modernizing legacy IT and sustaining complex enterprise environments for federal agencies. With the goal of building long-term partnerships with our customers, we invest in our employees by providing the training, tools, and support they need to keep critical missions operational, improve performance, and reduce risk. SMS is headquartered in McLean, Virginia, with offices and on-site operations at customer locations throughout the United States. For additional information on SMS, visit www.sms.com.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on diversityjobs.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Walking Into The Era of Supply Chain Risks
Best Paying Jobs in Technology
Dev Digest 134 - Where pixels sing?