NIST SP 800-53 – Who Needs Engineers https://whoneedsengineers.com/wne_live Software Engineering Recruitment Fri, 25 Oct 2024 20:00:02 +0000 en-US hourly 1 https://wordpress.org/?v=6.6.2 https://whoneedsengineers.com/wne_live/wp-content/uploads/2023/06/cropped-wne_logo-3-32x32.png NIST SP 800-53 – Who Needs Engineers https://whoneedsengineers.com/wne_live 32 32 Cybersecurity Engineer I https://whoneedsengineers.com/jobs/cybersecurity/cybersecurity-engineer-i/ Fri, 25 Oct 2024 20:00:02 +0000 https://whoneedsengineers.com/wne_live/jobs/jobs-categories/cybersecurity-engineer-i/ Cybersecurity Engineer I

Job Description:

    We are seeking a dedicated Cybersecurity Engineer I to join our team in San Diego, CA. In this entry-level position, you will play a crucial role in the protection of Navy and Department of Defense systems against cyber threats. Working under the supervision of experienced cybersecurity professionals, you will assist in the deployment and management of various cybersecurity measures. Your responsibilities will include applying cybersecurity policies, conducting thorough vulnerability assessments, and ensuring that all systems adhere to the Risk Management Framework requirements. This role offers a fantastic opportunity to learn and grow in a dynamic environment focused on safeguarding critical information systems.

IT Languages:

  • Python
  • Java
  • C++
  • SQL

As a Cybersecurity Engineer I, you will be responsible for a variety of tasks that support the security of Navy systems.:

    Assist in implementing security controls according to DoD and Navy cybersecurity policies.;; Work alongside senior cybersecurity engineers to ensure compliance with NIST SP 800-53 security standards.;; Support the development of security policies and procedures aimed at protecting Navy systems.;; Conduct vulnerability assessments and security audits of Navy systems to identify potential risks.;; Utilize tools such as Vulnerability Remediation Asset Manager (VRAM) to track and report vulnerabilities.;; Collaborate with senior security personnel to identify and remediate security risks.;; Maintain documentation related to system security, including risk assessments and compliance reports.;; Aid in the preparation of security authorization packages in accordance with RMF requirements.;; Ensure all systems are configured correctly and continuously monitored to meet Navy security standards.;; Assist in responding to cybersecurity incidents and implementing effective mitigation strategies.

Spoken Languages:

  • English

Skillset:

  • Cybersecurity policies
  • Risk Management Framework
  • Vulnerability assessments
  • Security controls
  • NIST SP 800-53
  • Security documentation

Soft Skills:

  • Analytical thinking
  • Attention to detail
  • Team collaboration
  • Problem-solving

Qualifications:

  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or a related field.
  • IAM Level I certification such as Security+, Cloud+, CAP or similar.

Years of Experience:

    0

Location:

    San Diego, CA, United States

Job Benefits:

  • Health insurance
  • Retirement plan
  • Professional development opportunities
  • Paid time off
  • Flexible working hours

Working Conditions:

    Full Time

Employment Type:

    Permanent Contract

Company Culture:

  • The company fosters a collaborative and innovative environment where employees are encouraged to continuously learn and grow. Teamwork and open communication are highly valued, and there is a strong commitment to professional development and employee well-being.

Opportunities For Advancement:

  • Career progression to Cybersecurity Engineer II, Mentorship programs, Access to advanced training and certifications

Visa Sponsorship:

    Not Available
]]>
Information Security Analyst https://whoneedsengineers.com/jobs/cybersecurity/information-security-analyst-3/ Mon, 30 Sep 2024 10:30:01 +0000 https://whoneedsengineers.com/wne_live/jobs/jobs-categories/information-security-analyst-3/ Information Security Analyst

Job Description:

    As an Information Security Analyst, you will be instrumental in safeguarding our information systems by conducting thorough assessments of security controls. Your role will involve evaluating the effectiveness of security measures, ensuring compliance with established frameworks, and identifying vulnerabilities in applications and databases. You'll work within the NIST 800-53 security framework to assess new systems and document their security posture to facilitate the Authority to Operate (ATO) process. Additionally, you will play a key role in ongoing audits and monitoring, ensuring that security controls remain effective over time. This position offers an excellent opportunity to deepen your understanding of security compliance while collaborating with various stakeholders to align with security standards and best practices.

IT Languages:

  • Python
  • PowerShell

The responsibilities of the Information Security Analyst include a variety of critical tasks that contribute to the overall security posture of the organization. You will conduct security control tests to assess both design and operational effectiveness, ensuring that vulnerabilities are identified and remediated efficiently.:

    Manage remediation tasks and ensure timely completion;; Lead analysis of internal and third-party vulnerability scans;; Conduct cyber security risk assessments and serve as a liaison for the security team;; Assist in incident response processes with IT teams;; Create security operation controls, playbooks, and procedures;; Stay updated on current trends and emerging threats in cybersecurity

Spoken Languages:

  • English

Skillset:

  • NIST SP 800-53
  • CIS Critical Security Controls
  • OWASP
  • MITRE ATT&CK
  • ISO27001
  • Network security
  • Incident response

Soft Skills:

  • Analytical thinking
  • Attention to detail
  • Problem-solving
  • Communication skills
  • Team collaboration

Qualifications:

  • Bachelor’s degree in a related field
  • Professional security certifications (CySA+, Security+, CISSP, CCSP, CISM, CISA, AWS Certified Security Specialty) or willingness to obtain certification
  • Working knowledge of AWS Security tools
  • Strong understanding of cloud security concepts
  • Familiarity with information security operational concepts

Years of Experience:

    10

Location:

    United States

Job Benefits:

  • Competitive base salary
  • Flexible working hours
  • Remote work options
  • 401K with matching contributions
  • Parental leave
  • Medical, dental, and vision insurance
  • Flex Spending Account
  • Company-provided short-term disability
  • Company-provided life insurance
  • Commuter benefits
  • Generous paid time off
  • Eleven paid holidays
  • Professional development opportunities
  • New business referral bonus

Working Conditions:

    Full Time

Employment Type:

    Permanent Contract

Company Culture:

  • We prioritize diversity, equity, and inclusion in our workplace, fostering an environment that values individual contributions and promotes professional growth.

Opportunities For Advancement:

  • Professional development, Career growth opportunities, Involvement in special projects

Visa Sponsorship:

    Not Available
]]>