Lead the development and implementation of Zero Trust data protection strategies, including encryption, tokenization, and data masking techniques to secure sensitive government data across networks and repositories.
Design and manage identity-centric access controls, defining granular permissions and enforcing least privilege access to government data, aligning with Zero Trust principles.
Implement and manage encryption methodologies for data at rest, in transit, and during processing within government systems, ensuring compliance and adherence to Zero Trust standards.
Oversee secure data lifecycle management practices, including data classification, retention policies, and secure disposal procedures, integrated with Zero Trust data protection measures.
Ensure data security measures align with federal cybersecurity regulations, policies, and frameworks (e.g., NIST, FISMA), conducting audits and assessments to maintain compliance within government data environments.
Develop and execute data breach response plans, lead incident response efforts, conduct forensic investigations, and provide mitigation strategies, applying Zero Trust methodologies.
Implement and manage security monitoring tools and analytics platforms, leveraging data-centric insights to identify anomalous behavior, potential threats, and vulnerabilities within government data systems.
Requirements
8+ years of demonstrated experience as a Data Security Specialist focusing on Zero Trust technology, specifically within federal government environments.
Expertise in implementing data protection strategies, encryption methodologies, tokenization, and data masking techniques aligned with Zero Trust principles within government data ecosystems.
Expertise in designing and implementing identity-centric access controls, ensuring least privilege access, attribute-based access controls (ABAC), and role-based access controls (RBAC) for data access.
Experience in defining and enforcing data retention policies aligned with government regulations, ensuring data availability and compliance with Zero Trust security measures.
Knowledge of strong authentication methods such as multi-factor authentication (MFA), biometric authentication, and smart card authentication for robust identity verification.
Extensive experience in implementing encryption solutions for data at rest, in transit, and in use, leveraging cryptographic algorithms and key management aligned with Zero Trust principles.
Proficiency in tokenization methods and data masking techniques to protect sensitive data elements within government systems while preserving usability and functionality.
In-depth knowledge of federal cybersecurity regulations, policies, and frameworks (e.g., NIST, FISMA), and their practical application in securing government data following Zero Trust paradigms.
Proficiency in data security technologies, including encryption tools, data loss prevention (DLP) solutions, access control mechanisms, and other data-centric security tools used within government networks.
Experience in leading incident response efforts, conducting forensic investigations, and applying Zero Trust principles to manage and mitigate data breaches within federal government environments.
Bachelor’s degree in computer science, information systems, mathematics, physics, or related discipline (Employer will accept years of experience in lieu of a degree).
Desktop Support & Security Analyst handling technical support and cybersecurity for the WHOI. Balancing responsibilities between End - User Technology support and Information Security operations while ensuring user functionality.
IT & Security Analyst managing IT operations and security for WEBTOON Entertainment in Los Angeles. Collaborating with global security teams and overseeing user access and security systems.
Information Security Analyst managing critical governance, risk, and compliance topics. Leading incident responses and security policy development in a hybrid work model.
Cyber Security Analyst enhancing cyber resilience for the Swiss financial sector with a focus on threat intelligence. Collaborating closely with partners and regulatory agencies to safeguard against cyber threats.
Information Security Analyst overseeing access management for SKY applications, ensuring security compliance and incident management. Involves technical support and lifecycle management of requests.
Junior Information Security Analyst at Dotz supporting IT in security solutions and information asset protection. Engaging with various technology areas and projects on cybersecurity initiatives.
Cybersecurity Analyst developing and implementing information security programs at WebTPA. Liaising between IT and business partners, addressing security requirements throughout project life cycle.
Cyber Security Analyst managing user access and security for all company applications at a non - profit organization. Collaborating with teams to monitor cyber security incidents and ensure compliance with policies.
Cyber Security Analyst managing cyber security incidents and improving resilience at Heathrow Airport. Leading response playbook development and simulation exercises for effective incident handling.