Vacancy expired!
ECS is seeking a
Cybersecurity Administrator to work in our Norfolk, VA office. Please Note: This position is contingent upon contract award. Job Description: In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using National Institute of Standards and Technology (NIST) RMF, DoD, and local security policies. Provide configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintaining vulnerability scanning tool compliance, such as HBSS or ACAS and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, managing system changes, and assessing the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoD RMF. Required Skills:- Bachelor's Degree
- Must have a Secret Clearance
- Experience in integration and support of HBSS, ACAS, ForeScout, RSA, RedSeal, McAfee SIEM
- Anti-virus signature files
- Anti-virus hard drive scans
- System configuration vs. baselines
- Verify ACAS scanning
- Self-assessment security review
- Verify user account configurations
- Additional workload requires both a journeyman Security Engineer and a Senior Security Engineer
- Technical experience in support of information assurance/network boundary protection, security capability deployment and management, and integration of cybersecurity capabilities with IT assets.
- FireEye Certification
- Certified Information System Security Professional (CISSP) Investigation type: SSBI
- ISSP, CASP, or similar certificate is preferred
- Demonstrated ability to work well independently and as a part of a team
- Excellent work ethic and a high commitment to quality
Vacancy expired!