Assessment & Authorization Analyst (w/ active TS)

Ashburn, VA 20147, USA

Critical Solutions

Critical Solutions specializes in providing expert cyber security services in the areas of automation, integration and research development.

View all jobs at Critical Solutions

Apply now Apply later

Assessment & Authorization Analyst (w/ active TS)

Location: Ashburn, VA
Clearance: Top Secret w/ SCI eligibility
Full-time/ Hybrid
Schedule - Shift schedule TBD

JOB DESCRIPTION

Critical Solutions is seeking an Assessment & Authorization (A&A) Analyst to support our federal customer in Ashburn, VA.

The selected candidate will apply experience as an Assessment and Authorization Analyst by evaluating the Agency Information Systems being introduced to the environment to determine if they meet the required security standards and are authorized to operate within the angency's network, using the NIST Risk Management Framework (RMF) or similar methodologies

The candidate will be responsible for evaluating key points in the System Lifecycle, such as before its deployment or during major updates. Responsibilities may include creating security documentation (e.g., System Security Plan, Security Assessment Report) and obtaining the final authorization to operate (ATO).The candidate should be able to provide assistance in collecting information and answering questions in regard to many broad IT areas including, but not limited to: security management controls, access controls, provisioning and deprovisioning, transfers, separation of duties, configuration management, contingency planning, application security, business process controls, interface controls, and data management system controls.

PRIMARY ROLES AND RESPONSIBILITIES:

  • Conducting formal assessments and deciding whether the system is authorized to operate
  • Conducting a formal assessment of the system's security posture
  • Evaluating whether security controls meet established standards and are functioning effectively
  • Documenting results and making recommendations for improving security
  • Recommending whether the system should be authorized to operate based on assessment outcomes
  • Ensuring that the system has the necessary security controls to minimize risks

BASIC QUALIFICATIONS:

  • Must have possess a Top-Secret Clearance w/ SCI eligibility. In addition to the specific clearance requirement, all personnel must be able to obtain a favorable BI before joining the program.
  • A minimum of a Bachelor's degree coupled with 3-5 years' experience in the Information Technology, Computer Science, IT, Information/Cyber Security field from an accredited college or university arena or Master's Degree with 1+ years of relevant experience.
  • Superior writing, communication and critical analysis skills
  • Deep understanding of Information Assurance, Information Technology and Information Management concepts, processes and procedures
  • Experience with supporting the delivery of large and complex projects on time and within budget in government organizations
  • Minimum of 1-3 years of experience as an ISSO supporting major federal information systems/applications
  • Working knowledge of the following policies: NIST SP 800-37, Rev 2, Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and Privacy, DHS 4300A Policy and Handbook, CBP Information Systems Security Policies and Procedures Handbook (HB 1400-05D)
  • Must have an active and valid CompTIA Security+

PREFERRED QUALIFICATIONS:

  • DoD 8570 IAT III
  • CompTIA Certified Advanced Security Practitioner (CASP+)
  • ISC2 Certified in Governance, Risk and Compliance Certification (CGRC)
  • ISC2 Certified Information Systems Security Professional (CISSP)
  • ISACA Certified Information Systems Auditor (CISA).

Clearance Requirement: Possess an active Top DoD Secret Clearance. In addition, selected candidate must undergo background investigation (BI) and finger printing by the federal agency and successfully pass the preceding to qualify for the position. US CITIZENSHIP IS REQUIRED.


CRITICAL SOLUTIONS PAY AND BENEFITS:

Salary range $ - $. The salary range for this position represent the typical salary range for this job level and this does not guarantee a specific salary. Compensation is based upon multiple factors such as responsibilities of the job, education, experience, knowledge, skills, certifications, and other requirements.

BENEFIT SNAPSHOT: 100% premium coverage for Medical, Dental, Vision, and Life Insurance, Supplemental Insurance, 401K matching, Flexible Time Off (PTO/Holidays), Higher Education/Training Reimbursement, and more.

Apply now Apply later
Job stats:  0  0  0
Category: Analyst Jobs

Tags: Application security Business Intelligence CASP+ CGRC CISA CISSP Clearance Compliance CompTIA Computer Science DoD DoDD 8570 Governance ISACA NIST Privacy Risk management RMF Security assessment Security Assessment Report System Security Plan Top Secret

Perks/benefits: 401(k) matching Career development Flex hours Flex vacation Health care

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.