Cyber Information Systems Analyst SME Assessment Function (SCA-Separate)
Haymarket, VA - USA
Job Summary
About QBE LLC
QBE LLC is a small business dedicated to delivering innovative technology cybersecurity and mission-support solutions to federal government customers. Our experienced professionals work closely with our customers to solve complex challenges protect critical information and support essential government missions.
At QBE we turn the possible into the proven.
Overview
QBE LLC is seeking a Cyber Information Systems Analyst - SME - Assessment Function (SCA-Separate) to provide independent security control assessment expertise supporting NIH/OD-OIT.
This position is primarily remote but will require some TDY.
Responsibilities
Plan and conduct independent security control assessments.
Develop Security Assessment Plans and test procedures.
Review security documentation and supporting control evidence.
Interview system personnel and evaluate control implementation.
Perform technical and procedural testing of applicable controls.
Document assessment findings and supporting evidence.
Develop Security Assessment Reports and risk statements.
Maintain organizational independence between assessment and system implementation functions.
Evaluate remediation evidence for identified deficiencies.
Coordinate assessment schedules and activities with system stakeholders.
#qf
#qg
Minimum Qualifications
Associate degree in cybersecurity information technology computer science information systems business communications or a related field or an additional two or more years of relevant experience in place of the degree requirement.
At least 10 years of relevant experience aligned to the responsibilities of this position.
Extensive experience conducting independent security control assessments.
Expert knowledge of federal RMF and security control assessment practices.
Experience developing Security Assessment Plans and Security Assessment Reports.
Strong technical testing risk analysis and documentation skills.
CompTIA Security certification.
GIAC Information Security Professional (GISP) certification.
Ability to obtain and maintain the required federal background investigation Public Trust determination or security clearance associated with the position.
Preferred Qualifications
Experience serving as a Security Control Assessor or supporting an independent assessment organization.
Experience assessing Low- and Moderate-impact federal systems.
Experience with HHS NIH or another federal civilian agency.
Physical Requirements
Ability to remain in a stationary position for extended periods while working at a computer.
Ability to communicate effectively through virtual and in-person meetings.
Ability to perform duties in an office remote or hybrid environment based on program requirements.
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of the position.
Equal Opportunity Employer
QBE LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to any characteristic protected by applicable federal state or local law.
The projected compensation range for this position is $115000.00 - $130000.00. There are differentiating factors that can impact a final salary/hourly rate including but not limited to Contract Wage Determination relevant work experience skills and competencies that align to the specified role geographic location (for remote opportunities) education and certifications as well as Federal Government Contract Labor addition QBE invests in its employees beyond just compensation. QBEs benefits offerings include dependent upon position Health Insurance Life Insurance Paid Time Off Holiday Pay short-term and long-term Disability Retirement and Savings Learning and Development opportunities wellness programs as well as other optional benefit elections.
Required Experience:
IC
About Company
POSSIBLE TO PROVEN Where some see problems, we see possibilities. QBE's unparalleled experience, in-depth insights and sought-after technical expertise allow us to mitigate mission-critical challenges into transformative solutions. Find Out More What We Do Cybersecurity Cyber risks ar ... View more