Xcellent Technology Solutions (XTS) · 1 month ago
Cyber Risk & Compliance Specialist - USGS Federal Systems (REMOTE)
Xcellent Technology Solutions is seeking a Cyber Risk & Compliance Specialist to join their team focused on securing the infrastructure of The National Map, a flagship program of the US Geological Survey (USGS). This role is essential for maintaining the integrity and availability of vital elevation data used nationwide, involving collaboration with USGS stakeholders and managing cybersecurity operations.
Information Technology
Responsibilities
Work at the intersection of mission and technology – protecting systems that literally map the nation
Secure the backbone of national geospatial data that supports everything from disaster response to environmental research and infrastructure planning!
Assist in tracking, remediating, and preventing security threats across a complex ecosystem of desktops, laptops, servers, and enterprise systems
Demonstrated expertise in vulnerability remediation, log analysis and risk assessment in order to monitor, analyze, prioritize, and resolve vulnerabilities to maintain system authority to operate (ATO) and ensure mission continuity
Experience in patch management and verification to ensure systems remain protected against known threats and compliant with USGS’s enterprise patching schedule
Strong understanding of federal compliance frameworks (i.e., STIG) to support system hardening, compliance tracking, and audit preparedness throughout the system lifecycle
Clear communication and cross team coordination as you must be comfortable working across distributed teams, communicating clearly with system owners, engineers, and federal stakeholders to explain risks, outline remediation steps, and coordinate implementation
Qualification
Required
Must have the ability to receive / maintain a favorable adjudicated Public Trust investigation (US Citizen or Lawful Permanent Resident for at least 3 years)
You have achieved a Bachelor's Degree + 5 years of relevant experience with hands-on cybersecurity or system security experience in order to understand system interdependencies, identifying risks, and implementing practical, compliant security controls
Demonstrated expertise in vulnerability remediation, log analysis and risk assessment in order to monitor, analyze, prioritize, and resolve vulnerabilities to maintain system authority to operate (ATO) and ensure mission continuity
Experience in patch management and verification to ensure systems remain protected against known threats and compliant with USGS's enterprise patching schedule
Strong understanding of federal compliance frameworks (i.e., STIG) to support system hardening, compliance tracking, and audit preparedness throughout the system lifecycle
Clear communication and cross team coordination as you must be comfortable working across distributed teams, communicating clearly with system owners, engineers, and federal stakeholders to explain risks, outline remediation steps, and coordinate implementation
Preferred
Security +
CISSP
Certified Ethical Hacker
equivalent
Benefits
Health benefits are not offered