Savannah River National Laboratory-posted 3 days ago
Full-time • Mid Level
Aiken, SC
1,001-5,000 employees

Savannah River National Laboratory (SRNL) is seeking an energetic individual with good interpersonal skills to join the Cyber Assurance, Governance, Risk Management and Compliance team! The selected individual will assist the Information Systems Security Officer (ISSO) and GRC team with NIST Risk Management Framework (RMF) processes to ensure a secure operational security posture is in place and maintained throughout the lifecycle of the system and/or network.

  • Data entry, updates and maintenance of System Security Plans and other documents/evidence in the GRC tool
  • Executing scans security scans (compliance and vulnerability related)
  • Tracking status of temporary risk findings to closure and gathering remediation evidence
  • Pulling configuration compliance reports, STIG checklists, CIS benchmarks
  • Assist with RMF Continuous Monitoring activities and new project Risk Assessments
  • Assist Project Security Officers and ISSOs with preparation of authorization packages for new projects and accreditation boundary
  • Assist with entry of new risks, updates or maintenance in the risk register
  • Assist in performing security impact analysis using approved security policies and SSPs and provide recommendations for meeting requirements with adequate security controls that align with business objectives.
  • Work effectively in a team environment to resolve issues and contribute to continuous process improvement efforts.
  • Participate/assist with compliance assessments/audits and data calls.
  • Interact with customers and peers in a professional and responsive manner.
  • Bachelor's degree in Computer Science, Information Assurance, or related field
  • 4-6 years of relevant experience in NIST Risk Management Framework and Control Sets (i.e., NIST 800-37 and NIST 800-53) as a federal-contractor employee
  • For ability to obtain and maintain a security clearance, US Citizenship is Legally Required
  • Working knowledge and experience with the NIST Risk Management Framework and Control Sets (i.e., NIST 800-37 and NIST 800-53) in a federal contractor role
  • Attention to detail and strong written communication skills (clear, concise for evidence/control implementation descriptions)
  • Experience with information assurance tools (GRC, Tenable.SC, Nessus, Splunk, etc.)
  • Ability to quickly learn new technologies, concepts, and processes
  • Demonstrated ability to work collaboratively in a team environment with good interpersonal skills
  • Active DOE L clearance
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service