Olh - West Mifflin, PA

posted 14 days ago

Full-time
West Mifflin, PA
Professional, Scientific, and Technical Services

About the position

The Cyber Security Analyst position at OLH Inc. involves supporting the Naval Nuclear Laboratory in executing cybersecurity measures in accordance with NIST directives. The role focuses on the Risk Management Framework (RMF) and includes developing System Security Plans (SSPs) and Security Assessment Reports (SARs) to ensure the security of information systems. The analyst will also assist in creating Plans of Action and Milestones (POA&Ms) and making Risk Based Decisions (RBDs) for identified deficiencies.

Responsibilities

  • Assist information system owners with the development of System Security Plans (SSPs) and Security Assessment Reports (SARs).
  • Support the execution of NIST directives related to the Risk Management Framework (RMF).
  • Develop Plans of Action and Milestones (POA&Ms) for deficiencies found during the information system authorization process.
  • Assist in making Risk Based Decisions (RBDs) for information system security authorization.
  • Utilize the RSA Archer application on the Naval Nuclear Propulsion Network (NNPP Net) for security assessments.

Requirements

  • At least four years of experience in roles such as security control validator, security control assessor, Information System Security Officer (ISSO), or Information System Security Manager (ISSM).
  • At least two years of experience in developing information system security authorization packages in accordance with NIST 800-37, 800-53, 800-53a.
  • At least two years of experience with Federal Risk and Authorization Management Program (FedRAMP).
  • Valid Security+ Certification.

Nice-to-haves

  • Experience with the RSA Archer application.
  • At least two years of experience on IT security project teams.
  • At least one year of experience managing IT projects.
  • Knowledge of IT infrastructure and services including Data Centers, servers, and cloud services.
  • Familiarity with NIST Special Publications and Security Technical Implementation Guides (STIGs).
  • Knowledge of infrastructure security and vulnerability management tools.
  • Previous experience authorizing information systems within a classified DoE or DoD environment.
  • Certified Information Systems Security Professional (CISSP) certification.
  • Certificate of Cloud Security Knowledge (CCSK) certification.

Benefits

  • Equal Opportunity Employer
  • Nondiscrimination and equal employment opportunity in all programs and activities.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service