Acara Solutions is seeking an Information Assurance Specialist for our client in Canonsburg, PA.
- The candidate will be designated as an Information Assurance Professional (IAP) supporting multiple Special Access Programs administering the Information Assurance (IA) Cyber duties for government customers.
- Components of the IA program include Assessment and Authorization (A&A) activities (documentation preparation, system configuration/validation, certification testing), security sustainment activities (hardware change management, software change management, account management, media protection, user interface, file transfers), conducting self-inspections, audit trail review, and delivering information systems security education and awareness.
- Assist them in identifying solutions to complex compliance and security problems.
- The IAP will coordinate duties with the System Administrators or Information Technology (IT) staff to ensure all configuration requirements are implemented and functional.
- The IAP will conduct technical and nontechnical reviews and audits as the Information Assurance Manager prescribes.
- As a member of the Information Assurance Security team, the IAP supports system security categorization efforts, security requirements selection/analysis, and security control assessments and performs continuous monitoring.
- Executes or supports the execution of A&A activities, including developing necessary security documentation, including items such as System Security Plans, Security Assessment Reports, SCTM, and POA&Ms in compliance with IA policy.
- Perform weekly system audit reviews, media reviews, and hardware/software configuration management.
- Executes security testing and evaluation to ensure correct implementation of security controls.
- Supports the assessment and mitigation of vulnerabilities throughout a systems life cycle.
- Conduct IA security education training for all system users on appropriate risk mitigation strategies.
- Perform incident response and cleanup actions, when necessary, per company or customer directions.
- Ensure systems are operated, maintained, and disposed of by internal security policies and procedures outlined in the System Security Plan (SSP).
- Assume ISSM responsibilities as assigned by the Region Manager and/or in the absence of the ISSM.
- Maintains contact with external customer security professionals.
Required Skills / Qualifications:
- Bachelor's Degree in Engineering or Science or Mathematics or STEM.
- Minimum of 5 years experience with cyber security specifications such as the Risk Management Framework (RMF), JSIG (Joint SAP Implementation Guide), ICD-503, and NIST SP 800-53.
- Minimum of 5 years experience in creating POA&Ms, developing corrective action plans, and writing security plans, policies, and procedural documentation (not just reviewing or performing documentation review).
- Minimum of 5 years experience implementing government security requirements, including technical computer/network system auditing.
- Minimum of 5 years experience in Assured File Transfer (AFT) processes and tools.
- Minimum of 5 years experience with various security assessment/hardening tools - STIGs, SCAP, ACAS, Nessus.
Preferred Skills / Qualifications:
- Master's Degree.
- Systems administration experience.
- Excellent writing, speaking, analytical, and customer service skills.
- Ability to participate in or lead security work groups.
- Must be a self-starter capable of multitasking and efficiently managing your time in a dynamic environment while needing minimal supervision.
- Demonstrated comprehensive knowledge of the NISPOM, JSIG, ICD-503, NIST SP 800-53, and CNSSI 1253.
- DoD 8140 IAM-II level professional certification (Security + CE, CAP, GSLC).
Additional Information:
- Upon offer of employment, the individual will be subject to a background check and a drug screen.
- Active Secret DoD Clearance.
- In compliance with federal law, all persons hired will be needed to verify identity and eligibility to work in the United States and to complete the necessary employment eligibility verification form upon hire.
- Under the International Traffic in Arms Regulations (ITAR), all employees assigned to this client must provide documentation verifying their status as a 'U.S. Person,' as defined in ITAR clause 120.15. A U.S. Person is a protected individual under the anti-discrimination provisions of U.S. immigration laws.
Aleron companies (Acara Solutions, Aleron Shared Resources, Broadleaf Results, Lume Strategies, TalentRise, Viaduct) are Equal Employment Opportunity and Affirmative Action Employers. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender identity, sexual orientation, national origin, genetic information, sex, age, disability, veteran status, or any other legally protected basis. The Aleron companies welcome and encourage applications from diverse candidates, including people with disabilities. Accommodations are available upon request for applicants taking part in all aspects of the selection process.
Applicants for this position must be legally authorized to work in the United States. This position does not meet the employment requirements for individuals with F-1 OPT STEM work authorization status.
Apply
|