
Senior Cybersecurity Compliance Specialist
Salary undisclosed
Checking job availability...
Original
Simplified
ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a and
ASRC Federal is looking for a Cybersecurity Compliance Specialist for developing and implementing information assurance/security processes and procedures, coordinating and evaluating security programs, and recommending solutions to support customer requirements. The role involves performing security analysis and development, supporting the cybersecurity program at headquarters and field sites, and performing duties as an Information System Security Officer (ISSO). The specialist will also conduct controls assessments, develop cybersecurity reports, and support various compliance activities.
Key Responsibilities:
Information Assurance and Security:
Security Analysis and Development:
Cyber Operations:
Information System Security Officer (ISSO) Support:
Controls Assessor:
Information Assurance:
Qualifications:
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.
EEO Statement
ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.
Other details
ASRC Federal is looking for a Cybersecurity Compliance Specialist for developing and implementing information assurance/security processes and procedures, coordinating and evaluating security programs, and recommending solutions to support customer requirements. The role involves performing security analysis and development, supporting the cybersecurity program at headquarters and field sites, and performing duties as an Information System Security Officer (ISSO). The specialist will also conduct controls assessments, develop cybersecurity reports, and support various compliance activities.
Key Responsibilities:
Information Assurance and Security:
- Develop and implement information assurance/security processes and procedures.
- Coordinate, develop, and evaluate security programs for the organization.
- Recommend information assurance/security solutions to support customers' requirements.
- Identify, report, and resolve security violations.
- Establish and satisfy information assurance and security requirements based on the analysis of user, policy, regulatory, and resource demands.
- Support customers at the highest levels in the development and implementation of doctrine and policies.
- Apply know-how to common user systems and specialized security features and procedures.
Security Analysis and Development:
- Perform analysis, design, and development of security features for system architectures.
- Analyze and define security requirements for computer systems, including mainframes, workstations, and personal computers.
- Design, develop, engineer, and implement solutions that meet security requirements.
- Provide integration and implementation of computer system security solutions.
- Analyze general information assurance-related technical problems and provide basic engineering and technical support in solving these problems.
- Perform vulnerability/risk analyses of computer systems and applications during all phases of the system development life cycle.
- Ensure that all information systems are functional and secure.
Cyber Operations:
- Support the customer in managing all aspects of its Cybersecurity program, including IT systems at headquarters and field sites, stand-alone and network National Security Systems (NSS), general support systems, industrial control systems (ICS), supervisory control and data acquisition (SCADA) systems, industrial monitoring systems, wireless systems, and networks.
Information System Security Officer (ISSO) Support:
- Perform duties of an ISSO for current and future boundaries that support the customer's work scope.
- Support and perform internal audits, assessments, inspections, and reviews of the state of headquarters accreditation boundaries.
- Coordinate with and assist field organizations with the integration of mission systems into the management framework of the MIPP program.
- Act as a subject matter expert on the responsible system and communicate necessary cyber-related information to the System Owner.
- Develop and remediate Plan of Action and Milestones (POA&M), perform categorization calculations, and recommend corrective action decisions.
- Develop, test, and review disaster recovery and Continuity of Operations Plans (COOPs).
- Perform log review and establish/update ISSO SOPs.
- Draft, maintain, and update all FISMA artifacts and shepherd all Assessment and Authorization (A&A) documents.
Controls Assessor:
- Maintain a master schedule of cybersecurity oversight assessments and site assistance visits.
- Evaluate system controls, capture artifacts and evidence of control compliance, and assess weaknesses or deficiencies identified.
- Draft Security Assessment Reports (SAR) and evaluate security, contingency, incident response, and other plans or documents.
- Perform independent assessments using NIST cybersecurity guidelines and policy.
- Conduct vulnerability testing/scans of external network interfaces and web applications.
Information Assurance:
- Support Office of the Chief Information Officer (OCIO) and Office of Management and Budget (OMB)-required reporting, data calls, and other input.
- Develop cybersecurity reports and support the customer's Privacy Program.
- Provide support for privileged access requests, software exception requests, ad-hoc data calls, and Freedom of Information Act (FOIA) requests.
- Prepare quarterly and annual Federal Information Security Management Act (FISMA) reports.
- Develop and maintain Cybersecurity/Privacy Dashboards.
Qualifications:
- Possesses and applies expertise across key tasks and high-impact assignments.
- Plans and leads major technology assignments.
- Evaluates performance results and recommends major changes affecting short-term project growth and success.
- Functions as a technical expert across multiple project assignments.
- May supervise others.
- Must possess at least 10 years of relevant work experience and a bachelor's degree from an accredited university in a related field.
- A postgraduate degree from an accredited university may substitute for 6 years of experience.
- One year of relevant experience may be substituted for one year of required education.
- Successful candidate is subject to a background investigation by the government and must be able to meet the requirements to hold a position of public trust.
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.
EEO Statement
ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.
Other details
- Job Family Information Technology
- Job Sub-Family Cyber Security
- Pay Type Salary
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Report this job