drjobs Senior Information Security Analyst Hybrid

Senior Information Security Analyst Hybrid

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Columbia - USA

Monthly Salary drjobs

$ 102700 - 154000

Vacancy

1 Vacancy

Job Description

Title:

Senior Information Security Analyst (Hybrid)

Belong. Connect. Grow. with KBR!

Around here we define the future.

We are a company of innovators thinkers creators explorers volunteers and dreamers. But we all share one goal: to improve the world responsibly and safely.

THIS POSITION IS CONTINGENT UPON CONTRACT AWARD

KBR is hiring a fulltime Senior Information Security Analyst supporting the Administrative Office of the US Courts and is contingent upon successful contract award.

This onsite position is located at the Thurgood Marshall Federal Judiciary Building in Washington DC and has the option of an approved telework/hybrid work schedule.

The core work hours dedicated to KBR and our direct customer are 8 am Est to 5 pm Est. No travel is expected with this position.

The Administrative Office of the US Courts Chief Operating Officer (COO) Information Security & Validation Staff (ISVS) is responsible for governing overseeing developing strengthening and maintaining the information security posture within COO Offices to meet and exceed enterprise security standards. Their mission is to proactively ensure the integrity confidentiality and availability of critical judiciary information assets through a comprehensive rigorous security approach via our governance risk management and compliance (GRC) program.

The Senior Information Security Analyst will be responsible for enhancing cybersecurity for its customers including cybersecurity systems support cybersecurity compliance and cybersecurity risk management for the COO comprehensive IT system portfolio.

Primary Responsibilities:

  • Prepare Information Systems: Carry out activities at various levels to help manage security and privacy risks using the JISF and NIST RMF.
  • Categorize Information Systems: Determine the adverse impact to Judiciary operations and assets individuals other organizations and the Nation.
  • Select Security Controls: Select tailor and document the controls necessary to protect the information system and organization.
  • Implement Security Controls: Implement the governmentapproved security controls specified in the Security Plan.
  • Assess Security Controls: Determine if the controls selected for implementation are operating as intended and producing the desired outcome.
  • Authorize Information System: Provide accountability by requiring a government senior management official to determine if the security and privacy risk is acceptable.
  • Monitor Security Controls: Maintain ongoing situational awareness about the security and privacy posture of the information system in compliance with NIST SP 80053 Rev. 5 NIST SP 80037 Rev. 2 and CSF 2.0.
  • Leveraging the existing GRC tool to track and reconcile findings from assessments audits and vulnerability scans.
  • Common Control Identification: Identify document and publish Judiciarywide common controls available for inheritance by Judicial systems.
  • Mission or Business Focus: Identify and document the missions business functions and mission/business processes that the system is intended to support.
  • System Stakeholders: Identify stakeholders who have an interest in the design development implementation assessment operation maintenance or disposal of the system.
  • Asset Identification: Identify assets that require protection.
  • Authorization Boundary: Determine the authorization boundary of the system.
  • Information Types: Identify the types of information to be processed stored and transmitted by the system.
  • Information Life Cycle: Identify and understand all stages of the information life cycle for each information type processed stored or transmitted by the system.
  • Risk AssessmentSystem: Conduct a systemlevel risk assessment and update the risk assessment results as needed
  • Produce and perform quality review of InfoSec Governance Risk and Compliance (GRC) product deliverables.

Required Qualifications

  • Ability to obtain a Public Trust Suitability Determination: Medium Risk Level 2
  • Seven 7 to ten 10 years of IT system security experience including five years of specialized InfoSec Governance Risk and Compliance (GRC) experience of which two years were direct supervisory experience.
  • Possess indepth knowledge of applying selecting and testing the NIST 80053 Rev 4 or 5 security controls.
  • Possess indepth knowledge of NIST 80037 Risk Management Framework.
  • Excellent customerhandling and verbal/written communication with teamwork emphasis
  • Strong analytical skills and attention to detail
  • Ability to handle and prioritize multiple tasks and deadlines
  • Ability to explain technical details and issues clearly to nontechnical individuals and be able to explain problems clearly and concisely
  • Experience with the full Software Development Life Cycle (SDLC)

Education: Bachelors degree in information technology or related field


Desired Skills:

  • Experience using Cybersecurity Assessment and Management (CSAM) Global Risk Compliance tool
  • Experience using Splunk and Nessus VSS vulnerability scan software
  • Information security certifications (CISSP etc.


The candidate must be able to obtain and maintain a national agency check and background investigation after hire to obtain a badge for facility access and user accounts.

Basic Compensation:

$102700 $154000

This pay range is applicable to the DC area only.

The offered rate will be based on contract affordability and the selected candidates working location knowledge skills abilities and/or experience and in consideration of internal parity.

Additional Compensation:

KBR may offer bonuses commissions or other forms of compensation to certain job titles or levels per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus relocation benefits short term incentives long term incentives or discretionary payments for exceptional performance.

KBR Benefits

KBR offers a selection of competitive lifestyle benefits which could include 401K plan with company match medical dental vision life insurance AD&D flexible spending account disability paid time off or flexible work schedule. We support career advancement through professional training and development.

Click here to learn more: KBR Benefits KBR

Belong Connect and Grow at KBR

At KBR we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to and ongoing journey toward being a People First company. That commitment is central to our team of teams philosophy and fosters an environment where everyone can Belong Connect and Grow. We Deliver Together.

KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race color religion disability sex sexual orientation gender identity or expression age national origin veteran status genetic information union status and/or beliefs or any other characteristic protected by federal state or local law.


Required Experience:

Senior IC

Employment Type

Full-Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.