Security Jobs

CSO Wanted
» Post A Job » View All Jobs

Security Analyst C&A

Indus Corporation

Washington, DC

Job Description

C&A Analyst job description: (3 positions)

The C&A Analyst will work as part of a Team to obtain system information and documentation and complete C&A documentation, track and close action items, conduct annual security testing, and assist with FISMA reporting.

Responsibilities:

Gather data and documentation in support of certification and accreditation activities

Evaluate information and generate interview questions.

Participate in interviews and demonstrations to gather system information and obtain an understanding of system functionality and data types

Prepare Meeting minutes

Complete Security Plan following Team procedures and template

Complete Risk Assessment following Team procedures and template

Complete Security test plan and security testing following Team procedures and template

Create Plan of Actions and Milestones (POA&Ms) and prepare for entry in FISMA reporting tool

Track and evaluate completion of POA&Ms

Support FISMA reporting

Qualifications:

Required

Bachelors Degree in Computer Systems, or equivalent experience

Three years of recent experience in writing C&A documentation according to NIST standards for a Federal civilian agency

Good interpersonal skills to work with external customers, management, and internal team members

Good verbal and written communication skills.

In depth knowledge of security concepts per NIST 800-53

Three years experience developing security plans and risk assessments using standard templates

Two years experience developing security test plans per NIST 800-53A

Two years experience conducting security tests for major applications per NIST 800-53A

One year experience conducting security tests for general support systems per NIST 800-53A

Desired

Experience with producing FISMA Reports using CSAM

Experience conducting and documenting Disaster Recovery and/or contingency plan tests.

RESOURCE CENTER

Company Information

For fifteen years, INDUS has been a trusted leader of full lifecycle Information Technology solutions and services to the Federal Government. With operations across the nation, and capacity for immediate services in the most secure government locations, INDUS has achieved outstanding results for Federal, Civilian, Homeland Security, Defense, and Intelligence agencies.

Recognized as the 8th largest software developer and 15th largest IT employer in the Washington, DC area - INDUS is excited to announce an opportunity for a Certification and Accreditation Specialist in Washington DC.

Requirements

Must possess proficient written and verbal communication skills in order to effectively interact with clients.

CISSP and SANS Certifications desired, but not required.

BS in Computer Information Systems or equivalent experience.

Minimum of two (2) or more years of progressive information security experience with Federal Government projects (non-DOD agencies).

Minimum of two (2) years of hands-on experience in the following:

Conducting security assessments and documenting the results using NIST 800-53A.

NIST SP800-18 Guide for Developing Security Plans for Federal Information Systems

NIST SP800-30 Risk Management Guide for Information Technology Systems

NIST SP800-53 Recommended Security Controls for Federal Information Systems

Must possess proficient written and verbal communication skills in order to effectively interact with clients.

Benefits/Salary

Full benefits to include 401k

Contact

Yusuf Hassan

For more information, visit our website

This job was posted on:

Oct 20, 2009

VIRTUAL CONFERENCE
Security Directions: A Virtual Conference

Security Directions Available On Demand Sept. 30 - Dec. 30

Join us for a virtual event with candid, expert information on top security challenges and issues - all from the comfort of your desktop.

» Register Now

WEBCAST
Protecting PII: How to Work with IT to Manage Risk

Compuware Understand the critical nature of the test data privacy problem and get tips on how to work with IT to implement a test data privacy program.

» View this Webcast

Featured Sponsors