Job Details

Cyber Security/ Risk Management Engineer

NetSource, Inc.
Raleigh, North Carolina, United States
Please note that this is a 1 year contract position. Responsibilities bull Experience with O365 implementations bull Works closely with Account Security Officer (ASO) and Segment Security Officers (SSO) to ensure operational security measures are implemented. bull Assesses and mitigates system security risks determines and analyzes security requirements for implementation and testing. bull Reviews and continuously monitors implemented security controls. bull Creates and maintains security checklists, templates and other tools to aid in the AA process. bull Performs security control assessment using NIST 800-53A guidance and as per continuous monitoring requirements. bull Performs risk analyses to determine and recommends essential safeguards. bull Proactively mitigates system vulnerabilities and recommends compensating controls. bull Prepares security authorization packages in accordance with the client contractual requirements. bull Develops core documents such as System Security Plan, Contingency Plan, Incident Response Plan, Standard Operating Procedures, Plan of Actions and Milestones, Remediation Plans, Configuration Management Plan, etc. bull Maintains client-specific Plan of Action and Milestones and supports remediation activities. bull Maintains an inventory of hardware and software for the information system. bull Develops, tests and trains on Contingency and Incident Response planning. bull Conducts independent scans of application, network and database and utilizes Managed Security Services Vulnerability Assessment Team (VAT) support as applicable. EXPERIENCE LEVEL 5-9 yearsrsquo experience working in a risk management, audit, security or technical delivery role EDUCATION Bachelor or master degree in Computer Science, Computer Studies, Information Security (or equivalent combination of education and experience) CERTIFICATIONS (One or more required) CompTIA Security+ CE, OR Global Information Assurance Certification (GIAC) Security Essentials Certification (GSEC), OR ISC2 Systems Security Certified Practitioner (SSCP), OR Cisco Certified Network Associate (CCNA) Security and CISSP PREFERRED SKILLS Fluent in English, grammar and communication. KNOWLEDGE AND SKILLS REQUIRED bull Ability to influence OCISO Delivery system stakeholders in the execution of security and compliance requirements bull Knowledge of the security countermeasures and overall RMF and NIST compliance Experience as a Security consultant in Risk and Compliance bull Experience in working with security mgt including information governance and compliance bull Good understanding of Assurance Practices and Risk Management, hands on experience bull Experience of security processes and standards, in particular NIST 800-series and RMF bull Knowledge of security audit and accreditation processes bull Ability to interpret request for proposal and respond to security and compliance requirements bull Knowledge of Federal Security, industry and market trends and client offerings bull Understands client's solutions - what they consist of, product roadmaps, IT concepts bull Understands how cyber security GRC requirements fit within or interface with the sales of other solutions in client's partner strategies bull Understands federal security and regulations impacting security requirements to develop strategies for supporting internal operations Applicants must provide their phone number. Reference job number A294.

Send application

Mail this job to me so I can apply later

Apply With CV

You are not logged in. If you have an account, log in to your account. If you do not have an account, why not sign up? It only takes a minute!

latest videos

Upcoming Events