Security Jobs
Security Analyst C&A
Indus Corporation
Washington, DC
Job Description
C&A Analyst job description: (3 positions)
The C&A Analyst will work as part of a Team to obtain system information and documentation and complete C&A documentation, track and close action items, conduct annual security testing, and assist with FISMA reporting.
Responsibilities:
Gather data and documentation in support of certification and accreditation activities
Evaluate information and generate interview questions.
Participate in interviews and demonstrations to gather system information and obtain an understanding of system functionality and data types
Prepare Meeting minutes
Complete Security Plan following Team procedures and template
Complete Risk Assessment following Team procedures and template
Complete Security test plan and security testing following Team procedures and template
Create Plan of Actions and Milestones (POA&Ms) and prepare for entry in FISMA reporting tool
Track and evaluate completion of POA&Ms
Support FISMA reporting
Qualifications:
Required
Bachelors Degree in Computer Systems, or equivalent experience
Three years of recent experience in writing C&A documentation according to NIST standards for a Federal civilian agency
Good interpersonal skills to work with external customers, management, and internal team members
Good verbal and written communication skills.
In depth knowledge of security concepts per NIST 800-53
Three years experience developing security plans and risk assessments using standard templates
Two years experience developing security test plans per NIST 800-53A
Two years experience conducting security tests for major applications per NIST 800-53A
One year experience conducting security tests for general support systems per NIST 800-53A
Desired
Experience with producing FISMA Reports using CSAM
Experience conducting and documenting Disaster Recovery and/or contingency plan tests.
Company Information
For fifteen years, INDUS has been a trusted leader of full lifecycle Information Technology solutions and services to the Federal Government. With operations across the nation, and capacity for immediate services in the most secure government locations, INDUS has achieved outstanding results for Federal, Civilian, Homeland Security, Defense, and Intelligence agencies.
Recognized as the 8th largest software developer and 15th largest IT employer in the Washington, DC area - INDUS is excited to announce an opportunity for a Certification and Accreditation Specialist in Washington DC.
Requirements
Must possess proficient written and verbal communication skills in order to effectively interact with clients.
CISSP and SANS Certifications desired, but not required.
BS in Computer Information Systems or equivalent experience.
Minimum of two (2) or more years of progressive information security experience with Federal Government projects (non-DOD agencies).
Minimum of two (2) years of hands-on experience in the following:
Conducting security assessments and documenting the results using NIST 800-53A.
NIST SP800-18 Guide for Developing Security Plans for Federal Information Systems
NIST SP800-30 Risk Management Guide for Information Technology Systems
NIST SP800-53 Recommended Security Controls for Federal Information Systems
Must possess proficient written and verbal communication skills in order to effectively interact with clients.
Benefits/Salary
Full benefits to include 401k
Contact
Yusuf Hassan
For more information, visit our website
This job was posted on:
Oct 20, 2009
Security Directions: A Virtual Conference
Available On Demand Sept. 30 - Dec. 30
Join us for a virtual event with candid, expert information on top security challenges and issues - all from the comfort of your desktop.
Protecting PII: How to Work with IT to Manage Risk
Understand the critical nature of the test data privacy problem and get tips on how to work with IT to implement a test data privacy program.
- More Headlines
- Change Topic
Data Protection
- Hacks of Chinese Temple Were Online Kung Fu, Abbot Says
- Microsoft Issues Security Advisory on IE Vulnerability
- Checklist: 11 Security Tips for Black Friday, Cyber Monday
- 4 Cheap Options to Monitor Networks for Evidence
- Five Ways to Lose Your Identity (and Wallet) This Holiday Season
- Infosec and Business Strategy Part 1
- New Attack Fells Internet Explorer
- Global Warming Research Exposed After Hack
- Cisco's Free IPhone App Grabs Security Feeds
- Security Pro Says New SSL Attack Can Hit Many Sites


