Description
Description
SAIC, a leading provider of systems development & deployment, targeting & intelligence analysis, systems engineering & integration, and training capabilities and solutions for the Intelligence Community, is seeking creative and dedicated professionals to fulfill their career goals and objectives while delivering mission excellence on programs of national importance.
We are seeking a highly motivated Cyber Security Analyst to join our National Intelligence Program supporting the operations, maintenance of a complex, hybrid on-premises and cloud enterprise IT environment. As a Cyber Security Analyst you will be responsible for designing, implementing, and maintaining the organization's cyber security assurance processes. This includes developing and implementing security policies and procedures, conducting security assessments, and monitoring the organization's cyber security posture.
Key Responsibilities:
- Develops and maintains the risk management framework
- Collaborates with stakeholders to define and implement security policies and controls
- Contributes to incident response planning and post-incident analysis
- Prepares risk reports and present findings to senior management
- Stays abreast of the latest cyber security trends, threats, and technologies
- Provide vulnerability analysis and reporting on accredited information systems
- Scans information systems using scanning tools such as Nessus, AppDetective, or others
- Creates documentation such as SOPs, internal process documents, and input into cyber policies that support the continuous monitoring of accredited information systems.
- Coordinates with information system POCs for plan updates and mitigation strategies to ensure overall health of IT systems, networks and applications.
- Develop continuous monitoring and plans of actions and milestones (POA&Ms)
- Develop ATOs following NIST guides and Risk Management Framework (RMF)
Qualifications
Required:
- Possess an active TS/SCI clearance with Polygraph
- Bachelor's degree in Computer Science, Information Technology, or equivalent experience
- 5+ years' experience with continuous monitoring and plans of actions and milestones (POA&Ms).
- 5+ years' experience working with NIST 800-53, 800-137 and the Risk Management Framework (RMF)
- Knowledge of DoD Security Technical Implementation Guides (STIGs)
- Demonstrated experience with cyber security concepts to include encryption services, access control, information protection, network security
- 5+ years' experience developing RMF documentation
- 5+ years' experience assessing systems within cloud environments focusing on security posture
- 5+ years' experience performing vulnerability and risk assessments, and security assessment of hardware and software
- Excellent written and oral communication skills, with the ability to articulate technical concepts to non-technical stakeholders
Desired:
- Knowledgeable of various cloud services to include Infrastructure as a Service, Platform as a Service, Software as a Service
- Computer Networking experience (e.g., TCP/IP, packet capture data structures, TLS and related data)
SAIC accepts applications on an ongoing basis and there is no deadline.
Covid Policy: SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site.
Apply on company website