What are the responsibilities and job description for the Security Documentation Support position at SiloSmashers?
Summary of Position
SiloSmashers is looking for a Security Analyst to create documentation that provides technical details on current system security events such as assessment, tactics, tools and procedures (TTP) analysis of related security work in CISA, and OPSEC issues based on reference implementations. The individual will create SME reports of threat actor capabilities and SME created white papers that clarify the details of security requirements or approaches to implementing solutions, and other security related technical documentation as directed by CISA.
Principle Duties and Responsibilities
- - Create SME reports to clarify security requirements as directed by CISA to include areas as:
- - Security authorization artifacts
- - An architectural overview.
- - New Standard Operating Procedures (SOP) documents for performing assessments/security activities.
- - System configurations for all devices performing security-relevant functions, including configurations of all security-related software.
- - Vulnerability and penetration test results - both an overview document explaining how the tests were conducted and a detailed report with explanations for all findings as well as human-readable outputs from all scans/tests.
- - An incident report detailing any security incidents already experienced on the system (if no incidents have yet been experienced, a template report is requested).
- - Source code for any custom code developed, including modifications to commercial or open-source programs.
Required Skills, Knowledge and Experience
- - BS/BA in Computer Science, Information Systems, Software Engineering or other related analytical, scientific or technical discipline.
- - 3 years of security control assessment experience
- - 2 years of experience with FedRamp systems (Azure, AWS, GCP)
- - Effective written and oral communication skills.
- - Previous Federal Government experience is a plus.
Security Clearance
- Minimum Secret
Work Location
- 100% remote with occasional on-site visits as needed