Information Security Analyst
Alexandria, VA 
Share
Posted 11 days ago
Job Description
Information Security Analyst
Job Locations US-VA-Alexandria
ID 2024-13725 Category Facilities Position Type Regular Full-Time
Overview

Goldbelt Integrated Logistics Services (GbILS) provides four specific areas of expertise-Logistics Engineering, Measurement Sciences, Program Management, and Technical Support-serving the scientific, technical, and engineering needs of clients. GbILS values its innovative thinking and service-oriented team who provide services for a variety of federal government and commercial clients.

Summary:

Goldbelt Integrated Logistics Services is looking for an Information Security Analyst to provide onsite support for our government customer located in the Washington DC Metro Area. The Security Analyst shall provide Cybersecurity services in support of the C5ISC Engineering Services Division (ESD) Information Assurance Branch (IAB). The Security Analyst shall act as the Information Systems Security Officer and shall provide cybersecurity audits, reviews and recommendations to assist the customer in maintaining accreditation for network and enterprise system as designated. This includes validation of POA&M content submitted by the area of responsibility (AOR) for weakness remediation; ensuring POA&Ms are submitted via proper channels; providing reports and status tracking of remediation efforts; work with the AOR as needed to ensure items are completed in a timely manner and to gather appropriate artifacts for closure; and identifying POA&Ms that will need waivers or risk acceptance. Utilize DOD/ USCG and industry-standard security practices and policies to conduct detailed vulnerability assessments and implement recommended security safeguards to protect all CG IT assets.

Responsibilities

Essential Job Functions:

    Prepare and maintain correct, thorough, and timely inputs to accreditation packages and critical documents that stipulate concepts, requirements, continuity, and contingency to include, System Security Plan (SSP), Security Risk Analysis (SRA), and all critical requirement documents, artifacts in accordance with current network accreditation processes.
  • Provide analyses and decision support information for the CGCyber A&A to make system/network risk management determinations for an Authorization to Operate (ATO).
  • Maintain the continuous monitoring process and ensure all systems are compliant with DOD and USCG security guidelines, and DISA Security Technical Implementation Guides (STIG).
  • Provide draft inputs to security policies and guidance, based on Government requirements and industry best practices, to ensure CG practices are in compliance with DOD/USCG policy directives.
  • Provide artifacts and information required for audits and inspections.
  • Develop and maintain matrices to track and analyze trends in IA readiness and compliance.
  • Manage and track all Plan of Action and Milestones (POA&Ms) created by the organization to address identified weaknesses, vulnerabilities, and audit/assessment findings from creation to closure.
  • Coordinate with other organizations as needed in the processing and management of the POA&Ms.
  • Coordinate and implement Information Operations Conditions (INFOCON) measures as necessary.
  • Utilize tools and tracking mechanisms that shall automate reporting and data collection of Information Security (INFOSEC) associated vulnerabilities.
  • The Contractor shall submit findings and recommendations to the ISSO as requested.
  • Provide continuous monitoring of all C5ISC enterprise-managed assets.
  • The continuous monitoring process shall ensure all systems are compliant with DOD and USCG security guidelines.
  • Coordinate and maintain the DHS' and DOD's vulnerability database accounts.
  • Coordinate with ISSOs to advise and facilitate resolution of all IA and INFOSEC issues.
  • Review system audit records and intrusion detection data to assist ISSOs in identifying security incidents.

Qualifications

Necessary Skills and Knowledge:

  • Must have strong foundational knowledge of information security and practical experience in Security Services
  • Must have a strong background and experience with projects involving information assurance and cybersecurity.
  • Familiarity with security frameworks (e.g., NIST, CIS, ISO 27001).
  • Experience with security tools, such as SIEM, IDS/IPS, antivirus, and endpoint protection.
  • Understanding of network protocols and architecture.
  • Strong analytical and problem-solving skills.
  • Excellent communication and teamwork abilities.
  • Familiarity with MS-Office automation products, including MS Word, MS Excel, MS PowerPoint, and MS-Project.
  • Familiarity working with Google products including Mail, Sites, Calendar, Spreadsheet, Drive, and Document.

Minimum Qualifications:

  • Completed experience, training, and maintenance of IAM Level I certification required.
  • Active SECRET security clearance.

Preferred Qualifications:

  • Preferred 3+ years of experience in an Information Security Analyst or ISSO Preferred 3+ years of experience in at least one of the following toolsets: ACAS, HBSS and/or eMass.

Compensation for this role is $95,000.00- $110,000.00 Annually

Pay and Benefits

At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.


Goldbelt Inc. and its subsidiaries are equal opportunity employers. We recruit, employ, train, compensate, and promote without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws.

 

Job Summary
Start Date
As soon as possible
Employment Term and Type
Regular, Full Time
Required Experience
3+ years
Email this Job to Yourself or a Friend
Indicates required fields