ITC Federal

Senior Security Analyst (A&A)/Assessor - NIST

ITC Federal  •  Gaithersburg, MD (Remote)  •  3 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Overview

JOB TITLE: Senior Security Analyst/A&A SME

GOVERNMENT AGENCY: NIST – National Institute of Standards & Technology

POSITION INFORMATION: Full-Time Position; Government contractor supporting NIST

LOCATION: Fully remote

BENEFITS: Health, Dental and Vision, 401(k), Flexible Spending Account (FSA), 11 Paid Federal Holidays, PTO, education reimbursement

ITC Federal, LLC (ITC) connects technology advancements in automation and AI, customer experience, and financial services to solve government mission challenges, enabling smoother operational efficiency and bolstering national security. We leverage the latest technology innovations and proven approaches to better serve the mission and support the DHS, DOJ, and DoW workforce, customers, and programs, regardless of scale or complexity. ITC is located in Fairfax, VA and offers outstanding compensation and benefits plan and a challenging and rewarding professional work environment.

Senior Security Analyst will be focused on Security Assessment & Authorization (A&A) of systems for the National Institute of Standards and Technology (NIST). The Senior Security Analyst is expected to be capable of lending subject matter expertise while performing A&A activities. The Senior Security Analyst will demonstrate a strong knowledge of Security Requirement Analysis, Security Architecture , Enterprise Security Program Assessment, evaluating Vulnerability Assessment results and perform other duties as required.

Responsibilities

RESPONSIBILITIES

  • Conducting A&A activities for NIST systems working individually or as part of a team.
  • Work with NIST staff to provide technical and policy driven solutions to remediate or mitigate identified risks.
  • Coordinate/conduct vulnerability scans and analyze results.
  • Complete Security Assessment Reports involving both technical and policy related aspects of the assessment.
  • Review and update A&A packages based on management feedback.

Qualifications

  • 5 - 8 years of experience implementing the NIST 800 Series Special Publications.
  • Demonstrable experience:
  • Experience working with vulnerability data, writing Assessment Reports, POA&Ms and Risk Acceptance justifications
  • Knowledge of the formation and implementation of IT security policies to ensure confidentiality, integrity and availability of information systems.
  • Strong technical oral, writing and customer service skills as you will regularly interact with NIST colleagues and senior managers.

PREFERRED:

  • Prior federal or GOVCON experience
  • Cloud Experience (AWS or Azure)
  • Active Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Security Auditor (CISA) or comparable certification
  • Advanced Degree in computer science or related field or related experience
  • Direct experience with NIST or other academic environments.
  • Expertise with COTS based security tools (i.e. RSA Archer, CSAM, Tenable, WebInspect, AppDetective) used to establish security baselines and assess continuing compliance.

SECURITY CLEARANCE REQUIREMENTS:

  • Ability to successfully pass a National Agency Check with Local Agency Check (NACLC)

WORK ENVIRONMENT AND PHYSICAL DEMANDS: Candidate must be able to function in general office environment.

ITC Federal is an equal opportunity employer and will not discriminate against any application for employment on the basis of age, race, color, gender, national origin, religion, creed, disability, veteran status, marital status, sexual orientation, genetic information, military status, disability, or sex including pregnancy and childbirth or related medical condition or on any other basis prohibited by law.

ITC Federal

About ITC Federal

Integrity is at the core of everything we do at ITC Federal. We believe bringing together creative, talented, and highly skilled professionals with a shared commitment to building trusted relationships is the key to providing better technical and business solutions. This philosophy has helped us grow from a one-person company to a mid-sized federal systems integrator with expertise in delivering systems nationwide and abroad.

Utilizing best practices, embracing innovation, and harnessing the power of our people, we drive transformation in application development and DevSecOps, cloud deployment and infrastructure, cybersecurity and compliance, federal financial systems, and business process outsourcing.

Industry
IT & Software
Company Size
201-500 employees
Headquarters
Fairfax, Virginia
Year Founded
2006
Social Media