Cloud Security Assessor
6 months ago
It's fun to work in a company where people truly BELIEVE in what they're doing
We're committed to bringing passion and customer focus to the business.
****** Required DOD Secret or Top-Secret Clearance *******
SUMMARY
The Cloud Security Assessor / Information Assurance Analyst provides support to the agency. This position provides advanced technical expertise in conducting independent validation of assessments and continuous monitoring for authorized Cloud Service Providers Cloud Service
EDUCATION/EXPERIENCE
Bachelor's degree and a minimum of ten (10) years’ relevant Cyber Security Assessment and Cyber Security management experience, or equivalent combination of education / experience. Must have relevant consulting experience in information technology with specialized experience in an applicable functional area.
Five (5) years experience with DoD and FedRAMP Cloud Authorization on-going support to include continuous monitoring,
CERTIFICATES/LICENSES/REGISTRATION
Required DOD Top Secret Clearance, or Secret Clearance with TS Eligibility
Must have DOD 8570 IAM III Certification - CISSP, CISM,
ESSENTIAL DUTIES AND RESPONSIBILITIES
Essential duties and responsibilities include the following. Other duties may be assigned.
Performs analysis, conduct independent validation of assessments and continuous monitoring for authorized Cloud Service Providers Cloud Service Offerings. Develop processes and procedures to document the execution of the analysis and validations.
Reviews Cloud Service Provider documentation consisting of the System Security Plan (SSP), Security Assessment Plan (SAP), Security Assessment Report (SAR), and associated POA&M. For each certification validation, a Cloud Security Assessment Package is prepared to include validated cybersecurity controls, certifier's recommendation, certifier’s statement of residual risk, certification assessment briefing slides, and a provisional authorization. If the validation is leading to a Joint Authorization Board (JAB) Provisional Authorization (PA), a one-page executive summary is also required.
Performs DoD and FedRAMP Cloud Authorization on-going support to include continuous monitoring, annual reviews, and significant change requests of Cloud Service Providers through reviews, recommendations, written reports, and briefings. This task involves review and analysis of the following: Deviation Requests, Monthly One Pagers, Annual Assessments, Playbooks, Significant Change Requests, review of scan data, POA&Ms, and other changes to evaluate a CSP’s ongoing risk posture change.
Responsible for aiding in own self-development by being available and receptive to all training made available by the company.
Plans daily activities within the guidelines of company policy, job description and supervisor’s instruction in such a way as to maximize personal output.
Responsible for keeping own immediate work area in a neat and orderly condition to ensure safety of self and co-workers. Will report any unsafe conditions and/or practices to the appropriate supervisor and human resources. Will immediately correct any unsafe conditions as the best of own ability.
Plans daily activities within the guidelines of company policy, job description and supervisor’s instruction in such a way as to maximize personal output.
COMPETENCIES
Responsible for the integration of CNI Core Competencies into daily functions, including: commitment to integrity, knowledge/quality of work, supporting financial goals of the company, initiative/motivation, cooperation/relationships, problem analysis/discretion, accomplishing goals through organization, positive oral/written communication skills, leadership abilities, commitment to Affirmative Action, reliability/dependability, flexibility and ownership/accountability of actions taken.
COMPLIANCE
Promotes and encourages a culture of compliance with all applicable rules (federal, state, local, Federal Acquisition Regulations, Code of Federal Regulations, Prime Contract requirements, etc.) for themselves and the company as a whole. Fosters an environment in which they will report any violations or reasonably suspected violation of CNI policy, FAR, and/or CFR and are comfortable discussing the myriad compliance, conflict, FAR, CFR, etc. issues that arise during the performance of a government contract.
CERTIFICATES/LICENSES/REGISTRATION
Required DOD Top Secret Clearance, or Secret Clearance with TS Eligibility
Must have DOD 8570 IAM III Certification - CISSP, CISM,
JOB SPECIFIC KNOWLEDGE/SKILLS/ABILITIES
Expert knowledge of proven business and operations practices and strategies.
Proficient understanding of Restful APIs, JSON.
Proven ability to facilitate progressive organizational change / development within a growing organization.
Excellent organization and time management skills with ability to handle multiple priorities.
Exceptional analytical and problem-solving skills with ability to assess business requirements.
Exceptional leadership skills with ability to motivate, influence and lead others.
High level of proficiency in briefing managers and communicating recommendations regarding status of project operations.
Excellent verbal and written communications skills.
Superior customer service and relationship management skills.
Ability to effectively interact with management and staff at all levels within a multi-level organization.
Ability to proactively identify problems and effectively respond.
Ability to use discretion concerning highly sensitive and confidential data and information.
Proficient understanding of cross-browser compatibility issues and ways to work around them.
Experience with configuration management, version control, software packaging and deployment.
Ability to perform system analysis, design and development.
Ability to work well in a team as well as independently
Excellent oral and written communications skills.
LANGUAGE SKILLS
Ability to read, analyze and interpret common scientific and technical journals, financial reports and legal documents. Ability to respond to common inquiries or complaints from customers, regulatory agencies or members of the business community. Ability to write speeches and articles for publication that conform to prescribed style and format. Ability to effectively present information to top management, public groups and/or boards of directors.
MATHEMATICAL SKILLS
Ability to work with mathematical concepts such as probability and statistical inference, and fundamentals of plane and solid geometry and trigonometry. Ability to apply concepts such as fractions, percentages, ratios and proportions to practical situations.
REASONING ABILITY
Ability to define problems, collect data, establish facts and draw valid conclusions. Ability to interpret an extensive variety of technical instructions in mathematical or diagram form and deal with several abstract and concrete variables.
PHYSICAL DEMANDS
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of this job. Work is primarily performed in an office environment. Regularly required to sit. Regularly required use hands to finger, handle, or feel, reach with hands and arms to handle objects and operate tools, computer, and/or controls. Required to speak and hear. Occasionally required to stand, walk and stoop, kneel, crouch, or crawl. Must frequently lift and/or move up to 10 pounds and occasionally lift and/or move up to 25 pounds. Specific vision abilities required by this job include close vision, distance vision, depth perception, and ability to adjust focus. Exposed to general office noise with computers printers and light traffic.
EQUAL EMPLOYMENT OPPORTUNITY STATEMENT
All qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity, religion, national origin, disability, veteran status, age, marital status, pregnancy, genetic information, or other legally protected status.
CNI offers a comprehensive benefits package that includes:
Medical Dental Vision 401(k) STD/LTD/AD&D Employee Assistance Program (EAP) Paid Time Off (PTO) Training and Development Opportunities#indcni
If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us
-
Security Control Assessor
2 days ago
Washington, United States Mayvin® Full timeJob DetailsJob Location Washington, DC Remote Type Hybrid Position Type Full Time Education Level 4 Year Degree Travel Percentage Up to 25% Job Shift Day Job Category Professional Services Mayvin is currently seeking a Security Control Assessor to provide support to the Cybersecurity and Compliance initiative in the Department Homeland Security's Countering...
-
Security Control Assessor
2 days ago
Washington, United States Govcio LLC Full timeOverview: GovCIO is currently hiring for Security Control Assessor with a TS/SCI clearance in Washington, DC (4 days onsite, 1 day remote). Responsibilities: Provide an assessment of the severity of weaknesses or deficiencies discovered in the information system and its environment of operation and recommend corrective actions to address identified...
-
Security Control Assessor
2 days ago
Washington, United States LinQuest Full timeKey Responsibilities: A Security Control Assessor (SCA) with LinQuestwill be responsible for conducting a comprehensive assessment of the management, operational, and technical security controls employed within or inherited throughout the cybersecurity lifecycle for Information System (IS) services to determine the overall effectiveness of the controls.You...
-
Security Control Assessor Program Lead
3 days ago
Washington, United States Electrosoft Full timeResponsibilitiesManage a team of 4 Security Control Assessors.Develop a plan to manage and perform the SA&A activities for all customer information systems.Support the transition from NIST Special Publication 800-53, Revision-4 to Revision-5.Develop a NIST 800-53 rev5 implementation plan that will bring the customer in compliance with rev5 within 2...
-
washington, United States Electrosoft Full timeResponsibilitiesManage a team of 4 Security Control Assessors.Develop a plan to manage and perform the SA&A activities for all customer information systems.Support the transition from NIST Special Publication 800-53, Revision-4 to Revision-5.Develop a NIST 800-53 rev5 implementation plan that will bring the customer in compliance with rev5 within 2...
-
Security Control Assessor
3 weeks ago
Washington, United States General Dynamics Information Technology Full timeType of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:CASP CE+ -...
-
Security Control Assessor
4 weeks ago
Washington, United States General Dynamics Information Technology Full timeType of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Information SecurityJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:CASP CE+ -...
-
Facility Condition Assessor
4 weeks ago
Washington, Washington, D.C., United States Omniscius Consulting Full timeWe are seeking a skilled Facility Condition Assessor to support our customer in Washington, DC. This hybrid position involves performing inspections on large, complex, and diverse buildings/facilities.The role requires expertise and knowledge in multiple areas of construction to identify inventory and assess the condition of individual facility systems and...
-
Facility Condition Assessor
4 weeks ago
Washington, Washington, D.C., United States Omniscius Consulting Full timeWe are seeking an experienced Facility Condition Assessor to support our customer in Washington, DC. This hybrid position involves performing inspections on large, complex, and diverse buildings/facilities.The role requires expertise and knowledge in multiple areas of construction to identify inventory and assess the condition of individual facility systems...
-
Washington, Washington, D.C., United States ST2 ManTech Advanced Systems Intl Full timeAt ST2 ManTech Advanced Systems Intl, we are seeking an experienced Enterprise Security Architect for Federal Systems to join our team. This role is an exciting opportunity to work on innovative projects that protect our nation's security while providing a chance for advancement.The selected candidate will be responsible for assessing and implementing...
-
Cloud Security Architect
4 weeks ago
Washington, Washington, D.C., United States raag solutions Full timeAbout the Role:We are seeking a highly skilled Cloud Cybersecurity Specialist to join our team at Raag Solutions. The ideal candidate will have a strong background in cloud security and governance, with experience working with cloud platforms such as Amazon Web Services (AWS), Azure, and Google Cloud Platform (GCP).Key Responsibilities:Design and implement...
-
Cloud Security Architect
4 weeks ago
Washington, Washington, D.C., United States Chickasaw Nation Industries, Inc. Full timeChickasaw Nation Industries, Inc. is seeking an experienced Cloud Security Architect to join our team. The successful candidate will be responsible for designing and implementing secure cloud infrastructure for our organization.Salary: $120,000 - $180,000 per year, depending on experience.Job SummaryThe Cloud Security Architect will be responsible for...
-
Cloud Security Specialist
4 weeks ago
Washington, Washington, D.C., United States The Dignify Solutions LLC Full timeWe are seeking a skilled Cloud Security Specialist to join The Dignify Solutions LLC team. The ideal candidate will have significant experience in at least one major cloud platform (AWS, Azure, GCP) and a strong background in security engineering and tooling. Key responsibilities include:Key ResponsibilitiesCloud Security: Design and implement secure cloud...
-
Cloud Security Architect
4 weeks ago
Washington, Washington, D.C., United States IBM Full timeJob DescriptionIBM is seeking a highly skilled Cloud Security Architect to join our team. As a Cloud Security Architect, you will be responsible for designing and developing the overall security architecture for the cloud environment, ensuring alignment with FedRAMP, NIST 800-53, and other relevant security frameworks.Key Responsibilities:Design and develop...
-
Cloud Security Architect
4 weeks ago
Washington, Washington, D.C., United States Cynet Systems Full timeJob Title: Cloud Security ArchitectJob Summary:Cynet Systems is seeking a highly skilled Cloud Security Architect to design and deploy highly available, scalable, and secure cloud infrastructure and applications with a focus on AWS and Azure Cloud. The ideal candidate will have experience with security operations teams to build and maintain SIEM, SOAR, and...
-
Cloud Security Analyst
1 month ago
Washington, United States Tandym Group Full timeWe have a current opportunity for a Cloud Security Analyst - Remote on a contract basis. The position will be based in D.C. Metro. For further information about this position please apply.A Fortune 50 financial services company is seeking a highly motivated Cloud Security Analyst to support our client remotely. About the Opportunity: Fully RemoteSchedule:...
-
Cloud Security Analyst
1 month ago
washington, United States Tandym Group Full timeWe have a current opportunity for a Cloud Security Analyst - Remote on a contract basis. The position will be based in D.C. Metro. For further information about this position please apply.A Fortune 50 financial services company is seeking a highly motivated Cloud Security Analyst to support our client remotely.About the Opportunity:Fully RemoteSchedule:...
-
Cloud Security Analyst
2 months ago
Washington, United States Tandym Group Full timeWe have a current opportunity for a Cloud Security Analyst - Remote on a contract basis. The position will be based in D.C. Metro. For further information about this position please apply.A Fortune 50 financial services company is seeking a highly motivated Cloud Security Analyst to support our client remotely. About the Opportunity: Fully RemoteSchedule:...
-
Cloud Security Architect
4 weeks ago
Washington, Washington, D.C., United States Information Resource group, Inc. Full timeJob DescriptionInformation Resource Group, Inc. is seeking a highly skilled Cloud Security Engineer to collaborate with cross-functional teams to design and deliver secure cloud solutions. The ideal candidate will possess expertise in public and hybrid cloud models, with a focus on AWS and Azure Cloud.Daily Duties/Responsibilities:Design and deploy highly...
-
Cloud Security Architect
4 weeks ago
Washington, Washington, D.C., United States Warner Media, LLC Full timeJob Title: Cloud Security EngineerJob Summary:Warner Bros. Discovery is seeking a highly skilled Cloud Security Engineer to join our team. As a Cloud Security Engineer, you will be responsible for designing, deploying, and maintaining security measures to safeguard our cloud infrastructures across AWS, GCP, and Azure.Key Responsibilities: Design and...