Deputy IT Security Manager Security Analyst Tysons Corner, VA Position Requires 8+ Years Experience Hybrid- 4 days Onsite @ Falls Church, VA Active Secret Clearance Must Pass Background and Credit Check Responsibilities: Policy and Standards: Propose, coordinate, implement, and enforce information systems security policies, standards, and methodologies. Team Leadership: Manage a large, geographically dispersed, multifaceted team comprised of various cybersecurity engineers; team roles include information assurance, security infrastructure engineers, and Security Operations Center (SOC) analysts. Incident Management: Direct and coordinate actions for incident response, data collection, digital forensics, cleanup, and reporting. Threat Intelligence: Assess threat reports and threat intelligence to inform operational and policy decisions. Project Management: Prioritize and manage projects in a fast-paced environment, ensuring timely completion of projects, on time and on schedule. Compliance Review: Read and interpret security hardening guides (e.g., STIGs, SRGs), SCAP results, and vulnerability assessment scan results and provide direction as necessary for audit, accreditation, project, and consulting activities. Vulnerability Management: Review vulnerability scans and approve associated mitigation strategies. Document strategies in Plans of Action and Milestones (POA&M) artifacts. Information System Security Officer (ISSO) Duties: Perform all required duties as the primary Information System Security Officer for a large-scale, joint-force enterprise network. Accreditation Management: Conduct and manage security authorization and accreditation activities under a Risk Management Framework (RMF) for multiple accreditation boundaries. Guidance and Leadership: Provide guidance and leadership to other team ISSOs and security professionals. Security Control Review: Lead authorization efforts and compliance reviews. Complete, test, and review RMF security controls as part of multiple security authorization packages (e.g., eMASS equivalents). Documentation: Develop artifacts to provide evidence, support, or policy guidance for compliance with each control as necessary. SOC Oversight: Conduct management and oversight of the enterprise SOC team and Incident Responders. Coordinate response efforts, incident management, and triage. Provide oversight of SOC activities, technologies, and strategic direction. Investigations: Coordinate with division leads and directors for investigations, insider threat, and security research. Strategic Analysis: Conduct analysis and provide recommendations on policy, design, and solutions for increasing the security of the enterprise.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Education Level
High school or GED
Number of Employees
101-250 employees