Information Security /Privacy Analyst

Full Time
Arlington, VA
Areas of Interest: Systems Security Analysis
report a problem
Overview


 

Looking for a rewarding and challenging career with a dynamic, growing organization?  Phacil is your answer. We have an immediate need for an Information Security / Privacy Analyst to support an important government customer in Arlington, VA

Clearance Level (Required to Start):  Secret

 

Daily Job Responsibilities:

  • Support the security assessment of globally-deployed departmental systems through hands-on execution of customer-supplied tools and best-practice techniques, including manual verification scans against defined component baselines.
  • Determine the security and configuration status of a variety of system components including Linux and Windows operating systems; SQL Server and Oracle databases; system support components; VMWare implementations.
  • Support the customer through systems/network monitoring via iPost and other department approved and sanctioned tools under the continuous monitoring task and the Heads-Up certification phase of the customer’s Assessment and Accreditation (A&A) process, and incident monitoring of devices within the customer’s environment to ensure current policies are upheld. 
  • Providing guidance and strategies so that the customer functions in accordance with Federal Information Security Management Act (FISMA) and information assurance requirements, as well as agency and other organizational policies, guidelines and procedures. 
  • Monitoring the customer's information technology architecture to ensure an adequate information system security infrastructure is in place to meet day-to-day security requirements. 
  • Ensure that information systems are operated within an acceptable level of risk and are audited properly. 
  • Ensuring that all information systems security related incidents and violations are immediately reported, data is collected, investigation is coordinated, and corrective measures are implemented. 
  • Provide monitoring and analysis of potential security risks at customer sites (both government and contractor) through the effective monitoring and analysis of security threats, recommending corrective actions through impact assessments and on-going support. 
  • Provide on-going security support in the areas of software and administrative support to the customer, including providing detailed security briefings on a regular basis.
  • Assist the systems security office in the effective analysis, operation, maintenance, documentation, training and ongoing support of security systems. 
  • Write and update various SOP's and scripts as needed to affect proper security procedures are current in an ever-changing environment. 
  • Responding, in general, to system identified deficiencies and defects and provide security program remediation reports, procedures and maintenance plans to various customer’s development and operations groups, as necessary for timely remediation of those findings. 
  • Providing support to system administrators to ensure systems are reporting properly and through the monitoring of all systems on the network and by reviewing and providing analysis of security logs, systems logs and ensuring all security compliance is maintained.

 

Required Skills:

  • Linux and Windows Server environment familiarity
  • Ability to develop custom scripts (bash and Windows Powershell or equivalent)
  • Working knowledge of various assessment tools including Tenable Nessus, HP Webinspect, AppDetective, nmap, and related
  • NOC, SOC, operations, data center or similar experience
  • NIST and Risk Management Framework (RMF) familiarity

Preferred Skills:

  • Prior Department of State experience
  • Application security principles and experience
  • NOC, SOC, operations, data center or similar experience

Degree Required/Equivalent Experience w/o degree:  

  • 3-5 years of experience

Certification Requirements:

  • CAP, CISSP, Security + or related certifications

 

Travel Requirement: None

Phacil continually strives for performance excellence as evidenced by corporate certifications, such as ISO 9001:2008 and ISO/IEC 27001:2013, performing certified ISO/IEC 20000-1:2011 and CMMI Maturity Level 3 (for both Development and Services) work on contracts. Phacil has won numerous awards, including rankings on Washington Business Journal’s Top Government Technology Contractors, CRN Solution Provider 500, and Tech Council of MD’s Contracting Firm of the Year, to name a few. 

Phacil is an Equal Opportunity Employer.  Minorities/Women/Veterans/Disabled.  All  qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, age, protected veteran status, or disability status.



Share this job:

Phacil, Inc

Phacil is a leading provider of mission-focused, results-driven technology solutions to the federal government. Phacil offers a diverse range of technology services, including Software Development, Systems Integration, Operations and Maintenance, Cyber Security, Geographic Information Systems, Technical Consulting, and Business Operations. The company has received numerous accolades including rankings as a Virginia Fantastic 50 Company, Washington Business Journal’s Top Government Technology Contractors, an Inc. 500/5000 Company and as the Maryland Tech Council’s Government Contracting Firm of the Year.

Current government customers include Department of Agriculture, Department of Commerce, Department of Homeland Security, Department of Justice, Department of State, Department of Treasury, Federal Bureau of Investigation, US Air Force, US Army, US Navy, DoD Office of Inspector General, to name a few.

Specialties
Development, Integration, Operations & Maintenance, CyberSecurity, Geographical Information Systems, Technical Consulting, Business Operations, Information Technology
Visit Phacil, Inc's Social Media pages:
Company Industry: Information Technology and Services