Information Security Advisor
22 hours ago
Information Security Advisor
Responsibilities
- This role will be primarily responsible for performing assessments of systems and networks within the network environment to identify where those systems/networks deviate from acceptable configurations or policies, and for measuring the effectiveness of defense-in-depth architecture against known/detected vulnerabilities as per the federal cybersecurity standards & guidelines.
- Analyze an organization's cyber defense policies and configurations and evaluate compliance with regulations and organizational directives.
- Support authorized penetration testing on enterprise network assets.
- Prepare reports that identify technical and procedural findings, and provide recommended remediation strategies/solutions;
- Perform vulnerability analysis; Measure the effectiveness of controls against known vulnerabilities.
- Work with stakeholders (system administrators and owners) to manage risks\vulnerabilities
- Perform technical (evaluation of technologies) and non-technical (evaluation of people and operations) impact\risk and vulnerability assessments of relevant technology focus areas (e.g., local computing environment, network and infrastructure, supporting infrastructure, and applications).
- Identify systemic security issues based on the analysis of vulnerability and configuration data
- Make recommendations regarding the selection of cost-effective security controls to mitigate risk (e.g., protection of information, systems, and processes).
- Ensure remediation plans are in place for vulnerabilities identified during risk assessments, audits, inspections, etc.; Provide clear updates to management on vulnerabilities; Investigate, document, and report on the status and emerging trends
- Maintain up-to-date vulnerability profiles, including respective detection and countermeasures
- Participate in industry task forces and working groups where appropriate to understand current and emerging vulnerabilities to stay up to date
Job Requirements
- Minimum 8 years’ experience in Information Security is required along with a minimum of 4 years of hands-on experience in at least 4 of the following:
- Application of Risk management frameworks and processes
- Use of vulnerability management tools; AppScan, Tenable, Invicti, ForeScout and DbProtect preferred
- Creating\improving risk management policies, procedures, and operations - Participating in cross-functional efforts for managing organization-wide risks
- Conducting Penetration Tests using Kali and\or CoreImpact
- Collecting, organizing, analyzing and reporting updates, alerts, advisories, and bulletins
- Use of industry-standards and widely accepted analysis principles and methods
Must know
- Risk management processes (e.g., methods for assessing and mitigating risk).
- Cybersecurity principles, security models, organizational requirements (w.r.t. confidentiality, integrity, availability, authentication, non-repudiation), cyber threats, risks and vulnerabilities, cryptography and cryptographic key management concepts, host/network access control mechanisms (e.g., ACLs), network access, identity, & access management (e.g., PKIs), Computer networking concepts and protocols, and network security methodologies. - Ethical hacking principles, general attack stages; Specific operational impacts of cybersecurity lapses; programming language structures and logic.
- Basic system administration, network, and operating system hardening techniques
Must be
- Able to communicate, verbally and in writing, complex technical issues with simplicity & clarity
- Strong Interpersonal skills, excellent attention to detail and analytical skills
- Able to exercise discretion and maintain confidentiality - Proficient in reporting and answering analytical questions using vulnerability data
Education/Certifications
- Applicants selected will be subject to a Public Trust background security investigation and may need to meet eligibility requirements for access to sensitive information.
- A BA or BS degree in MIS, CS, or related cybersecurity discipline (Masters preferred)
- Industry standards such as CEH, CRISC, GRCP or related GIAC (preferred but not required)
-
Information Security Compliance Engineer
2 weeks ago
Rockville, United States Axle Full timeJob DescriptionJob Description(ID: 2024-6871)Axle is a bioscience and information technology company that offers advancements in translational research, biomedical informatics, and data science applications to research centers and healthcare organizations nationally and abroad. With experts in biomedical science, software engineering, and program management,...
-
Security Engineer
4 weeks ago
Rockville, United States SeKON Full timeSeKON is seeking a Security Engineer to join our innovative and dynamic team, supporting the operational security of IT systems for the National Institutes of Health (NIH), specifically the National Institute on Drug Abuse (NIDA) in Rockville, MD. In this role, you will play a critical part in managing and enhancing the security of both hardware and software...
-
Security Professional
4 weeks ago
Rockville, Maryland, United States Allied Universal Full timeJob Summary: As a Security Officer at Allied Universal, you will be responsible for ensuring the highest quality security services in the protection of personnel, property, and information.Key Responsibilities:Respond to and assess security alarms or emergency situations, providing medical aid and fire response as needed.Ensure the safety and security of...
-
Sr Software Engineer
2 months ago
Rockville, United States General Dynamics Information Technology Full timeAt GDIT, people are our differentiator. As a Sr. Software Engineer – DevSecOps/Cyber Focus, you will help ensure today is safe and tomorrow is smarter. Our work depends an Sr. Software Engineer – DevSecOps/Cyber Focus responsible for engineering teams’ processes to ensure our products are free from security vulnerabilities. Design, deploy, operate,...
-
Cyber Security Architect
3 weeks ago
Rockville, United States VDart Full timeRole: Cyber Security Architect Location: Rockville, MD (Remote) Duration: Long TermDescription: An information security architect, the position is a key member of a consulting team providing advice and support, to federal agencies, in the areas of Information Security. This role will be primarily responsible reviewing, assessing, documenting, and...
-
TSS Appian Test Lead
3 weeks ago
Rockville, United States General Dynamics Information Technology Full timeJob Description Summary: Work with cutting-edge applications that help advance the mission as a Test Engineer Advisor at GDIT. Your work will have you fully immersed in our client’s domain to deliver simple solutions for their complex needs. At GDIT, you’ll prioritize the client while we prioritize your career. At GDIT, people are our...
-
Assistant Service Manager/ Service Advisor
5 months ago
Rockville, United States Hersons Honda Full timeASSISTANT SERVICE MANAGER/SERVICE ADVISORHerson’s Honda is hiring, and we want you to join our team!This is a FULL TIME, 4 DAY WORK WEEK position! You will work four 10-hour workdays and receive full pay and benefits.If you are looking for a job with great pay and an awesome work life balance, then stop looking, because you just found it.Benefits:4 Day...
-
HIPAA Security Compliance Specialist
4 weeks ago
Rockville, Maryland, United States Scubyt Full timeJob Title: HIPAA Security Compliance SpecialistJob Summary:Scubyt is seeking a skilled HIPAA Security Compliance Specialist to ensure compliance with the HIPAA Security Rule when handling electronic protected health information (ePHI). The ideal candidate will be well-organized, detail-oriented, and have strong security knowledge.Key Responsibilities:Support...
-
Privacy and Security Program Lead
3 weeks ago
Rockville, United States Cherokee Federal Full timePrivacy and Security Program Lead Please Note : This position is pending a contract award. If you are interested in a future with Cherokee Federal, APPLY TODAY! Although this is not an approved position, we are accepting applications for this future and anticipated need. This position requires being a US Citizen, lawful resident alien, or citizen of...
-
Reimbursement Counselor
2 weeks ago
Rockville, United States Artech Information System LLC Full timeArtech Information Systems is the #1 Largest Women-Owned IT Staffing Company in the U.S. and an employer of choice for over 7,500 consultants. We recruit world-class talent for IT, engineering, and other professional jobs at 70+ Fortune and Global 500 companies coast-to-coast across the U.S., India, and China. We are one of the fastest-growing companies in...
-
HIPAA Security Analyst
3 weeks ago
Rockville, United States Scubyt Full timeTitle: HIPAA Security AnalystLocation: Rockville, MD (ONSITE)Start date— ASAPDuration – One contractor for approximately 6-9 monthsLocals preferred100% Remote for right candidateTHE ASSIGNMENT OF WORK IS CONTINGENT UPON:Selection of an acceptable task order proposal resulting from this task order proposalRequest.Selected candidate may be required to...
-
HIPAA Security Analyst
4 weeks ago
Rockville, United States Scubyt Full timeTitle: HIPAA Security AnalystLocation: Rockville, MD (ONSITE)Start date— ASAPDuration – One contractor for approximately 6-9 monthsLocals preferredTHE ASSIGNMENT OF WORK IS CONTINGENT UPON:Selection of an acceptable task order proposal resulting from this task order proposalRequest.Selected candidate may be required to complete a successful Background...
-
HIPAA Security Analyst
3 weeks ago
Rockville, United States Scubyt Full timeTitle: HIPAA Security AnalystLocation: Rockville, MD (ONSITE)Start date— ASAPDuration – One contractor for approximately 6-9 monthsLocals preferred100% Remote for right candidateTHE ASSIGNMENT OF WORK IS CONTINGENT UPON:Selection of an acceptable task order proposal resulting from this task order proposalRequest.Selected candidate may be required to...
-
Senior Principal Cyber Security Architect
3 weeks ago
Rockville, United States Meso Scale Diagnostics LLC Full timePOSITION SUMMARY:The Senior Principal Cyber Security Architect is responsible for the design, implementation and support of the company's cyber controls, threat monitoring and mitigation, as well as the evaluation and monitoring of cyber technology used to support corporate operations and product development. This position will also be responsible for the...
-
Senior Principal Cyber Security Architect
3 weeks ago
Rockville, United States Meso Scale Diagnostics, LLC. Full timePOSITION SUMMARY: The Senior Principal Cyber Security Architect is responsible for the design, implementation and support of the company’s cyber controls, threat monitoring and mitigation, as well as the evaluation and monitoring of cyber technology used to support corporate operations and product development. This position will also be responsible for the...
-
Security Officer Part Time
1 month ago
Rockville, Maryland, United States MSCCN Full timeJob SummaryWe are seeking a highly motivated and detail-oriented Security Officer to join our team on a part-time basis. As a Security Officer, you will be responsible for providing exceptional customer service and ensuring the safety and security of our clients and their properties.ResponsibilitiesProvide customer service to clients by carrying out safety...
-
Security Officer Part Time
1 month ago
Rockville, Maryland, United States MSCCN Full timeJob Title: Security Officer Part TimeAre you looking for a rewarding career that gives you a sense of purpose? Allied Universal, a leading security and facility services company, has a dynamic and inclusive workplace that fuels a culture that reflects in our communities and customers we serve.We offer a range of benefits, including medical, dental, and...
-
Senior Load Balancing Engineer
1 month ago
Rockville, Maryland, United States General Dynamics Information Technology Full timeJob SummaryWe are seeking a highly skilled Senior Load Balancing Engineer to join our team at General Dynamics Information Technology. As a key member of our team, you will be responsible for architecting, engineering, testing, and implementing a global Cloud SASE Load Balancing solution using Akamai SASE load balancing services.Key ResponsibilitiesHelp the...
-
Rockville, United States NTT DATA Full timeNTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Senior Security Control Assessor tto join our team in Rockville, Maryland, USA.NTT DATA is seeking a highly motivated, flexible,...
-
Cyber-Security Engineer
3 weeks ago
Rockville, United States ALTA IT Services Full timeALTA IT has a Long-Term Contract position open for a Jr Cyber Security Engineer. Onsite – Rockville, MD Citizen – Will need to obtain a Public Trust Cybersecurity Software Engineer Job Description: Plan, implement and upgrade security measures and controls Establish plans and protocols to protect digital files and information systems against...