landing_page-logo
  1. Home
  2. »All Job Categories
  3. »Information Technology Jobs

Auto-apply to these information technology jobs

We've scanned millions of jobs. Simply select your favorites, and we can fill out the applications for you.

Information Systems Security Officer (Isso)-logo
Information Systems Security Officer (Isso)
Contact Government ServicesWichita, KS
ISSO Employment Type: Full-Time, Experienced Department:Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $92,213.33 - $125,146.66 a year

Posted 30+ days ago

Information Security Engineer-logo
Information Security Engineer
First Horizon Corp.Memphis, TN
Locations: Onsite in Memphis, TN; Maryville, TN; Birmingham, AL; Lafayette, LA; New Orleans, LA; Charlotte, NC; Raleigh, NC; or Dallas, TX. Summary The Cyber Security Engineer - Threat Management is a mid-level Cyber Security Engineer responsible for second level security event/incident response along with the collection, analysis, and dissemination of cyber threat intelligence. These capabilities will include timely collection of advanced warning of impeding IT vulnerabilities or threats, a thorough correlation, analysis, and storage of threat intelligence information, and operational support of the incident response process. The candidate They will deliver and sustain the enterprise management strategy and solutions from a governance, process, discipline and technology standpoint, to support enterprise environments and our presence in various cloud instances and on-premises data centers covering threats / FIM / configuration management / incident response / vulnerability management. Secondary roles include IPS, EDR, TIP tools, and other information security solutions. Essential Functions of the Job: Responding to SOC alerts performing an analysis, and containment of security events. Provide tier II support for escalated security incidents. Support the Cyber Incident Response Team (CIRT) in the effective detection, analysis, and containment of attacks. Operate the configuration management program to track configuration drift over time, working with asset custodians to correct any configuration deviation from baseline. Operate the File Integrity Management program to track changes to file systems on critical systems. Operate the processes necessary to collect threat intelligence, analyze the data for patterns and actionable information, and create intelligence products for other teams to consume using MITRE ATT&CK Framework. Identifies security risks and exposures, determines the causes of security violations and suggests procedures to halt future incidents. Integrate appropriate systems and logs into the global threat management platform or Security Event and Incident Management system to properly protect critical assets. Design, test and develop specific content and alerting to identify threats against critical assets. Document incident response playbooks for new threat content and alerts. Maintain an understanding of attacks, vectors and emergent threats. Obtain and share cyber security intelligence with security partners, vendors and law enforcement as necessary. Produce weekly and monthly operational metrics. Work with vendors and internal customers to respond to escalations. Recommends Preventative Security Actions. Recommends Corrective Security Actions. Comprehension of basic banking systems. Job Requirements: High School Graduate or Equivalent. Bachelor's Degree Preferred but not required in Computer Engineering/Computer Science or related field. CISSP, GSEC, GCIH, CEH or other security certifications preferred, but not required. Three year minimum working in cyber threat or information security. Knowledge and Skills Requirements: Familiar with compliance regulations such as SOX, PCI-DSS, GLBA, and Federal Banking regulations. Proficient with cloud security and monitoring capabilities in Azure Proficient with Incident Response in Azure Proficient with configuration management scanning tools. Knowledgeable with Tripwire or other file integrity management tools. Excellent team skills and integrity in a professional environment. Ability to Map threats and vulnerabilities to MITRE. About Us First Horizon Corporation is a leading regional financial services company, dedicated to helping our clients, communities and associates unlock their full potential with capital and counsel. Headquartered in Memphis, TN, the banking subsidiary First Horizon Bank operates in 12 states across the southern U.S. The Company and its subsidiaries offer commercial, private banking, consumer, small business, wealth and trust management, retail brokerage, capital markets, fixed income, and mortgage banking services. First Horizon has been recognized as one of the nation's best employers by Fortune and Forbes magazines and a Top 10 Most Reputable U.S. Bank. More information is available at www.FirstHorizon.com. Benefit Highlights Medical with wellness incentives, dental, and vision HSA with company match Maternity and parental leave Tuition reimbursement Mentor program 401(k) with 6% match More -- FirstHorizon.com/First-Horizon-National-Corporation/Careers/Our-Benefits Follow Us Facebook X formerly Twitter LinkedIn Instagram YouTube

Posted 4 days ago

Information Security Engineer-logo
Information Security Engineer
First Horizon Corp.New Orleans, LA
Locations: Onsite in Memphis, TN; Maryville, TN; Birmingham, AL; Lafayette, LA; New Orleans, LA; Charlotte, NC; Raleigh, NC; or Dallas, TX. Summary The Cyber Security Engineer - Threat Management is a mid-level Cyber Security Engineer responsible for second level security event/incident response along with the collection, analysis, and dissemination of cyber threat intelligence. These capabilities will include timely collection of advanced warning of impeding IT vulnerabilities or threats, a thorough correlation, analysis, and storage of threat intelligence information, and operational support of the incident response process. The candidate They will deliver and sustain the enterprise management strategy and solutions from a governance, process, discipline and technology standpoint, to support enterprise environments and our presence in various cloud instances and on-premises data centers covering threats / FIM / configuration management / incident response / vulnerability management. Secondary roles include IPS, EDR, TIP tools, and other information security solutions. Essential Functions of the Job: Responding to SOC alerts performing an analysis, and containment of security events. Provide tier II support for escalated security incidents. Support the Cyber Incident Response Team (CIRT) in the effective detection, analysis, and containment of attacks. Operate the configuration management program to track configuration drift over time, working with asset custodians to correct any configuration deviation from baseline. Operate the File Integrity Management program to track changes to file systems on critical systems. Operate the processes necessary to collect threat intelligence, analyze the data for patterns and actionable information, and create intelligence products for other teams to consume using MITRE ATT&CK Framework. Identifies security risks and exposures, determines the causes of security violations and suggests procedures to halt future incidents. Integrate appropriate systems and logs into the global threat management platform or Security Event and Incident Management system to properly protect critical assets. Design, test and develop specific content and alerting to identify threats against critical assets. Document incident response playbooks for new threat content and alerts. Maintain an understanding of attacks, vectors and emergent threats. Obtain and share cyber security intelligence with security partners, vendors and law enforcement as necessary. Produce weekly and monthly operational metrics. Work with vendors and internal customers to respond to escalations. Recommends Preventative Security Actions. Recommends Corrective Security Actions. Comprehension of basic banking systems. Job Requirements: High School Graduate or Equivalent. Bachelor's Degree Preferred but not required in Computer Engineering/Computer Science or related field. CISSP, GSEC, GCIH, CEH or other security certifications preferred, but not required. Three year minimum working in cyber threat or information security. Knowledge and Skills Requirements: Familiar with compliance regulations such as SOX, PCI-DSS, GLBA, and Federal Banking regulations. Proficient with cloud security and monitoring capabilities in Azure Proficient with Incident Response in Azure Proficient with configuration management scanning tools. Knowledgeable with Tripwire or other file integrity management tools. Excellent team skills and integrity in a professional environment. Ability to Map threats and vulnerabilities to MITRE. About Us First Horizon Corporation is a leading regional financial services company, dedicated to helping our clients, communities and associates unlock their full potential with capital and counsel. Headquartered in Memphis, TN, the banking subsidiary First Horizon Bank operates in 12 states across the southern U.S. The Company and its subsidiaries offer commercial, private banking, consumer, small business, wealth and trust management, retail brokerage, capital markets, fixed income, and mortgage banking services. First Horizon has been recognized as one of the nation's best employers by Fortune and Forbes magazines and a Top 10 Most Reputable U.S. Bank. More information is available at www.FirstHorizon.com. Benefit Highlights Medical with wellness incentives, dental, and vision HSA with company match Maternity and parental leave Tuition reimbursement Mentor program 401(k) with 6% match More -- FirstHorizon.com/First-Horizon-National-Corporation/Careers/Our-Benefits Follow Us Facebook X formerly Twitter LinkedIn Instagram YouTube

Posted 4 days ago

Business Information Specialist-logo
Business Information Specialist
The Capital Group Companies IncIrvine, CA
The Business Information Specialist will be accountable for managing a broad range of data, analysis and modeling responsibilities across the American Funds Service Group. You will work with cross functional teams to deliver strategic and operational outcomes. You will leverage a combination of research, statistical analysis and forecasting to provide analytical insights and make recommendations to facilitate strategic and operational decisions. "I am the person Capital Group is looking for." You have 5+ years of analytics experience and are able to operate with a strong level of autonomy You are able to take a technical lead and facilitate discussions with senior business leaders to define requirements and produce solutions to complex business questions / challenges independently. You will comfortably navigate ambiguity and complexities, using scenario planning and analysis to support strategic decision-making. You are able to serve as primary or backup for critical deliverables with a high level of reliability. You are a skilled communicator, able to present complex analysis and data driven recommendations and direct feedback in a clear and concise manner. You have a solid background in business intelligence, reporting, and data transformation, using tools like Excel, SQL, R-studio, Tableau or Python. You value authenticity, respect, and engagement, and can use insights to influence groups and senior associates. You are comfortable working with multiple geographies, functions, and stakeholders. San Antonio Base Salary Range: $89,374-$142,998 Orange County Base Salary Range: $108,756-$174,010 Indianapolis Base Salary Range: $95,192-$152,307 In addition to a highly competitive base salary, per plan guidelines, restrictions and vesting requirements, you also will be eligible for an individual annual performance bonus, plus Capital's annual profitability bonus plus a retirement plan where Capital contributes 15% of your eligible earnings. You can learn more about our compensation and benefits here. Temporary positions in Canada and the United States are excluded from the above mentioned compensation and benefit plans. We are an equal opportunity employer, which means we comply with all federal, state and local laws that prohibit discrimination when making all decisions about employment. As equal opportunity employers, our policies prohibit unlawful discrimination on the basis of race, religion, color, national origin, ancestry, sex (including gender and gender identity), pregnancy, childbirth and related medical conditions, age, physical or mental disability, medical condition, genetic information, marital status, sexual orientation, citizenship status, AIDS/HIV status, political activities or affiliations, military or veteran status, status as a victim of domestic violence, assault or stalking or any other characteristic protected by federal, state or local law.

Posted 3 days ago

Tax Senior Manager - Global Information Reporting-logo
Tax Senior Manager - Global Information Reporting
PwCWashington, DC
Industry/Sector Not Applicable Specialism General Tax Consulting Management Level Senior Manager Job Description & Summary A career within Financial Markets Business Advisory services, will provide you with the opportunity to contribute to a variety of audit, regulatory, valuation, and financial analyses services to design solutions that address our clients' complex accounting and financial reporting challenges, as well as their broader business issues. To really stand out and make us fit for the future in a constantly changing world, each and every one of us at PwC needs to be a purpose-led and values-driven leader at every level. To help us achieve this we have the PwC Professional; our global leadership development framework. It gives us a single set of expectations across our lines, geographies and career paths, and provides transparency on the skills we need as individuals to be successful and progress in our careers, now and in the future. As a Senior Manager, you'll work as part of a team of problem solvers, helping to solve complex business issues from strategy to execution. PwC Professional skills and responsibilities for this management level include but are not limited to: Encourage everyone to have a voice and invite opinion from all, including quieter members of the team. Deal effectively with ambiguous and unstructured problems and situations. Initiate open and candid coaching conversations at all levels. Move easily between big picture thinking and managing relevant detail. Anticipate stakeholder needs, and develop and discuss potential solutions, even before the stakeholder realises they are required. Contribute technical knowledge in area of specialism. Contribute to an environment where people and technology thrive together to accomplish more than they could apart. Navigate the complexities of cross-border and/or diverse teams and engagements. Initiate and lead open conversations with teams, clients and stakeholders to build trust. Uphold the firm's code of ethics and business conduct. Job Requirements and Preferences: Basic Qualifications: Minimum Degree Required: Bachelor Degree Minimum Year(s) of Experience: 7 year(s) Certification(s) Required: CPA, Enrolled Agent or Active Member of the Bar Preferred Qualifications: Preferred Fields of Study: Accounting,Accounting & Finance,Taxation,Management Information Systems & Accounting Additional Educational Preferences: Bachelor's degree, and J.D., L.L.M. in Taxation from an accredited college/university; or Master's in Taxation (MST) from an accredited college/university Preferred Knowledge/Skills: PwC's Global Information Reporting (GIR) practice helps our clients comply with an international set of rules that are focused on information reporting and withholding tax requirements on payments to investors and vendors in line with a global initiative of creating tax transparency and cross-border sharing of information. Our tax practice helps our clients comply with complex information reporting and withholding rules under chapter 61, chapter 3, chapter 4 (Foreign Account Tax Compliance Act - FATCA), the Common Reporting Standard (CRS) and other regimes. Demonstrates intimate abilities and/or a proven record of success in the following areas: Provide guidance to clients regarding compliance with global tax information reporting and withholding rules; Research complex tax issues and reach appropriate conclusions for our clients; Apply tax technical skills in reviewing US Internal Revenue Service (IRS) tax forms including: Forms W-9, W-8BEN, W-8BEN-E, W-8ECI, W-8EXP and W-8IMY, related tax documentary evidence as well as Common Reporting Standard (CRS) self-certifications; Lead staff in preparing and filing information returns (e.g., Forms 1099 and 1042-S), FBAR, and Automatic Exchange of Information (FATCA & CRS) returns; Develop innovative technology solutions to increase efficiency, such as digital tools that capture and process information; Assist in the development of educational materials for information reporting and withholding requirements for both internal and client workshops; Train and manage local staff and contribute to the development of your team's technical acumen; Understand applicable US tax rules and requirements including IRS publications and tax form instructions; Execute client engagements to meet statutory, regulatory and project based deadlines; Have a fundamental understanding of the applicable US tax rules and requirements including IRS publications and tax form instructions; Be familiar with the the requirements under the Common Reporting Standard (CRS) as set out by the OECD and the Foreign Account Tax Compliance Act (FATCA); Possess written, organizational, and verbal communication skills; Possess analytical, problem solving, and project management skills; Drive success as both an individual contributor and team member; Identify and address our client needs by actively participating in client discussions and meetings; Manage multiple client engagements concurrently; Have a work ethic with attention to detail; Be proficient in Microsoft Excel, Word, and Powerpoint; Be proficient in Google Applications; and, Be willing to travel in a post-covid world. Travel Requirements Up to 20% Job Posting End Date Learn more about how we work: https://pwc.to/how-we-work PwC does not intend to hire experienced or entry level job seekers who will need, now or in the future, PwC sponsorship through the H-1B lottery, except as set forth within the following policy: https://pwc.to/H-1B-Lottery-Policy . As PwC is an equal opportunity employer, all qualified applicants will receive consideration for employment at PwC without regard to race; color; religion; national origin; sex (including pregnancy, sexual orientation, and gender identity); age; disability; genetic information (including family medical history); veteran, marital, or citizenship status; or, any other status protected by law. For only those qualified applicants that are impacted by the Los Angeles County Fair Chance Ordinance for Employers, the Los Angeles' Fair Chance Initiative for Hiring Ordinance, the San Francisco Fair Chance Ordinance, San Diego County Fair Chance Ordinance, and the California Fair Chance Act, where applicable, arrest or conviction records will be considered for Employment in accordance with these laws. At PwC, we recognize that conviction records may have a direct, adverse, and negative relationship to responsibilities such as accessing sensitive company or customer information, handling proprietary assets, or collaborating closely with team members. We evaluate these factors thoughtfully to establish a secure and trusted workplace for all. Applications will be accepted until the position is filled or the posting is removed, unless otherwise set forth on the following webpage. Please visit this link for information about anticipated application deadlines: https://pwc.to/us-application-deadlines The salary range for this position is: $119,300 - $328,000, plus individuals may be eligible for an annual discretionary bonus. For roles that are based in Maryland, this is the listed salary range for this position. Actual compensation within the range will be dependent upon the individual's skills, experience, qualifications and location, and applicable employment laws. PwC offers a wide range of benefits, including medical, dental, vision, 401k, holiday pay, vacation, personal and family sick leave, and more. To view our benefits at a glance, please visit the following link: https://pwc.to/benefits-at-a-glance

Posted 1 week ago

Information Security Specialist - Vsrp-logo
Information Security Specialist - Vsrp
Global Payments Direct IncGeorgia, AL
Every day, Global Payments makes it possible for millions of people to move money between buyers and sellers using our payments solutions for credit, debit, prepaid and merchant services. Our worldwide team helps over 3 million companies, more than 1,300 financial institutions and over 600 million cardholders grow with confidence and achieve amazing results. We are driven by our passion for success and we are proud to deliver best-in-class payment technology and software solutions. Join our dynamic team and make your mark on the payments technology landscape of tomorrow. Summary of This Role Ensures the security posture of Global Payments through the security assessment, risk ranking, and continuous monitoring of critical vendor relationships. In this role you will help define efficient vendor assessment processes, identify and nurture partnerships both internal and external, and help coordinate vendor assessment activities. You will work closely with the Vendor Management Program Office (VMPO), Legal, Compliance, and Operations to provide cybersecurity expertise at vendor onboarding and throughout the vendor lifecycle. What Part Will You Play? Serves as a subject matter expert for the assessment of vendors and recommendations for risk treatment of identified gaps. Performs vendor security assessments. Coaches team members on the vendor assessment process and helps guide them through challenges as needed. Maintains and authors process documentation as required for existing processes or to define new processes to be implemented. Engages in special projects as required to deliver writeups, reports, or assessment summaries. Keeps up-to-date knowledge of new and emerging threats that can affect the organization's information assets by analyzing third party vendors and their respective infrastructure, policies, and best practices. Coordinate with relevant departments to help ensure the information in the Third-party Risk Management (TPRM) tool remains current and up to date. Respond to and process Threat intel alerts received from the TPRM tool through to resolution. Manages communication from the Vendor Security Risk Program (VSRP) to our internal partners in the event of a vendor incident. Assesses risks based on changes to implementation of NIST (National Institute of Standards and Technology, ISO (International Organization for Standardization)/BSO (Business Services Online); enhances knowledge of PCI (Payment Card Industry)/Logical Security guidelines and models, HIPPA (Health Insurance Portability and Accountability Act), PII (Personally Identifiable Information) , and Card personalization. Enhances understanding of business objectives and helps provide direction based on risk, Corporate Security Policy, and association and regulatory guidelines. Other duties as assigned. What Are We Looking For in This Role? Minimum Qualifications Bachelor's Degree Relevant Experience or Degree in: Bachelor's degree in Computer Science, Info Security, or related field Minimum 6 Years Relevant Experience A proven track record of success assessing and monitoring the security posture of vendors. Including network operations or engineering or system administration on Unix, Linux, MAC(Message Authentication Code), or Windows; proven experience working with security operations, intrusion detection systems, Security Incident Even Management systems, and anti-virus collection logs; including knowledge of industry standard security compliance programs ((PCI(Payment Card Industry), SOX(Sarbanes-Oxley) , GLBA(Gramm Leach Bliley Act)), etc.). Knowledge of industry standard security compliance programs ((PCI(Payment Card Industry), SOX(Sarbanes-Oxley) , GLBA(Gramm Leach Bliley Act), etc.) Preferred Qualifications Professional certifications CISSP (Certified Information System Security Professional), CISM (Certified Information Security Manager) , CISA (Certified-Information-Systems-Auditor), GSEC (GIAC Security Essentials , Network +, Security + What Are Our Desired Skills and Capabilities? Soft Skills/Intrapersonal Skills- Exceptional verbal and written communication skills. Ability to positively influence to effect change within the organization. Ability to work within a team of exceptionally skilled individual contributors. Skills / Knowledge- Having wide-ranging experience, uses professional concepts and company objectives to resolve complex issues in creative and effective ways. Job Complexity- Works on complex issues where analysis of situations or data requires an in-depth evaluation of variable factors. Exercises judgment in selecting methods, techniques and evaluation criteria for obtaining results. Networks with key contacts outside their own area of expertise. Supervision- Determines methods and procedures on new assignments and may coordinate activities of other personnel (Team Lead). Risk Assessment- Ability to identify, communicate, and mitigate vendor security risk. Industry Knowledge- Continued self-education of new and emerging threats and relevant processes, controls, or technologies to mitigate them. Incident Response- Knowledge and skills to contribute to all phases of Incident Response. Global Payments Inc. is an equal opportunity employer. Global Payments provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex (including pregnancy), national origin, ancestry, age, marital status, sexual orientation, gender identity or expression, disability, veteran status, genetic information or any other basis protected by law. If you wish to request reasonable accommodations related to applying for employment or provide feedback about the accessibility of this website, please contact jobs@globalpay.com.

Posted 5 days ago

Lecturer In Geographic Information Systems-logo
Lecturer In Geographic Information Systems
Metropolitan State University Of DenverDenver, CO
Department Earth and Atmospheric Science About the University Metropolitan State University of Denver (MSU Denver) enrolls over 16,000 students, where nearly 60% are first generation and over 55% are students of color. Located in downtown Denver, we are a designated Hispanic Serving Institution that also offers graduate programs (gHSI) and the only Seal of Excelencia certified institution in Colorado. As the third largest institution of higher education in Colorado and the only institution with an open access mission, MSU Denver is a model university for today's students. Through affordable, flexible, and holistic education, MSU Denver helps students build essential skills grounded in a multicultural and global perspective that lead to undergraduate and graduate degrees, and career and life success. The university values teaching first, with an emphasis on positive student-instructor interactions and high impact pedagogical practices that facilitate learning. About the Department of Earth and Atmospheric Sciences The Department of Earth and Atmospheric Sciences houses a Bachelor's degree in Geography with an optional GIS emphasis, a minor in GIS, and a certificate in GIS. We prefer candidates with expertise in GIS, field data collection, spatial data science, Earth data analytics, remote sensing, machine learning, and/or geospatial artificial intelligence. In addition, we seek candidates who can use these skills in GIS courses to engage students from across the Department and University. The Department is home to ten tenure track faculty and four lecturers across four degree-granting programs. Position Summary The Department of Earth and Atmospheric Sciences (EAS) at MSU Denver is seeking to fill a full-time, non-tenure track lecturer position in Geographic Information Systems (GIS) beginning Fall 2025. The successful candidate would teach 15 credits of GIS and other interdisciplinary courses in the department (e.g., Environmental Science, Geography, Geology, and/or Meteorology) per semester. The candidate will complement the department's strengths in Geography, GIS, Environmental Science, Applied Geology, and Meteorology. Responsibilities Non-tenure track lecturers typically teach 30 credits per academic year, which translates into four or five courses per semester, depending upon credit hours assigned for courses. Courses may include online, face-to-face, HyFlex, or hybrid modalities. Additional information on courses taught in the EAS Department may be found in the MSU Denver Undergraduate Catalog by searching by course prefix. The successful candidate must be able to work well with undergraduate students from a variety of backgrounds and ages, teaching lower and upper division geospatial sciences courses, as well as courses in other Earth and Atmospheric Sciences disciplines. The successful candidate will also facilitate student learning by introducing real-world problems through spatial data development, modeling, visualization, and analysis, using ArcGIS Pro and other geospatial software. Required Qualifications Master's degree in Geographic Information Systems (GIS), Geography with an emphasis in Geospatial Sciences/Geographic Information Systems (GIS), or a closely related field Ability to teach undergraduate courses in GIS and geospatial sciences, as evidenced by teaching experience, academic transcript, work experience, or other demonstrated experience Ability to teach interdisciplinary undergraduate courses in other Earth and Atmospheric Science disciplines Preferred Qualifications Ph.D. in Geographic Information Systems (GIS), Geography with an emphasis in Geospatial Sciences/Geographic Information Systems (GIS), or a closely related field Experience teaching a variety of geospatial science courses, including courses such as GIS, cartography, spatial modeling, remote sensing, spatial modeling and databases, python scripting, and/or other geospatial science topics Experience teaching interdisciplinary courses in other Earth and Atmospheric Sciences disciplines, particularly environmental science and/or geology Experience with ArcGIS Pro and/or other geospatial software, applied to both theoretical and applied problems in geography, environmental science, geology, meteorology, and/or sustainable development The successful candidate should show a commitment to providing a high-quality educational experience for undergraduate students in a diverse urban setting The successful candidate must have the ability to work with the educational needs of a diverse urban population including (but not limited to) students of color, LBGTQIA students, students from low-income backgrounds, first-generation college students, students with disabilities, nontraditional students, student veterans, and English-language learners We encourage you to apply even if you do not meet every preferred qualification. We are most interested in finding the candidate who will best contribute to our Department and the University. Salary for Announcement The salary range for this position is $55,000 - $65,000 at Lecturer level. The salary of the finalist selected for this role will be set based upon a variety of factors, including but not limited to, internal equity, education, experience, specialty and training. MSU Denver offers excellent benefits that include medical, dental, retirement, tuition benefit, free RTD pass, and more. For a brief overview of these options, please visit our Benefits section. Instructions to Apply Interested applicants must apply online at MSU Denver's career site, https://msudenver.wd1.myworkdayjobs.com/MSUDenver and search for JR103797. To help us evaluate your potential as a faculty member at MSU Denver, you must submit the following required materials: Curriculum vitae that includes names and contact information for three professional references Cover letter Statement of teaching philosophy highlighting teaching experience, pedagogical approach, and how you would engage a diverse student body in the classroom (2 pages maximum) Copies of both unofficial undergraduate and graduate transcripts Incomplete applications may not be reviewed; please ensure you have uploaded all required documents into the "Resume/Cover Letter" section of the application. Official transcripts will be required of the candidate selected for hire. Deadline Applications accepted until position filled; priority given to applications received through 11:59 PM MST on Thursday, May 15, 2025. Closing Date Open Until Filled Posting Representative Tanya Rogowsky Posting Representative Email trogowsk@msudenver.edu Benefits The University's benefits package is comprehensive and offers medical, vision and dental, free RTD pass, tuition reimbursement, as well as a life and supplemental insurance plans, retirement plans and other programs, such as access to a long-term disability (LTD) plan. Visit MSU Denver's benefits website to learn more. For a brief overview, please see: https://www.msudenver.edu/wp-content/uploads/2024/01/MSU-Benefit-Summary.pdf . The University will provide reasonable accommodations to applicants with disabilities throughout the employment application process. To request an accommodation pursuant to the Americans with Disabilities Act, please contact the Human Resources ADA Coordinator at totalrewards@msudenver.edu. Background Checks Metropolitan State University of Denver is dedicated to ensuring a safe and secure environment for our faculty, staff, students, and visitors. To Assist in achieving that goal, we conduct background checks on all finalists for positions at the University prior to employment. Diversity Statement Metropolitan State University of Denver is a unique, access-oriented campus community that values diversity, equity, and inclusion in all its forms. Our student population consists of nearly 58% first generation students and over 50% students of color. We are a designated Hispanic Serving Institution located in downtown Denver. We create an equitable learning and working environment in concert with individuals who consistently demonstrate commitment to equity and inclusion. We greatly value the diverse identities and perspectives of our students, faculty, and staff and recognize that in order to achieve a just and equitable society, diversity must go beyond simple representation. It requires critical inquiry and dialogue and a commitment to action. We strive to provide a culture of belonging for all community members to achieve personal and professional success.

Posted 30+ days ago

Sr. Information Systems Security Officer (Isso)-logo
Sr. Information Systems Security Officer (Isso)
Contact Government ServicesUrbana, IL
Sr. ISSO Employment Type:Full-Time, Experienced /p> Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $118,560 - $171,253.33 a year

Posted 30+ days ago

Manager, Engineering Information Systems-logo
Manager, Engineering Information Systems
Vast SpaceLong Beach, CA
At Vast, our mission is to contribute to a future where billions of people are living and thriving in space. We are building artificial gravity space stations, allowing long-term stays in space without the adverse effects of zero-gravity. Our initial crewed space habitat will be Haven-1, scheduled to be the world's first commercial space station when it launches into low earth orbit in May 2026. Our team is all-in, committed to executing our mission safely and on time. If you want to work with the most talented people on Earth furthering space exploration for humanity, come join us. Vast is looking for a Manager, Engineering Information Systems, reporting to the Director, Information Systems, to be the driving force behind Vast's critical engineering software, including NX/Teamcenter, Ansys, and other CAE tools. You will lead a team of NX/Teamcenter administrators responsible for the maintenance, enhancement, and deployment of these systems. In this hands-on role, you will own the product roadmap, guiding system upgrades and new rollouts from inception to execution, all while ensuring that these systems support our aggressive growth plans and operational excellence. This will be a full-time, exempt position located in our Long Beach location. Responsibilities: Own and manage the overall strategy and execution of NX/Teamcenter, Ansys, and other enterprise-level CAE systems Lead a team of experienced NX/Teamcenter administrators, provide mentorship, guidance, and foster hands-on, execution-oriented culture Collaborate cross-functionally with engineering, analysis teams, manufacturing, quality, and supply chain teams to align system functionality with business needs Define, prioritize, and execute the product roadmap for system upgrades, enhancements, and new rollouts Ensure system scalability, security, and efficiency to support Vast's rapid growth in the aerospace sector Partner with stakeholders to identify process improvement opportunities and implement technology solutions Provide leadership in troubleshooting, resolving system issues, and ensuring minimal downtime and operational impact Act as a thought leader in the continuous improvement of Vast's information systems landscape, staying ahead of industry trends and best practices Lead by example in a start-up environment, willing to dive into details and execute directly as needed Minimum Qualifications: 6+ years of experience managing enterprise information systems, including NX/Teamcenter, CAE tools, and interfaces to MES, preferably in an aerospace, manufacturing, or high-tech environment Proven experience managing a team of technical product managers or business systems analysts Strong understanding of business processes and the ability to align technology solutions with organizational goals Hands-on experience with system rollouts and upgrades, from planning to execution Excellent project management skills, with the ability to prioritize and manage multiple initiatives simultaneously Strong leadership and communication skills, with a track record of fostering a culture of accountability and ownership Ability to thrive in a fast-paced, start-up environment with a "get it done" mentality Preferred Skills & Experience: Experience working on ambiguous problems Ability to creatively solve problems and bring multiple disciplines together while assessing risk and making design and development decisions with incomplete data sets Strong sense of accountability and integrity with excellent written and verbal communication skills Experience with data analytics and systems integration Experience with MES software and the hardware engineering processes Experience with full-lifecycle product development Pay Range: Manager, Engineering Information Systems: $125,000 - $180,000 Senior Manager, Engineering Information Systems: $170,000 - $230,000 Salary Range: California $125,000-$230,000 USD COMPENSATION AND BENEFITS Base salary will vary depending on job-related knowledge, education, skills, experience, business needs, and market demand. Salary is just one component of our comprehensive compensation package. Full-time employees also receive company equity, as well as access to a full suite of compelling benefits and perks, including: 100% medical, dental, and vision coverage for employees and dependents, flexible paid time off for exempt staff and up to 10 days of vacation for non-exempt staff, paid parental leave, short and long-term disability insurance, life insurance, access to a 401(k) retirement plan, One Medical membership, ClassPass credits, personalized mental healthcare through Spring Health, and other discounts and perks. We also take pride in offering exceptional food perks, with snacks, drip coffee, cold drinks, and dinner meals remaining free of charge, and lunch subsidized as part of Vast's ongoing commitment to providing high-quality meals for employees. U.S. EXPORT CONTROL COMPLIANCE STATUS The person hired will have access to information and items subject to U.S. export controls, and therefore, must either be a "U.S. person" as defined by 22 C.F.R. § 120.62 or otherwise eligible for deemed export licensing. This status includes U.S. citizens, U.S. nationals, lawful permanent residents (green card holders), and asylees and refugees with such status granted, not pending. EQUAL OPPORTUNITY Vast is an Equal Opportunity Employer; employment with Vast is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.

Posted 1 week ago

Business Information Analyst, Footwear - Hoka-logo
Business Information Analyst, Footwear - Hoka
Deckers Outdoor CorporationPortland, OR
At Deckers Brands, Together, Every Step is a promise kept that every employee can bring their authentic self, is valued and supported, as a whole person, at work and beyond. Together, Every Step is how we continue to deliver exceptional business results, experience an amazing place to work, and have a positive impact on the communities and world around us. Job Title: Business Information Analyst, Footwear- HOKA Reports to: Director, Product Operations- HOKA Location:Portland, OR (Hybrid) The Role We are seeking a detail-oriented Business Information Analyst specializing in Footwear to join our Product Creation Team. In this role, you will be responsible for ensuring the accuracy of business data and system information while coordinating the timely completion of seasonal updates throughout our Go-To-Market (GTM) process. You will manage and analyze product line sheets, track seasonal inputs, and ensure accurate data flow across the product lifecycle. You will work closely with our Product Creation Team and other cross-functional partners to gather, input, analyze, and report on key business updates that will drive informed decision-making, optimize business processes, and enhance the integrity of our product line each season. We celebrate diversity--of your background, your experiences and your unique identity. We are committed to ensuring an inclusive and equitable workplace where all of our employees can Come as They Are. We believe that when we bring our different perspectives to work, we are truly Better Together. Your Impact The primary functions of this role, include but are not limited to: Product Line Sheet Management & Data Validation: Manage and maintain accurate, up-to-date product line sheets for Footwear, ensuring consistency of product information across platforms (e.g., PLM, VLP, internal databases) and resolving discrepancies in collaboration with cross-functional teams. Seasonal Planning & Inputs: Coordinate and compile seasonal inputs across various product attributes. Work closely with our Product Creation Team and other cross-functional partners to ensure alignment and accuracy in product information across the line sheets. Cross-Functional Data Coordination: Collaborate with cross-functional teams to collect, organize, and ensure the accuracy of product data, including specifications, priority flagging, and downstream requirements, while meeting seasonal deadlines. Data Integrity & Process Improvement: Ensure data accuracy by implementing quality control checks and validation processes. Continuously evaluate and improve procedures for managing and maintaining product line sheets, driving efficiency and consistency across the product lifecycle. Who You Are Collaborative team player with a strong ability to work cross-functionally, effectively communicating with stakeholders across teams to ensure alignment and accuracy in product data and business processes. Detail-oriented and methodical problem-solver, consistently ensuring data integrity and accuracy while identifying and resolving discrepancies in product line sheets and other systems. Proactive and organized, capable of managing multiple seasonal inputs and meeting deadlines by prioritizing tasks and efficiently coordinating with various teams to ensure timely, accurate completion of updates. We'd love to hear from people with Bachelor's degree in Business, Information Technology, Data Analytics, or a related field (or equivalent experience). 3+ years of experience in business analysis, product data management, or a related role, with a focus on Footwear or Apparel industries. Strong proficiency in data analysis tools (Excel, PLM systems, etc.) and the ability to work with complex datasets. Familiarity with Footwear seasonal planning processes, product lifecycle management, and production timelines. Experience in product line sheet management and the ability to collaborate with cross-functional teams to maintain and update product information. Ability to track and manage multiple data points across various stages of the product creation lifecycle. Strong organizational, communication, and problem-solving skills with an attention to detail. Proven ability to identify and address discrepancies in product data, ensuring accuracy and alignment with business objectives. What We'll Give You Competitive Pay and Bonuses- We've created a variety of competitive compensation programs to foster career development, reward success and to show our employees just how much they're valued. Financial Planning and wellbeing- No matter what financial goals our employees have set, we want to help them get there. Our plans provide powerful ways to protect income, pay for expenses and invest in the future. Time away from work- Sometimes we need time away to be with family, focus on our health or just simply recharge. Our plans support our employees' needs to get out, get healthy and come back stronger than ever. Extras, discounts and perks- Being a valued member of the Deckers Brands team means more than just a paycheck. From generous discounts to community-based programs, we offer a variety of cool extras Growth and Development- Deckers Brands was built on the idea of pursuing passion. That's why we offer extensive opportunities and support for personal and professional development. Health and Wellness- There's nothing basic about our comprehensive health and wellness programs and offerings. While at work and at play, we aim to support a healthy lifestyle. Individual pay will be determined by location and additional factors, including job related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary for your preferred location during the hiring process. Equal Employment Opportunity Diversity and inclusion are key to our success. We are proud to be an equal opportunity employer and our employees are people with different strengths, experiences and backgrounds who share a passion for our brands. We welcome qualified applicants regardless of their race, color, religion, sex, sexual orientation, gender identity, gender expression, national origin, age, military or veteran status, mental or physical disability, medical condition and all of the other beautiful parts of your identity. #LI-TU1

Posted 30+ days ago

Sr. Information Systems Engineer III (5790)-logo
Sr. Information Systems Engineer III (5790)
MetroStar SystemsWashington, DC
As Sr. Information Systems Engineer III, you'll play a critical role in safeguarding digital assets by designing, implementing, and maintaining robust cybersecurity infrastructure. You will work collaboratively with cross-functional teams to identify vulnerabilities, develop solutions, and ensure compliance with security protocols and industry standards. Staying informed about emerging trends and threats in the cybersecurity landscape, you will proactively enhance defenses through innovative tools and methodologies. Additionally, you will conduct risk assessments, implement security controls, and support incident response efforts to minimize risks and maintain the integrity of our systems and data. We know that you can't have great technology services without amazing people. At MetroStar, we are obsessed with our people and have led a two-decade legacy of building the best and brightest teams. Because we know our future relies on our deep understanding and relentless focus on our people, we live by our mission: A passion for our people. Value for our customers. If you think you can see yourself delivering our mission and pursuing our goals with us, then check out the job description below! What you'll do: Design, implement, and manage security solutions, including firewalls, intrusion detection/prevention systems, endpoint protection, and encryption mechanisms to ensure the organization's networks and systems remain secure. Conduct regular security assessments to identify vulnerabilities and weaknesses in systems, networks, and applications. Develop and implement incident response plans to effectively address security breaches, incidents, and breaches. Collaborate with cross-functional teams to establish and enforce security policies, standards, and procedures. Monitor network traffic, system logs, and security alerts to detect and respond to potential security incidents. Analyze and investigate anomalies and security breaches, taking appropriate actions to mitigate risks. Work closely with cross-functional teams, including IT, software development, and compliance, to integrate security into all phases of the development lifecycle and ensure a comprehensive approach to cybersecurity. Maintain thorough and accurate documentation of security processes, procedures, and configurations. Prepare detailed reports on security findings, incidents, and actions taken. What you'll need to succeed: Active TS/SCI clearance with CI poly (REQUIRED) A minimum of 10 years of experience as a cybersecurity engineer with a specialization in designing and building implementations of required security controls; and implementing continuous monitoring and auditing of solutions for compliance with security controls. A working knowledge with creating SMG's (Security Management Guides) A working knowledge with AWS services, their usage, APIs, CLI/SDKs and patterns Expert in AWS IAM policy creation, including condition keys and "not" usage Expert-level skills in specifying and implementing log collection into tools such as Splunk, and performing querying and analysis of aggregated logs to identify security-relevant anomalies or risks Strong experience in implementing security controls from government regulatory frameworks and security standards (e.g., NIST SP 800-53, RMF, ICD 503, FISMA, FedRAMP). Demonstrated and repeat experience implementing controls for cloud, container, and DevSecOps services and solutions from IL5 to IL6+ on NIPR, SIPR, and JWICS. Strong understanding of network protocols, operating systems, and infrastructure components. Expert proficiency in incident response, security incident handling, and forensic analysis techniques. Expertise with security tools such as Fortify, Acunetix, and Prisma Cloud Effective communication skills, with the ability to convey complex technical concepts to both technical and non-technical stakeholders. CISSP or equivalent certification to support DoD 8140 requirements This role is part of a pipeline of top talent that MetroStar is building for an upcoming program. While this role isn't available today, we're connecting with cleared experts who want to be first in line when the mission launches. By applying now, you're securing a spot on our radar for future opportunities. When positions officially open, our recruiters will reach out if your background aligns with the program's needs. At MetroStar, we believe in building relationships with the best talent-because when the right mission meets the right people, incredible things happen. Stay ahead of the mission-apply today and be part of something bigger! SALARY RANGE: $150,000 - $239,000 The salary range for this position is determined based on qualifications, skills, and relevant experience. The final salary offered will be determined based on several factors including: The candidate's professional background and relevant work experience The specific responsibilities of the role and organizational needs Internal equity and alignment with current team compensation This role is also eligible for additional compensation, subject to the terms and policies of MetroStar, which may include: Performance-based bonuses Company-paid training and/or certifications Referral bonuses

Posted 3 weeks ago

Information Systems Security Officer (Isso)-logo
Information Systems Security Officer (Isso)
Contact Government ServicesTucson, AZ
ISSO Employment Type: Full-Time, Experienced Department:Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $92,213.33 - $125,146.66 a year

Posted 30+ days ago

Information Systems Security Officer (Isso)-logo
Information Systems Security Officer (Isso)
Contact Government ServicesPlano, TX
ISSO Employment Type: Full-Time, Experienced Department:Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $92,213.33 - $125,146.66 a year

Posted 30+ days ago

Information Systems Security Officer (Isso)-logo
Information Systems Security Officer (Isso)
KBRKihei, HI
Title: Information Systems Security Officer (ISSO) Belong. Connect. Grow. with KBR! KBR's National Security Solutions team provides high-end engineering and advanced technology solutions to our customers in the intelligence and national security communities. In this position, your work will have a profound impact on the country's most critical role - protecting our national security. Why Join Us? Innovative Projects: KBR's work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions. Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace. Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense. Key Responsibilities: KBR was selected to support the US Space Force/Air Force Research Laboratory's ASTRO (Advanced Space Technology Research and Optimization) contract to provide mission equipment operations, maintenance, and upgrades to the USSF's AMOS site in Maui, Hawaii. The AMOS site plays a vital role in national security by monitoring man-made objects in space and continuously developing next-generation capabilities to keep pace with the expanding space domain. This presents an incredible opportunity to push the boundaries of space and telescope technologies. In this role, you'll use your expertise as an ISSO to maintain 24/7/365 readiness in support of USSF operations and specialized missions. Responsibilities: Qualifications: Bachelor Degree and a minimum of 10 years of related Information Systems experience; or an equivalent combination of related training and experience. Certification: Minimum IAM Level 2. Experience with and understanding of NIST 800 series Security+ or other relevant certifications Desired Qualifications: Experience with and understanding of ICD 503 Experience Military / DOD experience Clearance: Ability to obtain DoD TS/SCI Clearance, Active Secret required. WORK ENVIRONMENT: KBR supports work from home when compatible with meeting contract requirements. AMOS is a dynamic work environment and this contract supports routine operations of and maintenance of mission equipment, as well as the need to respond to real-world events. To the extent possible, schedules are forecasted in advance, but upgrades, maintenance or significant tests require personnel to be present in the telescope facilities on Haleakala or Government's Kihei office. Candidate must have effective verbal and written communication skills; must be able to adapt communication style to suit different audiences or facilitate group discussions; develop accurate written materials to communicate information clearly and concisely. Basic Compensation: $126k-190k The offered rate will be based on the selected candidate's knowledge, skills, abilities and/or experience and in consideration of internal parity. Additional Compensation: KBR may offer bonuses, commissions, or other forms of compensation to certain job titles or levels, per internal policy or contractual designation. Additional compensation may be in the form of sign on bonus, relocation benefits, short term incentives, long term incentives, or discretionary payments for exceptional performance. KBR Benefits KBR offers a selection of competitive lifestyle benefits which could include 401K plan with company match, medical, dental, vision, life insurance, AD&D, flexible spending account, disability, paid time off, or flexible work schedule. We support career advancement through professional training and development. Ready to Make a Difference? If you're excited about making a significant impact in the field of space defense and working on projects that matter, we encourage you to apply and join our team at KBR. Let's shape the future together. #ASTRO Belong, Connect and Grow at KBR At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team's philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver - Together. KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.

Posted 30+ days ago

Sr. Information Systems Security Officer (Isso)-logo
Sr. Information Systems Security Officer (Isso)
Contact Government ServicesAnniston, AL
Sr. ISSO Employment Type:Full-Time, Experienced /p> Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $118,560 - $171,253.33 a year

Posted 30+ days ago

Information Systems Security Manager - Level 3-logo
Information Systems Security Manager - Level 3
CACI International Inc.Annapolis Junction, MD
Information Systems Security Manager - Level 3 Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Employee Type: Regular Percentage of Travel Required: None Type of Travel: The Opportunity: We are seeking a highly skilled and experienced professional to provide comprehensive management support for an organization's Information Assurance (IA) program. The ideal candidate will play a key role in ensuring the security of information systems by overseeing the proposal, coordination, implementation, and enforcement of security policies, standards, and methodologies. Responsibilities: The candidate will be responsible for managing the operational security posture of an Information System, ensuring compliance with established policies, procedures, and standards. In this role, the candidate will work closely with Information System Security Engineers (ISSEs) and Information System Security Officers (ISSOs) to evaluate security solutions and assess their effectiveness in protecting classified information. The candidate will also manage vulnerability and risk assessments, as well as contribute to security authorization activities, including preparation and review of critical documentation such as System Security Plans (SSPs), Risk Assessment Reports, and Certification and Accreditation (C&A) packages. The successful candidate will oversee configuration management (CM) processes, ensuring that security software, hardware, and firmware are up-to-date and secure. Additionally, they will be responsible for assessing the security impact of system changes and providing support in line with the Risk Management Framework (RMF) and DoD Information Assurance Certification and Accreditation Process (DIACAP). This position offers a unique opportunity to make a significant impact on the overall security of critical information systems and ensure compliance with all regulatory and security requirements. Qualifications: Required: Current Active TS/SCI with POLY Twelve (12) years of work-related experience in the field of security authorization is required. Experience in the following areas is required: knowledge of current security tools, hardware/software security implementation; communication protocols; or encryption tools and techniques. Familiarity with commercial security products, security authorization techniques, security incident management, and PKI and authorization services. Bachelor's degree in Computer Science or a related field (e.g., General Engineering, Computer Engineering, Electrical Engineering, Systems Engineering, Mathematics, Computer Forensics, Cybersecurity, Information Technology, Information Assurance, Information Security, and Information Systems) is required. In lieu of a Bachelor's degree, an additional four (4) years of work-related experience may be substituted. DoD 8570 compliance with IAM III is required. The following certifications qualify: CISM, CISSP (or Associate), GSLC, CCISO Desired: Familiarity with Network Security Services and Chief Information Security Officer processes and procedures. This position is contingent on funding and may not be filled immediately. However, this position is representative of positions within CACI that are consistently available. Individuals who apply may also be considered for other positions at CACI. ____ What You Can Expect: A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation. An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy. Your potential is limitless. So is ours. Learn more about CACI here. ____ Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here. The proposed salary range for this position is: $120,800 - $265,800 CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.

Posted 1 week ago

Senior Information Security Engineer-logo
Senior Information Security Engineer
Southwest Business CorporationSan Antonio, TX
SWBC is seeking a talented individual to serve as a key Information Security Engineer empowered to leverage the industry's latest security principles, practices, and tools to improve the reliability, integrity, and security of on premise and cloud-hosted applications. Works by, with, and through internal and external DevOps stakeholders to incorporate security into all stages of the software development life cycle. Applies DevSecOps principles and applicable security standards to secure cloud services, cloud native applications, integrations, and supporting infrastructure through Continuous Integration (CI) and Continuous Delivery (CD) workflows, patterns, and tools. Analyzes cybersecurity, software development, infrastructure, software design, architecture and information technology best practices, threat intelligence, and emerging requirements to improve the security of the hosting environment and applications. Monitors cloud applications and services for indicators for compromise and compliance shortfalls and tracks issues for timely remediation. Implements administrative and technical controls to ensure security, privacy, and compliance of data stored, processed, or transmitted on Company owned or controlled cloud platforms. Monitors industry security updates, technologies, and best practices to ensure the Company's multi-cloud environment continues to provide adequate security and meet compliance requirements. Why you'll love this role: In this role, you will work with some of the top information security, technology, and business professionals in the financial services industry. As part of an agile and innovated security team, you will work closely with stakeholders at all levels and interact with the industry's top partners. You will employ advanced security technology and tactics to defend cutting-edge FINTECH and business technology. Beyond amazing career opportunities and singular experiences, our security team is diverse in all aspects; passionate about collaboration; leverages amazing technology and automation; laughs often; and celebrates our success as a team. Our leaders recognize that empowerment, autonomy, work-life balance, professional development, continuous improvement, and a commitment to shared values are key enablers of our success. We work hard, take care of each other, and deliver positive outcomes daily. This will be your best career decision. Essential duties include the following: Identifies, implements, maintains, and monitors risk-informed, standards-based, effective, and efficient security controls within a hybrid multi-cloud technology environment. Supports continuous integration and continuous development pipelines and processes that automatically build, test, and deploy infrastructure and containerized applications to ensure appropriate security checks are included automatically or manually. Reviews software releases and infrastructure changes for security vulnerabilities and risks prior to approval. Supports enterprise software development and cloud infrastructure projects and production applications that store, process, and transmit regulated data to ensure controls meet or exceed standards. Manages vulnerabilities and security testing for on premise and cloud-hosted applications and tracks issues to remediation. Supports audit and compliance efforts to ensure applications, infrastructure, and integrations meet applicable compliance and contractual standards. Identifies, recommends, and tests technical security standards and guidelines for software development, DevOps, and release management to ensure that all delivered solutions and architecture adhere to industry best-practices for availability, confidentiality, and integrity. Partners with internal and external development teams and other stakeholders to improve security and operational monitoring for cloud hosted workloads. Develops and tests incident response plans to prepare for, respond to, and recover from security incidents and operational issues as part of an incident response team. Supports efforts to provide for a secure integrated development environment for external and internal software and release management pipelines. Builds and tracks performance indicators and metrics to inform security control monitoring in cloud environments. Performs all other duties as assigned. Serious candidates will possess the minimum qualifications: Bachelor's Degree in Computer or Software Engineering, Information Security, Cybersecurity or related field from an accredited four year college or university required. Master's Degree preferred. AWS Certified Solutions Architect or DevOps Engineer Professional certification required. AWS Security Specialty certification highly desired. Certified Information Systems Security Professional (CISSP) and Certified Cloud Security Professional (CCSP) highly desired. Cloud Security Alliance (CSA) Certificate of Cloud Security Knowledge (CCSK) desired. GIAC Cloud Security Automation (GCSA) certification highly desired. Must be able to obtain certification within 6 months of hire. Minimum eight (8) years of extensive security engineering experience, including architectural design using AWS best practices and industry standards. Experience implementing and managing tools for security, availability, and compliance monitoring in a cloud environment which includes collecting data, parsing log files, capturing network traffic, setting alert thresholds, and notifying stakeholders. Experience and understanding of the DevOps deployment pipeline and security considerations for each step of the CI/CD processes. Experience with serverless architectures, their features, advantages, security concerns, and tactics for deploying effective security in serverless implementations. Experience with vulnerability management and virtual patching in the cloud. Experience with Amazon Web Services (AWS) cloud architecture components, security, identity, & compliance services, and knowledge of how to secure the environment. Familiar with DevOps toolsets to track work items, code, test, build, and release, and knowledge of how each stage is secured and automated. Familiar with tools to perform vulnerability assessments, threat detection, compliance benchmarking, audit logging, log evaluation, and network collection for cloud hosted applications. Familiar with basic web development practices, i.e. HTML, CSS, JavaScript, JQuery, etc. Familiar with team development tools and source control, including Azure DevOps, GIT, etc. Familiar with the principles of software development life cycle (SDLC) and separation of duties. Understanding of micro service architecture and implementation of appropriate security controls used in various architectural designs and conditions. Understanding of "As Code" processes and attack surfaces presented by CI, CD, and CM tools and familiarity with techniques for how to harden these tools. Understanding of the Secure DevOps auditing controls and how to leverage automated scanners to automate policy requirements. Demonstrated knowledge of how to configure security services and tools such as Web Application Firewalls, Content Delivery Networks, and Intrusion Monitoring to protect against common website attacks. Demonstrated knowledge of encryption and encryption key management using managed services and a dedicated cloud hardware security module. Knowledge of container security issues, hardening containerized environments, container orchestration tools, and running production workloads in the cloud. Knowledge of IT Security Operations. Knowledge of UI, AI, and Machine Learning. Knowledge the Payment Card Industry (PCI) Data Security Standard (DSS). Able to understand and write basic JSON programming language policies. Demonstrated ability to work as an essential part of a highly motivated business, technology, development teams. Proficient Microsoft Office skills, including Word and Excel. Written and verbal communication skills and the ability to work with teams and external stakeholders are essential. Strong problem resolution and interpersonal skills. Strong multi-tasking skills. Able to use general office equipment including copy machine and phone system. SWBC offers*: Competitive overall compensation package Work/Life balance Employee engagement activities and recognition awards Years of Service awards Career enhancement and growth opportunities Leadership Academy and Mentor Program Continuing education and career certifications Variety of healthcare coverage options Traditional and Roth 401(k) retirement plans Lucrative Wellness Program Based upon employee eligibility Additional Information: SWBC is a Substance-Free Workplace and requires pre-employment drug testing. Please note, SWBC does not hire tobacco users as allowed by law. To learn more about SWBC, visit our website at www.SWBC.com. If interested, please click the appropriate apply button.

Posted 1 week ago

Information Systems Security Officer (Isso) - Clearance Reqd @ Apg, MD-logo
Information Systems Security Officer (Isso) - Clearance Reqd @ Apg, MD
ICF International, IncFort Meade, MD
INFORMATION SYSTEM SECURITY OFFICER ICF is hiring a cleared Information Systems Security Officer. This is a full-time, on-site position located at Aberdeen Proving Ground, MD. Join us in support of the Army Program Executive Office- Intelligence Electronic Warfare and Sensors to assess cybersecurity risks, evaluate and test security controls, and recommend solutions to enhance the organization's security posture. The role includes reporting findings to management, overseeing remediation efforts, and potentially leading technical audit teams to assess the effectiveness of cybersecurity governance, tools, and operations. Key Responsibilities Perform all ISSO duties and responsibilities in DODI 8500.01, DODI 8510.01, and AR 25-2. Responsible for ensuring the appropriate operational security posture is maintained for the information system (IS) on multiple security domains and classification to met Intelligence Community (IC), DoD and Army cybersecurity/information assurance regulations and policies. This includes providing guidance and oversight to vendors and/or the Develops, reviews, evaluates and verifies self-testing results to validate enclave security requirements in accordance with applicable Intelligence Community, DoD and Army cybersecurity and Information Assurance (IA) regulations, policies and organizational security policies) in Information Systems (ISs) are met. ISs includes Cross Domain Solution Suites (CDSS), Cloud, On-Prem, Tactical, etc., within the program's portfolio. Ensure the appropriate organizational operational security posture is maintained for the assigned Army IS. Maintain organizational situational awareness and initiate actions to improve or restore cybersecurity posture of assigned IS. Implement and enforce assigned Army IS cybersecurity policies and procedures, as defined by cybersecurity-related documentation. Ensure Army IS cybersecurity-related documentation is current and accessible to properly authorized individuals. Prepare, distribute, and maintain plans, instructions, and SOPs concerning system security. Prepare and maintain Risk Management Framework (RMF) system accreditation Body of Evidence (BOE) packages using the eMASS, XACTA, or other approved A&A tool to include: System Security Plans, Risk Assessment Reports, System Requirements Traceability Matrices (SCTM), and other documentation as required by ICD 503, NIST 800-53, CNSSI 1254, and any additional documentation as determined by the Authorizing Official (AO). Direct experience with eMASS, XACTA, or other A&A repositories required. Review unit or product vendor RMF BOE and provide guidance and oversight. Fully understand DISA Port Protocol, and Services Management (PPSM) requirements, and able to obtain PPSM account for management of PPSM for supporting systems. Must be willing to travel, as needed, 25%. Basic Qualifications Bachelors Degree plus 7 or more years of directly related experience; or, MS degree plus 5 or more years of directly related experience. Degree must be in Computer Science or a related field (e.g., General Engineering, Computer Engineering, Electrical Engineering, Systems Engineering, Cyber Security, Information Technology, Information Security, and Information Systems). Active High Level security clearance with SCI and Poly Additional Required Qualifications Primary Certifications- DoDI 8570.01 Requirement, IAM II certification - one or more of the following required: CompTIA Advanced Security Practitioner (CASP), Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP or Associate), CompTIA Advanced Security Practitioner CASP+ CE, GIAC Security Leadership (GSLC), Certified Chief Information Security Officer (CCISO), Healthcare Security Certification (HCISPP) Must also have Linux Certification. Additional Skills/Experience Direct experience with implementation of DOD-I-8500, DOD-I-8510, ICD 503, NIST 800-53, CNSSI 1253, Army AR 25-2, and RMF security control requirements, and able to provide technical direction, interpretation, and alternatives for security control compliance. Relevant experience must be in computer or information systems design/development and with information assurance and accreditation processes (e.g., System Security Plans, Risk Assessment Reports, Certification and Accreditation Packages, and System Requirements Traceability Matrices). #clearance #LLI-C1 #Indeed #apg Working at ICF ICF is a global advisory and technology services provider, but we're not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future. We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer. Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. For more information, please read our EEO policy. Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process. To request an accommodation, please email Candidateaccommodation@icf.com and we will be happy to assist. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. Read more about workplace discrimination rights or our benefit offerings which are included in the Transparency in (Benefits) Coverage Act. Candidate AI Usage Policy At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate or assist with responses during interviews (whether in-person or virtual) is not permitted. This policy is in place to maintain the integrity and authenticity of the interview process. However, we understand that some candidates may require accommodation that involves the use of AI. If such an accommodation is needed, candidates are instructed to contact us in advance at candidateaccommodation@icf.com. We are dedicated to providing the necessary support to ensure that all candidates have an equal opportunity to succeed. Pay Range- There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position. The pay range for this position based on full-time employment is: $107,936.00 - $183,491.00 Maryland Client Office (MD88)

Posted 30+ days ago

Sr. Information Systems Security Officer (Isso)-logo
Sr. Information Systems Security Officer (Isso)
Contact Government ServicesArlington, VA
Sr. ISSO Employment Type:Full-Time, Experienced /p> Department: Information Technology CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements. CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities. Skills and attributes for success: Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades. Maintain responsibility for managing cybersecurity risk from an organizational perspective. Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership. Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies. Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO). Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes. Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF. Provide subject matter expertise for cyber security and trusted system technology. Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems. Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes. Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring. Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems. Qualifications: Bachelor's Degree. A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc. eMASS experience. Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher. Strong desktop publishing skills using Microsoft Word and Excel. Experience with industry writing styles such as grammar, sentence form, and structure. Ability to multi-task in a deadline-oriented environment. Ideally, you will also have: CISSP, CASP, or a similar certificate is preferred. Master's Degree in Cybersecurity or related field. Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking. Demonstrated ability to work well independently and as a part of a team. Excellent work ethic and a high commitment to quality. Our Commitment: Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems. For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work. Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come. We care about our employees. Therefore, we offer a comprehensive benefits package. Health, Dental, and Vision Life Insurance 401k Flexible Spending Account (Health, Dependent Care, and Commuter) Paid Time Off and Observance of State/Federal Holidays Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Join our team and become part of government innovation! Explore additional job opportunities with CGS on our Job Board: https://cgsfederal.com/join-our-team/ For more information about CGS please visit: https://www.cgsfederal.com or contact: Email: info@cgsfederal.com $118,560 - $171,253.33 a year

Posted 30+ days ago

Seller/Servicer Information Security Risk Oversight Manager-logo
Seller/Servicer Information Security Risk Oversight Manager
Freddie MacMclean, VA
At Freddie Mac, our mission of Making Home Possible is what motivates us, and it's at the core of everything we do. Since our charter in 1970, we have made home possible for more than 90 million families across the country. Join an organization where your work contributes to a greater purpose. Position Overview: Freddie Mac is seeking an experienced Manager in Information Security to enhance security maturity by ensuring the quality of design and implementation of Standard Operating Procedures (SOPs) and controls. This role involves establishing compliance processes, guiding a team, and providing governance for security guardrails in software delivery. The Manager will also work to mature Information Security processes using the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF). Our Impact: The Seller/Servicer information security oversight team within Third-Party Risk Management provides oversight of seller/servicers. Our cyber specialists proactively monitor, identify, detect, and respond to cyber threats through regular vulnerability scans to mitigate information security risk to Freddie Mac. Your Impact: The Seller/Servicer Information Security Risk Oversight Manager will be responsible for administering the Information Security cyber questionnaire that is comprised of the following: Conducting Information Security risk reviews and interviews with seller/servicers for the annual Consolidated Origination and Risk Evaluation (CORE) review that includes analyzing findings from the reviews and providing a risk assessment, with supported evidence. In addition, the Seller/Servicer Information Security Risk Oversight Manager will have a deeper understanding of the NIST standards and be able to analyze the seller/services compliance with the Freddie Mac Guide. Identify and assess potential risks and vulnerabilities to our systems and data by our third parties using approved monitoring tools. Conduct risk assessments, analyze threats and assess third party information security processes and procedures, identify any associated risks, and provide a risk assessment with supporting evidence. The candidate must have a significant understanding of the Third-Party Risk Governance process. The Manager will also perform other duties as assigned in support of evolving organizational needs. Qualifications: 8-10 years experience with 6 - 8 years preferred experience in cybersecurity or cyber risk management, particularly in highly regulated industries. 2 or more years of demonstrated experience as a people manager. Bachelor's degree in computer science, engineering, or a related field, or equivalent work experience. Experience in discussions with senior leadership to understand strategic goals. Strong experience in IT governance, risk, and controls, including frameworks like COBIT, FFIEC, ISO2700x, and NIST. Keys to Success in this Role: Strong organizational and time management skills, leading multiple priorities and deadlines. Ability to develop, maintain, and cultivate effective relationships across divisions Strong analytical skills Flexible and adaptable. Current Freddie Mac employees please apply through the internal career site. We consider all applicants for all positions without regard to gender, race, color, religion, national origin, age, marital status, veteran status, sexual orientation, gender identity/expression, physical and mental disability, pregnancy, ethnicity, genetic information or any other protected categories under applicable federal, state or local laws. We will ensure that individuals are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation. A safe and secure environment is critical to Freddie Mac's business. This includes employee commitment to our acceptable use policy, applying a vigilance-first approach to work, supporting regulatory mandates, and using best practices to protect Freddie Mac from potential threats and risk. Employees exercise this responsibility by executing against policies and procedures and adhering to privacy & security obligations as required via training programs. CA Applicants: Qualified applications with arrest or conviction records will be considered for employment in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Notice to External Search Firms: Freddie Mac partners with BountyJobs for contingency search business through outside firms. Resumes received outside the BountyJobs system will be considered unsolicited and Freddie Mac will not be obligated to pay a placement fee. If interested in learning more, please visit www.BountyJobs.com and register with our referral code: MAC. Time-type:Full time FLSA Status:Exempt Freddie Mac offers a comprehensive total rewards package to include competitive compensation and market-leading benefit programs. Information on these benefit programs is available on our Careers site. This position has an annualized market-based salary range of $142,000 - $214,000 and is eligible to participate in the annual incentive program. The final salary offered will generally fall within this range and is dependent on various factors including but not limited to the responsibilities of the position, experience, skill set, internal pay equity and other relevant qualifications of the applicant.

Posted 5 days ago

Contact Government Services logo
Information Systems Security Officer (Isso)
Contact Government ServicesWichita, KS
Apply

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Job Description

ISSO

Employment Type: Full-Time, Experienced

Department:Information Technology

CGS is seeking an Information Systems Security Officer (ISSO) with DIACAP and/or RMF experience who has deep expertise in security assessment documentation to support Dept. of Commerce systems and efforts to achieve their Authorization to Operate (ATO). This position is located at the client site in the Herbert Hoover building in Washington, DC. The scope of this position includes full life-cycle Assessment and Authorization (A&A) management through all 6 Steps of the RMF process in support of the Government ISSM.In this role, you'll conduct security assessment, and information system security oversight activities in accordance with NIST 800.53 that support systems from the perspective RMF requirements.

CGS brings motivated, highly skilled, and creative people together to solve the government's most dynamic problems with cutting-edge technology. To carry out our mission, we are seeking candidates who are excited to contribute to government innovation, appreciate collaboration, and can anticipate the needs of others. Here at CGS, we offer an environment in which our employees feel supported, and we encourage professional growth through various learning opportunities.

Skills and attributes for success:

  • Review systems to identify potential security weaknesses and recommend improvements to amend vulnerabilities, implement changes, and document upgrades.
  • Maintain responsibility for managing cybersecurity risk from an organizational perspective.
  • Identify organizational risks, prioritize those risks, and maintain a risk registry for escalating and presenting those risks to senior leadership.
  • Provide security guidance and IS validation using the National Institute of Standards and Technology (NIST) RMF, DoC, and local security policies.
  • Providing configuration management (CM) recommendations for information system security software, hardware, and firmware and coordinating changes and modifications with the ISSM, Security Control Assessor (SCA), and Authorizing Official (AO).
  • Maintain vulnerability scanning tool compliance, such as HBSS or ACAS, and patch management, such as IAVM to ensure IT staff pushes patches to all systems in an effort to maintain compliance with all applicable directives, manage system changes, and assess the security impact of those changes.
  • Support security authorization activities, including transitioning from the legacy Information Assurance Certification and Accreditation Process (DIACAP) to compliance with the DoC RMF.
  • Provide subject matter expertise for cyber security and trusted system technology.
  • Apply advanced technical knowledge and analysis of specialized functional areas in task requirements to develop solutions to complex problems.
  • Research, write, review, disposition feedback, and finalize recommendations regarding cyber security policy, assessment and authorization assessments (A&As), security test and evaluation reports, and security engineering practices and processes.
  • Conduct research and write risk assessment reports to include risk thresholds, evaluation, and scoring.
  • Support analysis of the findings and provide expert technical guidance for mitigation strategies, including implementation advice on the cyber security risk findings, and other complex problems.

Qualifications:

  • Bachelor's Degree.
  • A minimum of five (5) years experience as an Information Assurance (IA) Analyst, ISSE, ISSO, or similar role in ATO package development, including generating security documentation for requirements, security control assessment, STIG and IAVA compliance, Standard Operating Procedures, test results, etc.
  • eMASS experience.
  • Professional security certification such as: CCNA Security, CySA+, GICSP, GSEC, CompTIA Security+ CE, SSCP, or higher.
  • Strong desktop publishing skills using Microsoft Word and Excel.
  • Experience with industry writing styles such as grammar, sentence form, and structure.
  • Ability to multi-task in a deadline-oriented environment.

Ideally, you will also have:

  • CISSP, CASP, or a similar certificate is preferred.
  • Master's Degree in Cybersecurity or related field.
  • Strong initiative, detail orientation, organizational skills, and aptitude for analytical thinking.
  • Demonstrated ability to work well independently and as a part of a team.
  • Excellent work ethic and a high commitment to quality.

Our Commitment:

Contact Government Services (CGS) strives to simplify and enhance government bureaucracy through the optimization of human, technical, and financial resources. We combine cutting-edge technology with world-class personnel to deliver customized solutions that fit our client's specific needs. We are committed to solving the most challenging and dynamic problems.

For the past seven years, we've been growing our government contracting portfolio, and along the way, we've created valuable partnerships by demonstrating a commitment to honesty, professionalism, and quality work.

Here at CGS we value honesty through hard work and self-awareness, professionalism in all we do, and to deliver the best quality to our consumers mending those relations for years to come.

We care about our employees. Therefore, we offer a comprehensive benefits package.

Health, Dental, and Vision

Life Insurance

401k

Flexible Spending Account (Health, Dependent Care, and Commuter)

Paid Time Off and Observance of State/Federal Holidays

Contact Government Services, LLC is an Equal Opportunity Employer. Applicants will be considered without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Join our team and become part of government innovation!

Explore additional job opportunities with CGS on our Job Board:

https://cgsfederal.com/join-our-team/

For more information about CGS please visit: https://www.cgsfederal.com or contact:

Email: info@cgsfederal.com

$92,213.33 - $125,146.66 a year