ENTERPRISE INFORMATION SECURITY ARCHITECT

Socket.dev

Virginia Beach (VA)

On-site

USD 140,000 - 190,000

Full time

8 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

NEXCOM seeks an Information Security Architect to develop and maintain its enterprise security architecture, supporting the BC/DR program. You will work with leadership and SMEs to map IT assets to strategy, and align security with DoD requirements to build a future-ready roadmap.

Candidates must be a US citizen with five years of specialized IT security experience, risk analysis, and enterprise architecture.

Qualifications

  • Five years of specialized IT security experience across infrastructure, governance and enterprise architecture.
  • Ability to conduct risk analyses and identify vulnerabilities and mitigations.
  • Experience designing and implementing DoD IA architecture and security measures.
  • Familiarity with disaster recovery planning and BC/DR protocols.

Responsibilities

  • Design, develop, and implement DoD IA architecture for the NEXCOM enterprise.
  • Perform risk analyses for critical areas and propose mitigations.
  • Provide input on data technologies to support long-term IT objectives.
  • Develop and maintain the organization's enterprise security architecture and governance.

Skills

IA architecture
Risk analysis
Enterprise architecture
Security design

Tools

GRC toolset

Job description

Job Summary:

Serve as Information Security Architect with responsibility of developing and maintaining the enterprise architecture of NEXCOM s Security and BC DR programs. Includes working with stakeholders both leadership and subject matter experts to build a holistic view of NEXCOM s strategy processes information and information technology assets. Coordinates the NEX business need with DOD security and business continuity requirements to form a full roadmap for the future. Defines the configurations necessary for fail over to remote disaster recovery site.

Duties and Responsibilities:

Incumbents of this position must be U.S. Citizens.

  • Responsible for the design, development, implementation, and/or integration of a DoD IA (Information Assurance) architecture, system, or system component for use within the NEXCOM enterprise.
  • Performs risk analyses for functional areas to identify points of vulnerability, single points of failure and identifies risk avoidance and mitigation strategies.
  • Advises NEXCOM on the specific data technologies that support or enhance the organization for the long-term strategic responsibilities of NEXCOM IT systems.
  • Designs, develops, reviews and implements system security measures that provide confidentiality, integrity, availability, authentication, and non-repudiation.
  • Designs, develops, reviews and implements security designs for new or existing technology system(s). Ensure that the design of hardware, operating systems, and software applications adequately address IA security requirements for the computing environment.
  • Provides system related input on IA security requirements to be included in statements of work and other appropriate procurement documents.
  • Ensures security deficiencies identified during security/certification testing have been mitigated, corrected, or a risk acceptance has been obtained by the appropriate authorized representative.
  • Ensures that the implementation of security designs properly mitigate identified threats.
  • Develops and maintain the organization's enterprise architecture; alignment of IT security strategy, incorporating NEXCOM's business goals.
  • Ensures compliance of artifacts to NEXCOM enterprise Information Assurance and BC/DR standards.
  • Familiar with regulatory requirements such as DIACAP, PCI, PII, SOX.
  • Participates in enterprise strategy development, including environmental analysis, opportunity identification, value cases and business innovation portfolio development regarding all areas of IT security and BC/DR functions.
  • Documents system security design features and provide input to implementation plans and standard operating procedures.
  • Conducts advanced technical research, including market research of solutions based on vendor supplied documents.
  • Based on current and future business requirements, define configurations necessary for a disaster recovery site.
  • Installs, configure, and maintain Governance Risk and Compliance toolset.
  • Plans for future growth and resource needs by consulting with system administrators and other computing technical professionals, recommending and providing security principle guidance and direction.
  • Investigates and understands the IT threat potentials and provide insight on specific IA threat concerns to NEX components, and recommends mitigation or prevention best practices.
  • Ensures/implements the rigorous application of Information Security/Information Assurance policies, principles, and practices in the delivery of Systems, Applications and/or Services (Hardware & Software).
  • Perform other related duties as assigned.
Information Assurance Workforce Certification IAM2 jobs):

SECNAV M-5239.2, DoN, Information Assurance (IA) Workforce Manual requires incumbents of this position to possess and maintain current, one of the following certifications: GIAC Security Leadership Certification (GSLC), Certified Information Security Manager (CISM), or Certified Information Systems Security Professional (CISSP).
NEXCOM preferred certification is GIAC Security Leadership Certification (GSLC).

Candidate without the required certification may be placed into this position, but must obtain the required certification within 6 months of appointment; failure to obtain this requirement will result in termination of employment.

This position is designated IT-1 (Critical-Sensitive) in accordance with SECNAV M-5510.30 and will require favorable Single Scope Background investigation (SSBI).

Candidates must be eligible for and obtain a Top Secret Clearance, within 6 months of appointment. Failure to obtain such will result in termination of employment.

Qualified candidates must be U.S. Citizens.

GENERAL EXPERIENCE:

3 years experience in administrative, technical or investigative work which demonstrated the ability and aptitudes required to perform technical, managerial or analytical work involving management information
systems.

OR
SUBSTITUTION OF EXPERIENCE FOR EDUCATION:

One year of related academic study above the high school level may be substituted for 9 months of experience up to a maximum of a 4 year bachelor's degree in software engineering or business information systems for 3 years of general experience.

AND
SPECIALIZED EXPERIENCE:

Five years of experience in at least two of the following:
Technical analysis for infrastructure architecture;
Disaster recovery design methodology;
IT security compliance and reporting;
Technical risk analysis;
Enterprise Architecture

This position is designated IT-1 (Critical-Sensitive) in accordance with SECNAV M-5510.30 and will require favorable Single Scope Background investigation (SSBI).

Candidates must be eligible for and obtain a Top Secret Clearance, within 6 months of appointment. Failure to obtain such will result in termination of employment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SENIOR NETWORK ENGINEER
SENIOR NETWORK ENGINEER

Navy Exchange Service Command • Virginia Beach (VA), Northern (KY)

Hybrid
USD 81,000 - 103,000
Health insurance with vision benefits
Dental coverage
FSAs for health care/ dependent care
+6
SUPPORT TECHNICIAN I
SUPPORT TECHNICIAN I

NAVY EXCHANGE SERVICE COMMAND (NEXCOM) • Virginia Beach (VA)

On-site
USD 60,000 - 90,000
Enterprise Information Security Architect - IA & BC/DR Leadership
Enterprise Information Security Architect - IA & BC/DR Leadership

Socket.dev • Virginia Beach (VA)

On-site
USD 140,000 - 190,000
Information Assurance Engineer
Information Assurance Engineer

Agile IT Synergy, LLC • Tampa (FL)

On-site
USD 90,000 - 130,000
Information Assurance Analyst
Information Assurance Analyst

NexGen Data Systems • Suffolk (VA)

On-site
USD 90,000 - 140,000
Premium health, dental, vision
Disability plans
401(k) with 10% match
+2
UNIX SYSTEMS ADMINISTRATOR
UNIX SYSTEMS ADMINISTRATOR

Navy Exchange Service Command • Virginia Beach (VA)

On-site
USD 80,000 - 103,000
UNIX SYSTEMS ADMINISTRATOR
UNIX SYSTEMS ADMINISTRATOR

NAVY EXCHANGE SERVICE COMMAND (NEXCOM) • Virginia Beach (VA)

On-site
USD 70,000 - 90,000
Cyber Security Consultant at RICEFW Technologies Inc Columbia, MO
Cyber Security Consultant at RICEFW Technologies Inc Columbia, MO

RICEFW Technologies Inc • Columbia Township (MO)

On-site
USD 90,000 - 140,000
NETWORK ENGINEER (LEVEL II - IV Noncompetitive Progression)
NETWORK ENGINEER (LEVEL II - IV Noncompetitive Progression)

Navy Exchange Service Command • Virginia Beach (VA), Northern (KY)

Hybrid
USD 64,000 - 103,000
Senior ISSO & RMF Security Architect
Senior ISSO & RMF Security Architect

RICEFW Technologies Inc • Columbia Township (MO)

On-site
USD 90,000 - 140,000