Infosec/cybersecurity Specialist

2 weeks ago


Washington, United States Veracity Engineering Full time

**WHAT THE POSITION ENTAILS**:
In 2013, the National Airspace System (NAS) was identified through Presidential Executive Order 13636 “Improving Critical Infrastructure Cybersecurity” as a national Critical Infrastructure and Key Resource (CIKR) for which a cyber-attack could have catastrophic economic and national defense impacts. The resiliency of this Critical Infrastructure is contingent upon mission-focused multi-year strategic planning that will support continued effective organizational cybersecurity risk management and the ability to identify and respond to threats to ensure continued NAS operations under a range of cyber conditions. Veracity Engineering supports the Federal Aviation Administration’s (FAA) operational arm in ensuring that the FAA’s hundreds of systems have sufficient safeguards and controls for the implementation and execution of security in the cyber domain. We provide consulting, assurance, and support services that help solve our client’s toughest challenges.

This position offers a hybrid work schedule

**What you will get to do**:
Veracity is seeking a talented Infosec/Cybersecurity Specialist for the following role.
- Conduct Risk Management Framework (RMF) assessments for FAA information systems, documenting results and delivering comprehensive consulting services.
- Develop and assess security and privacy controls to maintain the integrity and compliance of IT systems with federal standards.
- Manage and track planned changes to assigned systems, assessing impacts on system security posture, and ensuring the thorough integration of cybersecurity policies and practices.
- Lead the creation of the following critical security documentation facilitating a structured security accreditation process - System Authorization Briefs (SABs), System Characterization Documents (SCDs), Privacy Threshold Assessments (PTAs), Privacy Impact Assessments (PIAs), Information Security Contingency Plan (ISCP), ISCP Test Plan and Results (ISCP TRR), Security Assessment Reports (SARs), and Risk Assessment Reports (RARs).
- Develop comprehensive Plans of Action and Milestones (POA&M) and manage remediation strategies, enhancing the resilience of federal systems against cybersecurity threats.
- Transition systems to FedRAMP-compliant cloud solutions, ensuring adherence to federal security standards.
- Provide detailed mitigation strategies following assessments of technical, operational, and cloud vulnerabilities to safeguard federal systems.

**Must Haves**:
**Education**:

- Bachelor’s degree in computer science, information systems, mathematics, statistics, operational research, or business administration from an accredited institution.

**Experience**:

- 10-15 years of relevant experience.
- Master’s degree in related field may be substituted for bachelor’s degree and 3 years of experience.
- Five years of relevant experience may be substituted for a bachelor’s degree.

**Skills**:

- Proven experience in providing RMF assessment and consulting services for federal clients.
- Expertise in cybersecurity risk management, the development of comprehensive security documentation, and strategic security planning.
- Demonstrated ability in enhancing the security postures of critical federal systems through meticulous documentation, assessment of security and privacy controls, and development of robust security frameworks.
- Experience in leading the development of System Security Plans (SSPs), and Executive Summaries contributing to a structured accreditation process.
- Experience in producing SSPs, ISCPs, ISCP TRR, PTA, PIA, SCD, and SAB.
- Skilled in the development and management of POA&Ms with a focus on remediation strategies to enhance system resilience against cybersecurity threats.
- Experience in transitioning systems to FedRAMP-compliant cloud solutions, adhering to federal security standards.
- Capability to conduct assessments of technical, operational, and cloud vulnerabilities, providing clients with strategic mitigation strategies to protect federal systems against security breaches.
- Strong written and oral communication skills
- Project Management skills

At Veracity, we want our employees to excel and grow professionally. With an emphasis on continuing education, we demonstrate our commitment to employee growth and development by providing tuition reimbursement for education and certifications.

In addition to tuition reimbursement, we offer one of the best benefits packages in the industry: competitive health benefits package, paid time off, 401K matching, and vested from day one to name just a few of our benefits and perks.

U.S. Eligibility Requirements (Standard for all U.S. Positions)

Must be 18 years of age or older.

Must be willing to submit to a background investigation; any offer of employment is conditioned upon the successful completion of a background investigation.
- Must be willing to execute Veracity’s Confidentiality and Non-Disclosure Agreement wh



  • Washington, United States Office Of The Chief Information Officer Full time

    As an IT Cybersecurity Specialist (INFOSEC) (Direct Hire), you will: Assist in ensuring the confidentiality, integrity, and availability of systems, networks, and data through the planning, analysis, development, implementation, maintenance, and enhancement of information systems security programs, policies, procedures, and tools. Support the...

  • IT Specialist

    4 weeks ago


    Washington, United States Treasury, Departmental Offices Full time

    As a/an IT Specialist (INFOSEC), you will: Coordinate with public and private sector representatives to identify, analyze, monitor, and address threats and vulnerabilities significant enough to impact the national economic security of the United States. Prepare policy memos on cybersecurity for senior decision makers addressing key issues in the financial...


  • Washington, United States US Office of the Secretary of Health and Human Services Full time

    **Duties**: **WHAT YOU'LL BE DOING DAY TO DAY** As a Supervisory IT Cybersecurity Specialist (INFOSEC), you will use your knowledge of and experience with the Office of the Chief Information Officer's Office of Information Security to optimize business results and customer experience by: - Managing, planning, directing, and executing all organization...

  • IT Specialist

    7 days ago


    Washington, United States US Federal Energy Regulatory Commission Full time

    **Duties**: As an IT Specialist (INFOSEC), some of your typical work assignments may include: Knowledge of cybersecurity standards such as the CIP Standards and the NIST Cybersecurity Framework, cybersecurity best practices, and mitigation measures in one or more areas of IT computer systems, networking, communications, industrial control systems and related...

  • IT Specialist

    2 months ago


    Washington, United States Treasury, Departmental Offices Full time

    Summary This position is located at Departmental Offices, Domestic Finance-Financial Institutions. As an IT Specialist (INFOSEC), you will support the Treasury Department's role as the Sector Risk Management Agency for Financial Services to strengthen the security and resilience of its critical infrastructure against both physical and cyber threats. ...

  • IT Specialist

    4 weeks ago


    Washington, United States Treasury, Departmental Offices Full time

    Summary This position is located at Departmental Offices, Domestic Finance-Financial Institutions. As an IT Specialist (INFOSEC), you will support the Treasury Department's role as the Sector Risk Management Agency for Financial Services to strengthen the security and resilience of its critical infrastructure against both physical and cyber threats. ...


  • Washington, Washington, D.C., United States Office Of The Chief Information Officer Full time

    As an IT Cybersecurity Specialist (INFOSEC) (Direct Hire), you will:Assist in ensuring the confidentiality, integrity, and availability of systems, networks, and data through the planning, analysis, development, implementation, maintenance, and enhancement of information systems security programs, policies, procedures, and tools. Support the implementation,...


  • Washington, United States Office Of The Comptroller Of The Currency Full time

    As a Supervisory IT Specialist (INFOSEC), you will: Be Responsible for the cybersecurity readiness of OCC information systems based on Federal Information Security Modernization Act (FISMA) and Risk Management Framework (RMF) requirements. Ensure completion of system security documentation, risk management documentation, risk acceptances, security control...


  • Washington, Washington, D.C., United States Department Of Transportation Full time

    Summary The Volpe Center seeks an IT Specialist INFOSEC to serve as program lead and principal contributor responsible for all facets of cybersecurity within a transportation network. The employee will be responsible for ensuring the proper operational security posture is maintained for protection of information systems, programs, or designated IT assets....


  • Washington, Washington, D.C., United States Office Of The Secretary Of Health And Human Services Full time

    WHAT YOU'LL BE DOING DAY TO DAYAs a Supervisory IT Cybersecurity Specialist (INFOSEC), you will use your knowledge of and experience with the Office of the Chief Information Officer's Office of Information Security to optimize business results and customer experience by:Managing, planning, directing, and executing all organization operations and providing...

  • IT Specialist

    4 weeks ago


    Washington, United States US Treasury, Departmental Offices Full time

    **Duties**: As a/an IT Specialist (INFOSEC), you will: - Coordinate with public and private sector representatives to identify, analyze, monitor, and address threats and vulnerabilities significant enough to impact the national economic security of the United States. - Prepare policy memos on cybersecurity for senior decision makers addressing key issues in...

  • IT Specialist

    2 days ago


    Washington, United States US Treasury, Departmental Offices Full time

    **Duties**: As a/an IT Specialist (INFOSEC), you will: - Coordinate with public and private sector representatives to identify, analyze, monitor, and address threats and vulnerabilities significant enough to impact the national economic security of the United States. - Prepare policy memos on cybersecurity for senior decision makers addressing key issues in...


  • Washington, Washington, D.C., United States Department Of The Treasury Full time

    Summary This position is located in the U.S. Department of the Treasury, Departmental Offices, Assistant Secretary for Management/CFO, Office of the Chief Information Officer (OCIO) within the Enterprise Applications (EA) division, EA Cybersecurity (EAC) team.The employee provides leadership and expert technical advice on developing and implementing...


  • Washington, United States US Office of the Chief Information Officer Full time

    **Duties**: As a/an **IT Cybersecurity Specialist (INFOSEC) (Direct Hire)**, you will: - Consult and negotiate with senior level officials to coordinate, communicate, and create buy-in on recommendations. - Develop and implement procedures, guidelines, processes, and tools to align business practices with government-wide regulations and policies. - Serve as...


  • Washington, United States US Defense Information Systems Agency Full time

    **Duties**: - Performs the full range of activities relating to IT cyber engineering and protection to include in-garrison support, trip site support, and continuity of operations locations. - Performs strategic planning; capital planning and investment control; resource management; architecture and infrastructure planning and management; technology...


  • Washington, United States US Office of the Chief Information Officer Full time

    **Duties**: As an **IT Cybersecurity Specialist (INFOSEC) (Direct Hire)**, you will: - Assist in ensuring the confidentiality, integrity, and availability of systems, networks, and data through the planning, analysis, development, implementation, maintenance, and enhancement of information systems security programs, policies, procedures, and tools. -...


  • Washington, United States US Treasury, Departmental Offices Full time

    **Duties**: As a Supervisory IT Specialist (INFOSEC), you will: - Manage a staff of security specialists performing duties on multiple projects and programs within the Department. - Serve as advisor to the Director, Enterprise Infrastructure Cybersecurity on telecommunications, cloud, and ICAM security policy for the Department of the Treasury and its...


  • Washington, United States US Treasury, Departmental Offices Full time

    **Duties**: As an Information Technology Specialist (INFOSEC), you will: - Serve as an IT technical expert in providing expertise in the development and implementation of information security policies and procedures. - Ensure measurable progress in meeting the requirements of Section 8 of Executive Order (EO) 14028 on Improving the Nation's Cybersecurity...


  • Washington, United States US Treasury, Departmental Offices Full time

    **Duties**: As a Supervisory IT Specialist (INFOSEC), you will: - Develop and recommend strategic direction for Treasury IT national security and policy-related cyber security activities and management of staff and resources. - Provide leadership and planning to develop and implement a disciplined cyber security management strategy which focuses on managing...


  • Washington, United States National Guard Employment Network Full time

    Job Description ATTENTION MILITARY AFFILIATED JOB SEEKERS - Our organization works with partner companies to source qualified talent for their open roles. The following position is available to Veterans, Transitioning Military, National Guard and Reserve Members, Military Spouses, Wounded Warriors, and their Caregivers. If you have the required skill set,...