Senior Cybersecurity Analyst Job at Tetrad Digital Integrity in Suffolk
Tetrad Digital Integrity, Suffolk, VA, United States, 23437
Tetrad Digital Integrity (TDI) is a leading-edge cybersecurity firm with a mission to safeguard and protect our customers from increasing threats and vulnerabilities in this digital age.
Our Suffolk, VA team is a looking for a Senior Cyber Security Analyst (SCSA) to provide senior technical analysis for IA/CS support and integration efforts to our DoD customer. The Senior CSA will perform in-depth analysis in various areas and technologies within RMF (A&A) packages.
RESPONSIBILITIES:
- Serves as a Senior Cybersecurity Analyst in support of Authorizing Official (AO) in the execution of Risk Management Framework (RMF) processes and procedures in support of the AO authorization decision. Performs risk and vulnerability assessments, remediation/mitigation techniques.
- Provide oversight in Continuous Monitoring (CONMON), vulnerability analyses, risk assessments, security controls analyses, remediation/mitigation techniques.
- Documents and provides technical reports and whitepapers on vulnerabilities associated with complex information systems and modern technologies in use within the Navy to inform risk decisions at all levels.
- Ability to perform extensive evaluation of work products, to include but not be limited to RMF, that are provided by external agency mission partners and/or Navy organizations or customers in support of Navy RMF projects or joint projects with DoD/Federal or external agencies.
- High level of competence in process analyses and DoD/Navy cybersecurity compliance requirements, RMF process and associated artifacts in support of the AO official duties and responsibilities.
- Coordinates with customers and program offices on the evaluation and compliance to DoD/Navy directives, policies, and instruction to include but not limited to Federal Information Security Management Act (FISMA), OMB A-130, NIST SP 800 Series, FIPS Publications, and Navy RMF governance. Assist in RMF A&A process negotiation and task management for accomplishing A&A activities.
- Prepares and updates A&A work products to obtain or maintain Authorization to Operate (ATO) approval.
- Provide technical lead support by providing subject matter expertise for complex, mission-critical, and strategic programs. Prepares reports, correspondence, white papers, letters, memos and other related correspondence in support of the AO role and assigned projects.
- Provides methods and procedures following modern technology trends and practices in agile methodologies.
- Has above average technical experience and knowledge in DoD Cloud architectures/technologies, DevSecOps, enterprise architectures, 5G, tactical platforms and specific unique processes to the DoD/Navy to include but not limited to DoD Ports, Protocols, and Services Management (PPSM), Cross Domain Solutions (CDS), Security Technology Implementation Guide (STIGS), SRG, ACAS, eMASS and other DoD tools used to support RMF stakeholders and associated organizational processes in support of Navy RMF and ATO approval.
- Interface with the Government on all matters pertaining to this PWS including the quality of and conformance to requirements and methodologies directly related to the contracted effort.
- Assist in projects and coordinate project activities as assigned in support of the Navy AO mission.
- Active Secret clearance
- More than 6 years in IT with major in Cybersecurity or related field. Requires experience in business process improvements/ analysis, lean/agile methodologies and providing administrative/technical support services and management of said services.
- Moderate to extensive experience in DoD Cloud architectures/technologies DevSecOps, RMF / A&A, enterprise architectures, LAN/WAN protocols and technologies, 5G, and other relevant technologies in use with modern enterprises.
- Extensive experience and understanding of DoD cybersecurity and policies, instructions and NIST publications as they relate to the Authorizing Official.
- Understanding of system and software SDLCs, and unique DoD domains such as Crossdomain solutions, PPSM.
- Excellent use of MS office tools and related services.
- Full understanding of Navy RMF and ability to coordinate and support RMF projects from beginning to end - until ATO is approved.
- Experience and understanding of DoD cybersecurity and policies, instructions SECNAV M-5239.2 and NIST publications.
- Possess one of the following from the DoD 8570 IAT Level II/CSWF Designation code 611 Advanced:
- Graduate degree from accredited University or CNSSI 4012-4016 Certificate or NDU CISO certificate-Chief Information Officer (CIO)
- Military training: NEC 741A Information System Security Manager
- Certifications: CISSP or CISM or CASP
TDI does business with the federal government, which restricts employment to individuals who are either US citizens or lawful permanent residents of the United States.
"TDI is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, sexual orientation, genetics, gender identity or expression, national origin, protected veteran status or disability status, or any other characteristic protected by federal, state or local laws."