Cybersecurity Analyst

Washington, DC (Hybrid)

Spry Methods

View company page

Company OverviewSpry brings a unique blend of proven service delivery, scalable and agile corporate infrastructure, and the ability to recruit and retain the best and brightest in the industry to support our customers. The Spry team engages in exciting and rewarding opportunities that challenge their abilities, in an atmosphere that encourages both personal and professional growth, fostering a positive and energetic work environment.
Who We're Looking For (Position Overview):Spry Methods is looking for Cybersecurity Specialists to support the Department of Homeland Security (DHS) Cybersecurity Program.  The specialist will assist in cyber security management, oversight, and customer support for maintaining the continuity of DHS systems ensuring compliance with DHS, National Institute of Standards and Technology (NIST), and other applicable Federal standards.  Specifically, this position will provide ISSO support.  This position is hybrid, in which on-site support is required when conducting classified ISSO support, and remote for unclassified systems.

What Your Day-To-Day Looks Like (Position Responsibilities):

  • Conducting research, analysis and providing recommendations on current Government and industry information technology (IT) security best practices, standards, and requirements; 
  • Providing services supporting the Information Technology Systems Security (ITSS) program for DHS’s systems and tools to include Unclassified Local Area Network, Homeland Secure Data Network, and Joint Worldwide Intelligence Communications System solutions; 
  • Supporting IT security audits; 
  • Supporting Authority to Operate/On-going Authorizations; 
  • Ensuring compliance with DHS security requirements across the components portfolio of systems including engaging with various contractors and government personnel to maintain a robust security posture; and
  • Providing any other tasks as requested.

What You Need to Succeed (Minimum Requirements):

  • Bachelor’s degree, eight (8) years of experience with FISMA compliance and eight (8) years of ISSO and Security Assessment and Authorization experience in unclassified environments 
  • Five (5) years of FISMA compliance, and five (5) years of ISSO and SA&A experience in classified environments. 
  • Experience with assisting in the design, development, and implementation of security solutions for a variety of systems. 
  • Experience performing complex risk analysis, and establishing information security requirements based upon policy, regulation and resource demands
  • Experience with the following activities:
  • Security Operations Center (SOC) services
  • Vulnerability scanning and assessments utilizing NESSUS and AppDetective
  • Applications hosted in a Data Center and Cloud environments
  • Leading tabletop exercises for disaster recovery planning as well as experience leading actual failover and failback exercises in support of disaster recovery planning in both a classified and unclassified environment
  • Experience with Information Assurance Compliance System (IACS) software tool

Ideally, You Also Have (Preferred Qualifications):

  • Systems Security Plan
  • Security Operating Procedures
  • Authorized User List
  • Training and Awareness Documentation
  • Information Security Incident Reports
  • Risk Assessment
  • Contingency Plan
  • Interconnection Security Agreements
  • Memorandum of Understanding/Agreement
  • Privacy Threshold Analysis
  • Privacy Impact Analysis
  • FIPS 199
  • Experience migrating systems from NIST SP 800-53 Rev 4 to Rev 5
  • Experience with FISMA Scorecards
#CJ
Perks of Working for Us (Benefits):Medical Coverage – United Healthcare - 3 Options - Traditional - POS Choice Plus Network - HDHP - POS Choice Plus Network - HDHP - EPO Choice NetworkVision Coverage – VSP - Vision Service Plan Dental Coverage – Guardian Dental - PPO Premier Plan or Value Plan Paid Holidays: Full-time employees receive 11 paid federal holidays Paid Time Off (PTO) – PTO accrural starts at 15 days per yearTraining Benefit – Annual training allowance available toward any job-related training or education401 (k) – Multiple Fund Choices through Professional Capital Service (PCS) with a company matchFor our full list of benefits, please visit http://www.sprymethods.com/careers/benefits/
COVID-19 Vaccination RequirementThe COVID-19 vaccination requirement stated in Executive Order 14042 and FAR 52.223-99 is currently not implemented, however, please note that if E.O. 14042 or other related requirements become effective, positions will require successful candidates/employees to obtain and show proof of COVID-19 vaccination(s). Spry is an equal opportunity employer and will provide reasonable accommodation to those individuals who are unable to be vaccinated consistent with federal, state, and local law.

EEO StatementAt Spry, we believe talented and dedicated employees are our most valued assets and the foundation of our success. We are committed to crafting a diverse and inclusive workplace that endorses engagement, creativity, quality and innovation.
We are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.
Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Agile Audits Cloud Compliance FISMA Nessus NIST NIST 800-53 Privacy Risk analysis Risk assessment Security assessment SOC

Perks/benefits: Career development Health care

Region: North America
Country: United States
Job stats:  10  0  0
Category: Analyst Jobs

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.