• Security Specialist/CISSP

    Job Locations US-WV-Fairmont
    # of Openings
  • Qualifications

    • Bachelor’s Degree in IT/Computer Science with over 5 years of experience in security assessments
    • Over 5 years of experience in research, analysis, and recommendation of CS/IS policies and procedures
    • Familiarity with biometric systems and ABIS
    • CISSP is required
    • Familiarity with a variety of the IT security field’s concepts, best practices, policies, and procedures.
    • Extensive experience in network, database and web application security.
    • Working knowledge of NIST 800-53 controls, RMF, DIACAP, ISO 27000.
    • In depth knowledge of application, data, and web security.
    • Deep understanding of TCP/IP internetworking principles.
    • Familiarity with various web application attack methods including: DDoS, buffer overflows, brute force techniques, among others


    Job Description:
    • Develop and document test and evaluations activities necessary to ensure that the systems and networks obtain and maintain full accreditation with NIST 800-53 controls and RMF standards
    • Knowledge and experience with RMF and DIACAP conversion to RMF
    • Develop CS Policies, Procedures, and System Security Plans to support all ABIS systems by initially conducting a due diligence of all PM Biometrics CS documentation, comparing it to the prevailing Government and Industry standards, identifying any gaps, and making recommendations to all Government CS stakeholders.
    • Advise and support PM Biometrics leadership on CS design, transition, operation, configuration management, continual service improvement, enterprise architecture, and policy updates to mitigate cyber threats
    • Conduct periodic reviews and audits of all policies, procedures, and directives as threats evolve and report recommended updates to all CS documentation as appropriate.
    • Define processes and procedures for system hardening including strong user access controls and authentication, robust roles and privileges management, disciplined patching and scanning, firewall and boundary protection, and IDS/IPS capabilities
    • Develop policies and procedures for Incident Response/Disaster Recovery - containment, assessment, and risk remediation techniques.
    • Familiar with ISO 27000 requirements, FISMA standards
    • Support a holistic and integrated Cybersecurity approach ensures information confidentiality, integrity, and availability of AABIS/IABIS systems


    Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
    Share on your newsfeed