What are the responsibilities and job description for the System Security Plan Developer position at Diversified Systems.com?
Remote
Description:
DSI is searching for a System Security Plan (SSP) Developer who will work with System SME's, aka Content Providers, to define a system Narrative that provides an overview of an computer system. With input from System SME(s) the SSP Developer will also define system responses to CMS Security Controls. The SSP Developer will record the control responses in a Governance Risk and Compliance tool via established practices.
Responsibilities:
Founded in 1990, Diversified Systems is an award-winning Technology Services corporation providing all levels of IT project consulting services nationwide. DSI is headquartered in Columbus, Ohio with regional offices in the American Midwest and East Coast. We offer our consultants a number of flexible and competitive compensation benefit packages.
Diversified Systems is committed to the principles of equal employment. We are committed to complying with all federal, state, and local laws providing equal employment opportunities, and all other employment laws and regulations.
Diversity, Equity and Inclusion
DSI values authenticity and is committed to making sure our employees and partners are valued and respected. At DSI, we believe building a diverse culture is important because we know when people work together, we can achieve better results as a team. DSI realizes that everyone comes from various backgrounds. We celebrate these differences because our employees are our greatest asset as we strive to best meet the needs of those we serve. As part of our ongoing efforts, DSI is focused on advancing equality, diversity, and inclusion by setting high standards to continually evolve our culture. This includes but is not limited to recruiting, community involvement, client delivery, and career development.
Description:
DSI is searching for a System Security Plan (SSP) Developer who will work with System SME's, aka Content Providers, to define a system Narrative that provides an overview of an computer system. With input from System SME(s) the SSP Developer will also define system responses to CMS Security Controls. The SSP Developer will record the control responses in a Governance Risk and Compliance tool via established practices.
Responsibilities:
- Organizing and executing SSP Development Kick off meetings and managing the completion of the SSP via established milestones and timelines. Any SSP findings identified by the SME(s), Peer Reviewer or GRC Review must be remediated by the SSP Developer with the input from the System SME's.
- Review and provide feedback on SSP's developed by other SSP Developers.
- Computer science bachelor's degree or a related field associated technical computer science education.
- Proven experience developing, operating and maintaining security systems.
- Extensive knowledge of operating system and database security.
- Proficiency in networking technologies, network security and network monitoring solutions.
- Knowledge of security systems including anti-virus applications, content filtering, firewalls, authentication systems and intrusion detection and notification systems.
- In-depth knowledge of security protocols and principles.
- Critical thinking skills and ability to solve complex problems.
- Strong verbal communications skills.
- Extensive technical writing experience.
- A strong understanding of security controls to include CMS, NIST, HIPAA, COBIT, ITIL, CCSFP controls.
- A strong understanding of computer security services i.e. Identify and access management, vulnerability & compliance scanning, network security to include firewalls.
- Experience defining how effectively a system is satisfying security controls.
- Experience managing small projects to include managing a small team, a schedule, meetings and status reporting.
- Security and/or project management certifications, i.e. CISSP, CISM, PDP…
- Experience managing security services.
- Experience managing security teams.
Founded in 1990, Diversified Systems is an award-winning Technology Services corporation providing all levels of IT project consulting services nationwide. DSI is headquartered in Columbus, Ohio with regional offices in the American Midwest and East Coast. We offer our consultants a number of flexible and competitive compensation benefit packages.
Diversified Systems is committed to the principles of equal employment. We are committed to complying with all federal, state, and local laws providing equal employment opportunities, and all other employment laws and regulations.
Diversity, Equity and Inclusion
DSI values authenticity and is committed to making sure our employees and partners are valued and respected. At DSI, we believe building a diverse culture is important because we know when people work together, we can achieve better results as a team. DSI realizes that everyone comes from various backgrounds. We celebrate these differences because our employees are our greatest asset as we strive to best meet the needs of those we serve. As part of our ongoing efforts, DSI is focused on advancing equality, diversity, and inclusion by setting high standards to continually evolve our culture. This includes but is not limited to recruiting, community involvement, client delivery, and career development.