Provide technical and programmatic Information Assurance services to internal and external customers to support network and information security systems.
Design, develop, and implement security requirements within the organization’s business processes.
Prepare comprehensive security documentation utilizing accepted guidelines such as DITSCAP, DIACAP, and NIST SP 800-37.
Develop and execute Security Test and Evaluation (ST&E) plans to verify the efficacy of security controls.
Conduct complex risk and vulnerability assessments to identify system weaknesses and recommend mitigation strategies.
Analyze existing policies and procedures against Federal laws and regulations, providing strategic recommendations to close compliance gaps.
Develop, test, and integrate computer and network security tools to enhance system defense.
Manage and complete System Security Plans (SSP) and Contingency Plans to ensure operational continuity.
Perform vulnerability assessments and develop risk mitigation strategies to address identified deficiencies.
Secure system configurations, install security tools, and scan systems to determine and report compliance results.
Conduct security program audits and develop solutions to lessen identified risks.
Provide IA support for the development and implementation of security architectures to meet new and evolving requirements.
Assist in computer incident investigations and perform root cause analysis.
Develop strategies to comply with privacy, risk management, and e-authentication requirements.
Requirements
Professional certifications such as CISSP, ISSEP, or CISM.
Experience with modern cloud security environments (AWS, Azure, or Google Cloud).
Familiarity with automated compliance tools and DevSecOps pipelines.
Operational experience with DataBricks, GitLab, or Jira in a secure environment.
Experience leading a team of junior security analysts or engineers.
Ready to Apply?
Join Redhorse and make an impact in renewable energy