INflow Federal · 4 hours ago
Information Security Analyst
INflow Federal is a mission-driven small business focused on delivering innovative solutions in cybersecurity and data modernization. They are seeking an Information Security Analyst to support their Navy program, playing a critical role in ensuring secure and reliable information systems for mission success.
ConsultingInformation ServicesInformation Technology
Responsibilities
Utilize cyber security tools and applications, including ACAS, HBSS, Microsoft Defender for Endpoint (MDE), Microsoft Defender for Identity (MDI), and Splunk, to monitor, analyze, and remediate security events
Configure, implement, and maintain firewall policies in accordance with security requirements and approved configurations
Manage and assess network ports and protocols to ensure secure and authorized communications
Perform risk assessments and risk mitigation analyses to reduce threats and vulnerabilities to acceptable levels
Support and execute Security Test and Evaluation (ST&E) activities to validate system security controls and compliance
Develop, maintain, and support contingency planning activities, including backup, recovery, and continuity of operations
Manage and assess network ports and protocols to ensure secure and authorized communications
Perform day-to-day Vulnerability Remediation Asset Management (VRAM) activities to track, prioritize, and resolve identified vulnerabilities. Enter and maintain system baseline configurations in VRAM by uploading and validating vulnerability scan results from representative baseline systems
Apply computer security (CS) and information security (INFOSEC) concepts, principles, and requirements to protect enterprise IT systems and data
Ensure compliance with cybersecurity requirements including FISMA, DoDD 8100.02, DoDI 8500.01, DoDI 8520, DoDI 8530, DoDI 8531, SECNAVINST 5239 series, OPNAVINST 5239 series, and NIST Special Publication 800 series
Maintain full qualification in accordance with DoD 8570.01-M requirements
Qualification
Required
Demonstrated experience supporting cyber metrics analysis and reporting
Experience conducting incident response and mitigation activities
Experience performing risk mitigation analysis and developing corrective action recommendations
Experience developing and supporting contingency plans to ensure system resilience and continuity of operations
Bachelor's degree in an IT-related discipline (or IAT Level II Certification) with a minimum of 4 years of security experience
DoD Top Secret clearance is required
Utilize cyber security tools and applications, including ACAS, HBSS, Microsoft Defender for Endpoint (MDE), Microsoft Defender for Identity (MDI), and Splunk, to monitor, analyze, and remediate security events
Configure, implement, and maintain firewall policies in accordance with security requirements and approved configurations
Manage and assess network ports and protocols to ensure secure and authorized communications
Perform risk assessments and risk mitigation analyses to reduce threats and vulnerabilities to acceptable levels
Support and execute Security Test and Evaluation (ST&E) activities to validate system security controls and compliance
Develop, maintain, and support contingency planning activities, including backup, recovery, and continuity of operations
Manage and assess network ports and protocols to ensure secure and authorized communications
Perform day-to-day Vulnerability Remediation Asset Management (VRAM) activities to track, prioritize, and resolve identified vulnerabilities
Enter and maintain system baseline configurations in VRAM by uploading and validating vulnerability scan results from representative baseline systems
Apply computer security (CS) and information security (INFOSEC) concepts, principles, and requirements to protect enterprise IT systems and data
Ensure compliance with cybersecurity requirements including FISMA, DoDD 8100.02, DoDI 8500.01, DoDI 8520, DoDI 8530, DoDI 8531, SECNAVINST 5239 series, OPNAVINST 5239 series, and NIST Special Publication 800 series
Maintain full qualification in accordance with DoD 8570.01-M requirements