IT Audit Specialist
405 ASHBURN VA (ASHBURN CACI/CLIENT REIMB SITE), United States
Full Time Entry-level / Junior USD 94K - 198K
CACI International Inc
The Opportunity:
CACI is currently looking for a Security IT Audit Specialist with agile methodology experience to join our BEAGLE (Border Enforcement Applications for Government Leading-Edge Information Technology) Agile Solution Factory (ASF) Team supporting Customs and Border Protection (CBP) client located in Northern Virginia! Join this passionate team of industry-leading individuals supporting the best practices in Agile Software Development for the Department of Homeland Security (DHS).
The Security IT Audit Specialist with both strong application and network security delivery skills will need to have a deep technical understanding of Cybersecurity and financial audit practices. They will work as an integral part of a highly productive team of seasoned technical professionals who thrive on supporting our customer's mission and growth objectives– responsible for designing, developing, leading, and implementing secure application and infrastructure capabilities for a variety of legacy and modernized systems and applications.
They will work in close collaboration with software developers/engineers, quality assurance engineers, stakeholders, and end users within Agile Engineering processes. They must have a working knowledge of enterprise class information assurance requirements, FISCAM, and network security and survivability.
They will also be responsible for supporting development of a spectrum of engineering artifacts that adequately, but succinctly captures system security requirements, application and network security design, and network security architecture. This position is responsible for ensuring that all assigned work activities are performed in a timely, secure, compliant and cost-effective manner while maintaining the highest quality of performance.
Responsibilities:
Serve as an Internal Audit Sustainment Team member responsible for the Audit Readiness, Sustainment and Security of custom coded and COTS applications and databases. Responsible for activities associated with delivery of Cybersecurity technical control implementation, configuration, and architectural solutions associated with customer-defined systems/software projects; basic responsibilities include:
- Implement Technical Audit Sustainment Program strategy
- Understand and assist developers with FISCAM compliance
- Enable assurance for information security during all phases of agile system development and deployment
- Secure SAP and custom designed financial support systems
- Assess entire system lifecycle requirements and network security impacts
- Enhance – Implement Cybersecurity vulnerability/ hardening testing
- Optimize – Cybersecurity development environment certification
- Work with SAP security administrators to ensure Separation of Duties, Access Controls, and audit support functionality is incorporated into the system
- Work with the CBP Independent Public Accountant (IPA) that is auditing the system by responding to request for information (RFI)s and delivering Provided by Client (PBC) data to the auditor.
- Develop Corrective Action Plans (CAPs) in response to Notifications For Record (NFRs) received from the IPA
- Evaluate the implementation and compliance of SAP GRC by working with SAP Security Administrators
- Architect & Engineer security – develop security goals, capabilities, controls, and architecture
- Maintain security posture – audit security settings, track security training, monitor threats, track reaccreditation and assist with synchronizing efforts for compliance with FISCAM and RMF
- Continuously evaluate and recommend innovative proven best business practices and tools to enhance defense-in-depth
- Monitor and inspect for approved software usage and implementation of approved security enabled software and tools
- Works to achieve, team objectives, operational plans with measurable contribution towards the achievement of results of the job function or completion of a project.
- Assist CBP with maintaining compliance with OMB Circular A-123 supporting management responsibilities for internal controls
- Apply information security in accordance with National/DHS/CBP directives security policy
Qualifications:
- Must be a U.S. Citizen with the ability to pass CBP background investigation, criteria will include:
- 3-year check for felony convictions
- 1-year check for illegal drug use
- 1-year check for misconduct such as theft or fraud
- College degree (B.S., M.S.) in Computer Information Systems, Finance or a related discipline
- Certifications: minimum Security+ CE or equivalent, CISSP, CISM or CISA preferred
- Professional Experience: Seven plus (7+) years related to technical experience with IT Financial Audit or FISCAM compliance
- Must be available to work onsite in Ashburn, VA one day per week.
- Working knowledge of and ability to assist others in the use of information security provisioning and monitoring tools to support process improvement
- Ability to apply advanced principles, theories, and concepts, and contribute to the development of innovative IA principles and ideas
- Experience working on unusually complicated problems and providing solutions that are highly creative and ingenious, exhibiting ingenuity, creativity, and resourcefulness
- Determining how Governance Risk and Compliance Tools (SAP GRC, Greenlight, etc..) can enhance compliance
- Implementing FISCAM, RMF, and NIST security solutions
- Developing compliance solutions for OMB Circular No. A-123 (management's responsibility for internal control in Federal agencies)
- Acting independently to expose and resolve problems
- Excellent written and verbal communication skills
- Strong collaboration skills and desire to work within a team
- Highly responsible, team-oriented individual with very strong communication skills and work ethic; self-starter
Desired:
- Experience as SAP Security Administrator
- Experience on an audit team for an IPA
- Knowledge for GRC tools to enhance compliance such as Greenlight and SAP GRC
- Experience as an Information System Security Officer (ISSO) for a system
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.
Your potential is limitless. So is ours.
________________________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
The proposed salary range for this position is:
$94,400 - $198,300CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.Tags: Agile Audits CISA CISM CISSP Clearance Clearance Required Compliance Finance Governance Monitoring Network security NIST RMF SAP Strategy
Perks/benefits: Career development Competitive pay Flex hours Flex vacation Startup environment Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.