IT Security Analyst / Assessor

NXTKEY CORPORATION

Washington (District of Columbia)

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

NXTKEY CORPORATION is seeking an Information System Security Analyst in Washington, DC. The role includes responsibilities for conducting assessments, vulnerability scanning, and implementing security measures in compliance with federal standards.

The ideal candidate must have 5+ years of experience, a BS degree in a related field, and an active Public Trust Clearance. Join a dynamic team focused on providing top-notch cybersecurity solutions to governmental clients.

Qualifications

  • 5+ years of experience conducting security control assessments.
  • Active Public Trust Clearance (adjudicated within past 5 years) is a must.
  • Experience in Federal Government Contracts is required.

Responsibilities

  • Perform Certification & Accreditation as part of the Risk Management Framework.
  • Prepare and conduct Vulnerability Scanning tests.
  • Analyze vulnerability scan results for validation.
  • Design and implement security solutions.
  • Conduct testing and audit log reviews for security measures.

Skills

Security control assessment of NIST 800-53 controls
Risk Management Framework knowledge
Vulnerability scanning
Technical support in network security
Security solutions design and implementation

Education

BS degree in computer or system science
Certification(s) in information technology (e.g. Security+)

Tools

Nessus
Foundstone
WebInspect
Hailstorm
Cyber Security Assessment Methodology (CSAM)

Job description

NXTKey Corporation has been delivering Information Technology, Information management, Information Assurance (IA) and cybersecurity solutions to US Federal Government since 2005.

NXTKey Corporation is an agile Small Business that places emphasis on teamwork and partnership with our clients to produce optimum contract performance. We have refined our solution from experience supporting highly complex Department of Justice (DOJ) environments such as United States Marshals Service (USMS), Justice Management Division (JMD), Office of Justice Programs
(OJP) and Federal Prison Industries (FPI).

Our depth of experience allows us to provide IT security support for a wide range of IT General Support Systems (GSS) and major applications (MAs) within the Federal Enterprise and following the guidance in the Federal Enterprise Architecture (FEA) and information systems security support services in accordance with OMB Circular A-130, NIST guidelines and standards, as well as other federal policies and regulations.

Job Description

Information System Security Analyst duties include:

  • Perform Certification & Accreditation (C&A), System Assessment & Authorization (SA&A) as part of NIST SP 800-37 Risk Management Framework (RMF) system and application accreditation
  • Prepare Vulnerability Scanning test plans, coordinate testing, and conduct scans using Nessus, Foundstone, WebInspect, Hailstorm and other scan applications
  • Analyze vulnerability scan results for validation and root cause
  • Technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation.
  • Responsible for the design and implementation of security solutions to protect the confidentiality, integrity, and availability of sensitive information.
  • Provide technical evaluations of customer CM and CMI solutions and provide security recommendations.
  • Participate in the design of information system business impact analysis, system categorization, contingency plans, privacy documents, and other system security documentation to maintain appropriate levels of protection and meet requirements for minimizing operational impact to the enterprise.
  • Conduct testing and audit log reviews to evaluate the effectiveness of current security measures.

IT Security Control Assessor needs to possess the following skills:

  • 5+ years of experience conducting security control assessment of all NIST 800-53 controls
  • Knowledge of NIST 800-53 security controls and required documentation.
  • Conducted security control assessments based on a Risk Management Framework approach.
  • Familiarity with Cyber Security Assessment Methodology (CSAM) tool a plus
Qualifications
  • Certification(s) in information technology (i.e. Security+)
  • BS degree in a computer or system science discipline from an accredited college or university.
  • Working experience in Federal Government Contracts is a must.
  • Active Public Trust Clearance (adjudicated within past 5 years) is a must.
Additional Information

All your information will be kept confidential according to EEO guidelines.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Federal IT Security Analyst & RMF Assessor
Federal IT Security Analyst & RMF Assessor

NXTKEY CORPORATION • Washington

On-site
USD 90,000 - 120,000
Information System Security Officer / ISSO
Information System Security Officer / ISSO

NXTKEY CORPORATION • Washington

On-site
USD 80,000 - 120,000
Security Control Assessor
Security Control Assessor

SAIC • Springfield (VA)

On-site
USD 120,000 - 160,000
Security Control Assessor
Security Control Assessor

38North Security • Washington

Remote
USD 120,000 - 180,000
Security Assessor (RMF / GRC)
Security Assessor (RMF / GRC)

Digital Global Connectors • McLean (VA)

Hybrid
USD 110,000 - 160,000
Security Controls Assessor (1147545)
Security Controls Assessor (1147545)

The Judge Group • South Carolina

On-site
USD 90,000 - 130,000
Senior Information Assurance Analyst
Senior Information Assurance Analyst

Qmulos • Arlington (VA)

On-site
USD 90,000 - 120,000
SME Security Control Assessor
SME Security Control Assessor

IMAGINEEER LLC • Arlington (VA)

Hybrid
USD 80,000 - 100,000
Competitive salary
Flexible work from home options
Information Assurance Specialist I (Information Security Analyst)
Information Assurance Specialist I (Information Security Analyst)

By Light Professional IT Services • Butlerville (IN)

On-site
USD 70,000 - 90,000
Security Control Assessor
Security Control Assessor

System High Corporation • Chantilly (VA)

On-site
USD 120,000 - 160,000