Senior Security Architect

DirectViz SolutionsWashington, DC
23d

About The Position

The Senior Security Architect will support the Information Security program by overseeing the security of various information systems, ensuring alignment with government standards, and maintaining robust documentation and risk management protocols. This role involves working with Information System Security Officers (ISSOs) to manage, update, and enforce security policies, privacy assessments, and system security plans, ensuring compliance and risk mitigation. The Senior Security Architect will also drive the establishment and maintenance of a Cyberthreat Dashboard, the Enterprise Security Operations Center (ESOC), and the Vulnerability Management Program.

Requirements

  • Bachelor's degree in Computer Science, Information Management (IM), Information Technology, Engineering, or a related field; or equivalent experience.
  • Minimum of 6 years in a technical role, or 4 years in IT solutions at the senior management level (preferred).
  • Active Public Trust or the ability to obtain one.
  • Certified Information Systems Security Professional (CISSP) - mandatory.
  • CISSP - Information Systems Security Architecture Professional (ISSAP) concentration - mandatory
  • Project Management Professional (PMP) from the Project Management Institute - mandatory
  • Information Technology Infrastructure Library (ITIL) 4 Foundation certification - mandatory
  • Public Trust or higher.
  • Proven experience with information security documentation, compliance assessments, and incident response.
  • Strong understanding of government standards and best practices in cybersecurity.
  • Effective leadership and collaboration skills, with the ability to train and mentor team members.

Responsibilities

  • Manage and maintain comprehensive security documentation for government systems.
  • Create and update privacy assessments, system security plans, and other documentation to ensure compliance.
  • Oversee policies and procedures for security, manage associated risks, and track training compliance.
  • Conduct SCAs for approximately 63 systems, testing one-third of security controls annually.
  • Address and resolve identified security issues, ensuring new systems undergo thorough assessment.
  • Operate the Department of Labor's 24/7 Computer Security Incident Response Capability (CSIRC).
  • Train analysts on incident response procedures, focusing on incidents involving Personally Identifiable Information (PII).
  • Build and maintain a Cyberthreat Dashboard to report on threat activities and enhance situational awareness.
  • Establish and maintain security tools and processes for ESOC.
  • Monitor network activities for unauthorized access and potential security breaches.
  • Support the Office of the Chief Financial Officer (OCFO) by safeguarding financial systems and ensuring adherence to accounting standards.
  • Lead the Vulnerability Management Program to identify and address security weaknesses.
  • Manage proactive monitoring of applications, databases, and other IT systems, ensuring compliance with security, accounting standards, and accessibility requirements.

Benefits

  • DVS is an employee-centric employer that provides competitive compensation, comprehensive medical plans, 401k match, PTO accrual, professional development reimbursement, corporate-funded technology certifications, and employee recognition and appreciation programs.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service