Information Security Analyst III - Q Clearance

ActioNet, Inc.
Gaithersburg, MD, United States
22 days ago
Apply on jobs.jobvite.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$140,000.0
Working hours
Regular working hours

Tech stack

Agile Methodology Data Analysis Cloud Computing Cloud Computing Security Capability Maturity Model Integration CompTIA Security+ Cyber Security Information Systems Information Systems Security Architecture Professional Microsoft Security Essentials Cloud Services Zero Trust Network Access
+4 more
Software Engineering Software Vulnerability Management Information Technology Outsourcing Information Technology

Job description

We are seeking an experienced Information Security Analyst III to support the security, assessment, authorization, and continuous monitoring of government systems and information assets. The ideal candidate will have strong knowledge of federal cybersecurity requirements, Security Assessment and Authorization (SA&A), NIST security frameworks, vulnerability management, incident response, cloud security, Continuous Diagnostics and Mitigation (CDM), Continuous Monitoring, and Zero Trust Architecture. This position will work closely with end users and technical teams to identify security requirements, implement security policies and procedures, protect information systems from unauthorized access or modification, and monitor organizational compliance.

Requirements

Up to $140,000 depending on qualifications, including relevant certifications, education, years of experience, and demonstrated experience supporting Federal Government programs within the field. Candidates with specialized expertise, industry-recognized certifications, and strong Federal contracting experience may be considered at the higher end of the range.

Clearance: Active Q Clearance Required

Education: Bachelor’s degree from an accredited university or college in Cybersecurity, Information Assurance, Information Technology, Computer Science, or a related field.

Required Certification: One or more of the following certifications or equivalent:

  • GIAC Information Security Professional (GISP)
  • ISC2 Certified Information Systems Security Professional (CISSP)
  • GIAC Security Essentials (GSEC)

Experience:

  • Minimum of four (4) years of experience performing cybersecurity tasks designed to protect government systems and information assets.
  • Experience protecting systems and information from unauthorized access, modification, disclosure, or destruction.
  • Experience working with end users to determine departmental security needs and requirements.
  • Experience implementing cybersecurity policies, procedures, and controls.
  • Experience tracking and supporting organizational compliance with security requirements.
  • Knowledge of Security Assessment and Authorization (SA&A) policies, procedures, and processes.
  • Knowledge of NIST SP 800-37, NIST SP 800-53, CNSSI, and other applicable federal cybersecurity requirements.
  • Understanding of Continuous Diagnostics and Mitigation (CDM) and Continuous Monitoring.
  • Understanding of Zero Trust Architecture and security principles.
  • Experience with cloud security concepts and technologies.
  • Knowledge of incident response processes and procedures.
  • Experience with vulnerability management, including identifying, assessing, tracking, and remediating vulnerabilities.
  • Strong understanding of federal cybersecurity policies, standards, and security best practices.

Preferred Certifications:

  • Certified Information Security Manager (CISM)
  • GIAC Security Essentials (GSEC)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Vulnerability Assessor (GCVA)
  • GIAC Cloud Security Automation (GCSA)
  • GIAC Cloud Penetration Tester (GCPN)
  • ISC2 Certified Cloud Security Professional (CCSP)
  • CompTIA Security+
  • CompTIA CySA+
  • CompTIA Security Analytics Professional (CySA+) or equivalent
  • Certified Cloud Security Professional or equivalent cloud security certification
  • Certified Ethical Hacker (CEH)
  • ISACA Certified in Risk and Information Systems Control (CRISC)
  • Certified Authorization Professional (CAP)
  • ISC2 Certified in Cybersecurity (CC)

About the company

ActioNet is a CMMI-DEV Level 4, CMMI-SVC Level 4, ISO 20000, ISO 27001, ISO 9001, HDI-certified, woman-owned IT Solutions Provider with strong qualifications and expertise in Agile Software Engineering, Cloud Solutions, Cyber Security and IT Managed Services. With 24+ years of stellar past performance, ActioNet is the premier Trusted Innogrator! Why ActioNet? At ActioNet, our Passion for Quality is at the heart of everything we do:

  • We are committed to make ActioNet a great place to work and continue to invest in our ActioNeters
  • We are committed to our customers by driving and sustaining Service Delivery Excellence
  • We are committed to give back to our Community, help others and make the world a better place for our next generation

ActioNet is proud to be named as a Top Workplace for the ninth year in a row (2014 - 2022). We have 98% of Customer retention rate. We are passionate about the inspirational missions of our customers and we entrust our employees and teams to deliver exceptional performance to enable the safety, security, health and well-being of our nation.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.jobvite.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:48 min

Automating exploratory data analysis within training pipelines

Dora Petrella · World Congress 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:41 min

Transitioning artificial intelligence infrastructure into scalable commodity cloud services

juarezjunior juarezjunior · World Congress 2024

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:36 min

Performing exploratory data analysis to uncover underlying patterns

Julian Joseph · LIVE

Videos

See all

Related articles

See all