Senior Security Architect

DirectViz, LLC
Washington, DC, United States
2 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Cyber Security Information Systems Databases Information Management Information Security Management Information Systems Security Architecture Professional Network Monitoring Software Vulnerability Management Information Technology Performance Monitor

Job description

Summary: The Senior Security Architect will support the Information Security program by overseeing the security of various information systems, ensuring alignment with government standards, and maintaining robust documentation and risk management protocols. This role involves working with Information System Security Officers (ISSOs) to manage, update, and enforce security policies, privacy assessments, and system security plans, ensuring compliance and risk mitigation. The Senior Security Architect will also drive the establishment and maintenance of a Cyberthreat Dashboard, the Enterprise Security Operations Center (ESOC), and the Vulnerability Management Program., * Security Documentation & Compliance:

  • Manage and maintain comprehensive security documentation for government systems.
  • Create and update privacy assessments, system security plans, and other documentation to ensure compliance.
  • Oversee policies and procedures for security, manage associated risks, and track training compliance.
  • Annual Security Control Assessments (SCAs):
  • Conduct SCAs for approximately 63 systems, testing one-third of security controls annually.
  • Address and resolve identified security issues, ensuring new systems undergo thorough assessment.
  • Incident Response & Cyberthreat Management:
  • Operate the Department of Labor’s 24/7 Computer Security Incident Response Capability (CSIRC).
  • Train analysts on incident response procedures, focusing on incidents involving Personally Identifiable Information (PII).
  • Build and maintain a Cyberthreat Dashboard to report on threat activities and enhance situational awareness.
  • Enterprise Security Operations Center (ESOC):
  • Establish and maintain security tools and processes for ESOC.
  • Monitor network activities for unauthorized access and potential security breaches.
  • Support the Office of the Chief Financial Officer (OCFO) by safeguarding financial systems and ensuring adherence to accounting standards.
  • Vulnerability Management Program:
  • Lead the Vulnerability Management Program to identify and address security weaknesses.
  • Manage proactive monitoring of applications, databases, and other IT systems, ensuring compliance with security, accounting standards, and accessibility requirements.

Requirements

At DVS, we recognize that our employees are our number one resource. If you are a problem-solving people-person, apply today!, + Bachelor’s degree in Computer Science, Information Management (IM), Information Technology, Engineering, or a related field; or equivalent experience.

  • Minimum of 6 years in a technical role, or 4 years in IT solutions at the senior management level (preferred).
  • Active Public Trust or the ability to obtain one.
  • Certifications:
  • Certified Information Systems Security Professional (CISSP) - mandatory.
  • CISSP - Information Systems Security Architecture Professional (ISSAP) concentration - mandatory
  • Project Management Professional (PMP) from the Project Management Institute - mandatory
  • Information Technology Infrastructure Library (ITIL) 4 Foundation certification - mandatory
  • Clearance: Public Trust or higher.

Additional Skills:

  • Proven experience with information security documentation, compliance assessments, and incident response.
  • Strong understanding of government standards and best practices in cybersecurity.
  • Effective leadership and collaboration skills, with the ability to train and mentor team members.

Physical and Mental Qualifications:

  • Be able to maintain awareness during scheduled working hours.
  • Prolonged periods sitting or standing at desk and working on a computer (mouse and keyboard)
  • Able to lift up to 15 pounds.
  • Excellent verbal and written communication; good command of the English language
  • Execute tasks independently and work as a team.
  • Learns and memories routine tasks.
  • Strong organizational, grammar, business correspondence, and self-management skills
  • Candidates must be able to perform the essential functions of the position satisfactorily. If requested, reasonable accommodation will be provided for employees with disabilities.
  • DVS retains the right to change or assign other duties to this position.

Benefits & conditions

DirectViz Solutions, (DVS) is a rapidly growing government contractor that provides strategic services that meet mission IT needs for government customers. DVS provides innovative information technology solutions to government clients through the knowledge and expertise of our dedicated employees. DVS is an employee-centric employer that provides competitive compensation, comprehensive medical plans, 401k match, PTO accrual, professional development reimbursement, corporate-funded technology certifications, and employee recognition and appreciation programs.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

3:06 min

Generating distinct application modules and granular protocol event listeners

Ishan Tiwari · World Congress 2021

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:01 min

Managing application isolation via pluggable database models

Wei Hu Wei Hu · World Congress 2022

Videos

See all

Related articles

See all