Systems Security Specialist

Overview

On Site
Full Time

Skills

UI
Information Technology
Microsoft
Tier 1
Recruiting
Training
Partnership
Communication
Project Scoping
Taxes
Corporate Social Responsibility
Medicaid
Health Insurance
DevOps
Microsoft Azure
Microsoft Exchange
Security Impact Analysis
Documentation
Information Security
Risk Assessment
Privacy
System Security
Systems Design
SAFE
Event Management
Identity Management
Change Control
Cloud Computing
Security Operations
Operating Systems
Forensics
SIEM
Amazon Web Services
Network
WAF
Performance Tuning
Backup Administration
Security Controls
Evaluation
Information Systems
Incident Management
Testing
Reporting
SSO
SailPoint
Provisioning
Access Control
Workflow
ACL
Management
Configuration Management
IT Security
Roadmaps
Command-line Interface
Linux
Microsoft Windows
Active Directory
LDAP
Database
Java
JavaScript
Shell
Scripting
NIST SP 800 Series
NIST 800-53
Vulnerability Management
Penetration Testing
ASA
Fortinet
Firewall
CISSP
ISO 9000
Cloud Security
Computing Curriculum Software Engineering
VCP
PMO
Policies and Procedures
Oracle Linux

Job Details

CCS Global Tech is a rapidly growing Information Technology company with a diverse portfolio of technology products and services and a large network of industry partnerships. With over 22 years of being a successful business with a global talent pool and presence, CCS is a certified Microsoft Gold Partner and specializes in delivering expert Microsoft based solutions for technical and business needs. We have been recognized by Inc. 500 Magazine as one of the fastest growing small companies in the Unites States.
we are a Tier 1 vendor for the City and County of San Francisco for Cloud Services, Staffing Services and Training Services. For this multi-year opportunity with a diverse set of needs to address, we are currently focusing on establishing partnerships with individuals as well as companies who can help us enhance our overall service portfolio, cut lead times, and ultimately help us deliver successfully. We currently hold sizable Government accounts in the San Francisco bay area including City and County of San Francisco, San Mateo County, and Santa Clara County.
We take great pride in our global reach and local influence. Your experience alongside our highly skilled and talented internal team who guide you along the way, offers key insights into what helps you stand out in a competitive job market.
If you are a partner company, please submit resumes with contact information of your own W2 Consultants only. Submitted consultants are expected to have excellent communication skills.

Project Scope:

The Maryland Health Benefit Exchange (MHBE), an independent unit of state government, provides accessible, affordable health coverage to Marylanders. MHBE administers Maryland Health Connection (MHC), the state's health insurance marketplace. Through MHC, Maryland residents explore health insurance plans, compare rates, and determine their eligibility for advanced premium tax credits (APTC), cost-sharing reductions (CSR), and public assistance programs such as Medicaid and the Maryland Children's Health Insurance Program (MCHP).

MHBE seeks one (1) Systems Security Specialist to plan, design, develop, administer, monitor, and govern various security policies, controls, and systems for the Health Benefit Exchange (HBX) and other systems.

Roles/Responsibilities:

  • Develop and implement cloud security controls, cloud-based processes and tools, and cloud security task automation.
  • Perform security assessments, working closely with DevOps and Developer teams on identifying security and privacy issues in AWS or Azure and finding solutions to provide required functionality securely.
  • Continuously monitor the Health Benefit Exchange (HBX) and ancillary systems, not limited to cloud security operations, responding to security issues and escalating as necessary.
  • Conduct security impact analysis of controls on proposed system changes.
  • Conduct cloud security assessments and Penetration testing.
  • Perform Incident Response and Forensics evaluation using security information and event management (SIEM) tools.
  • Ensure that the MHBE system security requirements are addressed during all phases of the system development life cycle.
  • Review and update systems security documentation and artifacts such as Systems Security Plan, Information Security Risk Assessment, Privacy Impact Assessment, Systems Security Report, Correction Action Plan, Plan of Action & Milestones (POA&M).
  • Create and track POA&M requirements for resolving security findings.
  • Administer cloud-based and physical firewalls.
  • Deploy and administer Identity and Access Management products in various operating systems.
  • Perform monitoring and operations of Identity and Access Management implementation.
  • Design enhancements in Identity and Access Management products ForgeRock and SailPoint.
  • Maintain, monitor, and provide operational support for IAM products, computer programs, systems, and other security technologies and revise system design and quality standards.
  • Make changes to IAM and underline applications for enhancing enterprise security and ensure safe and secure operation to enable access to our systems for our employees, contractors, consumers, and stakeholders.
  • Perform Security Incident Response and Forensics evaluation using security information and event management (SIEM) tools.
  • Provide operational support for other security technologies.
  • Perform account/access management with IAM and other security tools.
  • Adhere to all security, change control, and MHBE Project Management Office (PMO) policies, processes, and methodologies.

Mandatory Skills:

  1. A minimum of two (2) years of experience analyzing, defining, deploying, monitoring, and administering security requirements and controls for large and mission-critical IT systems.
  2. A minimum of two (2) years performing day-to-day security operations functions, including administration, troubleshooting, and resolution of various security components.
  3. A minimum of two (2) years of hands-on experience in performing cloud security functions.
  4. A minimum of two (2) years of experience in defining computer security requirements for high-level applications and evaluating approved security product capabilities.
  5. A minimum of two (2) years of demonstrated production experience using AWS Cloud supporting security operations.
  6. A minimum of two (2) years of experience with administering security for Windows and Linux operating systems.
  7. Experience in performing Security Incident Response and Forensics evaluation with SIEM tools.
  8. Experience with AWS security features such as Security Groups, Network Access Control List, Firewall, WAF, Guard Duty, Macie, CloudTrail, CloudWatch, Control Tower, etc.
  9. Experience with assessment and evaluation of information systems to recommend changes and mitigate threats, risks, and vulnerabilities.
  10. Demonstrated ability to perform scheduled maintenance activities such as patching, performance tuning, and backups.
  11. Demonstrated ability to perform user provisioning and de-provisioning activities.
  12. Experience in monitoring the security infrastructure for operational effectiveness

Desirable Skills:

  1. A minimum of four (4) years of experience implementing, administering, and monitoring Security Controls and Governance for public-facing complex IT systems.
  2. A minimum of four (4) years of specialized experience in defining computer security requirements for high-level applications, evaluating approved security product capabilities, and developing solutions to multilevel security problems.
  3. A minimum of four (4) years of hands-on experience providing operational support for ForgeRock and Sailpoint IAM products.
  4. A minimum of four (4) years of experience with the assessment and evaluation of information systems to recommend changes and mitigate threats, risks, and vulnerabilities.
  5. A minimum of four (4) years of experience conducting Incident Response testing to evaluate processes for detection, response, and reporting of security incidents.
  6. Experience configuring ForgeRock to enable single sign-on with different applications and implementing password sync across all internal applications.
  7. Experience with configuration and administration of SailPoint and performing tasks such as designing an organizational tree structure and creating provisioning and de-provisioning policies.
  8. Experience implementing ID policies, password policies, access control lists (ACL), reconciliation, service definition, the configuration of remote resources, workflows, password synchronization, reconciliation schedules, and life cycle management.
  9. Experience in providing detailed configuration and administration for programs such as ACL configuration, Group Management, and configuration management.
  10. Hands-on experience with troubleshooting, investigating operational problems, and providing workarounds, resolutions, and remediations.
  11. Experience developing IT Security roadmaps and execution plans.
  12. Demonstrated technical knowledge of command line utilities running on various platforms, including Linux and MS Windows.
  13. Experience with implementation of integration solutions between IAM system and user account repositories such as Active Directory, LDAP, and Databases.
  14. Experience with Java, JavaScript, and shell scripts.
  15. Experience assisting organizations meeting NIST SP 800-37, NIST 800-53, IRS Publication 1075, and MARS-e 2.0 requirements.
  16. Experience with conducting vulnerability management and penetration testing efforts.
  17. Experience in configuring and reviewing ASA and/or Fortinet firewalls.
  18. Possess one or more security certifications such as CISSP, ISO, CSA STAR Cloud Security Advisor, CCSE, QCS, CNA, VCP, or equivalent preferred.
  19. Experience working with the Project Management Office (PMO) processes, policies, and procedures
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.

About CCS Global Tech