Cyber Security Logistics Specialist SME II supporting Defense Health Agency Risk Management Executive Division initiatives. Responsibilities include documenting security responsibilities and leading self-assessments in cybersecurity contexts.
Responsibilities
Reviews and updates the Detailed Architecture Diagram, Detailed Hardware/Software Inventory, and other system artifacts to determine the DoD IT type.
Develops the baseline set of impact values (low, moderate, or high) for the medical devices.
Identifies common controls associated with the inherited controls in the Security Plan.
Documents responsibilities associated with the inherited controls in the Security Plan.
Initiates the tailoring process in eMASS to modify the control set to account for conditions affecting the specific system more closely.
Adds relevant supplemental security controls and marks extraneous or impertinent controls as 'Not Applicable'.
Identifies security controls to be monitored on an ongoing basis.
Reviews site/organization change control policies.
Documents the method of applying policies to specific controls.
Coordinates with the IV&V Team to clarify information required for Special Access Programs.
Leads the execution of the self-assessment activities.
Completes applicable checklists in assessing the NIST SP 800-53 Revision 4 controls.
Documents upload self-assessment checklist results and artifacts documentation in eMASS.
Provides support with remediation and mitigation efforts.
Creates the Risk Assessment Report.
Coordinates with the ISSM to confirm the completion of the Security Authorization Package prior to eMASS submission.
Assists program leadership with status reports, white papers, weekly activity report, and other ad hoc requirements as necessary.
Performs other job-related duties as assigned
Requirements
Bachelor’s Degree in Information Technology or Cybersecurity, or an equivalent combination of education and experience in lieu of a degree.
8 years of experience.
Federal government contracting experience required.
Must possess a Security+ or other IAT Level I, II / IAM Level I, II certification.
Ability to maintain an Active DoD Secret clearance.
Manager at PwC contributing to digital transformation in Utilities through technology consulting and stakeholder management. Focused on creating strategies and providing technology solutions in a data - driven world.
Research Associate conducting advanced research in iOS security within a leading institute for applied cybersecurity. Emphasis on secure application development and vulnerability analysis.
Cybersecurity Engineer focused on threat monitoring and incident response for Verizon's network security. Collaborating on security architecture and vulnerability management across multiple locations.
Senior Manager of Application Security leading initiatives to protect applications at Nordstrom through strategic leadership and AI - driven tooling. Collaborating with engineering to ensure secure software development practices.
Information Security Engineer responsible for deploying and supporting security tools across cloud and on - premise systems. Collaborating with IT to mitigate security risks in a hybrid work environment.
Casual Retail Security Officer for MSS Security ensuring safety at Tweed Mall in Tweed Heads. Responsible for patrols, incident response, and customer service.
Financial security advisor at Desjardins developing client relationships and selling life and health insurance products. Focusing on customer satisfaction and personalized financial solutions.
Principal Information Security Consultant at Westpac focusing on security protocols and employee benefits for staff. Hybrid role centrally located with opportunities for professional development and employee perks.
Engineer supporting secure development lifecycle processes for product lines in the energy sector. Collaborating with R&D on security requirements and compliance audits.
Automation Oversight Engineer providing oversight of compliance in automated device configurations for Comcast Business. Managing configuration checks and reporting, ensuring reliable oversight and improvement strategies.