What are the responsibilities and job description for the Systems Specialist (Computer Security) position at ARK Solutions Inc.?
Position: Computer Security Systems Specialist III
Location: Luray, VA
Job Type: Long term Contract
Job Details:
Using the NIST Risk Management Framework (RMF) to conduct assessments of Information security controls in order to measure the effectiveness of controls and identify control gaps
Key Responsibilities:
- Ensure compliance to guidance, standards and regulations such as NIST Special Publications, FIPS, FedRAMP, and other federal regulations and policies
- Preparing Security Impact Assessments, Addendums, Security Authorization Packages and including documentation such as Authorization Official Out-briefs, Security Authorization Recommendations and Security Authorizations Memorandums
- Identify, assess, and prioritize identified risks
- Collect evidence, artifacts, and document findings to support conclusions
- Report on compliance with internal policies, controls, and standards Provide recommendations for remediation of identified deficiencies
- Track and report on Plans of Action and Milestones (POAMs) (i.e., findings/deficiencies to closure)
- Coordinate third-party risk assessments and IT audits
- Manage remediation efforts and report on the status of control deficiencies
- Support security initiatives and global policy adherence and awareness efforts
- Support global information security metrics and reporting program(s)
- Provide security expertise to business units and key stakeholders
- Enforce policy adherence and manage formal policy exception requests
- Provide timely status updates/reporting on assessments and assigned projects
Required:
- A Bachelor degree in Computer Science or a related engineering field with training in information security
- 10 years' experience in Information Security
- 5 years' experience building and managing Windows server platforms
- Thorough knowledge of NIST 800 Special Publications, Federal Information Processing
- Expertise the NIST Risk Management Framework to generate and maintain SA&A documentation to include System Security Plans, Security Assessments Reports, and Risk Assessments for internal and cloud-based systems (ie., FedRAMP)
- Experience using security scanners (e.g. Nessus, Nexpose, etc) and remediating vulnerabilities
Job Type: Contract
Pay: $70.00 - $78.00 per hour
Schedule:
- 8 hour shift
Experience:
- NIST standards: 7 years (Required)
- RMF: 5 years (Required)
- Vulnerability assessment: 5 years (Required)
Location:
- Luray, VA 22835 (Required)
Ability to Commute:
- Luray, VA 22835 (Required)
Work Location: In person
Salary : $70 - $78