** Bonus (Hiring/Relocation) available for Qualified Candidates with Active TS/SCI clearances **
** This position is located in Bethesda, MD **
SAIC is looking for a Cyber Security Analyst experienced in Security Control Assessor (SCA), Risk Management Framework (RMF) and Assessment & Authorization (A&A) to support Navy Sites and Programs of Record (PORs). The individual will determine if engineering solutions are practical, reliable and interoperable for the execution/implementation on Navy Networks.
Conduct security assessment reviews and have a working knowledge of several Navy and the IC community Mission Assurance (MA) tool sets: Insider Threat Detection, Security Forensics, Application Layer Filtering, Source Code Analyzers, Strong Authentication Controls, and Network Traffic Analysis, Firewalls, Wireless Detection, and VPN Protection controls.
Design, test, and implement secure operating systems, networks, security monitoring, tuning and management of IT security systems and applications, incident response, digital forensics, loss prevention, and eDiscovery actions.
Conduct risk and vulnerability assessment at the network, system and application level.
Develops and implements security controls and formulates operational risk mitigations along with assisting in security awareness programs.
Utilizes COTS/GOTS and custom tools and processes/procedures in order to scan, identify, contain, mitigate and remediate vulnerabilities, and intrusions.
Assists in the implementation of the required government policy (i.e., NISPOM, DCID 6/3), and makes recommendations on process tailoring.
Performs analyses to validate established security requirements and to recommend additional security requirements and safeguards.
Supports the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports.
Periodically conducts a review of each system's audits and monitors corrective actions until all actions are closed.
Required Education and Experience:
Ability to work with and build relationships with a variety of stakeholders; government technical representatives, and other supporting contractors;
Excellent written and oral communications
Ability to work independently or in a team collaborative environment
Ability to brief senior government personnel.
Certifications include one or more of the following: CISSP, CISM, or CISA, and Security + Network Plus.
Working experience with ACAS scan analysis, STIG CKLs, SCC benchmarks, Vulnerator, XACTA, HBSS and Navy M3 Message Creation.
Working experience with the following policies; NIST, DoD, DHA, DON, FISMA, OMB, FIPS, CNSS.
Desired Skills and Certifications:
Experience with DISA STIGs associated with listed networking technologies, as well as, Enclave, Network Policy, Remote Access Policy, and DMZ STIGS, and the Risk Management Framework Step Process.
Experience with Word, Excel and Visio.
Job Posting Date: 2019-05-29 21:51:47 UTC
Primary Location: BETHESDA, MD 20817 US
Clearance Level Must Currently Possess: Top Secret/SCI
Clearance Level Must Be Able to Obtain: Top Secret/SCI
Potential for Teleworking: No
Travel: Yes, 10% of the time
Shift: Day Job
SAIC is a premier technology integrator, solving our nation's most complex modernization and systems engineering challenges across the defense, space, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and simulation; and training. We are a team of 23,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.5 billion. For more information, visit saic.com. For information on the benefits SAIC offers, see Working at SAIC
. EOE AA M/F/Vet/Disability