C&A Specialist
| Posting Date: |
10/3/2009 Active |
Category:
Biotechnology
Company:
Thomas Security Consultants
Description:
Applicants should have at least two years experience in Information Assurance, with an emphasis on Certification and Accreditation. Must have a Bachelors Degree in a technical discipline; applicable certifications are a plus. Applicants must have knowledge of and experience with the NIST 800-37 guidelines regarding C&A process, as well as experience utilizing NIST 800-53 to assess security controls. Applicants must be able to produce accompanying documentation to support the C&A process and be comfortable leading teleconferences with customers. Knowledge of Trusted Agent FISMA is a plus. Work face-to-face with multiple stakeholders interviewing, planning, or participating in a team effort to bring multiple complex projects to fruition in a highly motivated, fast paced environment.
• Develop certification and accreditation documents including:
o Security Categorization
o Risk Assessment
o System Security Plan
o Contingency Plan
o System Test and Evaluation (ST&E)
• Provide ongoing gap analysis of current policies, practices, and procedures as they relate to established guidelines outlined by NIST, OMB, FISMA, etc.
• Conduct in-depth technical reviews of new and existing IT systems in order to identify the appropriate mitigation strategies required to bring these systems into compliance with established policy and industry guidelines. The Systems Security Analyst will be actively engaged in identifying unique system characteristics, interviewing key organizational personnel (technical, administrative, and executive), working with consulting team to compose requisite documentation (security categorizations, risk assessments, contingency planning, etc.), and mapping complex technical requirements, functionality, and capabilities to prescribed security controls, policies, and practices. This position has excellent career growth potential.
Qualifications:
Knowledge of Windows and Unix operating systems. • One or more of the following certifications preferred: CISSP, CISM, CISA, MCSE 2000/2003, CCNA, CCNP, CCDP, and/or CCSP
Type:
Full Time
Job
Location:
Rockville, MD |
Job
Number :
N/A |
Project
Length:
perm |
Positions:
1 opening
|
Travel
Required:
none |
Compensation
:
46,000 to 50,000
|
|