Posted in

Assessment & Authorization – A&a – Analyst

Assessment & Authorization – A&a – Analyst

CompanyLeidos
LocationAshburn, VA, USA, Reston, VA, USA
Salary$85150 – $153925
TypeFull-Time
DegreesBachelor’s, Master’s
Experience LevelMid Level, Senior

Requirements

  • A minimum of a Bachelor’s degree coupled with 3-5 years’ experience in the Information Technology, Computer Science, IT, Information/Cyber Security field from an accredited college or university arena or Master’s Degree with 1+ years of relevant experience.
  • Superior writing, communication and critical analysis skills
  • Deep understanding of Information Assurance, Information Technology and Information Management concepts, processes and procedures
  • Experience with supporting the delivery of large and complex projects on time and within budget in government organizations
  • Minimum of 1-3 years of experience as an ISSO supporting major federal information systems/applications
  • Working knowledge of the following policies: NIST SP 800-37, Rev 2, Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy, DHS 4300A Policy and Handbook, CBP Information Systems Security Policies and Procedures Handbook (HB 1400-05D)
  • Must be a US Citizen.

Responsibilities

  • Conducting formal assessments and deciding whether the system is authorized to operate
  • Conducting a formal assessment of the system’s security posture
  • Evaluating whether security controls meet established standards and are functioning effectively
  • Documenting results and making recommendations for improving security
  • Recommending whether the system should be authorized to operate based on assessment outcomes
  • Ensuring that the system has the necessary security controls to minimize risks.

Preferred Qualifications

  • Prior experience with CBP
  • DoD 8570 IAT III
  • CompTIA Certified Advanced Security Practitioner (CASP+)
  • ISC2 Certified in Governance, Risk and Compliance Certification (CGRC)
  • ISC2 Certified Information Systems Security Professional (CISSP)
  • ISACA Certified Information Systems Auditor (CISA)