Cyber Security Audit and Compliance SME
Summary
Serve as a cybersecurity SME for USCG systems, implementing security controls, auditing compliance, and managing risk under the RMF while guiding teams on policy and remediation.
Overview
Provide DevSecOps and Agile IT support services for operational mission support for the systems under the United States Coast Guard (USCG) Aviation Logistics Center (ALC), Information Systems Division (ISD) portfolio.
Responsibilities
- Evaluate security requirements and conducts feasibility studies to examine software and hardware requirements, administration costs, and data information flow.
- Assists with the Security Controls Auditor in validating the security controls and the Risk Management Framework.
- Develops and maintains cyber security policy to comply with requirements.
- Plan and schedule cyber project activities and monitors and reports project progress.
- Work with customers to implement system security measures, assists with cyber security plans and documentation and provides technical guidance and training.
- Conduct an analysis of system vulnerability management, remediation solutions, and develop the necessary POAMs.
- Collaborate with internal and/or external security teams regarding audits and security controls.
- Evaluate, tests, monitor, and maintain information security policies, procedures and systems such as hardware, firmware, and software.
- Ensure security design, controls, and procedures are aligned with information security standards and are appropriate to mitigate risk of exposure.
- Identifies security violations, determines cause, and implements procedures to prevent future incidents.
Qualifications
Required:
- Six (6) years of experience in Information security with cyber security, security programs or compliance assurance.
- Six (6) years of experience with Security Information and Event Management (SIEM).
- Bachelor’s or associate degree in Computer Science, Math, Information Technology, Engineering, or related field or at minimum IT Certification. Six (6) years' experience is equivalent to three (3) years of education.
- Six (6) years of experience in the risk management framework.
- Secret Clearance
Preferred:
- Basic knowledge of the following: Active Directory, UNIX, Windows, Relational Databases.
- Knowledge of NIST special publications and accreditation and authorization process
Company Overview
Integral partners with federal defense, intelligence, and civilian leaders to tackle their most important challenges and deliver positive outcomes. Since our founding in 1998, we have helped clients leverage existing and emerging technologies to transform their enterprises, empower growth, drive innovation, and build sustainable success. The forward-leaning solutions we deliver are tailored to each mission with a focus on keeping our nation safe and secure.
Integral is headquartered in McLean, VA and serves clients throughout the country.
We offer a comprehensive total rewards package including paid parental leave and immediate vesting in our 401(k). Give us a try and become part of a curated group of professionals at Integral Federal!
Our package also includes:
· Medical, Dental & Vision Insurance
· Flexible Spending Accounts
· Short-Term and Long-Term Disability Insurance
· Life Insurance
· Paid Time Off & Holidays
· Earned Bonuses & Awards
· Professional Training Reimbursement
· Employee Assistance Program
Equal Opportunity Employer/Protected Veteran/Disability