Kforce Technology
RESPONSIBILITIES: Kforce has a client in search of a Cyber Security Specialist IV in Chantilly, VA.
Key Tasks: Provides Cloud Security Architecture and Compliance expertise for the U.S.
Postal Service Works closely with Account Security Officer (ASO), Segment Security Officers (SSO) and Cloud Service Providers (CSP) to ensure FedRAMP compliance Provides Cloud Computing Migration Assessments and Accreditations Services (A&A) for Software (SaaS), Infrastructure (IaaS), and Platforms (PaaS) using Federal Risk and Authorization Management Program (FedRamp) compliant criteria Works closely with Account Security Officer (ASO) and Segment Security Officers (SSO) to ensure operational security measures are implemented Assesses and mitigates system security risks; Determines and analyzes security requirements for implementation and testing Reviews and continuously monitors implemented security controls Creates and maintains security checklists, templates and other tools to aid in the A&A process Performs security control assessment using NIST 800-53A guidance and as per continuous monitoring requirements Performs risk analyses to determine and recommends essential safeguards Proactively mitigates system vulnerabilities and recommends compensating controls Prepares security authorization packages in accordance with the client contractual requirements Develops core documents such as System Security Plan, Contingency Plan, Incident Response Plan, Standard Operating Procedures, Plan of Actions and Milestones, Remediation Plans, Configuration Management Plan, etc.
Monitors and Maintains client-specific Plan of Action and Milestones and supports remediation activities Monitors and Maintains an inventory of hardware and software for the information system Monitors and develops, tests and trains on Contingency and Incident Response planning Job Requirements: REQUIREMENTS: Must possess a minimum of a Bachelor’s degree or Master’s degree, PhD or JD in a technical specialty such as Cyber Security, Computer Science, Management Information Systems or related IT field (Master’s degree preferred) 10 years of experience working as an Information Assurance Analyst for an information technology, information assurance, or information management program Experience within an Azure environment Certifications (One or more required): CompTIA Security CPTE
– Certified Penetration -Testing Engineer CEH
– Certified Ethical Hacker, Certified Azure Cloud environment Fluent in English, grammar and communication skills Ability to influence OCISO Delivery system stakeholders in the execution of security and compliance requirements Knowledge of the security countermeasures and overall RMF and NIST compliance Experience as a Security consultant in Risk and Compliance Experience in working with security management including information governance and compliance Good understanding of Assurance Practices and Risk Management; Hands on experience Experience of security processes and standards, in particular NIST 800-series and RMF Knowledge of security audit and accreditation processes Ability to interpret request for proposal and respond to security and compliance requirements Knowledge of Federal Security, industry and market trends and HPE/USPS offerings Understands HPE and USPS solutions
– what they consist of, product roadmaps, IT concepts Understands how cyber security GRC requirements fit within or interface with the sales of other solutions in HPE and HP’s partner strategies Kforce is an Equal Opportunity/Affirmative Action Employer.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.