2253 - Security Analyst

Procession Systems
Herndon, Virginia
Full-time

OVERVIEW :

This role will support the Program in working with the customer’s security team towards completing the information security assurance activities that are required to obtain and maintain the Authorization to Operate (ATO) for multiple systems, with particular focus on understanding and documenting security control implementations.

GENERAL DUTIES :

Work with development and customer teams to ensure that security requirements for systems being developed or maintained by the Program are identified, understood, implemented, and documented;

this includes understanding and writing thorough and appropriately supported security control implementation statements

  • Support development and customer teams with various phases of the NIST RMF framework, as required to obtain and maintain security authorization of information systems
  • Support activities pertinent to determination and documentation of system security categorization, authorization boundary, data sharing, information flows, privacy impact assessments, and other aspects of the System Security Plan
  • Work with development and customer teams to conduct security impact assessment activities for changes to existing systems
  • Provide security guidance and instruction as necessary to personnel and development teams encompassing all security control families
  • Support the development teams in responding to security control assessments performed by the customer’s RMF 4 team
  • Support development and maintenance teams with tracking and documenting remediation of vulnerability scan findings and Plan of Action and Milestones (POA&Ms)
  • Support tracking status of all system security authorizations and security impact assessments
  • Participate in and provide security input for SAFe / Agile Program Increments and Sprint planning and execution
  • Maintain positive and productive relationships with other teams, including customer security counterparts

REQUIRED QUALIFICATIONS :

  • Bachelor's degree in a related field and at least 5 years’ experience or no degree with additional 4 years of experience, to include 3 years of information assurance experience
  • Experience with understanding and writing security controls implementation statements
  • Experience with obtaining and maintaining security accreditations using the NIST RMF for on-premises and cloud hosted systems
  • Experience with developing artifacts for the System Security Plan
  • Experience with analyzing and leveraging architecture and design artifacts to understand and describe security control implementations and other System Security Plan artifacts
  • Experience in tracking and resolving Plan of Action and Milestones (POA&Ms)

DESIRED QUALIFICATIONS :

  • Experience with security controls and ATO process for cloud-based environments and containerized applications
  • Familiarity with DevSecOps, SDLC, CI / CD pipelines, and Agile processes
  • Familiarity with running and / or analyzing vulnerability and configuration scans
  • Familiarity with DAST / SAST
  • Security+ CE or other 8570 IAT level II certification

CLEARANCE :

  • Secret minimum
  • 30+ days ago
Related jobs
Procession Systems
Herndon, Virginia

This role will support the Program in working with the customer’s security team towards completing the information security assurance activities that are required to obtain and maintain the Authorization to Operate (ATO) for multiple systems, with particular focus on understanding and documenting se...

Promoted
AT&T
Oakton, Virginia

AT&T has an opening for aTier 3 Network Engineer to support the24x7 Network Operations Center in providing Tier 3 network service and superior troubleshooting expertise. Supports an organization's local area network (LAN), wide area network (WAN), customer networks, Intranet and Internet and other d...

Promoted
SAIC
Chantilly, Virginia

As the GEOINT Systems Engineer you will interact daily with senior government and Program staff to analyze new concepts and technologies; support the definition and baselining of new capabilities and/or enhancements; advise on all aspects of System Engineering analysis (architecture, requirements, C...

Promoted
ManTech
McLean, Virginia

Currently, ManTech is seeking a motivated, career and customer-oriented Senior Network Engineer for our team in Mclean, VA. Translates requirements from internal stakeholders into engineering designs based on a standardized network architecture. Join the top Information Technology and Analytic profe...

Promoted
Accenture Federal Services
Reston, Virginia

Network Engineering to include:. Our 13,000+ people are united in a shared purpose to pursue the limitless potential of technology and ingenuity for clients across defense, national security, public safety, civilian, and military health organizations. Administer and triage end-to-end connectivity to...

Promoted
Orbis Operations
McLean, Virginia

We are seeking experienced Mission Specialist Deep Dive Analysts to join our growing company as part of a large, customer-run program in specialized mission-focused offices. The Mission Specialist will collaborate with a diverse group of individuals across the intelligence community and directly con...

Promoted
KBR
Springfield, Virginia

Experience in supporting Requirements Engineering, CONOPS development, and system integration to accommodate the End to End GEOINT Systems Engineering. GEOINT Mission Processing Engineer. KBR is seeking a highly qualified GEOINT Mission Processing Engineer to support our customer in Chantilly, VA de...

Promoted
GCI, Inc.
McLean, Virginia

The employees supporting our customers deliver unique, high-value mission solutions while effectively leverage the technological expertise of our valued workforce to meet critical mission requirements in the areas of Data Analytics and Software Development, Engineering, Targeting and Analysis, Opera...

Promoted
QinetiQ
Reston, Virginia

We are seeking a Network Engineer who will be responsible for transport network design and engineering, network routing protocols, and advanced virtual networking technologies in a timely and effective manner. The Network Engineering Team plays a critical role in ensuring the security and integrity ...

Promoted
MITRE
McLean, Virginia

The Communications Network Engineering and Analysis Department which is part of the MITRE Labs Infrastructure and Networking Innovation Center, has as its mission to provide premier communications network engineering services for our customers at all classification levels. Knowledge of modern networ...