Systems and Information Security Specialist

Hendall Inc

Rockville (MD)

On-site

USD 90,000 - 110,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Hendall Inc. is seeking a Systems and Information Security Specialist with strong FISMA, HHS, OMB, and NIST knowledge to join our federal IT security team in Rockville, MD.

You will perform SA&A, risk analyses, develop and maintain security policies, support ATO processes, and coordinate with client CISOs, delivering tests and reports. This role requires 3–5 years of federal IT security experience and a CISSP or equivalent certification.

Qualifications

  • Bachelor's degree in computer science, information systems or information technology.
  • 3-5 years of professional experience in Federal IT Security.
  • CISSP certification or equivalent (Preferred).
  • Experience in FIP 199 Moderate categorized system environment.
  • Strong verbal and written communication skills.
  • Highly organized and detail oriented.
  • Ability to maintain and manage ATO-related controls and artifacts.

Responsibilities

  • Conduct SA&A processes to attain Authorization To Operate (ATO) for supported information systems.
  • Remediate security weaknesses via POA&Ms and risk mitigation.
  • Perform risk analyses including risk assessment, mitigation and contingency planning.
  • Develop and maintain information security policies and control techniques per FISMA and NIST SP 800-series.
  • Develop and maintain BHSIS ISSP and IT Plan documents.
  • Assist with preparation of OMB forms and paperwork for major IT investments.
  • Perform periodic reviews to ensure compliance with security and privacy requirements.
  • Continuously monitor security controls and operational environment.
  • Complete annual system self-assessments and support FISMA reporting.
  • Conduct vulnerability scans and report findings to CISO.
  • Perform annual penetration testing and provide reports to clients.
  • Act as liaison between clients' CISO and Hendall.

Skills

Verbal and written communication
Organized and detail oriented
ATO controls management

Education

Bachelor's degree in computer science / information systems / information technology
CISSP certification (Preferred)

Job description

OVERVIEW

Hendall is currently seeking a Systems and Information Security Specialist experienced with the Federal Information Security Management Act (FISMA), U.S. Department of Health and Human Services (HHS), Office of Management and Budget (OMB), and the National Institute of Standards and Technology (NIST) regulations, policies, and guidelines.

DUTIES

The Systems and Information Security Specialist analyzes, defines, implements, and maintains all required procedures and security controls in accordance with Federal, and HHS regulations, policies, and guidelines. Specifically:

  • Conduct Security Assessment and Authorization (SA&A) processes and procedures to attain Authorization To Operate (ATO) for supported information systems
  • Remediate security weaknesses through the implementation of Plan of Actions & Milestones (POA&Ms)
  • Perform risk analyses which also includes risk assessment, mitigation and contingency planning.
  • Develop and maintain information security policies, procedures and control techniques in accordance with FISMA and NIST Special Publications 800 Series
  • Develop and maintain BHSIS Information System Security Plan and IT Plan
  • Assist with the preparation and maintenance of OMB required forms and other paperwork for major IT investments
  • Perform periodic reviews to ensure compliance with existing information security and privacy requirements.
  • Continuously monitor system(s) security controls and operational environment
  • Complete annual system self-assessments, and support quarterly and annual FISMA reporting requirements
  • Conduct monthly Database, Application and Operating System vulnerability scans and report outcomes to clients' Chief Information System Officer (CISO)
  • Perform annual penetration testing on client systems and provide test reports to clients
  • Act as liaison between clients' CISO and Hendall
MINIMUM QUALIFICATIONS
  • Bachelor's degree in computer science, information systems or information technology
  • 3-5 years of professional experience in Federal IT Security
  • Certified Information Systems Security Professional (CISSP) certification or similar (Preferred)
  • Experience working in a Federal Information Processing Standard (FIP) 199 Moderate categorized system environment
  • Strong verbal and written communication skills
  • Highly organized and detail oriented
  • Ability to maintain and manage ATO-related controls and other information security artifacts
PREFERRED QUALIFICATIONS
  • Experience performing information security services within the Department of Health and Human Services and its operating divisions.
Salary Range

$90,000/year to $110,000/year

For a complete listing of benefits, please visit our careers page at www.hendall.com/careers

Hendall Inc. is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Federal InfoSec Specialist—FISMA, NIST & ATO Expert
Federal InfoSec Specialist—FISMA, NIST & ATO Expert

Hendall Inc • Rockville (MD)

On-site
USD 90,000 - 110,000
Senior Project Manager
Senior Project Manager

Hendall Inc • Rockville (MD)

On-site
USD 135,000 - 155,000
Information Security Specialist (Remote)
Information Security Specialist (Remote)

Harris Computer • North Dakota

On-site
USD 80,000 - 110,000
Competitive compensation package
Health Insurance (medical, dental, vision)
Paid Vacation
+1
Cyber Security Analyst
Cyber Security Analyst

WA River Protection Solutions • Richland (WA)

On-site
USD 109,000 - 166,000
Information System Security Specialist I
Information System Security Specialist I

Goldbelt, Inc. • Charleston (SC)

On-site
USD 60,000 - 85,000
Medical, dental, and vision insurance
401(k) plan with company matching
Paid time off and professional development opportunities
Information System Security Specialist I
Information System Security Specialist I

CP Marine LLC • Charleston (SC)

On-site
USD 70,000 - 90,000
Medical, dental, and vision insurance
401(k) plan with company matching
Paid time off
+1
Senior Manager of Statistical Analysis and Quality Control
Senior Manager of Statistical Analysis and Quality Control

Hendall Inc. • Rockville (MD)

On-site
USD 140,000 - 155,000
Information System Security Officer - ISSO (Manager Information Security)
Information System Security Officer - ISSO (Manager Information Security)

IDEMIA Public Security • United States

On-site
USD 135,000 - 168,000
Cyber Security Specialist, Associate
Cyber Security Specialist, Associate

Peraton • Fort Huachuca (AZ)

On-site
USD 66,000 - 106,000
Information Systems Security Officer
Information Systems Security Officer

Red Pulley • Washington, Northern (KY)

Hybrid
USD 110,000 - 160,000
401(k) retirement plan
Health insurance
PTO
+2