Overview
TISTA Science and Technology Corporation, a CMMI Maturity Level 3 company, focuses on delivering information technology and professional services to Federal and State agencies.
Are you a Cyber Security Engineer that would like to be part of delivering secure and standardized processes, guidance and services to deliver customer value to provide Veterans and their families the most efficient and timely service and benefits resulting in a positive impact for millions of people? If so, we may have an opportunity for you! Veterans are strongly encouraged to apply.
Responsibilities
- Capture and refine customer-specific information security requirements, support Assessment and Authorization (A&A) activities and translate policies into system security designs and processes
- Determine the Impact Level of applications and assess the applicability of common services, including core Risk Management Framework (RMF) authorization controls.
- Develop and document security architectures, roadmaps, and investments; create required CONOPS, design documents, change documents, and test plans in support of RMF requirements for application authorization to all environments
- Ensure all required information security requirements and related reporting are met.
- Valuate all changes for security relevance, monitoring the development of the release to determine if authorization is impacted
- Update security documentation and submit through the process, as required.
- Perform information assurance and configuration management processes to weigh in before final deployment to production systems.
- Update and maintain A&A package documentation and track and respond to Plan of Action and Milestones (POAM) items.
- Comply with the VA’s eMASS Authorization Requirement Standard Operating Procedures to complete VA ATO for PARS, ICAMP, PI Planning Tools and any Future Alternative Product Solutions Perform related work as assigned.
- Manage eMASS record and analyze it for any risks, understand current status, investigate known vulnerabilities and analyze known POA&Ms
- Confer with users to discuss issues such as account permission and data access needs, security violations, and programming changes.
- May occasionally work evenings, weekends or holidays.
- Performs other duties as assigned by supervisor
Qualifications
- Minimum of 5 years IT experience with Cyber Security Policy and threat mitigation.
- Knowledge and experience in Cyber Security Tools, PKI, and secured networks.
- Previous work experience with Department of Veterans Affairs (VA), Office of Information & Technology (OI&T) is beneficial
- Knowledge of implementation and security levels and roles necessary for successful deployments
- CompTIA Cyber Security Analyst (CSA+) is preferred.
- CompTIA Security+ (Security+) is preferred.
- Certified Information Systems Security Professional (CISSP) is preferred.
- Certified Information Systems Auditor (CISA) is preferred.
- Certified Information Systems Manager (CISM) is preferred.