Guidehouse - Reston, VA

posted 2 months ago

Full-time - Mid Level
Reston, VA
Professional, Scientific, and Technical Services

About the position

As a Cloud Data Engineer at Guidehouse, you will play a crucial role in evaluating the cybersecurity posture of enterprise environments across the Intelligence Community (IC). This position requires a comprehensive understanding of cybersecurity principles and practices, as you will conduct detailed assessments through the analysis of vulnerability scan data to ensure compliance with various Intelligence Community Directives (ICDs), Technical Implementation Guides (TIGs), Security Technical Implementation Guides (STIGs), Security Requirement Guides (SRGs), and NIST 800-53 rev 5 security controls. Your work will involve utilizing automated tools such as Tenable and Splunk to perform documentation reviews, write reports, and develop qualitative risk assessments for target organizations. In this role, you will interact with leadership and site technical staff to facilitate scoping and execution of operational inspection plans. You will be responsible for interviewing organizational subject matter experts and collecting data to support the review of a comprehensive Threat Informed Critical Controls List (TICCL). Your assessments will examine critical capabilities and mission impacts, ensuring that secure operations are adequately protected against vulnerabilities. You will also participate in planning, executing, and reporting on security audits and network vulnerability assessments with minimal supervision. Additionally, you will assist in preparing assessment deliverables, communicate the impact of vulnerabilities through presentations and written reports, and plan and execute reviews to identify risks related to mission, privacy, security, compliance, and regulatory requirements. This position requires a strong reliance on your extensive experience and judgment to accomplish goals effectively.

Responsibilities

  • Interact with leadership and site technical staff to facilitate scoping and execution of operational inspection plans.
  • Interview organizational subject matter experts to conduct STIG, SRG, and IC policy checklists.
  • Collect data to support the review of a comprehensive Threat Informed Critical Controls List (TICCL).
  • Provide written input on the review of required security controls and potential vulnerability exploitation.
  • Participate in the planning, execution, and reporting of security audits and network vulnerability assessments with minimal supervision.
  • Assist in the preparation of assessment deliverables, including Security Risk Assessments and compliance data.
  • Communicate the impact of vulnerabilities verbally and through written deliverables.
  • Plan, execute, and report on information technology, privacy, and operational reviews to identify various risks.

Requirements

  • An ACTIVE and MAINTAINED Top Secret with SCI (TS/SCI) Federal or DoD security clearance; must UPGRADE and MAINTAIN a Top Secret with SCI (TS/SCI) and COUNTERINTELLIGENCE (CI) Polygraph Federal or DoD security clearance.
  • TWELVE (12) or more years of cyber/information assurance experience with at least FIVE (5) years in Systems Administration.
  • Bachelor's Degree.
  • IAT level III certification (i.e. CISSP, CASP+CE, CISA, etc.).

Nice-to-haves

  • An ACTIVE and MAINTAINED TS/SCI Federal or DoD security clearance with a COUNTERINTELLIGENCE (CI) polygraph.
  • Master's degree.
  • Experience in engineering and operations & maintenance of enterprise ESXi, Hyper-V, and Storage technologies.
  • Proficiency in using advanced vulnerability assessment and reporting tools such as Tenable, Splunk, and Tableau.
  • Demonstrated ability to operate across departments to implement cybersecurity principles effectively.
  • Capable of multitasking with efficient time management and possessing a comprehensive understanding of cyber threats, vulnerabilities, and network security methodologies.

Benefits

  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Position may be eligible for a discretionary variable incentive bonus
  • Parental Leave and Adoption Assistance
  • 401(k) Retirement Plan
  • Basic Life & Supplemental Life
  • Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
  • Short-Term & Long-Term Disability
  • Student Loan PayDown
  • Tuition Reimbursement, Personal Development & Learning Opportunities
  • Skills Development & Certifications
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Emergency Back-Up Childcare Program
  • Mobility Stipend
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service