H2 Performance Consulting - Charleston, SC

posted 11 days ago

Full-time - Mid Level
Charleston, SC
Professional, Scientific, and Technical Services

About the position

The Information System Security Specialist III at H2 Performance Consulting will support the Naval Info Warfare Center Atlantic's Data Center and Cloud Hosting Services and Enterprise Systems. This role focuses on developing, implementing, and maintaining cybersecurity policies and procedures, ensuring compliance with federal and organizational standards, and managing security assessments and incident responses.

Responsibilities

  • Develop, implement, and maintain the organization's cybersecurity policies and procedures.
  • Oversee the Risk Management Framework (RMF) process, ensuring compliance with federal and organizational standards.
  • Conduct security assessments, vulnerability scans, and STIG (Security Technical Implementation Guide) reviews.
  • Manage endpoint security solutions and oversee patch management to ensure systems are up-to-date and protected.
  • Collaborate with IT and cybersecurity teams to identify and address security risks and vulnerabilities.
  • Monitor and respond to security incidents, providing detailed analysis and reporting.
  • Maintain documentation related to security policies, procedures, and compliance activities.
  • Ensure continuous improvement of cybersecurity practices and tools.
  • Implement DoD security requirements, including the deployment of software patches/updates, BIOS and firmware updates, Computer Tasking Orders (CTO), Information Assurance Vulnerability Alerts (IAVA), Public Key Infrastructure (PKI), Data at Rest (DAR) and encryption.
  • Evaluate and/or recommend purchase of computers, peripheral hardware, and software.
  • Maintain confidentiality regarding the information being processed, stored, and accessed on the network.
  • Establish, maintain, and document host connections to the NHRC network.
  • Troubleshoot network access problems and implement network security policies and procedures.
  • Ensure network security access and protect against unauthorized access, modification or destruction of network components and stored data.
  • Responsible for network infrastructure such as installing, configuring, managing, troubleshooting and operating to include but not limited to: Software defined networking, Cloud networking services, Cisco switches, routers and firewalls, Citrix NetScaler appliances, F5 Network Appliances, and Uplogix Local Managers.

Requirements

  • Minimum SECRET clearance
  • Bachelor's degree in a technical or managerial related discipline or High School Diploma or GED
  • Latest Cybersecurity workforce certification/training in accordance with DoD 8570.1M and subsequent DoD 8140 manual as applicable
  • Complete a vendor/platform specific certification from F5 Networks
  • At least one of the following: CompTIA Security+, CompTIA Advanced Security Practitioner (CASP), or Certified Information System Security Professional (CISSP)
  • Certified as Information Assurance Management (IAM) or Information Assurance Technical (IAT) or Information Assurance System Architect and Engineer (IASAE) Level II or III (position-based)
  • Five years of practical experience with Bachelor's degree or seven years with HS/GED in Cybersecurity, Engineering, Test & Evaluation (T&E) or Assessment & Authorization (A&A)/ Certification & Accreditation (C&A) related field as they pertain to F5 Networks
  • Working knowledge of the Risk Management Framework (RMF) process
  • Familiarity with security policies & guidance documents for compliance with Authority to Operate (ATO) requirements
  • Experience in evaluating security solutions for classified information processing and maintaining operational security posture.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service