Assessment Authorization Analyst

Ashburn, VA, USA

OneZero Solutions

OneZero Solutions is an 8(a), Service-Disabled Veteran-Owned Small Business (SDVOSB) that is problem-solving and solutions-oriented. OneZero specializes in cybersecurity operations, information assurance, computer network operations, solutions...

View all jobs at OneZero Solutions

Apply now Apply later

We are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technically proficient and technically capable across a comprehensive range of cyber mission areas. OneZero full-time employees receive an extremely competitive benefits package that includes health/dental/vision/life insurance plans, 401K with company matching, PTO & paid holidays, employee referral program, and educational assistance. Additional details can be found on our website at: https://www.onezerollc.com/careers/

Position Title: Assessment Authorization Analyst

Clearance: TS/SCI

Location: Ashburn, VA

The selected OneZero candidate will apply experience as an Assessment and Authorization Analyst by evaluating CBP Information Systems being introduced to the environment to determine if they meet the required security standards and are authorized to operate within the CBP network, using the NIST Risk Management Framework (RMF) or similar methodologies

The candidate will be responsible for evaluating key points in the System Lifecycle, such as before its deployment or during major updates. Responsibilities may include creating security documentation (e.g., System Security Plan, Security Assessment Report) and obtaining the final authorization to operate (ATO).The candidate should be able to provide assistance in collecting information and answering questions in regard to many broad IT areas including, but not limited to security management controls, access controls, provisioning and deprovisioning, transfers, separation of duties, configuration management, contingency planning, application security, business process controls, interface controls, and data management system controls.

Primary Responsibilities
•Conducting formal assessments and deciding whether the system is authorized to operate
•Conducting a formal assessment of the system's security posture
•Evaluating whether security controls meet established standards and are functioning effectively
•Documenting results and making recommendations for improving security
•Recommending whether the system should be authorized to operate based on assessment outcomes
•Ensuring that the system has the necessary security controls to minimize risks

CANDIDATE MUST BE LOCAL TO ASHBURN, VA - SCHEDULE TBD - EXACT DAYS TBD - CANDIDATES WITH CBP BI, TS/SCI OR TS PREFERRED

Qualifications

A minimum of a Bachelor's degree coupled with 3-5 years' experience in the Information Technology, Computer Science, IT, Information/Cyber Security field from an accredited college or university arena or Master's Degree with 1+ years of relevant experience.
Superior writing, communication and critical analysis skills•Deep understanding of Information Assurance, Information Technology and Information Management concepts, processes and procedures
Experience with supporting the delivery of large and complex projects on time and within budget in government organizations
Minimum of 1-3 years of experience as an ISSO supporting major federal information systems/applications
Superior writing, communication and critical analysis skills
Deep understanding of Information Assurance, Information Technology and Information Management concepts, processes and procedures
Working knowledge of the following policies: NIST SP 800-37, Rev 2, Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy, DHS 4300A Policy and Handbook, CBP Information Systems Security Policies and Procedures Handbook (HB 1400-05D),

Prior experience with CBP
•DoD 8570 IAT III
•CompTIA Certified Advanced Security Practitioner (CASP+)
•ISC2 Certified in Governance, Risk and Compliance Certification (CGRC)
•ISC2 Certified Information Systems Security Professional (CISSP)
•ISACA Certified Information Systems Auditor (CISA).

OneZero Solutions, LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access www.onezerollc.com/careers as a result of your disability.

To request an accommodation, please contact us at recruiting@onezerollc.com or call (202) 987-2580.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0
Category: Analyst Jobs

Tags: Application security Business Intelligence CASP+ CGRC CISA CISSP Clearance Compliance CompTIA Computer Science DoD DoDD 8570 Governance ISACA NIST Privacy Risk management RMF Security assessment Security Assessment Report System Security Plan TS/SCI

Perks/benefits: 401(k) matching Career development Health care Insurance

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.