The Cyber Security Technology Management Analyst will perform audits on complex information systems, applications, and enclaves to ensure that appropriate controls exist and are correctly implemented; and that procedures comply with Federal, DOD, and DLA standards. The role involves monitoring Energy Applications for Industrial Control Systems (ICS), computer-controlled electromechanical systems that deliver installation infrastructure services including Supervisory Control and Data Acquisition (SCADA), Distributed Control System (DCS), Energy Management Control System (EMCS), and others as applicable to specific programs. The analyst will assess compliance with Information Assurance (IA) policy, recommend improvements, and monitor IA for Energy Applications to ensure compliance with Federal, DOD, and DLA IA policy. This includes monitoring certification and accreditation activities and recommending the preparation and updating of documentation to support Federal Information Security Management Act (FISMA) and DOD Risk Management Framework (RMF) reporting requirements. The position requires the ability to develop RMF security documentation on behalf of OT applications, perform technical reviews of documented security certification results, assess their comprehensiveness, identify system vulnerabilities and weaknesses, and recommend mitigation strategies. The analyst will also analyze vulnerability scans and Security Readiness Review (SRR) results, Security Technical Implementation Guide (STIG) compliance, and deficiencies identified during internal and external IA reviews, tracking them through to adequate mitigation.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Education Level
No Education Listed