Cyber Security Analyst Sr Advisor - TS/SCI w/ Polygraph jobs in United States
cer-icon
Apply on Employer Site
company-logo

General Dynamics Information Technology · 4 days ago

Cyber Security Analyst Sr Advisor - TS/SCI w/ Polygraph

General Dynamics Information Technology is a global technology and professional services company that delivers consulting, technology and mission services. They are seeking a Cyber Security Analyst Sr Advisor to build strong lines of cyber defense and ensure the security of clients' missions by conducting vulnerability analysis, creating documentation, and coordinating with stakeholders on cybersecurity policies.

Artificial Intelligence (AI)Cloud ComputingConsultingCyber SecurityInformation Technology
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Provide vulnerability analysis and reporting on accredited information systems
Create documentation such as SOPs, internal process documents and input into cyber policies that support the continuous monitoring of accredited information systems
Coordinate with information system POCs for plan updates and mitigation strategies to ensure overall health of IT systems, networks and applications
Interprets, analyzes, and reports all events and anomalies in accordance with computer network directives, including initiating, responding, and reporting discovered events
Ensures that cybersecurity plans, controls, processes, standards, policies, and procedures are aligned with cybersecurity standards
Develops techniques and procedures for conducting cybersecurity risk assessments and compliance audits, the evaluation and testing of hardware, firmware and software for possible impact on system security, and the investigation and resolution of security incidents such as intrusion, frauds, attacks or leaks
May coach and provide guidance to less-experienced professionals
May serve as a team or task lead
Conduct comprehensive risk assessments to identify vulnerabilities and threats
Assist with development and maintenance of the organization’s risk management framework
Collaborate with stakeholders to define and implement security policies and controls
Contribute to incident response planning and post-incident analysis
Prepare risk reports and present findings to senior management
Stay updated on the latest cyber security trends, threats, and technologies
Provide vulnerability analysis and reporting on accredited information systems. Experience in scanning information systems using scanning tools such as Tenable/Nessus, AppDetective, Rapid7, WebInspect
Strong writing skills to create documentation such as SOPs, internal process documents and input into cyber policies that support the continuous monitoring of accredited information systems
Coordinate with information system POCs for plan updates and mitigation strategies to ensure overall health of IT systems, networks and applications
Experience with architecture design, system and network analysis, vulnerability and risk assessments, and security assessment of hardware and software
Perform some manual data aggregation and normalization tasks until automated solutions are developed
Strong understanding of cloud environments and assessing systems within cloud environments focusing on security posture
Experience with continuous monitoring and plans of actions and milestones (POA&Ms)
Understanding of NIST 800-53, 800-137 and Risk Management Framework (RMF)
Knowledge of DoD Security Technical Implementation Guides (STIGs)
Demonstrated experience with cyber security concepts to include encryption services, access control, information protection, network security
Experience with AWS and Azure cloud security compliance
Knowledgeable of various cloud services to include Infrastructure as a Service, Platform as a Service, Software as a Service
Possesses strong analytical and problem solving skills
Security clearance: TS/SCI with Polygraph
Desired Technologies/Tools:
Certified in Cloud Security for AWS and Azure
Security Certifications to include CISSP, CISM, CISA, CEH, NCSF
Demonstrated experience in IT best practices regarding application, enterprise system, and network security

Qualification

AWSRisk Management Framework (RMF)Continuous MonitoringNIST 800-53Cyber Security ConceptsVulnerability AnalysisCloud Security ComplianceAnalytical SkillsWriting SkillsProblem Solving SkillsTeam LeadershipCommunication Skills

Required

Top Secret SCI + Polygraph clearance level must currently possess
Top Secret SCI + Polygraph clearance level must be able to obtain
8 + years of related experience
US Citizenship Required
Cloud: Amazon Web Services (AWS), Continuous Monitoring, Risk Management Framework (RMF), Standard Operating Procedure (SOP)
Conduct comprehensive risk assessments to identify vulnerabilities and threats
Assist with development and maintenance of the organization's risk management framework
Collaborate with stakeholders to define and implement security policies and controls
Contribute to incident response planning and post-incident analysis
Prepare risk reports and present findings to senior management
Stay updated on the latest cyber security trends, threats, and technologies
Provide vulnerability analysis and reporting on accredited information systems
Experience in scanning information systems using scanning tools such as Tenable/Nessus, AppDetective, Rapid7, WebInspect
Strong writing skills to create documentation such as SOPs, internal process documents and input into cyber policies that support the continuous monitoring of accredited information systems
Coordinate with information system POCs for plan updates and mitigation strategies to ensure overall health of IT systems, networks and applications
Experience with architecture design, system and network analysis, vulnerability and risk assessments, and security assessment of hardware and software
Perform some manual data aggregation and normalization tasks until automated solutions are developed
Strong understanding of cloud environments and assessing systems within cloud environments focusing on security posture
Experience with continuous monitoring and plans of actions and milestones (POA&Ms)
Understanding of NIST 800-53, 800-137 and Risk Management Framework (RMF)
Knowledge of DoD Security Technical Implementation Guides (STIGs)
Demonstrated experience with cyber security concepts to include encryption services, access control, information protection, network security
Experience with AWS and Azure cloud security compliance
Knowledgeable of various cloud services to include Infrastructure as a Service, Platform as a Service, Software as a Service
Possesses strong analytical and problem solving skills
Security clearance: TS/SCI with Polygraph

Preferred

Certified in Cloud Security for AWS and Azure
Security Certifications to include CISSP, CISM, CISA, CEH, NCSF
Demonstrated experience in IT best practices regarding application, enterprise system, and network security

Benefits

401K with company match
Comprehensive health and wellness packages
Professional growth opportunities including paid education and certifications
Rest and recharge with paid vacation and holidays
Variety of medical plan options, some with Health Savings Accounts
Dental plan options
A vision plan
A 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match
Full flex work weeks where possible
Variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave
Short and long-term disability benefits
Life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance

Company

General Dynamics Information Technology

company-logo
General Dynamics Information Technology is an IT consulting company that specializes in cyber security, AI, and quantum computing. It is a sub-organization of General Dynamics.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Paul Nedzbala
Senior Vice President
linkedin
leader-logo
Ben Buckley
Vice President and General Manager
linkedin
Company data provided by crunchbase