Cybersecurity Auditor

Springfield, VA

Apply now Apply later

**ACTIVE TS/SCI SECURITY CLEARANCE REQUIRED**

Reporting directly to the Chief for Cyber Readiness, you will provide audit support that manages NGA’s preparation for, execution of, and response to external cyber audits such as Command Cyber Operational Readiness Inspection (CCORI), Command Cyber Readiness Inspection (CCRI), Cybersecurity Service Provider (CSSP), Federal Information Security Management Act (FISMA), and Federal Information Systems Controls Audit Manual (FISCAM) audits. This includes, but is not limited to, aggregating documents and artifacts, securing the facilities and infrastructure necessary to house auditors and meetings, developing presentations, briefs, and other products as needed to brief stakeholders on audit readiness status, coordinating audit activities across the NGA enterprise, and conducting routine internal audit assessments to ensure a continuous level of audit readiness. Candidates performing audit support services shall have or obtain within six months of start a certification that is compliant with DoD 8140.01 and DoD 8570.01-M 1040 IAT Level II and CSSP Auditor.

What you get to do:

  • Ensure the Cybersecurity Operation Cell (CSOC) is prepared to successfully pass inspections and audits at all times; this includes but is not limited to identifying the audit criteria for CCRI/CCORI, FISMA, FISCAM, and CSSP audits
  • Review regulations, directives, guidance, grading criteria, regulations, and other documents and products as required to identify applicable cybersecurity standards and inspection criteria;
  • Perform self-assessments of CSOC services to identify deficiencies, gaps, or other issues and provide remediation recommendations to the Chief of Cyber Readiness
  • Coordinate and collaborate with other Contracts, Government entities, and activities to identify and remediate any findings outside the direct control of TCS staff
  • As required, provide status briefings and reports to the Government on the status of findings and remediation status
  • Regularly attend meetings held both internally and community-wide
  • Develop, update, and maintain, dashboards, charts, documents, reports, and other products as required to accurately depict NGA’s audit readiness
  • Provide input to the Weekly CSOC Status Report
  • Coordinate and collaborate with any internal or external stakeholders (government and contractor) as needed or directed by the government in support of this service

What you need:

  • Considerable experience preparing organizations for CCRI/CCORI, CSSP, and FISMA audits
  • Strong understanding of the NIST Cybersecurity Framework
  • Working knowledge of DOD Cybersecurity Services Evaluator Scoring Metrics (ESM) V.10
  • Working knowledge of DoDIN Inspection Coordination Guides
  • Working knowledge of DoDIN Inspection Pre-Deployment Checklists
  • Working knowledge of the areas of CCORI to include, but not limited to, DCO-IDM effectiveness, Traditional Security STIG checks, Contributing Factors and CND Directive scoring
  • A minimum of 6 years demonstrated experience supporting an IC or DoD agency in an auditor role
  • Strong understanding of cybersecurity compliance policy, governance, programs, processes, and metrics.
  • Excellent verbal and writing skills with the ability to write clear and concise assessment reports
  • Demonstrated experience providing briefings to an executive audience.
  • IAT Level II certified
  • Willingness to obtain CSSP Auditor certification within 6 months of joining the team

What is ideal:

  • ISACA CISA Certified
  • IAT Level III Certified

Additional Information

  • All your information will be kept confidential according to EEO guidelines.
  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically $125-135k. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range.
  • Highlights of our benefits include Health/Dental/Vision, 401(k) match, Accrued PTO, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and more!

Job applicants that are interested in one of our openings and may require a reasonable accommodation to participate in the job application or interview process, should contact us to request an accommodation.

 

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0
Category: Compliance Jobs

Tags: Audits CISA Clearance Clearance Required CND Compliance CSOC DCO DoD DoDD 8140 DoDD 8570 FISMA Governance ISACA NIST Security Clearance TS/SCI

Perks/benefits: 401(k) matching Career development Health care

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.