Cybersecurity Analyst (CISSP, CISA)

at Esteem IT
Published May 4, 2022
Location Atlanta, GA
Category Default  
Job Type Full-time  

Description

Job Cybersecurity Analyst (682060) Client State of Georgia Location Atlanta, GA (Remote work allowed Candidate must be available to report onsite as directed by the client) Visa Any Dept Georgia Dept. of Human Services Interview Type Web cam Interview only NOTE DO NOT SUBMIT CANDIDATES PREVIOUSLY POSTED TO REQ676229 Job Description The Office of Information Technology is the office within DHS that provides computing, applications management, IT procurement, network and telecommunications services to all DHS divisions and offices. The Cybersecurity Analyst job responsibilities include Under limited supervision Analyze datainformation from one or multiple sources to conduct preparation of the environment, respond to requests for information, and submit intelligence collection and production requirements in support of planning and operations. Interact at multiple levels of the organization to establish and maintain a strong and adaptive security posture that aligns with organizational risk tolerance, information access requirements, business strategies, and compliance requirements. Integrate overarching security frameworks across multiple, complex disciplines in support of the business needs of the Agency to provide customer-focused technology solutions in a secure, cost-effective, and efficient manner. Coordinate and oversee the production of evidence to support internal and external audits. Conduct internal risk, vulnerability, and compliance assessments to Identify risks, vulnerabilities, and compliance shortcomings and recommenddevelop security measures, policies, and controls for riskvulnerability mitigation and remediation of compliance findings. Prepare andor update incident response plans and perform incident response activities as directed and in accordance with established Agency procedures and guidelines and those of the Georgia Technology Authority (GTA). Ensure periodic monitoring of audit logs occurs in accordance with requirements, and report findings and concerns for further analysis andor action, including breach notification and initiation of incident response, in accordance with Agency protocolsprocedures and CISO directionguidance. Work with developers to plan, implement, manage, and coordinate appropriate security measures for information systemsapplications that control access to data, and prevent unauthorized modification, destruction, or disclosure of information in accordance with federal, state, local, and agency requirements, policies, and directives. Prepare andor update Plan of Actions Milestones (POAM) that identify security weaknesses and establish milestones and compensating controls for remediating these weaknesses and tracking the progress and effectiveness of the remediation. Serve as a Subject Matter Expert (SME), advising on current best practice and strategies for the protection, auditing, and monitoring of data, data storage, and transmission paths. Work with business owners, IT managers, staff, and vendors to provide timely and efficient coordination of information assurancesecurity services to meet Agency needs. Prepare and communicate status of Agency information security programs and projects to senior executives through oral and written reports and presentations. Assist with information security awareness training activities and preparation of awareness training materials. Develop and communicate security metrics to assess effectiveness of, and compliance with, the Agencyrsquos InfoSec policies and controls. Performs other professional responsibilities as assigned. Qualifications Bachelor's degree in information technology, computer science, information assurance, or a related field from an accredited college or university AND Five years of information technology experience, One year of which in information security or information assurance. Note An equivalent combination of education and job specific experience that provided the knowledge, experience and competencies required to successfully perform the job at the level listed may be substituted on a year-over-year basis. Required SkillsQualifications Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Certified Information Systems Auditor (CISA) Demonstrated professional experience developing and communicating an information security strategy and aligning projects, initiatives, and resources to execute against the strategy SKILL Required Desired Required Experience Candidate Experience Certified Information Systems Security Professional (CISSP) or Certified Information Systems Auditor (CISA) Required Demonstrate knowledge of network, operating system, database and application security Required 02 Years Experience implementing and complying with Federal and State Laws Required 02 Years Knowledge of current and emerging (Next Gen) Information Security Technologies and Practices Required 02 Years Working knowledge of NIST 800-53 andor CMS MARS-E 2.0 Required 02 Years Experience in Cloud-based solutions and environments Required 02 Years Bachelor's degree in information technology, computer science, information assurance, or a related field from an accredited college or university Required Interested Available candidates are kindly requested to share resume to yugandhar(at)esteemit(dot)com

Drop files here browse files ...