Information Assurance Analyst - DISA
Information security analyst job in Pensacola, FL
Global Business Solutions, Inc., established in 1995, offers customers a distinctive blend of information technology capabilities, education and training services, and information assurance solutions. Managed by a team of executive leaders experienced in the field of information technology and training services within the industry and government, GBSI prides itself on exceeding expectations. Our award-winning solutions give clients the support tools needed to successfully deliver in evolving environments with confidence.
Job Description
ROLE AND RESPONSIBILITIES
Conducts capacity and performance analysis, and provides system configuration change and upgrade recommendations. Increases system administrator efficiency and accuracy via the use of automated tools and scripts, develops system administrator procedures, and conducts system administrator training and skills assessment.
PRIMARY OBJECTIVES OF THE INFORMATION ASSURANCE ANALYST
• VMS/CMRS Management including entering data, running reports, and ensuring that hardware is up-to-date with security patches from vendors;
• System scans using DoD-approved scanning tools such as ACAS, Gold Disk, Retina, and HBSS Policy Auditor;
• Process and retain System Authorization Access Requests (DD2875);
• Develop and execute test plans in accordance with DoD guidelines, to collects/analyze data, write reports and coordinate with system managers and product developers for remediation of findings:
• Perform assessments of systems and networks within the networking environment or enclave and identify where those systems and networks deviate from acceptable configurations, enclave policy, or local policy. This is achieved through passive evaluations such as compliance audits and active evaluations such as vulnerability assessments;
• Establish strict program control processes to ensure mitigation of risks and achievement of certification and accreditation of systems. Includes support of process, analysis, coordination, security certification test, security documentation, as well as investigations, software research, hardware introduction and release, emerging technology research inspections and periodic audits;
• Assist in the implementation of the required government policy; make recommendations on process tailoring and participate in and document process activities;
• Perform analyses to validate established security requirements and to recommend additional security requirements and safeguards. Support the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results and preparation of required reports;
• Document the results of Certification and Accreditation activities and technical or coordination activity and prepare the system Security Plans and update the Plan of Actions and Milestones POA&M;
• Periodically conduct a complete review of each system's audits and monitor corrective actions until all actions are closed.
Qualifications
• A minimum of five (5) years of experience in Cybersecurity, IA, or related area;
• CISSP Certification preferred;
• Possess an IAT/IAM Level III certification in accordance with DoD 8570.01-M Information Assurance Workforce Improvement Program guidelines;
• Defense Information Assurance and Certification Process (DIACAP);
• Vulnerability Management System (VMS);
• DoD C&A Portal (eMASS);
• Risk Management Framework (RMF);
• Assured Compliance Assessment Solution (ACAS);
• Continuous Monitoring and Risk Scoring (CMRS);
• DoD Security Technical Implementation Guides (STIGS);
• Federal Information Security Management Act (FISMA);
• Host Based Security System (HBSS);
• McAfee's Enterprise Policy Orchestrator (ePO);
• Knowledge of DOD Information Security (INFOSEC);
• Ability to communicate effectively orally and in writing;
• Knowledge of IT Systems Analysis;
• Knowledge of IT policy and planning, IT project management, and system administration;
• Knowledge and experience in Windows, Linux, Networking, Proxy, and Firewalls;
• Knowledge and experience with DoD STIGs, SRRs, OVAL, SCAP and their application/use for security evaluation and remediation of various systems. (Windows, Linux, Oracle, Cisco, Juniper, etc.); Ability to pass a government background check.
Additional Information
GBSI is an Equal Opportunity and Affirmative Action Employer committed to providing equal employment opportunity without regard to an individual's race, color, religion, creed, age, sex (including pregnancy), sexual orientation, gender identity, genetics, marital status, national origin, disability, veteran status, political affiliation or belief. This equal opportunity applies to every area of employment at GBSI, including recruitment, hiring, training, transfers, promotions, terminations, compensation, and benefits. We continue to affirm our commitment to an inclusive workplace through Affirmative Action Plans that address employment opportunities for qualified women, minorities, veterans, and individuals with disabilities. We welcome and encourage diversity in our workforce.
Our policies prohibit discrimination and harassment based on race, color, religion, creed, age, sex (including pregnancy), sexual orientation, gender identity, genetics, marital status, national origin, disability, veteran status, political affiliation or belief. It is important that employees and applicants trust that they can address a concern of discrimination or harassment without retribution. GBSI will not tolerate retaliation against an individual who reports, opposes, or participates in an investigation of discriminating or harassment that violates GBSI policies.
GBSI invites any employee or any applicant for employment to review GBSI's written Affirmative Action program, absent the data metrics required by §60-741.44(k). The AAP is available for inspection upon request during the hours of 8:00am - 4:00pm Monday - Friday in the Human Resources department. Any questions should be directed to Sheila D. Dyer, GBSI's EEO Administrator.
No part of this Position Description or of any other shall be construed as an employment contract. Employment with GBSI is at will and constrained by both the laws of the State of Florida and those of the state wherein the employee performs services for the company.
Cyber Tabletop Analyst
Information security analyst job in Destin, FL
Responsibilities • Support the planning and execution of cyber exercises and wargames. • Assess resiliency of weapon systems and critical infrastructure. • Assist with course of action analysis and strategy development. • Coordinate exercise progress and activities between clients and DoD agencies.
• Support the development of a novel wargaming methodology.
Requirements
• Experience with cyberspace operations, operational planning, and cyber mission force operations.
• Experience with exercise and training activities, including tabletop exercises and professional analytic wargaming.
• Ability to work well in a fast-paced environment with a diverse team.
• Ability to prioritize mission-essential tasks toward wargame objectives.
• Ability to plan, conduct, and analyze research to inform cyberspace wargames.
• Top Secret clearance.
• HS diploma or GED and 4+ years of experience in an operational role with DoD or interagency partners, or Bachelor's degree and 3+ years of experience.
Nice-to-haves
• Experience in intelligence analysis and developing adversary capability assessments.
• Experience in a military staff environment.
• Experience briefing and delivering training to senior military and civilian leaders.
• Experience using modeling and simulation tools to conduct assessments.
• Possession of excellent organizational skills.
• TS/SCI clearance.
• Master's degree.
About Us: We are Command Post Technologies, Inc. (CPT). CPT is a Service-Disabled, Veteran-Owned Small Business (SDVOSB), providing engineering services in the areas of Cyber Security, Software Development, Test & Evaluation, and Strategic Planning. CPT employees appreciate working in a caring environment that promotes a healthy work-life balance. As individuals, we come together as a team, supporting a culture rooted in our core principles of integrity, determination, and innovation. In all CPT's collaboration efforts, our team prioritizes communication, accountability, and being resourceful to maximize efficiency and results.
What's In It for You
Leadership training
Career professional development
Tuition reimbursement
Flexible hours
Work/Life balance
Rewards and recognition
Parental Leave
Command Post Technologies, Inc. (CPT) is a Service-Disabled Veteran-Owned Small Business (SDVOSB) founded in 2008 and headquartered in Suffolk, VA with personnel in various states including Virginia, Maryland, Florida, and Texas. With 2/3 of our staff being former military, CPT firmly believes in employing veterans. Command Post Technologies, Inc. is a unique provider of innovative solutions that enhance our corporate clients' productivity and empower our government clients with the ability to protect against all enemies: foreign and domestic. CPT adapts its successful military experiential approach to the needs of leaders in a global business environment and provides an elite leadership curriculum that results in a world-class, leadership-altering event.
Command Post Technologies Inc. (CPT) is an Equal Employment Opportunity and Affirmative Action employer. We consider applicants without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender, gender identify, gender expression, sex, sexual orientation, marital status, veteran status, disability, genetic information, citizenship status, or membership in any other group protected by federal, state, or local law. We take Affirmative Action to ensure equal opportunities for employees and potential employees without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender, gender identity, gender expression, sex, sexual orientation, marital status, veteran status, disability genetic information, citizenship status, or membership in any other group protected by federal, state, or local law.?
We abide by the Pay Transparency Nondiscrimination Provision and will refrain from discharging or otherwise discriminating against employees or applicants who inquire about, discuss, or disclose their compensation or the compensation of other employees or applicants. An exception exists where the employee or applicant makes the disclosure based on information obtained while performing his or her essential job functions.
Information System Security Officer / Iwakuni, Japan / Mid Career
Information security analyst job in Eglin Air Force Base, FL
What We're Doing: Lockheed Martin's, Rotary & Mission Systems (LM RMS), F-35 Cyber Security invites you to step up to one of today's most daunting challenges: the protection of exquisite government capabilities leading to warfighter supremacy against our peer and near peer adversaries. As a cybersecurity professional at Lockheed Martin, you'll safeguard the sensitive information and warfighting capabilities that our citizens and the world depend upon to protect U.S. and ally interests. Here, you'll work alongside other cybersecurity experts, related departments, and military members to support the military operational objectives by providing them with a safe and secure operating environment. In this fast-paced, real-world environment, you'll draw on all your education and experience as well as the resources of Lockheed Martin to keep these exquisite capabilities protected.
The Work:
This Information System Security Officer (ISSO) position will support the Information System Security Manager (ISSM) in developing, maintaining and overseeing the cybersecurity of assigned classified and/or unclassified F-35 systems at Site Name. Typical ISSO responsibilities include but are not limited to:
Ensuring required cybersecurity controls are implemented and validated, to include continuous monitoring actions for assigned systems.
Supporting the development and maintenance of cybersecurity related plans and procedures.
Monitoring for non-compliance, anomalous activity (i.e., threats), and effectively reporting such activity and associated risks.
Ensuring POA&Ms or remediation plans are in place for vulnerabilities identified during monitoring activity, audits, inspections, etc. and implementing, or overseeing, corrective actions.
Creating, collecting and retaining data to meet reporting requirements.
Monitoring and correlating data (i.e., events) from a variety of sources (e.g., Splunk, ELA, ePO, ACAS, etc.) to identify and mitigate threats, vulnerabilities and non-compliance.
Investigating, analyzing and responding to cyber events, incidents and non-compliance, including trend analysis, creating detailed written reports and briefing the appropriate parties.
Identifying, implementing and enforcing requirements for the proper handling and storage of Government data and electronic media.
Conducting self-inspections and preparing for customer inspections.
Interacting professionally during the enforcement of security policy and procedures.
Assigned systems may vary in classification, capabilities and complexity. Mission requirements may require other than first-shift work and additional responsibilities as assigned.
Who we are:
Lockheed Martin is a Cyber Security pioneer, partner, innovator and builder. In support of our many customers, the amazing members of our team are responsible for providing all aspects of cybersecurity support in a complex environment. In a rapidly growing enterprise, this role offers the opportunity to grow and hone the unique skills and experiences required as a cybersecurity expert to create, design and build solutions to some of the world's hardest engineering problems.
Why Join Us:
Your Health, Your Wealth, Your Life
With our employees as our top priority, we provide diverse career opportunities designed to propel development and boost agility. Our flexible schedules, competitive pay and comprehensive benefits enable our employees to live a healthy, fulfilling life at and outside of work. At Lockheed Martin, we place an emphasis on empowering our employees by fostering innovation. We believe that by applying the highest standards of business ethics and visionary thinking, everything is within our reach - and yours as a Lockheed Martin employee. Lockheed Martin values your skills, training and education. Come and experience your future!
#OneLMHot jobs
#rmshotmiljobs
Final Transferable Secret security clearance; last Periodic Reinvestigation must be within the last five (5) years or enrollment in Continuous Vetting program.
Ability to obtain and maintain Special Access Program (SAP) access.
Possess a valid certification that meets or exceeds DoD 8570.01-M IAT II requirements.
Meets: CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP
Exceeds: CASP+ CE, CCNP Security, CISA, CISSP (or Assc), GCED, GCIH, CCSP
Prior experience in a cyber workforce role, as categorized by the NICE or DoD workforce frameworks.
Prior experience as an ISSO, ISSM or related DoD Cyber Workforce Role on one or more F-35 information systems.
Prior experience ensuring compliance with applicable laws, regulations, guidance and policies as they relate to DoD cybersecurity and SAPs (e.g., DoDI 8510.01, JSIG, DoDM 5205.07, NIST SP 800 series).
Prior experience with the system authorization process, associated artifacts and their requirements (e.g., SSP, SCTM, Security CONOPs, SOPs).
Lockheed Martin is an equal opportunity employer. Qualified candidates will be considered without regard to legally protected characteristics.
The application window will close in 90 days; applicants are encouraged to apply within 5 - 30 days of the requisition posting date in order to receive optimal consideration.
*
Join us at Lockheed Martin, where your mission is ours. Our customers tackle the hardest missions. Those that demand extraordinary amounts of courage, resilience and precision. They're dangerous. Critical. Sometimes they even provide an opportunity to change the world and save lives. Those are the missions we care about.
As a leading technology innovation company, Lockheed Martin's vast team works with partners around the world to bring proven performance to our customers' toughest challenges. Lockheed Martin has employees based in many states throughout the U.S., and Internationally, with business locations in many nations and territories.
Other Important Information
By applying to this job, you are expressing interest in this position and could be considered for other career opportunities where similar skills and requirements have been identified as a match. Should this match be identified you may be contacted for this and future openings.
Ability to work remotely
Onsite Full-time: The work associated with this position will be performed onsite at a designated Lockheed Martin facility.
Work Schedule Information
Lockheed Martin supports a variety of alternate work schedules that provide additional flexibility to our employees. Schedules range from standard 40 hours over a five day work week while others may be condensed. These condensed schedules provide employees with additional time away from the office and are in addition to our Paid Time off benefits.
Security Clearance Information
This position requires a government security clearance, you must be a US Citizen for consideration.
Pay Rate: The annual base salary range for this position in California, Massachusetts, and New York (excluding most major metropolitan areas), Colorado, Hawaii, Illinois, Maryland, Minnesota, New Jersey, Vermont, Washington or Washington DC is $93,200 - $164,450. For states not referenced above, the salary range for this position will reflect the candidate's final work location. Please note that the salary information is a general guideline only. Lockheed Martin considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/ training, key skills as well as market and business considerations when extending an offer.
Benefits offered: Medical, Dental, Vision, Life Insurance, Short-Term Disability, Long-Term Disability, 401(k) match, Flexible Spending Accounts, EAP, Education Assistance, Parental Leave, Paid time off, and Holidays.
(Washington state applicants only) Non-represented full-time employees: accrue at least 10 hours per month of Paid Time Off (PTO) to be used for incidental absences and other reasons; receive at least 90 hours for holidays. Represented full time employees accrue 6.67 hours of Vacation per month; accrue up to 52 hours of sick leave annually; receive at least 96 hours for holidays. PTO, Vacation, sick leave, and holiday hours are prorated based on start date during the calendar year.
This position is incentive plan eligible.
Pay Rate: The annual base salary range for this position in most major metropolitan areas in California, Massachusetts, and New York is $107,300 - $185,840. For states not referenced above, the salary range for this position will reflect the candidate's final work location. Please note that the salary information is a general guideline only. Lockheed Martin considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/ training, key skills as well as market and business considerations when extending an offer.
Benefits offered: Medical, Dental, Vision, Life Insurance, Short-Term Disability, Long-Term Disability, 401(k) match, Flexible Spending Accounts, EAP, Education Assistance, Parental Leave, Paid time off, and Holidays.
This position is incentive plan eligible.
Information System Security Manager
Information security analyst job in Eglin Air Force Base, FL
Key Role:
Support day-to-day remote technical aspects of product operational data to identify diagnostic issues in enough detail to determine if the root cause is hardware or software related. Apply specific functional knowledge and working or general industry knowledge. Develop or contribute to solutions to a variety of problems of moderate scope and complexity. Work independently with some guidance. May review or guide the activities of more junior employees.
Basic Qualifications:
2+ years of experience with cybersecurity projects and integrated systems
2+ years of experience with NIST 800-53 and RMF practices, including Security Technical Implementation Guides (STIGs), computer networking, and operating systems administration
2+ years of experience with STIGs, NESSUS, vulnerability, or application scanners for IA use
Knowledge of NISPOM, JSIG, ICD, and eMASS
Ability to generate RMF security documentation to support Interim Authorities to Test (IATTs), Authorizations to Operate (ATOs), Interconnection Security Agreements (ISAs), and Authorities to Connect (ATCs)
TS/SCI clearance
HS diploma or GED
Additional Qualifications:
Experience managing the authorization status of DoD RMF from step 1 through step 6
Knowledge of continuous monitoring, cybersecurity risk management, disaster recovery, FISMA compliance, information security architecture, information security auditing, security control assessment, threat modeling, threat management, vulnerability analysis, and vulnerability assessments
Bachelor's degree
DoD 8570 Security+ Certification
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $77,500.00 to $176,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.
Identity Statement
As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Work Model
Our people-first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely.
If this position is listed as remote or hybrid, you'll periodically work from a Booz Allen or client site facility.
If this position is listed as onsite, you'll work with colleagues and clients in person, as needed for the specific role.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
Auto-ApplyInformation System Security Manager (ISSM)
Information security analyst job in Niceville, FL
Title: Information System Security Manager (ISSM) KBR is seeking an Information System Security Manager (ISSM) to join our team in either Viriginia, Maryland, Washington, DC or Huntsville, Alabama This position is primarily remote, however the ISSM must reside in the area of the position and be able to go into the DoD installation space for meetings and work on ad ad-hoc and sometimes immediate basis
Why Join Us?
* Innovative Projects: KBR's work is at the forefront of engineering, logistics, operations, science, program management, mission IT and cybersecurity solutions.
* Collaborative Environment: Be part of a dynamic team that thrives on collaboration and innovation, fostering a supportive and intellectually stimulating workplace.
* Impactful Work: Your contributions will be pivotal in designing and optimizing defense systems that ensure national security and shape the future of space defense.
The selected applicant will provide cybersecurity and Risk Management Framework (RMF) support to systems and applications for the Test Resource Management Center (TRMC). Will work with military, government, and contractor personnel to provide technical and policy direction grounded in Department of Defense (DoD) policy, and act as the Subject Matter Expert (SME) with the cybersecurity domain and lead ISSOs. The application will, at times, be the liaison between end users, application developers, and senior leadership within the DoD and across the Test and Evaluation community.
Responsibilities:
* Deliver documentation to include: Executive level briefings, Assessments, Self-Assessments, RMF packages, and supporting RMF documentation
* Review Cybersecurity tool reports, ACAS, HBSS, for the purposes of reporting and compliance
* Software Certification package development
* Work directly with the TRMC SISO on all TRMC RMF packages and ATO Status updates
* Support security engineering projects and solution delivery.
* Lead security audit and compliance activities for each system responsible for
* Responsible for auditing all artifacts provided in each RMF package to determine system readiness for ATO packet submissions.
* Provide recommendations to the SISO, PM, and AO regarding remediation and mitigation of identified vulnerabilities on test reports and plan of action and milestones (POA&Ms).
* Monitor system status updates and report to senior leadership.
* Includes monthly executive reports, vulnerability reports, JFHQ DODIN reporting and briefing.
* Monthly executive briefing to SISO, PM on security metrics
* Interface with PMs and SISO on issues needing input/concurrence
* Draft and present RMF deliverables to senior leadership
* Attending Executive Program Reviews as the ISSM
* Work with outside agencies on Memorandums of Understanding / Interconnection Service Agreements, and other senior level agreements etc.
* Work directly with a distributed team to reduce travel
* Travel 25% of time
Basic Qualifications:
* *TS/SCI required*
* A minimum of 2 years of Information Technology Information Assurance, or Cyber Security engineering experience.
* A minimum of 2 years of experience in conducting security assessments by reviewing security controls with the ISSO/ISSM and guide programs through RMF process.
* Bachelor's Degree in Engineering, Computer Science, or 8 years IT field experience in lieu of degree; Master's Degree preferred
* Proven expertise with assessing security controls in accordance with NIST Special Publications (i.e.: NIST 800 Series)
* Proven in-depth knowledge of Cybersecurity principles technologies, and processes.
* Experience with NIST 800-53, Security Development
* Familiarity with performing assessments for Unclassified and Classified environments
* Ability to adapt to process changes
* Ability to interface with senior leadership
* Ability to support high visibility or high priority projects
* Possession of excellent oral and written communication skills
Basic Compensation:
$160,000 to $190,000 Salary range for Maryland
$165,000 to $195,000 Salary range for DC
The offered rate will be based on the selected candidate's knowledge, skills, abilities and/or experience and in consideration of internal parity.
Belong, Connect and Grow at KBR
At KBR, we are passionate about our people and our Zero Harm culture. These inform all that we do and are at the heart of our commitment to, and ongoing journey toward being a People First company. That commitment is central to our team of team's philosophy and fosters an environment where everyone can Belong, Connect and Grow. We Deliver - Together.
KBR is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, disability, sex, sexual orientation, gender identity or expression, age, national origin, veteran status, genetic information, union status and/or beliefs, or any other characteristic protected by federal, state, or local law.
Auto-ApplySenior Information System Security Officer (ISSO)
Information security analyst job in Pensacola, FL
Job Description:
Nisga'a Data Systems is honored to provide highly skilled, cleared personnel serving those who are committed to our national defense, security, and mission across five continents. We are dedicated to delivering capabilities and services that inspire confidence.
Responsibilities:
As an information systems security officer (ISSO), your job will include managing all aspects of an organization's information security system, for classified and unclassified systems, including researching, testing, training, and implementing programs designed to safeguard sensitive information from any possible breaches. You must understand the Risk Management Framework, how risk management is executed, what risk means, and how to analyze it. The ISSO is expected to drive the Authority to Operate or Authority to Proceed effort and make recommendations along the way to the Government Lead independently.
You will conduct risk analyses from vulnerability, compliance scans, pen-testing results, or other audit activity; writing including but not limited to Plan of Action and Milestones, System Security Plans, System Specific Policies and Procedures, Configuration Management Plans, Contingency Plans and Test Results, Business Impact Analysis, and Security Impact Analyses. And participate in Agile Planning Events to provide technical input.
Requirements
Requirements:
Bachelor's Degree and 7 years of work experience or equivalent experience or 10 years of related work experience, to include:
Experience executing the NIST Risk Management Framework
Experience in a SCIF supporting classified systems
Documenting System Security Plans to include security control implementation statements
Supporting the security assessment and authorization (or ATO) process
Analyze testing results from scans, audits, penetration tests, or other test efforts to determine risk levels
Active Top Secret SCI clearance
Continuous Monitoring and maintaining the security posture of IT systems
Preferred requirements:
Cyber program experience within federal customer space is a plus!
Certifications such as CISSP, CEH, CISA, CAP highly desired
**This position is based in Pensacola, FL and only candidates in the Pensacola, FL area with SCI clearances will be considered. Telework will be available whenever time in the SCIF is not required.
Technology Security Analyst (API)
Information security analyst job in Jay, FL
We are FIS. Our technology powers the world's economy and our teams bring innovation to life. We champion diversity to deliver the best products and solutions for our colleagues, clients and communities. If you're ready to start learning, growing and making an impact with a career in fintech, we'd like to know: Are you FIS?
NOTE:
1. Candidates located in FIS office locations in Jacksonville (FL), Milwaukee (WI), Atlanta (GA), and New York City (NY) will be required to work in a hybrid model (3 days in office per week).
2. Current and future sponsorship are not available for this position.
About the role:
As an IT Security Analyst with FIS, your skills will be put to the test on the front lines of cyber-crime. Information security is at the heart of fintech and you'll help protect and secure highly-sensitive financial data for customers around the world.
About the Team:
The Appsec Architecture and Engineering is responsible for developing and maintaining policies and standards for the FIS API Security Program and collaborate with internal development teams to implement security controls in APIs, conducting secure design reviews and automates workflows to track and remediate API vulnerabilities.
The team identifies and addresses gaps in incumbent security tools (SAST, SCA, Container security), collaborates with vendors to address/enhance scanning coverage and define/refine the internal processes to ensure the efficiency and strengthen overall security program.
What you will be doing:
Develop and maintain policy and standards for FIS API security program.
Collaborate with internal development teams to build/advocate security controls in Application Programming Interface (API), and performing the secure design review of the APIs.
Assist in the security standards, and processes of SDLC to protect Application, APIs, and CI/CD.
Primarily responsible for API and Application security but with a good working knowledge of other security domains (Cryptography, Identity and Access Management, Threat and Vulnerability Management)
Manage the API runtime monitoring tool and work with vendor to tune/configure to provide the maximum but accurate coverage to FIS software.
Identify the gaps in SAST/SCA/Container/IAC and other tool's rule/configuration and work with vendor to engineer them to provide the maximum scanning coverage to FIS software.
Crate software/automated workflows and collaborate with other stakeholders to integrate security tooling to track the API findings and work with development team to remediate them.
Collaborate with WAF team to define/modify the rules to protect the APIs.
What you bring:
Total 5+ years of hands-on professional software development and security experience, with a strong foundation in security practices and expertise in languages such as Java or C#.
Proven experience in API Security and Application security, including secure design reviews.
Collaborated closely with development teams to integrate security control and remediate vulnerabilities.
Collaborated with development team and DevOps team to integrate security tools and workflows into automated development environments.
Good understanding of SAST, SCA, IaC, and container security tools (e.g., Checkmarx One) working and tuning of such tools to maximize coverage and reduce false positives.
Strong knowledge of OWASP Top 10 and OWASP API Top 10, with the ability to identify, assess, and guide remediation of vulnerabilities through both manual and automated methods.
Excellent communication skills, with the ability to convey complex security concepts to both technical and non-technical stakeholders.
Strong organizational and time management skills, with a track record of driving security initiatives across cross-functional teams in a remote or hybrid environment.
Added Bonus if you have:
Knowledge of FIS products and services a plus but not required
Knowledge of Financial Industry preferred.
What we offer you:
At FIS, you can learn, grow and make an impact in your career. Our benefits include:
Flexible and creative work environment
Diverse and collaborative atmosphere
Professional and personal development resources
Opportunities to volunteer and support charities
Competitive salary and benefits
NOTE:
1. Candidates located in FIS office locations in Jacksonville (FL), Milwaukee (WI), Atlanta (GA), and New York City (NY) will be required to work in a hybrid model (3 days in office per week).
2. Current and future sponsorship are not available for this position.
FIS is committed to providing its employees with an exciting career opportunity and competitive compensation. The pay range for this full-time position is $86,120.00 - $144,670.00 and reflects the minimum and maximum target for new hire salaries for this position based on the posted role, level, and location. Within the range, actual individual starting pay is determined by additional factors, including job-related skills, experience, and relevant education or training. Any changes in work location will also impact actual individual starting pay. Please consult with your recruiter about the specific salary range for your preferred location during the hiring process.
Privacy Statement
FIS is committed to protecting the privacy and security of all personal information that we process in order to provide services to our clients. For specific information on how FIS protects personal information online, please see the Online Privacy Notice.
EEOC Statement
FIS is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, genetic information, national origin, disability, veteran status, and other protected characteristics. The EEO is the Law poster is available here supplement document available here
For positions located in the US, the following conditions apply. If you are made a conditional offer of employment, you will be required to undergo a drug test. ADA Disclaimer: In developing this job description care was taken to include all competencies needed to successfully perform in this position. However, for Americans with Disabilities Act (ADA) purposes, the essential functions of the job may or may not have been described for purposes of ADA reasonable accommodation. All reasonable accommodation requests will be reviewed and evaluated on a case-by-case basis.
Sourcing Model
Recruitment at FIS works primarily on a direct sourcing model; a relatively small portion of our hiring is through recruitment agencies. FIS does not accept resumes from recruitment agencies which are not on the preferred supplier list and is not responsible for any related fees for resumes submitted to job postings, our employees, or any other part of our company.
#pridepass
Auto-ApplyInformation Systems Security Manager (ISSM) - Journeyman
Information security analyst job in Eglin Air Force Base, FL
JBW Federal is a subsidiary company of the Kanaka Foundation - An NHO who's mission is to support Native Hawaiians.
You will receive a comprehensive benefits package that includes:
Health insurance
Dental insurance
Vision insurance
Pet insurance
Annual membership to Costco or Sam's
401K
...and much, much more!
Job Description: JBW Federal is seeking an Information Systems Security Manager to support the 39th Information Operations Squadron (39 IOS) from Hurlburt Field, FL or Joint Base San Antonio, TX.
What You'll Be Doing:
You will understand cybersecurity concepts and methodologies at the professional level with knowledge equivalent to: Certified Information Systems Security Professional, or similar certifications.
You will direct, oversee, and manage and perform records management for all Account Forms including, but not limited to: Authorized User Agreements and associated user forms for all networks required for duty at the 39 IOS, System Authorization Access Requests, Privileged User Agreements, 8570/8140 validation, Operating System Certification validation, and associated user forms.
You will manage and update MICT checklists for assigned programs including, but not limited to: Privileged User, 17-1301 COMPUSEC, and 17-101 RMF.
You will verify Cybersecurity Awareness training for all students as well as maintaining appointment letters for Program Managers, ISSO, ISSM, ISSE, Systems Administrators, Client Systems Technicians, and Cybersecurity Liaisons.
You will ensure equipment inspection prior to entry and exit of the facilities and ensure entry and exit logs are accomplished as well as overseeing and performing wireless scanning throughout the facility to ensure no rogue activity.
You will review, update, and enforce Media Control policy including, but not limited to: Issuing and tracking removable media and ensuring media sanitization along with reviewing equipment purchase requests to ensure items are on approved products listings and meet requirements to enter the facilities.
You will direct and conduct network audits and review vulnerability scans on all networks used by the 39 IOS as well as responding to any vulnerabilities appropriately while overseeing and performing COMPUSEC and Information Security (INFOSEC) duties.
You will validate administrator accounts on all networks and respond to any discrepancies appropriately by monitoring, validating, and reporting administrators 8570/8140 certification status.
You will respond to incidents and oversee response and reporting to include but not limited to: performing random walkthroughs, bag inspections with the Security team and review, update, and enforce contingency plan policy
You will ensure cybersecurity marking and standards enforcement including but not limited to: Classification stickers and markings on all systems, Bomb threat aids posted by all phones, and Combined Security Cards are posted by all workstations.
You will answer all TASKORDS/ taskers by MAJCOM for action on unit owned networks including but not limited to: vulnerability remediation and data calls.
You will oversee the Risk Management Framework (RMF) process for all networks owned and operated by the 39 IOS including, but not limited to: answer data calls, prepare system package, categorize system by guiding documents, select security controls for risk mitigation, implement security controls, assess security control effectiveness, monitor system and update accreditation package, Security Impact Analysis (SIA) submissions for tenants requesting changes and install of new software, and respond to and coordinate requirements for accreditation package not owned by the squadron.
You will order, issue, manage, and account for all tokens granting access to networks to include auditing and inventorying the issuance of student user tokens.
You will manage the Cybersecurity Liaison program for the squadron under the direction of the Wing Cybersecurity Office by reviewing, updating, and enforcing the Security Concept of Operations (SECONOPS) policy.
What Required Qualifications You'll Bring:
Associate's Degree (preferably in a STEM field) or Approved Equivalent Experience.
2 years of risk management framework experience within the last 5 years
IAT/M Level III certification
Ability to travel CONUS and OCONUS Occasionally. Must have a current passport or able to acquire within the first 60 days of employment
Clearance - Top Secret/SCI
Kanaka Family of Companies is an Equal Opportunity Employer, and all qualified candidates will receive consideration for employment without regard to race, color, religion, national origin, marital status, sex (including pregnancy), gender identity or expression, age, disability, veteran status, sexual orientation, genetic information (family medical history), or any other status protected by federal, state or local laws. EEO/AA employer/Vet/Disabled.
Job Posted by ApplicantPro
Information System Security Officer (ISSO)
Information security analyst job in Fort Walton Beach, FL
Join Us in Making a Difference in the Lives of Those Defending Our Nation! Why SURVICE? Come join the SURVICE Engineering mission to protect, enhance, and enable those who defend the United States. Since 1981, we have supported the DoD community, as well as Homeland Security, advanced technologies, environmental, and commercial markets. Our employees have backgrounds in engineering, physics, mathematics, chemistry, computer science, acquisition, technical writing, training, and other technical and administrative fields. And many of our personnel have DoD and/or operational military experience. If you're looking for a challenging and rewarding career with a leading organization, come see what we can offer you!
Position
Network Security Engineer/ISSO
* Location: Fort Walton Beach, FL
* Security Clearance: Active DoD Secret Clearance Required - U.S. citizenship required
* Salary: $80,000 - $150,000 Depending on Experience and Education
* Travel: 5%
* Benefits: SURVICE Engineering offers a total rewards package to include competitive salaries, comprehensive insurance options, paid time off, 401k, flexible spending, tuition reimbursement.
Position Summary
SURVICE Engineering is currently seeking a Network Security Engineer/ISSO to support our Gulf Coast Operation. You will accelerate your career and become an integral team member within the defense community.
Primary Duties and Responsibilities
* Manage network account Identification/Authorization/Access
* Monitor network security scans and update/repair accordingly
* Manage all necessary updates to servers, client machines, and other devices
* Maintain STIG compliance on all devices
* Maintain the IL4 & IL6 Cloud One Azure environments for the my WEAPS web app
* Ensure the integration of cybersecurity into, and throughout the lifecycle of the IT, on behalf of the operation
* Coordinate with the PM and operations staff the development of an ISCM strategy
Monitor any proposed or actual changes to the system and its environment
Minimum Qualifications of Network Security Engineer/ISSO
Bachelor's Degree in Computer Science and 5+ years of relevant experience. Exceptional candidates with less experience will be considered. Candidates are not required to possess all qualifications; if you possess some of the desired qualifications, please apply.
* DoD Approved 8570 Certifications for IAT II
* CCNA Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP
* Experience with Software and Server/Network Architecture
* Background working with secure Networks and architecture preferred
* Linux and Windows server administration experience preferred
* Previous helpdesk and AWS/Azure server support experience preferred
* Experience with networking/firewall equipment
* Excellent organization and communication skills (written and verbal), and the ability to work with minimal supervision
* Excellent time management and documentation skills
*
About Us
SURVICE Engineering is a nationally recognized, single-source engineering service provider for Government and Industry organizations involved in all phases of the systems engineering process. Our employees are our most valuable asset, and they are proud to have supported the development, testing, analysis, and modeling and simulation (M&S) of many of the major U.S. air, land, and sea combat systems in the field today. They have also contributed their expertise to other vital national defense programs and technologies that involve survivability, cybersecurity, information technology/management, software engineering, unmanned aerial systems (UASs), and metrology/reverse engineering.
SURVICE Engineering is an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status, or any other characteristic protected by law. VEVRAA Federal Contractor.
Sr. Security Specialist
Information security analyst job in Niceville, FL
Odyssey Systems is currently seeking an Sr. Security Specialist, for our Eglin, FL office. This position is critical to the effective and efficient security operation of the overall Eglin Odyssey Office. The Sr. Security Specialist serves as the primary security point of contact between a geographically dispersed workforce spread across multiple contracts. The ideal candidate will be able to develop and maintain strong working relationships with government agencies/sponsors, program staff, and other company administrative personnel. Experience in providing oversight and guidance of NISP operations for multiple clients at a company site is desired.
The successful candidate will interface with the Associate Director of Security and Sr. Security Analyst, and all levels of Odyssey personnel to ensure contract security compliance with (DoD SAP/SCI Community and Intelligence Community directives and manuals, NISPOM 32 CFR Part 117, applicable ICDs, etc.).
This is a full-time role in Eglin, FL with a hybrid work schedule.
***Contingent upon contract award***
Responsibilities
Duties include, but not limited to:
Analyze, investigate, and resolve classified security issues while providing leadership and guidance to employees, supervisors, managers, and contractors on actions(s) to be taken to ensure compliance with the classified security programs
Administer and coordinate all aspects of security activities in accordance with company policies and procedures to ensure compliance with federal security regulations, 32 CFR Part 117 NISPOM Rule, directives, and manuals for safeguarding National Security Information
Establish and liaison with government agencies, external customers, contractors, employees, and managers. Coordinate with government agencies to obtain rulings, interpretations, and compliance with regulations
Manage specialized security programs and procedures for both classified and CUI, documents, and equipment
Assist in developing, implementing, and managing Standard Practices and Procedures security plans
Assist in tracking, generating, and flowing down all prime and subcontract DD Forms 254 Contract Security Classification Specification documents for prime and subcontracts
Knowledge of receipt, transmission, inventory, reproduction, disposition, and management of classified material
Assist in investigating and reviewing all security violations, preparing reports, and recommending specific preventive and corrective action to be taken
Assist with the operations and maintenance of the Access Control and Video Management
File, update, and report employee information in national security databases (DISS, NBIS)
Process incoming and outgoing visit authorizations and corporate badging
Assist with travel security briefings, VISA travel research, trip report completion, and status reports.
Initiate clearance investigations/reinvestigations/upgrades and provide status updates of Personnel Security dates and investigative actions.
Assist the FSO/ AFSO with Security Education/Training and briefings/debriefings.
Maintain, sort, and compile security data for management reports, proposal support, and corporate data collection.
Track and update security practices and policies for corporate-level, and contract-specific needs
Work with government customers on issuance, renewal, return, and tracking of all government-issued credentials.
***Contingent upon contract award***
Qualifications
Citizenship: Must be a US citizen
Minimum Required Qualifications
Clearance: Must have Top Secret or TS/SCI Eligibility
Education: B.A. or B.S. and 8 to 11 years of related experience
Years' experience: 8-11 years of experience as a Security Specialist, Security Manager, Security Assistant, Contractor Special Security Officer (CSSO), other similar roles, or similar military experience.
Regulatory compliance experience: The ability to read, understand, and apply government regulation, policies, and procedures (DoD SAP/SCI Community and Intelligence Community directives and manuals, NISPOM 32 CFR Part 117, applicable ICDs, etc.).
Must possess strong customer service and communication skills.
A professional communicator focused on results
Experience managing several projects simultaneously to completion.
Ability to learn new security concepts and programs.
Proficiency in Office 365
Ability to travel up to 10%
Preferred Qualifications:
Clearance: Active TS/SCI
Education: Bachelor's degree from an accredited college or university with a major/minor in Security, Security Administration, Law Enforcement, Homeland Security, Criminal Justice, Police Administration, or related degrees.
Interpersonal Skills:
Computer skills: Familiarity with government databases, such as DISS (Defense Information Security System) and NBIS (National Background Investigation Services). Knowledge of business software: Excel, Word, PowerPoint, Office, etc.
Previous experience working in a fast paced corporate or government security office.
Strong collaboration skills that foster security cohesiveness and support in a dispersed employee base.
Capable of independently handling a large, complex workload, effectively coordinating multiple resources, and multi-tasking in a fast-paced environment having competing priorities.
Additional Information:
Location: Eglin, FL
Travel: 10%
Hybrid work schedule
***Contingent upon contract award***
#LI-MP1
Company Overview
Odyssey Systems is a world-class technical, engineering, and integration company serving the warfighting ecosystem with airborne integration, ISR, C2, and warfighter readiness capabilities. Odyssey meets the military's operational needs by integrating layered defense systems from equipment, technology, and services to data, information, and business operations. We streamline defense acquisition and sustainment, engineering the technical battlefield with domain-specific proficiency to ensure lethality. Odyssey is dedicated to excellent contract execution, peak organizational performance, and fostering a workplace built on employee care.
Odyssey is proud to live out our core values of commitment, ambition, and respect in our work and communities through OdysseyCares, a philanthropic group focused on giving back through direct donations, an employer match program, and volunteering events.
Please note: Final compensation for this position will be determined by various factors such as the Federal Government contract labor categories and contract wage rates, relevant work experience, specific skills and competencies, geographic location, education, and certifications.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
Auto-ApplyCyber Range Information Systems Security Officer (ISSO)
Information security analyst job in Eglin Air Force Base, FL
Supporting A&A processes (Assessment & Authorization) by developing artifacts, implementing policies, assessing security controls, and ensuring compliance with Federal, DoD, and Intelligence Community (IC) standards
Monitoring and assessing cybersecurity posture by conducting regular vulnerability and compliance assessments, reviewing system security configurations, and coordinating responses to potential threats and incidents
Assisting in the implementation of security solutions, including firewalls, IDS/IPS, and endpoint protection software, and assist with their configuration and testing
Conducting risk assessments and assisting in identifying and mitigating cybersecurity risks based on system vulnerabilities, potential threats, and overall risk exposure
Tracking and managing security risks through a Plan of Action and Milestones (POA&M), ensuring corrective actions are applied, documented, and closed within established timelines
Assisting in incident response activities, including analyzing security incidents, escalating as needed, and performing root cause analysis for systemic vulnerabilities
Collaborating with the Government's security team to ensure security controls are implemented and continuously updated to address new and emerging threats
Maintaining and updating documentation for system security policies, standards, and procedures related to cybersecurity
Providing support for security audits, risk assessments, and continuous monitoring activities
Supporting the creation and execution of incident response plans, ensuring that mitigation strategies are in place and that security incidents are handled swiftly and efficiently
#LI-DH1
Requirements
Bachelor's or master's degree in information systems, Cybersecurity, or related field, or equivalent combination of education and experience
Minimum of 5-8 years of direct experience in cybersecurity, with at least 3 years of hands-on experience in an ISSO or security role, preferably with DoD or government entities
Current Top-Secret clearance with SCI eligibility or ability to obtain SCI clearance
Demonstrated experience with cybersecurity principles and risk management frameworks (RMF, NIST, etc.)
Comprehensive knowledge in key cybersecurity areas including incident response, security control implementation, risk analysis, and system assessments
Ability to plan, assess, and implement security controls, monitor system security, and track issues to resolution
Experience working with and supporting cybersecurity governance and regulatory compliance requirements
Strong ability to communicate security issues, risks, and mitigations to stakeholders at various levels (technical and non-technical)
Team-oriented with leadership potential to guide and mentor junior staff as needed
Proficient in using security tools such as SIEM, vulnerability scanners, security technical implementation guide (STIG) and risk management systems
Desired Skills
Certifications:
Certified Information Systems Security Professional (CISSP)
Certified Information Security Manager (CISM)
Certified in Risk and Information Systems Control (CRISC)
Offensive Security Certified Professional (OSCP)
Additional DoD security certifications (e.g., IAM, IEM)
Extensive DoD experience and knowledge of DoD Cybersecurity policies and frameworks
Experience working in Sensitive Compartmented Information (SCI) environments
Knowledge of vulnerability management and compliance tools and their integration into risk mitigation strategies
Clearance Information
SRC IS A CONTRACTOR FOR THE U.S. GOVERNMENT, THIS POSITION WILL REQUIRE U.S. CITIZENSHIP AS WELL AS, A U.S. GOVERNMENT SECURITY CLEARANCE AT THE TOP SECRET LEVEL WITH SCI ELIGIBILITY
Travel Requirements
Minimal (
About Us
Scientific Research Corporation is an advanced information technology and engineering company that provides innovative products and services to government and private industry, as well as independent institutions. At the core of our capabilities is a seasoned team of highly skilled engineers and scientists with multidisciplinary backgrounds. This team is challenged daily to provide cutting edge technology solutions to our clients.
SRC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with a company match, life insurance, vacation and sick paid time off accruals starting at 10 days of vacation and 5 days of sick leave annually, 11 paid holidays, tuition reimbursement, and a work environment that encourages excellence and more. For positions requiring a security clearance, selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
EEO
Scientific Research Corporation is an equal opportunity employer that does not discriminate in employment.
All qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other protected characteristic under federal, state or local law.
Scientific Research Corporation endeavors to make ************** accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact *************** for assistance. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.
Auto-ApplyCyber Security Engineer
Information security analyst job in Pensacola, FL
The successful Cyber Security Engineer applies current analytical and logical thinking to the design, architecture, development, evaluation, testing, and integration of computer systems, appliances, and networks to elevate the security posture of the program. The Cyber Security Engineer may be involved with commercial, custom and/or government computer product vendors in the design, evaluation, and architecture of state-of-the-art secure GOTS/COTS applications, operating systems, networks, databases, and custom built technology. Attention to detail, honesty, out of the box thinking with a problem-solving mindset, be able to work under pressure, and be able to deliver on tight delivery schedules are very much desired.
Responsibilities Include:
• Provide technical leadership for an engineering team implementing differing technologies to include; Azure and/or AWS Cloud, firewalls, web application firewalls, VPNs, DNS, Data Loss Prevention, IDS/IPS, and proxies, to name a few.
• Develops security systems for any manual or automated systems environments which comprises on-prem and Cloud based systems.
• Responsible for ensuring the protection of organization data against unauthorized disclosure, accidental or intentional loss of data, and unauthorized modification. Lead cyber security teams working with a variety of different tools and appliances, security challenges, and troubleshooting various complex issues.
• Administer the management of security appliances, tools, products, and aspects of the information system and perform day-to-day security operations, as well as, Operations and Maintenance (O&M) of the system
• Provide security tools administration, management, troubleshooting, and testing.
• Experience and/or familiarity with the following network protection devices: Firewalls, intrusion detection and prevention systems (IDS/IPS), log analysis, malware analysis, network traffic flow and packet analysis
• Experience with Cloud services offered by Microsoft or Amazon. Azure Sentinel (SIEM) is most desired between the two
• Support Projects and Project management personnel throughout the full software development lifecycle
• Manage technology roadmaps with each product and propose briefs and reports to elaborate on recommended actions based on best practices
•Perform full product testing to the length of the products capabilities as required by the customer and the program
• Develop capabilities according to customer requirements and NIST, DHS, and Government guidelines and regulations
Required Skills:
• U.S. Citizenship
• Active Secret clearance. Must be able to obtain a TS/SCI clearance
• Must be able to obtain DHS Suitability
• 8+ years of experience engineering, operating, and managing layered security integration for on premise or cloud/private cloud environments
• 4+ years management and implementing a Tenable Nessus environment
• Minimum 2 years of professional experience working with AWS or Azure infrastructure, services in a security focused role.
• Advanced knowledge of AWS & Azure architectural concepts.
• Experience engineering, operating, and managing layered security and SIEM integration
• Demonstrated experience handling incidents across multiple operating systems
• Excellent written and oral communication skills
• This position may require shift work.
Desired Skills:
• Experience with one or more of the following:
o RSA Security Analytics (NetWitness)
o Symantec Bluecoat
o ForeScout CounterAct
o McAfee ePO
o Cisco FirePower (SourceFire)
o RedSeal, SecureSphere Imperva
o Tenable Nessus
o Azure Sentinel
o TAPs
o Cloud technologies,
o Project Management processes to include SAFe and Agile
Required Education/Experience:
Bachelor's degree in a related field and a minimum of 8 years of prior relevant work experience. Two years of related work experience may be substituted for each year of degree level education.
Desired Certification(s):
• Certified Ethical Hacker (CEH), Windows/Linux Admin, Azure Sentinel or Other Cloud SIEM, CISSP, Security+, Network+, Cisco Certified Network Professional (CCNP), Cisco Certified Security Professional (CCSP)
• Vendor specific certification for the aforementioned products or similar certification.
Cyber Security Engineer
Information security analyst job in Pensacola, FL
Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets.
Nightwing is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats. Nightwing is seeking a Cyber Engineer to support the design, development, and deployment of advanced cybersecurity capabilities.
The Cyber Engineer designs, develops, documents, analyzes, tests, integrates, debugs, conducts research and/or discovers and analyzes security flaws or vulnerabilities in software, networks, systems, and applications. The Cyber Engineer ensures system security needs are established and maintained for various objects/matters.
Responsibilities:
Analyze output from various security devices and malware and incident reports to improve detection of and to minimize future incidents
Assess and analyze system security to identify and mitigate risks and vulnerabilities
Recommend countermeasures to mitigate risks and vulnerabilities
Prepare/Update documentation, including incident reports, security recommendations, etc.
Assist in identifying, prioritizing, and coordinating the protection of critical cybersecurity infrastructure and key resources
Perform basic system design functions, including interpretive analyses, chart preparation and associated diagrams/enhancement plans
Test existing and new technologies
Review/analyze requested changes for equipment, technology and/or other factors/trends, which are planned for deployment in the customer space
Support the configuration and administration of cyber security tools and systems.
Required Skills:
U.S. Citizenship
Must be able to obtain a Secret clearance within 1 year of hire.
Must be able to obtain DHS Suitability
Knowledge of commercial cyber tools and technologies
Knowledge of standard security principles, policies, standards and industry best practices
Knowledge of networking (TCP/IP, topology, sockets and security) and web technologies (Internet security)
Knowledge of intrusion detection and prevention systems (IDS/IPS), log analysis, malware analysis, network traffic flow and packet analysis
Understanding and ideally experience with Windows or Linux/Unix operating systems
Possesses or quickly develops an understanding of Government Information Security policies, regulations, and guidelines
Desired Skills:
Experience and/or familiarity with development languages such as: Java, Swing, JUnit, Perl, Python, HTML
Demonstrated familiarity with VMware and virtual machines
Ability to write custom tools and modify existing intrusion detection tools
Knowledge of automated testing tools
Knowledge of one or more of the following:
Security COTS integration
Security Incident Event Management
Insider Threat Monitoring
Operating System Hardening
Vulnerability Assessment testing
Identification and Authentication schemes
Public Key Infrastructure and Identity Management
Cross Domain Solutions
Computer Network Exploitation (CNE)
Computer Network Operations (CNO)
Malware Analysis
Reverse Software Engineering
Security engineering
Required Education:
Bachelor's degree in Cyber Security, Information Security, Software Engineering or a related discipline is required. [Four (4) years of experience (for a total of six (6) or more years) may be substituted for a degree.]
Desired Certifications:DoD 8570.1-M Compliance at IAT Level I Syndeo # - 3490
At Nightwing, we value collaboration and teamwork. You'll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we'll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients.
Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team.
Nightwing is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.
Auto-ApplyCyber Security Engineer
Information security analyst job in Pensacola, FL
Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets.
Nightwing is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats. Nightwing is seeking a Cyber Engineer to support the design, development, and deployment of advanced cybersecurity capabilities.
The Cyber Engineer designs, develops, documents, analyzes, tests, integrates, debugs, conducts research and/or discovers and analyzes security flaws or vulnerabilities in software, networks, systems, and applications. The Cyber Engineer ensures system security needs are established and maintained for various objects/matters.
**Responsibilities** **:**
+ Analyze output from various security devices and malware and incident reports to improve detection of and to minimize future incidents
+ Assess and analyze system security to identify and mitigate risks and vulnerabilities
+ Recommend countermeasures to mitigate risks and vulnerabilities
+ Prepare/Update documentation, including incident reports, security recommendations, etc.
+ Assist in identifying, prioritizing, and coordinating the protection of critical cybersecurity infrastructure and key resources
+ Perform basic system design functions, including interpretive analyses, chart preparation and associated diagrams/enhancement plans
+ Test existing and new technologies
+ Review/analyze requested changes for equipment, technology and/or other factors/trends, which are planned for deployment in the customer space
+ Support the configuration and administration of cyber security tools and systems.
**Required** **Skills:**
+ U.S. Citizenship
+ Must be able to obtain a Secret clearance within 1 year of hire.
+ Must be able to obtain DHS Suitability
+ Knowledge of commercial cyber tools and technologies
+ Knowledge of standard security principles, policies, standards and industry best practices
+ Knowledge of networking (TCP/IP, topology, sockets and security) and web technologies (Internet security)
+ Knowledge of intrusion detection and prevention systems (IDS/IPS), log analysis, malware analysis, network traffic flow and packet analysis
+ Understanding and ideally experience with Windows or Linux/Unix operating systems
+ Possesses or quickly develops an understanding of Government Information Security policies, regulations, and guidelines
**Desired** **Skills:**
+ Experience and/or familiarity with development languages such as: Java, Swing, JUnit, Perl, Python, HTML
+ Demonstrated familiarity with VMware and virtual machines
+ Ability to write custom tools and modify existing intrusion detection tools
+ Knowledge of automated testing tools
+ Knowledge of one or more of the following:
+ Security COTS integration
+ Security Incident Event Management
+ Insider Threat Monitoring
+ Operating System Hardening
+ Vulnerability Assessment testing
+ Identification and Authentication schemes
+ Public Key Infrastructure and Identity Management
+ Cross Domain Solutions
+ Computer Network Exploitation (CNE)
+ Computer Network Operations (CNO)
+ Malware Analysis
+ Reverse Software Engineering
+ Security engineering
**Required Education:**
+ Bachelor's degree in Cyber Security, Information Security, Software Engineering or a related discipline is required. [Four (4) years of experience (for a total of six (6) or more years) may be substituted for a degree.]
**Desired** **Certifications:**
**DoD 8570.1-M Compliance at IAT Level I**
**Syndeo # - 3490**
_At Nightwing, we value collaboration and teamwork. You'll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we'll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients._
_Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team._
_Nightwing is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class._
Information Systems Security Officer
Information security analyst job in Eglin Air Force Base, FL
General information Requisition # R64859 Posting Date 12/16/2025 Security Clearance Required Top Secret Remote Type Onsite Time Type Full time Description & Requirements Shape the future of defense with MANTECH! Join a team dedicated to safeguarding our nation through advanced tech and innovative solutions. Since 1968, we've been a trusted partner to the Department of Defense, delivering cutting-edge projects that make a real impact. Dive into exciting opportunities in Cybersecurity, IT, Data Analytics and more. Propel your career forward and be part of something extraordinary. Your journey starts now-protect and innovate with MANTECH!
MANTECH seeks a motivated, career and customer-oriented Information Systems Security Officer (ISSO) to join our Air Force / Space team at Eglin AFB.
The ISSO's primary function is to support the United States Air Force's 53rd Wing Technical Support Services (53rd WTSS) contract.
Responsibilities include, but are not limited to:
* Perform ISSO duties in support of in-house and external customers
* Notify ISSM when changes occur that might affect the authorization determination of the information system(s)
* Conduct periodic reviews of information systems to ensure compliance with the security authorization package
* Coordinate any changes or modifications to hardware, software, or firmware of a system with the ISSM and AO/DAO prior to the change
* Ensure all IS security-related documentation is current and accessible to properly authorized individuals
* Execute the cyber security portion of the self-inspection, to include provide security coordination and review of all system assessment plans
* Identify cyber security vulnerabilities and assist with the implementation of the countermeasures for them
* Conduct security impact analysis activities and provide to the ISSM on all configuration management changes to the authorization boundaries
Minimum Qualifications:
* Bachelor's degree in related discipline from an accredited college or university. 2 additional years of experience may be substituted for a degree.
* 4+ years direct/related experience
* Active / valid DoD 8570.01-M IAT-II certification
* Experience with DoD/USAF information security policy background with practical / hands-on experience applying RMF processes and principles.
* Experience developing and/or contributing to an RMF body of evidence composition, applicable artifacts, and associated control families.
Clearance Requirements:
* Active Top Secret Clearance
* Must be able to obtain and maintain a DoD TS/SCI-eligible clearance (i.e. DCID 6/4 eligibility)
* Eligibility for access to Special Access Program Information
* Willingness to submit to a Polygraph.
Physical Requirements:
* Must be able to remain in a stationary position 50%
* Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
* Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer.
* Frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations
MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
Auto-ApplyInformation Systems Security Engineer (ISSE)
Information security analyst job in Fort Walton Beach, FL
Applied Intuition is the vehicle intelligence company that accelerates the global adoption of safe, AI-driven machines. Founded in 2017 and now valued at $15 billion following its recent Series F funding round, Applied Intuition delivers the Vehicle OS, Self-Driving System, and toolchain to help customers build intelligent vehicles and shorten time to market. 18 of the top 20 global automakers and major programs across the Department of Defense trust Applied Intuition's solutions to deliver vehicle intelligence. Applied Intuition services the automotive, defense, trucking, construction, mining, and agriculture industries and is headquartered in Mountain View, CA, with offices in Washington, D.C., San Diego, CA, Ft. Walton Beach, FL, Ann Arbor, MI, London, Stuttgart, Munich, Stockholm, Bangalore, Seoul, and Tokyo. Learn more at applied.co.
We are an in-office company, and our expectation is that employees primarily work from their Applied Intuition office 5 days a week. However, we also recognize the importance of flexibility and trust our employees to manage their schedules responsibly. This may include occasional remote work, starting the day with morning meetings from home before heading to the office, or leaving earlier when needed to accommodate family commitments. (Note: For EpiSci job openings, fully remote work will be considered by exception.)
About the role
We are seeking a highly skilled Information Systems Security Engineer (ISSE) to oversee and maintain the security of our information systems. The ISSE will take ownership of the security posture, engineering, and compliance of our classified information systems. The successful candidate will be a key technical resource, responsible for ensuring all systems meet stringent federal and Department of Defense (DoD) security standards, with a focus on Special Access Program (SAP) environments. A Secret Clearance (minimum) is required.
At Applied Intuition, you will:
Implement and maintain security controls as directed by the Information System Security Manager (ISSM)
Directly supporting engineers for deployments onto customer systems
Serve as the primary liaison with Government agencies for security matters and authorization processes
Coordinate with external auditors and assessors during security evaluations and audits
Perform regular vulnerability scanning, security assessments, and compliance checks to ensure system security
Monitor system logs, investigate potential security incidents, and implement remediation measures
Conduct security impact analyses for system changes and assist in developing security documentation
Provide direct security support to project teams and customers
Facilitate routine security awareness training
Perform user access reviews and manage access control implementation to maintain system integrity
We're looking for someone who has:
A Bachelor's degree in Information Security, Computer Science, or a related field
A minimum of 5 years of hands-on security experience in Government contracting environments
DoD 8140/8570 IAM level II (Security+ Certification, condition of employment)
Proven experience implementing NIST 800-171 security controls
Proven experience implementing NIST 800-53 security controls and preparing ATO packages
Strong understanding of network security principles, system hardening techniques, and vulnerability management
Experience with vulnerability scanning tools and security logging/monitoring
Excellent communication and collaboration abilities
Strong analytical, organizational, and problem-solving skills
Travel Requirements:
Willing to travel for company business as company/customer requires. (~10%)
Security Requirements:
Must be a U.S. Citizen
Must have an active DoD security clearance (minimum Secret, prefer Top Secret)
For more information about U.S. security clearances: click here.
Nice to have:
CISSP certification
Experience with AWS GovCloud
Experience with cloud security tools (e.g. Wiz)
Familiarity with cloud security best practices and controls (FedRAMP)
Knowledge of risk management frameworks and compliance standards
Scripting skills
Compensation at Applied Intuition for eligible roles includes base salary, equity, and benefits. Base salary is a single component of the total compensation package, which may also include equity in the form of options and/or restricted stock units, comprehensive health, dental, vision, life and disability insurance coverage, 401k retirement benefits with employer match, learning and wellness stipends, and paid time off. Note that benefits are subject to change and may vary based on jurisdiction of employment.
Applied Intuition pay ranges reflect the minimum and maximum intended target base salary for new hire salaries for the position. The actual base salary offered to a successful candidate will additionally be influenced by a variety of factors including experience, credentials & certifications, educational attainment, skill level requirements, interview performance, and the level and scope of the position.
Please reference the job posting's subtitle for where this position will be located. For pay transparency purposes, the base salary range for this full-time position in the location listed is: $150,000 to $200,000 USD annually.
Don't meet every single requirement? If you're excited about this role but your past experience doesn't align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right candidate for this or other roles.
Applied Intuition is an equal opportunity employer and federal contractor or subcontractor. Consequently, the parties agree that, as applicable, they will abide by the requirements of 41 CFR 60-1.4(a), 41 CFR 60-300.5(a) and 41 CFR 60-741.5(a) and that these laws are incorporated herein by reference. These regulations prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities, and prohibit discrimination against all individuals based on their race, color, religion, sex, sexual orientation, gender identity or national origin. These regulations require that covered prime contractors and subcontractors take affirmative action to employ and advance in employment individuals without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status or disability. The parties also agree that, as applicable, they will abide by the requirements of Executive Order 13496 (29 CFR Part 471, Appendix A to Subpart A), relating to the notice of employee rights under federal labor laws.
Auto-ApplyCyber Information Assurance Analyst III / Information Security
Information security analyst job in Pensacola, FL
Global Business Solutions, Inc., established in 1995, offers customers a distinctive blend of information technology capabilities, education and training services, and information assurance solutions. Managed by a team of executive leaders experienced in the field of information technology and training services within the industry and government, GBSI prides itself on exceeding expectations. Our award-winning solutions give clients the support tools needed to successfully deliver in evolving environments with confidence.
Job Description
Role and Responsibilities
This position does not represent a current opening and is posted for the purpose of collecting multiple resumes across various skill levels for a pending contract. GBSI may consider candidates who express an interest in this position for future job openings.
This Position is located in Pensacola, FL - Currently, there is no relocation assistance.
The Cyber Information Assurance Analyst III designs and conducts regular audits on computer systems to determine that they are operating securely and that data is protected from both internal and external threats. Makes assessments of assigned systems to determine the system security status and ensure compliance to security policies, procedures and standards.
Primary Objectives of the Cyber Information Assurance Analyst III - InfoSec
Designs and recommends security policies and procedures;
Prepares training materials and instructs computer security education and awareness training programs;
Monitors, evaluates, and maintains complex security systems according to industry best practices and safeguards internal information systems and databases;
Reviews system configurations to ensure compliance with security requirements and complies with established standards;
Investigates security violations and breaches and recommends solutions;
Compiles reports on intrusions as necessary and provides analysis summaries to management;
Reviews organization wide firewall logs;
Provides reports to internal and external customers in response to queries and requests for computer security information;
Consults on tasks, provides leadership and guidance for junior personnel
Gives recommendations for product upgrades, patches and general security measures to secure and/or mitigate threats for various clients.
Qualifications
Qualifications and Education Requirements
Ability to pass a Government background check;
Bachelor's degree in Computer Science, Management Information Systems, or data security experience;
Four (4) or more years of experience in computer science, information systems management or data security may be substituted in lieu of a degree;
Experience working with system/network security tools;
Must possess an active CompTIA Security+ or CISSP certification or be able to obtain either certification within thirty (30) days of employment.
Preferred Qualifications
CompTIA Security+ Certification;
CISSP Certification.
Additional InformationGBSI is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action-Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO/AA statement, please visit ********************************************************** You may also view the "EEO is the Law" poster directly at *****************************************************************
No part of this Position Description or of any other shall be construed as an employment contract. Employment with GBSI is at will and constrained by both the laws of the State of Florida and those of the state wherein the employee performs services for the company.
Information System Security Manager
Information security analyst job in Eglin Air Force Base, FL
Key Role: Support day-to-day remote technical aspects of product operational data to identify diagnostic issues in enough detail to determine if the root cause is hardware or software related. Apply specific functional knowledge and working or general industry knowledge. Develop or contribute to solutions to a variety of problems of moderate scope and complexity. Work independently with some guidance. May review or guide the activities of more junior employees.
Basic Qualifications:
* 2+ years of experience with cybersecurity projects and integrated systems
* 2+ years of experience with NIST 800-53 and RMF practices, including Security Technical Implementation Guides (STIGs), computer networking, and operating systems administration
* 2+ years of experience with STIGs, NESSUS, vulnerability, or application scanners for IA use
* Knowledge of NISPOM, JSIG, ICD, and eMASS
* Ability to generate RMF security documentation to support Interim Authorities to Test (IATTs), Authorizations to Operate (ATOs), Interconnection Security Agreements (ISAs), and Authorities to Connect (ATCs)
* TS/SCI clearance
* HS diploma or GED
Additional Qualifications:
* Experience managing the authorization status of DoD RMF from step 1 through step 6
* Knowledge of continuous monitoring, cybersecurity risk management, disaster recovery, FISMA compliance, information security architecture, information security auditing, security control assessment, threat modeling, threat management, vulnerability analysis, and vulnerability assessments
* Bachelor's degree
* DoD 8570 Security+ Certification
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $77,500.00 to $176,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.
Identity Statement
As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Work Model
Our people-first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely.
* If this position is listed as remote or hybrid, you'll periodically work from a Booz Allen or client site facility.
* If this position is listed as onsite, you'll work with colleagues and clients in person, as needed for the specific role.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
Auto-ApplyTechnology Security Analyst (API)
Information security analyst job in Jay, FL
We are FIS. Our technology powers the world's economy and our teams bring innovation to life. We champion diversity to deliver the best products and solutions for our colleagues, clients and communities. If you're ready to start learning, growing and making an impact with a career in fintech, we'd like to know: Are you FIS?
NOTE:
1. Candidates located in FIS office locations in Jacksonville (FL), Milwaukee (WI), Atlanta (GA), and New York City (NY) will be required to work in a hybrid model (3 days in office per week).
2. Current and future sponsorship are not available for this position.
About the role:
As an IT Security Analyst with FIS, your skills will be put to the test on the front lines of cyber-crime. Information security is at the heart of fintech and you'll help protect and secure highly-sensitive financial data for customers around the world.
About the Team:
The Appsec Architecture and Engineering is responsible for developing and maintaining policies and standards for the FIS API Security Program and collaborate with internal development teams to implement security controls in APIs, conducting secure design reviews and automates workflows to track and remediate API vulnerabilities.
The team identifies and addresses gaps in incumbent security tools (SAST, SCA, Container security), collaborates with vendors to address/enhance scanning coverage and define/refine the internal processes to ensure the efficiency and strengthen overall security program.
What you will be doing:
Develop and maintain policy and standards for FIS API security program.
Collaborate with internal development teams to build/advocate security controls in Application Programming Interface (API), and performing the secure design review of the APIs.
Assist in the security standards, and processes of SDLC to protect Application, APIs, and CI/CD.
Primarily responsible for API and Application security but with a good working knowledge of other security domains (Cryptography, Identity and Access Management, Threat and Vulnerability Management)
Manage the API runtime monitoring tool and work with vendor to tune/configure to provide the maximum but accurate coverage to FIS software.
Identify the gaps in SAST/SCA/Container/IAC and other tool's rule/configuration and work with vendor to engineer them to provide the maximum scanning coverage to FIS software.
Crate software/automated workflows and collaborate with other stakeholders to integrate security tooling to track the API findings and work with development team to remediate them.
Collaborate with WAF team to define/modify the rules to protect the APIs.
What you bring:
Total 5+ years of hands-on professional software development and security experience, with a strong foundation in security practices and expertise in languages such as Java or C#.
Proven experience in API Security and Application security, including secure design reviews.
Collaborated closely with development teams to integrate security control and remediate vulnerabilities.
Collaborated with development team and DevOps team to integrate security tools and workflows into automated development environments.
Good understanding of SAST, SCA, IaC, and container security tools (e.g., Checkmarx One) working and tuning of such tools to maximize coverage and reduce false positives.
Strong knowledge of OWASP Top 10 and OWASP API Top 10, with the ability to identify, assess, and guide remediation of vulnerabilities through both manual and automated methods.
Excellent communication skills, with the ability to convey complex security concepts to both technical and non-technical stakeholders.
Strong organizational and time management skills, with a track record of driving security initiatives across cross-functional teams in a remote or hybrid environment.
Added Bonus if you have:
Knowledge of FIS products and services a plus but not required
Knowledge of Financial Industry preferred.
What we offer you:
At FIS, you can learn, grow and make an impact in your career. Our benefits include:
Flexible and creative work environment
Diverse and collaborative atmosphere
Professional and personal development resources
Opportunities to volunteer and support charities
Competitive salary and benefits
NOTE:
1. Candidates located in FIS office locations in Jacksonville (FL), Milwaukee (WI), Atlanta (GA), and New York City (NY) will be required to work in a hybrid model (3 days in office per week).
2. Current and future sponsorship are not available for this position.
FIS is committed to providing its employees with an exciting career opportunity and competitive compensation. The pay range for this full-time position is $86,120.00 - $144,670.00 and reflects the minimum and maximum target for new hire salaries for this position based on the posted role, level, and location. Within the range, actual individual starting pay is determined by additional factors, including job-related skills, experience, and relevant education or training. Any changes in work location will also impact actual individual starting pay. Please consult with your recruiter about the specific salary range for your preferred location during the hiring process.
Privacy Statement
FIS is committed to protecting the privacy and security of all personal information that we process in order to provide services to our clients. For specific information on how FIS protects personal information online, please see the Online Privacy Notice.
EEOC Statement
FIS is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, genetic information, national origin, disability, veteran status, and other protected characteristics. The EEO is the Law poster is available here supplement document available here
For positions located in the US, the following conditions apply. If you are made a conditional offer of employment, you will be required to undergo a drug test. ADA Disclaimer: In developing this job description care was taken to include all competencies needed to successfully perform in this position. However, for Americans with Disabilities Act (ADA) purposes, the essential functions of the job may or may not have been described for purposes of ADA reasonable accommodation. All reasonable accommodation requests will be reviewed and evaluated on a case-by-case basis.
Sourcing Model
Recruitment at FIS works primarily on a direct sourcing model; a relatively small portion of our hiring is through recruitment agencies. FIS does not accept resumes from recruitment agencies which are not on the preferred supplier list and is not responsible for any related fees for resumes submitted to job postings, our employees, or any other part of our company.
#pridepass
Auto-ApplyInformation Systems Security Officer (ISSO) - Journeyman
Information security analyst job in Eglin Air Force Base, FL
JBW Federal is a subsidiary company of the Kanaka Foundation - An NHO who's mission is to support Native Hawaiians.
You will receive a comprehensive benefits package that includes:
Health insurance
Dental insurance
Vision insurance
Pet insurance
Annual membership to Costco or Sam's
401K
...and much, much more!
Job Description: JBW Federal is seeking an Information Systems Security Officer that understands cybersecurity concepts and methodologies at the associate level with knowledge equivalent to: CompTIA Security+, Certified Information System Security Officer, or similar certifications to support the 39th Information Operations Squadron (39 IOS) from Hurlburt Field, FL or Joint Base San Antonio, TX.
What You'll Be Doing:
You will manage and perform records management for all Account Forms including but not limited to: Cybersecurity Awareness training for all students, Authorized User Agreements and associated user forms for all networks required for duty at the 39 IOS, System Authorization Access Requests, Privileged User Agreements, 8570/8140 validation, Operating System Certification validation, and associated user forms.
You will maintain appointment letters for work roles including, but not limited to: Program Managers, ISSO, Information Systems Security Manager (ISSM), Information Systems Security Engineer (ISSE), Systems Administrators, Client Systems Technicians, and Cybersecurity Liaisons.
You will perform wireless scanning throughout the facility to ensure no rogue activity to include but not limited to: review vulnerability scans on all networks and respond to any vulnerabilities appropriately while conducting network audits on all networks.
You will manage and update Management Internal Control Toolkit (MICT) checklists for assigned programs including, but not limited to: Privileged User, 17-1301 Computer Security (COMPUSEC), and 17-101 Risk Management Framework (RMF).
You will inspect equipment prior to the entry and exit of the facilities and ensure entry and exit logs are accomplished along with reviewing, updating, and enforcing Media Control policy including, but not limited to: Issuing and tracking removable media and ensuring media sanitization.
You will validate administrator accounts on all networks and respond to any discrepancies appropriately.
You will review equipment purchase requests to ensure items are on approved products listings and meet requirements to enter the facilities.
You will ensure cybersecurity marking and standards enforcement including but not limited to: Classification stickers and markings on all systems, Bomb threat aids posted by all phones, and Combined Security Cards are posted by all workstations.
You will perform random bag and walkthrough inspections with the Security team along with responding to incidents and assisting with response and reporting.
You will answer all TASKORDS/ taskers by MAJCOM for action on our owned networks including but not limited to: vulnerability remediation and data calls.
You will review, update, and enforce the Security Concept of Operations (SECONOPS) along with the contingency plan policy.
You will maintain Risk Management Framework (RMF) packages for all networks owned/operated by the 39 IOS including, but not limited to: answer data calls, prepare system package, Categorize system by guiding documents, Select security controls for risk mitigation, Implement security controls, Assess security control effectiveness, Monitor system and update accreditation package, Security Impact Analysis (SIA) submissions for tenants requesting changes and install of new software, and Respond to and coordinate requirements for accreditation package not owned by the squadron.
You will order, issue, manage, and account for all tokens granting access to network as well as auditing and inventorying issuance of student user tokens.
You will perform COMPUSEC and Information Security (INFOSEC) duties and manage the Cybersecurity Liaison program for the squadron under the direction of the Wing Cybersecurity Office.
What Required Qualifications You'll Bring:
Associate's Degree (preferably in a STEM field) or Approved Equivalent Experience
2 years of risk management framework experience within the last 5 years
IAT/M Level II certification
Ability to travel CONUS and OCONUS Occasionally. Must have a current passport or able to acquire within the first 60 days of employment
Clearance - Top Secret/SCI
Kanaka Family of Companies is an Equal Opportunity Employer, and all qualified candidates will receive consideration for employment without regard to race, color, religion, national origin, marital status, sex (including pregnancy), gender identity or expression, age, disability, veteran status, sexual orientation, genetic information (family medical history), or any other status protected by federal, state or local laws. EEO/AA employer/Vet/Disabled.
Job Posted by ApplicantPro