CyberSecurity Specialist Job Posting



Job Title: CyberSecurity Specialist
Company: Catalyst Placement
Position Type: Permanent
Pay Rate: $115,000
Skills: CISSP certified
Date Posted: Nov-02-09

Our client, a growing IT consulting firm, has an immediate opening for a Cyber Security Specialist to join their in-place team in supporting the security needs of an existing federal customer. The successful candidate will work with the customer's CyberSecurity, Portal and Security Projects Offices on a daily basis.

This person will support the IT project development security activities, including:
• Security assessments, planning, and reporting
• Hands-on implementation of needed and approved client security safeguards
• Assist with guiding security solutions that are in accordance with Federal, customer and industry best practices, standards and guidelines
• Assess selected security controls in the project information system on a continuous basis including documenting changes to the system, conducting security impact analyses of the associated changes, and reporting the security status of the system to appropriate organizational officials on a regular basis. Provide compliance and oversight of the project security contingency plans
• Interface with clients to perform technical security reviews and ensure computer security integration.
• Develop and implement information security policies, standards, procedures, and guidelines.
• Conduct security assessments, document test results and provide guidance with identifying security threats and correcting vulnerabilities.
• Develop and integrate security architecture policies and procedures for IT infrastructures.
• Provide support for project security milestone reviews, milestone exits, and WBS updates
• Assist the PPMO with understating and complying with security issues related to FISMA, NIST, E-300 and others
• Provide necessary plan and processes to ensure maximum security risk mitigation
• Provide expertise with implementing adequate security controls and processes and procedures consistent with acceptable and approved PPMO project risk levels
• Assist with the inclusion of security measure and solutions into the Enterprise Architecture and Current Processing environment as required.
• Support timely certification and accreditation of PPMO applications and systems.

This person will have no direct reports and functions as a member of a PPMO security team.

Knowledge, Technical Skills, and Abilities
The successful candidate will have the following skills, abilities, and/or experience:

• Proven ability to provide through security assessments that address software, hardware, network and physical security
• Proven experience performing and documenting large site security reviews and assessments
• Ability to facilitate 'security by design' throughout the entire PPMO Enterprise Life Cycle.
• Proven ability to evaluate, develop, and execute information assurance processes relating to certification and accreditation of general support systems and major applications.
• Ability to perform and report security analysis based on NIST computer security special publications and FISMA.
• Experience preparing written and verbal deliverables
• Experience providing security risk assessment and analysis of findings with recommendations for improvements
• Experience developing and implementing security controls and processes and procedures consistent with prevailing standards
• Experience supporting system and application certification and accreditation within a large federal or DoD organization
• Excellent working knowledge of all aspects of the Federal Information Security Management Act (FISMA) of 2002
Possesses a good working knowledge of:
• Draft Special Publication 800-100: Information Security Handbook: A Guide for Managers
• FIPS Publication 199, Standards for Security Categorization of Federal Information and Information System (Completed)
• FIPS Publication 200, Minimum Security Requirements for Federal Information and Federal Information Systems (Completed)
• NIST Special Publication 800-37, Guide for the Security Certification and Accreditation of Federal Information Systems (Completed)
• NIST Special Publication 800-53, Recommended Security Controls for Federal Information Systems (Completed)
• NIST Special Publication 800-53A, Guide for Assessing the Security Controls in Federal Information Systems (Completion December 2006)
• NIST Special Publication 800-60, Guide for Mapping Types of Information and Information Systems to Security Categories (Completed)

Other Requirements/ Certifications:
• Is a doer as well as a thinker, needs to be able to move seamlessly from security strategy assessments to hands on implementation and back again as needed, MANDATORY
• This position requires excellent interpersonal, verbal and written communication skills and frequent interaction and relationship building with internal and external customers, Federal employees, and other IT specialists MANDATORY
• Demonstrated ability to handle multiple simultaneous and complex tasks. MANDATORY
• Ability to work under minimal supervision in a dynamic environment. MANDATORY

CISSPĀ® certification A MAJOR PLUS

Location: US-MD-Lanham
Telecommute: No (Onsite Position)
Contact Name: Jennifer Marshall
Contact Phone: 571-243-8369
Contact Email: jennifer@catalystplacement.com




tech job trends, october 2009