Consult on all project-related information security issues, control gates, and the security review processes in place. Plan, coordinate, and implement security measures for information systems to regulate access to computer data files and prevent unauthorized modification, destruction, or disclosure of information. Evaluate emerging and available INFOSEC technologies to enable client’s systems and users securely share information.
REQUIRED KNOWLEDGE, SKILLS, AND ABILITIES:
Ensure security policies and procedures are implemented
Experience with gaining an ATO for systems and working the systems through the assessment and authorization process
Experience with vulnerability scanning tools to include Nessus, AppDetective, WebInspect and other vulnerability scanning tools
Strong understanding of RMF, CNSSI 1253, NIST 800-53, NISPOM
Ability to create and maintain system BOE documents to include SSPs, architecture diagrams, contingency planning, and continuous monitoring documentation
Ability to write and modify documents to include SOPs, processes, and other guidance documentation
Experience with JIRA and requirements management
DESIRED CERTIFICATIONS:
Security Certifications: CISSP, CISM, CISA, CEH, NCSF,CAP
Experience with cloud security
QVine Corporation is an Equal Opportunity Employer—M/F/D/V