New Directions Technologies Inc. ยท 4 hours ago
Senior Information Security Analyst
New Directions Technologies Inc. is seeking a Senior Information Security Analyst to enhance their cybersecurity measures. The role involves planning, implementing, and monitoring security measures for the protection of computer networks and information, along with executing RMF process steps and conducting security assessments.
Responsibilities
Execute all RMF process steps following the guidelines outlined in Navy and NAVAIR directives
Managing packages in eMass
Reviewing Nessus scans
Maintaining hardware/software lists
Ensure the Reviewing and verifying STIGs are complete
Collaborate with System Administrators, Network Operations, etc. to address system vulnerabilities, track progress and ensure security measures are implemented effectively
Conduct security control assessments and validations of a system's technical and non-technical security features to mitigate known threats and vulnerabilities effectively. These assessments should comprehensively identify and assess impacts while also taking into account existing risk mitigation strategies
Ensure the completion of all necessary RMF products and reporting in accordance with policy and in collaboration with the Security Control Assessor
Assist in updating any documentation related to risk assessments (such as Risk Assessment Reports, Plan of Actions & Milestones, etc.) based on the results of assessments
Conduct the necessary vulnerability analysis to facilitate the mitigation and determination of residual risk as required
Provide support for the continuous monitoring program as needed, especially when System Level Continuous Monitoring results are essential to meet ongoing authorization requirements
Assist in contingency planning, testing, and execution as necessary
Support the incident response process and actively participate in meetings with the program team, offering updates on project status
Qualification
Required
DoD Security Clearance
U.S Citizenship
Ability to work onsite (remote/telework is not an option)
Strong understanding of the RMF process
Experience with eMASS, eMASSter, STIG Viewer, SCAP Compliance Checker (SCC), VRAM, and Visio applications
Execute all RMF process steps following the guidelines outlined in Navy and NAVAIR directives
Managing packages in eMass
Reviewing Nessus scans
Maintaining hardware/software lists
Reviewing and verifying STIGs are complete
Collaborate with System Administrators, Network Operations, etc. to address system vulnerabilities
Conduct security control assessments and validations of a system's technical and non-technical security features
Ensure the completion of all necessary RMF products and reporting in accordance with policy
Assist in updating any documentation related to risk assessments
Conduct the necessary vulnerability analysis to facilitate the mitigation and determination of residual risk
Provide support for the continuous monitoring program as needed
Assist in contingency planning, testing, and execution as necessary
Support the incident response process and actively participate in meetings with the program team
BS - Computer Science or other technical field with 10 yrs work experience OR AS with 15 yrs work experience
IAM III certificate