SonicJobs Logo
Left arrow iconBack to search

Information Assurance Engineer

SAIC
Posted 7 months ago, valid for 11 days
Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • SAIC is hiring an Information Systems Assessment and Authorization analyst for an IT Service Management project at Scott Air Force Base in Illinois.
  • The role involves managing authorization documentation, ATO packages, and conducting risk assessments, among other responsibilities.
  • Candidates must have a BA/BS degree, a minimum of four years of experience, and a DoD Secret clearance or higher.
  • At least one IAT Level II certification and one Computing Environment certification are required for the position.
  • The job offers a competitive salary, though the specific amount is not mentioned.

SAIC is seeking an Information Systems Assessment and Authorization analyst to support an IT Service Management effort for USTRANSCOM located at Scott Air Force Base (AFB) in Illinois.  The USTC Managed Information Technology Services (MITS) contract is intended to provide strategic, technical, and program management guidance and support services to facilitate the operations and modernization of the combatant command’s infrastructure, systems, and applications. This support will be provided to the USTC Command, Control, Communications & Cyber Systems Directorate (TCJ6). 

The successful candidate will be responsible for working on high-visibility or mission critical aspects of a given program and performing all functional duties with some oversight.

Responsibilities:

  • Develop and coordinate all authorization documentation associated including the Systems Categorization, Systems Security Plan, and Systems risk assessment.
  • Manage the Authority to Operate (ATO) packages using continuous monitoring strategies outlined by the ISSM.
  • Support the control assessment, reporting and monitoring processes using the Cyber Security and Assessment Management (CSAM) system.
  • Create and maintain all minor/major modification documentation.
  • Maintain all waivers and Risk assessment for the ISSMs.
  • Assist the ISSMs with decisions that affects the security of their systems and networks.
  • Facilitate preparations for all Contingency/Incident response assessments.
  • Perform and document risk assessments, analyzing security vulnerabilities, and the metrics to measure the risks associated with those vulnerabilities.
  • Design and development of comprehensive Systems Security Plan, covering at a high level the infrastructure, policies and procedures which define the systems security profile for the enclave systems.
  • Review and validate System Test and Evaluation (ST&E) and Interim Authority to Test (IATT) reviews for new and/or legacy systems.
  • Review and conduct NIST-based Self Assessments, identifying any weaknesses which need to be addressed, and developing a Plan of Action and Milestones (POA&M) for each of those weaknesses based on industry best practices.
  • Requesting risk acceptance for vulnerabilities that cannot be remediated or mitigated.
  • Based on the risk profile, Create and track Plan of Action and Milestones (POA&M) for mitigation of risks identified via the ACAS and STIG processes.
  • Design and development of Initial Privacy Assessment (IPA) and Privacy Impact Assessments (PIAs) for each major Federal Government IT Systems.
  • Utilize the eMass tool to manage the security profile for the system.
  • Utilize the Ports, Protocols, and Service Management (PPSM) tool and processes to register ports, protocols, and services in use by the enclaves.

This position is for Monday through Friday, normal business hours.  However, employee may be required to provide after-hours and weekend support during planned or emergency events. 



Required Qualifications:

  • BA/BS.
  • Minimum of four (4) years of experience.
  • DoD Secret clearance or higher. 
  • Must have at least one of these IAT Level II certifications: Security+, CECCNA-Security, CySA+ **, GICSP, GSEC, CND, SSCP.
  • Must have at least one Computing Environment (CE) certification or certificate for the technical area of responsibility for
  • Network support/defense (e.g., Splunk, Cisco, McAfee, etc.) OR Operating System (e.g., Microsoft, Linux, Solaris, etc.

Desired Qualifications:  

  • MA/MS.
  • ITIL V4 Foundations certification.
  • One of the IAM Level II certifications: CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO, HCISPP.



Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.