Information Assurance Analyst Resume Samples

4.8 (106 votes) for Information Assurance Analyst Resume Samples

The Guide To Resume Tailoring

Guide the recruiter to the conclusion that you are the best candidate for the information assurance analyst job. It’s actually very simple. Tailor your resume by picking relevant responsibilities from the examples below and then add your accomplishments. This way, you can position yourself in the best way to get hired.

Craft your perfect resume by picking job responsibilities written by professional recruiters

Pick from the thousands of curated job responsibilities used by the leading companies

Tailor your resume & cover letter with wording that best fits for each job you apply

Resume Builder

Create a Resume in Minutes with Professional Resume Templates

Resume Builder
CHOOSE THE BEST TEMPLATE - Choose from 15 Leading Templates. No need to think about design details.
USE PRE-WRITTEN BULLET POINTS - Select from thousands of pre-written bullet points.
SAVE YOUR DOCUMENTS IN PDF FILES - Instantly download in PDF format or share a custom link.

Resume Builder

Create a Resume in Minutes with Professional Resume Templates

Create a Resume in Minutes
CO
C O'Reilly
Carlos
O'Reilly
781 Keeling Stream
San Francisco
CA
+1 (555) 415 0454
781 Keeling Stream
San Francisco
CA
Phone
p +1 (555) 415 0454
Experience Experience
Chicago, IL
Information Assurance Analyst
Chicago, IL
Schulist, Hamill and D'Amore
Chicago, IL
Information Assurance Analyst
  • Supporting the A&A of the DoS environment, by providing guidance to, and coordinating the efforts of, relevant system operators across the environment
  • Knowledge of relevant mathematical and statistical sciences. Provide technical knowledge and analysis of client systems in tactical operational environments, high-level functional systems analysis, and design integration, documentation, and implementation advice on exceptionally complex problems requiring extensive knowledge of the subject matter for effective implementation
  • Development and existing certification and accreditation (C&A) packages identified by the government. Support major portions of large or medium projects, including C&A efforts. Gather facts through research, interviewing, and surveys. Analyze the client's business, draw conclusions, prepare final reports, and give presentations. Interface with project managers, software developers, and other technical and functional support staff. Use In-depth consultative expertise and business knowledge to practice business objectives and processes
  • Serves as the team member supporting the analysis of general network technical problems, and providing recommendations and technical support in solving these problems
  • Working with these internal customers to respond to escalations
  • Develop and maintain relationships with internal and external customers to formulate information security governance solutions for Company
  • Work with stakeholders and manage project teams (internally) and/or externally
Houston, TX
Cyber Operations Security Information Assurance Analyst
Houston, TX
Schimmel Group
Houston, TX
Cyber Operations Security Information Assurance Analyst
  • Performs anti-virus definition updates according to current processes to the Unclassified and Classified NMCI network
  • Performs initial investigation on any suspicious activity and reports the potential events to the NMCI Command Center (NMCICC) and/or CIRT
  • Investigates all rogues detected on the network in accordance with the approved Rogue Procedures
  • Monitors all incoming email IA alerts, performs initial investigation on any suspicious activity and reports it to NMCICC and/or CIRT
  • Ensures the proper logging, management and reporting of all security events and exceptions
  • Manages and monitors all HPSM and Remedy queues both classified and unclassified
  • Detects and contains all intrusion attempts and attempts at unauthorized access to DON information systems
present
San Francisco, CA
Senior Information Assurance Analyst
San Francisco, CA
Muller-Kunde
present
San Francisco, CA
Senior Information Assurance Analyst
present
  • Serve as a Subject Matter Expert for a large cyber program, supporting teams in geographically dispersed locations to support the analysis of general network technical problems and provides recommendations and technical support in solving these problems
  • Rapidly assess network traffic, detect data anomalies, and provide detailed reporting on same
  • Provide alert handling of mitigation strategies
  • Develop Tactics, Techniques, and Procedures (TTPs) regarding how to analyze data, detect anomalies, recommend mitigation strategies, and report
  • Provide senior level hands on monitoring/administration of network monitoring and modernization efforts
  • Active high level government security clearance
  • Serve as the Designated Approving Authority Representative (DAA-R) / Authorizing Official Representative (AO-R) on multiple Systems - assisting the U.S. government customer in making risk-based decisions to implement these systems into the environment
Education Education
Bachelor’s Degree in Computer Science
Bachelor’s Degree in Computer Science
Drexel University
Bachelor’s Degree in Computer Science
Skills Skills
  • Strong interpersonal skills, business maturity, and sound judgment. Capable of communicating with a diverse range of individuals
  • Excellent work ethic and a high commitment to quality
  • Strong initiative, detail orientation, organizational skills, aptitude for analytical thinking
  • MCSE or MCSA certification highly desirable
  • Knowledgeable about security issues, vulnerabilities, regulatory and legal changes, and security standards that may impact information security
  • Solid knowledge and understanding of web application security
  • Solid knowledge and understanding of database, network, server, and/remote connectivity security
  • Solid knowledge and understanding of security threats, techniques, and landscape
  • Solid knowledge and understanding of operating systems including MS Windows, UNIX, and/or Linux
  • Knowledge of threat management, vulnerability management, and breach management processes to prevent, detect, respond and recover from security incidents
Create a Resume in Minutes

15 Information Assurance Analyst resume templates

1

Information Assurance Analyst, Mid Resume Examples & Samples

  • 3+ years of experience with executing certification and accreditation of DoD systems
  • 2+ years of experience with developing and evaluating security documentation related to mobile device systems, including system security plans, contingency plans, security procedures, and continuity of operations plans
  • 2+ years of experience with commercial mobile device security architecture evaluation, guidance development, and troubleshooting
  • Experience with the DIACAP or risk management framework
  • Experience with DoD information assurance policies, directives, and STIGs, as applicable to mobile devices
  • Experience with existing credentials and using VMS and eMASS systems preferred
  • Experience with assessing organizational risk associated with mobile device implementations and recommending mitigation strategies
  • Knowledge of NIST 800 series publications, including 800-30, 800-37, 800-53, and 800-53a
  • Knowledge of FSO review procedures
  • CISSP Certification preferred
2

Information Assurance Analyst Resume Examples & Samples

  • 4+ years of experience with information assurance and security practices with 3+ of those years of experience with writing SSPs or other security-related policy
  • 3+ years of experience with federal security policy, including FISMA, NIST 800-53, or Risk Management Framework
  • 1+ years of experience with resolving security findings discovered on network devices and OS
  • Knowledge of Cloud security technologies and techniques
  • Security+, CISSP, CISA, CISM, or CAP Certification
  • Experience in working with clients to gather, comprehend, and clearly articulate business requirements, success criteria, and metrics for measuring business value
  • Ability to manage multiple simultaneous work streams, including projects and program initiatives, and prioritize, manage, and execute effectively with compressed time lines and ambiguous tasking
  • Ability to work independently and take ownership of and complete relatively complex tasks, effectively using available resources, as needed, with minimal guidance
  • Ability to effectively interact and communicate, orally and via presentations, with senior government leadership, facilitate meetings and working sessions, and develop executive-level briefings
  • Possession of excellent data gathering and analysis expertise to facilitate risk mitigation and issue resolution and to support IT operations streamlining and consolidation initiatives
  • BA or BS degree in CS, Computer Engineering, IT, or a related field
3

Information Assurance Analyst Resume Examples & Samples

  • 5+ years of experience with IA best practices and procedures, including DIACAP and RMF
  • 5+ years of experience with independent authoring of written deliverables or delivering presentations
  • 3+ years of experience with vulnerability reporting in support of C&A and risk assessments
  • BA or BS degree in Information Assurance, Computer Information Systems, or CS
  • CISSP, GSLC, CISM, or CAP Certification
  • Experience with developing, managing, and securing Microsoft Windows, CISCO IOS, Linux, or UNIX
  • Experience with Cybersecurity test methodology and tools, including NMAP, eEye Retina, or HP Fortify 360
  • Experience with the network design and testing methodology of integrated systems
  • BA or BS degree in Engineering; MS degree a plus
4

Information Assurance Analyst Resume Examples & Samples

  • 2+ years of experience in working with DIACAP
  • Ability to assess and understand IA requirements
  • Ability to demonstrate a sense of responsibility and service-minded attitude
  • Ability to demonstrate flexibility to meet deadlines and changing priorities
  • Ability to work in a high-pressure team environment and work independently
  • Knowledge of Enterprise Mission Assurance Support Service (eMASS)
  • Possession of excellent problem solving and interpersonal skills
5

Information Assurance Analyst Resume Examples & Samples

  • 5+ years of experience with Department of Defense Information Assurance Certification and Accreditation Process (DIACAP)
  • Experience with DoD information assurance and security practices and DoD IT policies and regulations
  • Experience with Linux operating environment and Linux+, including Linux OS and servers
  • BS degree in Software Engineering, CS, Information Assurance, IT, or in a related field
6

Information Assurance Analyst Resume Examples & Samples

  • Rapidly assess network traffic, detect data anomalies, and provide detailed reporting on same
  • Provide alert handling of mitigation strategies
  • Serves as the team member supporting the analysis of general network technical problems, and providing recommendations and technical support in solving these problems
  • Administer network monitoring systems, as well as provide the assessment and implementation of solutions to meet network security requirements
  • Ensure the successful performance of vulnerability/risk analyses of computer systems and applications, during all phases of the system development life cycle
  • Knowledge of relevant mathematical and statistical sciences. Provide technical knowledge and analysis of client systems in tactical operational environments, high-level functional systems analysis, and design integration, documentation, and implementation advice on exceptionally complex problems requiring extensive knowledge of the subject matter for effective implementation
  • At least three (3) years network administration experience including one (1) year relevant experience with Navy cyber security and network operations
  • The successful candidate must have at least one of the following certifications: CAP, GSLC, CISM, CISSP (or Associate), or CASP CE
  • Understanding of network data anomalies, trend analysis, and requisite
  • Mitigation strategies
  • Associate of Science degree in information systems, information security, computer science or related discipline, or equivalent experience
  • Demonstrated Military and/or Private Sector experience
  • Strong interpersonal skills, business maturity, and sound judgment. Capable of communicating with a diverse range of individuals
  • Strong analytical, problem-solving, and decision making capabilities
7

Senior Information Assurance Analyst Resume Examples & Samples

  • Serve as a Subject Matter Expert for a large cyber program, supporting teams in geographically dispersed locations to support the analysis of general network technical problems and provides recommendations and technical support in solving these problems
  • Develop Tactics, Techniques, and Procedures (TTPs) regarding how to analyze data, detect anomalies, recommend mitigation strategies, and report
  • Manage and administer network monitoring systems, as well as provide the assessment and implementation of solutions to meet network security requirements
  • Ensure the successful performance of vulnerability/risk analyses of computer systems and applications during all phases of the system development life cycle
  • Provide senior level hands on monitoring/administration of network monitoring and modernization efforts
  • Professional experience in developing network traffic data analyzation techniques and procedures, trending analysis, network traffic data mitigation strategies, and applying the theoretical foundations of computer science, including computer system architecture, high performance computing, network science, cyber defense, and the theoretical models for such representations and transformation
  • Knowledge of relevant mathematical and statistical sciences. Provide technical knowledge and analysis of client systems in tactical operational environments, high-level functional systems analysis, and design integration, documentation, and implementation advice on exceptionally complex problems that need extensive knowledge of the subject matter for effective implementation
  • Over seven (7) years network administration experience including two (2) years relevant experience with Navy cyber security and network operations
  • Master level understanding of network data anomalies, trend analysis, and requisite mitigation strategies
  • Bachelor of Science degree in information systems, information security, computer science or related discipline
  • Active high level government security clearance
  • Masters in Computer or Information Science, Cyber or related subject
8

Information Assurance Analyst Resume Examples & Samples

  • Monitoring and analyzing Data Loss Prevention (DLP) incidents to ensure compliance with company policies
  • Understanding a variety of security and compliance policies and incident response processes; working with different business units to determine sensitive data that needs to be protected with the DLP technology
  • Exercising sound judgment when determining which events require follow-up response or escalation
  • Working with these internal customers to respond to escalations
  • Maintaining incident documentation, analyzing incident trends
  • Identifying and translating data loss risks and planning mitigation into DLP policy rules
  • Constructing and tuning DLP policies to maximize risk reduction while minimizing false positives
  • Participating in DLP projects and strategic initiatives
  • Helping to manage the DLP system, this individual will assist the forensic team with investigations, e-discovery and other task as required
  • Engineering of the Symantec Data Loss Prevention security toolset including Policy creation, Remediation, agent deployment, email integration, proxy integration, scanning, and support in a global environment
  • Business needs analysis against security concerns and articulate issues to customers and management
  • Excellent verbal and written communication skills with experience presenting information to groups
  • Strong analytical, technical, and problem solving skills
  • Project time management and multiple task prioritization capabilities
  • Leadership skills
  • Independent decision making capabilities
  • Effective and positive interdepartmental and cross functional team collaboration
  • 1-3 years of experience of Data Loss Prevention (DLP) work experience, using Symantec, McAfee, or equivalent enterprise solutions is required, and additional familiarity with SkyHigh or other cloud based DLP products is beneficial
  • Engineering of Global Agent deployments
  • A solid understanding of Network and Endpoint Systems Scanning is a plus
  • Fundamental knowledge of firewalls, networks, operating systems, databases, and storage preferred
  • Minimum of 5 years of progressive experience in information services, including 3 years in systems security, maintenance and use of security products in a distributed enterprise environment
  • Experience in Windows, Linux, UNIX (AIX); TCP/IP, network routers and switches, Encryption, Defense Strategies
  • Experience in complex multi-site LAN/WAN environments
  • Experience with network applications, such as Firewall Security and Virtual Private Networking
  • Experience with Ethernet and TCP/IP, DNS, Internet and networking technologies within large distributed environments
  • Project skills including work plan development and management, and accomplishing projects within budget
  • Scripting (e.g., Windows and Linux shell, VB, Python, Java, Perl)
  • Familiarity with MS-SQL, Oracle, other database queries
  • Requirements gathering, system analysis, system development, change management, and implementation
  • CISSP (Certified Information System Security Professional) or GIAC (Global Information Assurance Certification) certification
  • MCSE (Microsoft Certified Systems Engineer certification or similar), or any Unix\Linux certifications
9

Information Assurance Analyst Resume Examples & Samples

  • Concentration in Computer Science, MIS, or Related Technical Discipline
  • Minimum 2 years System Administration oversight, login procedures, software and/or network architecture system oversight (design experience is a plus)
  • Clearance: Must have an active TS/SCI (CI or FS Policy is highly desired)
  • Certification IAE DoD 8570.01-M, IAT/IAM III
  • Proficiency with the entire suite of MS Office professional products (Word, Excel, PowerPoint, SharePoint, Project)
  • Experience with Palantir accreditation
  • In-depth knowledge of the following components of Microsoft System Center 2012 R2 (Configuration Manager, Operations Manager, Service Manager, Virtual Machine Manager, Orchestrator)
  • Must have experience and understanding of both DIACAP and Risk Management Framework (RMF) Information Assurance (IA) accreditation processes and procedures
  • Ability to author clear, concise and accurate reports, white papers, and briefings for a wide audience including senior leadership and other highly technical personnel of all levels
  • Experience with Cybersecurity auditing, continuous monitoring and analysis, the Insider Threat Program, Incident Handling, or Forensic Malware
  • Experience in following technologies: Windows, Linux, CentOS/Red Hat Linux Enterprise (RHEL), Puppet, JIRA, Nagios, VMWare, Git, Jenkins, NSA experience, Distributed Common Ground Station-Army (DCGS-A)
  • Certifications: Red Hat Certified Engineer (RHCE), Microsoft Certified Systems Engineer (MCSE), Cisco Certified Network Associated (CCNA), Security+ (Sec+), Linux Professional Institute (LPI), Linux+, Microsoft Certified Systems Associate (MCSA), Network + (Net+)
10

Information Assurance Analyst Resume Examples & Samples

  • Monitor for IAVA, IAVB and CTOs
  • Developing Mitigation Plans and Compliance Matrices
  • Perform Automated tool scans and Host Based Security System scans (HBSS) on all systems
  • Review all deliverables prior to submission for quality, compliance, and consistency
  • Provide weekly updates to the Information Assurance Manager (IAM) via the MSC Executive Summary report for each system or site accreditation
  • Ensure scans are using the correct scan engine and audit ID based on the date of scan
  • Coordinate with the IAM, System Admin, and system owner to implement all required patching to support remediation of vulnerabilities
  • Candidate must have at least 4 years IA experience working with Department of Navy and VMS
  • Must be familiar with DOD and DoN IA policy
  • Maintain IT security POA&Ms, and performing scheduled reviews
  • Security+ Certified
  • Assured Compliance Assessment Solution (ACAS)
  • CompTIA Security+
  • Must have US DoD Secret clearance minimum
11

Information Assurance Analyst / IA Resume Examples & Samples

  • Bachelor Degree in Engineering, Computer Science, IT Systems, or related scientific /technical discipline - or equivalent experience of four (4) years
  • 2 -10+ years of demonstrated experience with the Intelligence Assessment and Authorization process (formally known as C&A process)
  • NIST RMF experience
  • Have the ability to complete assignments of moderate complexity on time within a fast paced environment
  • Must have a proven track record of excellence in the service provided to clients and customers
  • Experience supporting government customers in secure environments
  • Must currently hold and maintain an Secret clearance or the ability to obtain a clearance based on US Citizenship and background investigations
  • Possess active (ISC)2 Certified Information Systems Security Professional (CISSP) Certification, CEH, Security+, CAP, CISM, IAT II or IAT III level certifications are a plus
  • Strong working knowledge of Microsoft Office
12

Information Assurance Analyst Resume Examples & Samples

  • 3+ years of experience with information assurance and security practices
  • 2+ years of experience with writing SSPs or other security policies
  • 2+ years of experience with federal security policy, including FISMA, NIST 800-53, or Risk Management Framework (RMF)
  • Experience in working with clients to gather, comprehend, and articulate business requirements, success criteria, and metrics for measuring business value clearly
  • Ability to manage multiple simultaneous work streams, including projects and program initiatives, and prioritize, manage, and execute with compressed time lines and ambiguous tasking effectively
  • Ability to work independently and take ownership of and complete relatively complex tasks, using available resources effectively, as needed with minimal guidance
  • Ability to interact and communicate with senior government leadership effectively orally and through presentations, facilitate meetings and working sessions, and develop executive-level briefings
  • Possession of excellent data gathering and analysis expertise to facilitate risk mitigation and issue resolution and support IT operations streamlining and consolidation initiatives
  • Public Trust clearance
  • BA or BS degree in CS, CE, IT, or related field preferred; MA or MS degree a plus
  • CISSP Security Certification preferred
13

Security & Information Assurance Analyst Resume Examples & Samples

  • 5 years of experience with full life cycle information security or assurance
  • Experience with Microsoft Office, including SharePoint
  • Experience with the DoD certification and accreditation process
  • Knowledge of industry best practices in security management
  • Ability to demonstrate adaptability and learn
  • BA or BS degree
  • Experience with technical vulnerability management, assessment, and remediation
  • Knowledge of US government and DoD IA policies, directives, and guidelines
  • BA or BS degree in Engineering, CS, Information Systems, IT, or a related field
  • DoD 8570.01M IAM Level II Compliance or CISSIP Certification
14

Information Assurance Analyst, Mid Resume Examples & Samples

  • 2 years of experience with Cybersecurity or information assurance compliance
  • Experience with DoD Security Accreditation Package processes, including DoD Information Assurance Certification and Accreditation Process (DIACAP) or DoD Information Assurance Risk Management Framework (DIARMF)
  • Ability to leverage distributed and matrixed organizational structures to support client requirements
15

Information Assurance Analyst Resume Examples & Samples

  • DoD 8570 certified (CEH, CASP, CISM, GSLC or CISSP)
  • Experience with Forescout, McAfee Nitro, and HBSS
  • Understands CND policies, regulations, and compliance
  • Can perform CND vulnerability assessments utilizing ACAS (Nessus scanning) and DISA STIGs
  • ITIL v3 Foundation certification preferred
  • Is competent in most areas of information systems security, including network, application, database, physical, web vulnerabilities and common security design flaws
  • Must be able to successfully monitor systems, detect security problems and create IT solutions, including those of moderate complexity or sophistication
  • Ability to make recommendations to security flaws in question
  • Detail oriented and organized; able to understand information systems and ensure accuracy of work
  • May review the work of others and be able to detect errors or needed modifications
  • Possesses deep understanding with requirements of DoD 8570.1 and DoD DIACAP processes
16

Information Assurance Analyst TS Resume Examples & Samples

  • Excellent communication skills; shows tact, effective listening skills and follow through
  • Excellent briefing/presentation skills for large audiences
  • Knowledgeable in DoD cyber security guidance and regulations of ICD 503, DCID 6/3, DoD 8500.2, AR 25-2, CNSS, NIST 800 Series, and insider threat management program
  • Ability to maintain a Positive and Professional Attitude towards directed management initiatives and under stress
  • Can effectively provide direction, guidance and leadership to less experienced information security professionals
  • Ability to provide security policy recommendations or revisions to resolve security flaws or security service management processes
  • Takes initiative, strategic thinker and highly supports cyber security program initiatives and vision
  • Detail oriented and organized; able to understand information systems security and ensure accuracy of work
  • Ability to review the work of others and be able to detect errors or needed modifications
  • Possesses deep understanding on DoD 8570.1m requirement and administration of DoD/NIST RMF program
  • Experience with Incident Response Handling and Cyber Security Anomaly Detection using cyber security tools such as but not limited to Encase, Flying Squirrel, SANS SIFT Kit, Event tracker, ArcSight & Splunk
  • Experience in using service ticket administration tools and personal management tools such as Service Now, Remedy, DFR, etc
  • Knowledgeable on IT Department Service Management processes and procedures based off of ITIL framework
  • Knowledgeable with Defense Ready System
  • Knowledgeable with MS Sharepoint 2010 Portal
17

Information Assurance Analyst Resume Examples & Samples

  • Assessment of information system security requirements, functionality, and the effectiveness of security solutions against present and projected threats
  • Assist management with producing formal and informal reports, briefings, and input to the customer regarding security and functionality requirements, system architecture, security designs, policies and procedures. Conduct risk assessments throughout assigned program life-cycle as well as continuously monitoring security relevant changes of the environment
  • Perform manual assessments in accordance with the latest DISA STIGs, with limited assistance on multiple Operating Systems to include but not limited to LINUX, UNIX, Microsoft products, and various network components
  • Interpret DIACAP controls accurately with regard to system security posture, policy updates and configuration for information systems with regard to security and event logs
  • Draft system security plans and other artifacts to satisfy certification and accreditation requirements; conducts periodic reviews to ensure compliance with established policies and procedures; ensuring all software, hardware and firmware changes are recorded as required by established configuration management procedures; ensuring systems are operated, maintained and disposed of in accordance with applicable federal security policies and procedures
  • Conduct investigations of security incidents as well as providing protective and corrective measures in efforts to reduce incidents and risk
  • Create, update and review Plan of Action and Milestones (POA&M) documentation for accreditation review and to maintain I/ATO status
  • Work with appointed IASO, ACA and other accrediting team members to remediate and mitigate findings
  • Work with all team members to resolve issues and perform tasks in parallel
  • Report to the supervisor periodically on team and individual work accomplishments, problems, progress in mastering tasks and work processes, and individual and team training needs
  • Coordinate activities with internal and external customers as necessary
  • Attend onsite/offsite meetings to include teleconferences (travel may be required)
  • Bachelor's degree in related technical field or equivalent 4 years of technical experience and 8+ years related IA experience
  • Must satisfy 8570.01-M IAT level II training requirements
  • Must have one of the following certifications, Certified Information Systems Security Professional (CISSP), Security Plus, Security +, GSEC, SCNP, SSCP, or other approved qualifying 8570.01 certification
  • Must be experienced using Audit tools S-CAP tools, Retina, NESSUS, WASP, and/or Gold Disk
  • Must have strong technical skills in a variety of the following areas; networking, system engineering, CISCO, Windows OS platforms, Red hat, database design/admin
  • Be able to obtain a passport or visa to travel internationally
  • Be willing to travel CONUS and OCONUS
  • Be willing to work in Hardship and Hazardous locations
  • Be willing to work long hours and / or non-regular hours with minimal notice
  • Must be able to successfully accomplish the CONUS Replacement Center course which requires a successful deployment physical, immunizations and training
  • Have a minimum active Secret clearance with the ability to obtain a Top Secret security clearance
18

Information Assurance Analyst Resume Examples & Samples

  • Must satisfy 8570.01-M IAT level II training requirements. Must have one of the following certifications, Certified Information Systems Security Professional (CISSP), Security Plus, Security +, GSEC, SCNP, SSCP, or other approved qualifying 8570.01 certification
  • Must be able to use DOD approved scanning tools to include but not limited to, NESSUS (ACAS), SCC SCAP security configuration scanner, STIG Viewer, and nMAP
  • Have a minimum active Secret clearance
19

Information Assurance Analyst Resume Examples & Samples

  • Implement solutions by planning, training, and installing/configuring information systems while ensuring DIACAP compliance under Configuration Management process
  • Draft system security plans and other artifacts to satisfy certification and accreditation requirements
  • Conducts periodic reviews to ensure compliance with established policies and procedures
  • Ensuring all software, hardware and firmware changes are recorded as required by established configuration management procedures
  • Ensuring systems are operated, maintained and disposed of in accordance with applicable federal security policies and procedures
20

Information Assurance Analyst, Senior Resume Examples & Samples

  • The Senior Information Assurance Analystshall serve as a team leader for the
  • Apply knowledge of policies, regulations, and Executive Orders in the marking, handling, and dissemination of classified material and information and creation and use of Security Classification Guides (SCGs)
  • Apply knowledge of policy, regulations and Executive Orders in the release of U.S. Government information. Develop, participate in, and/or provide Information Security training and awareness
  • 05-07 years w/Bachelors Degree
21

Information Assurance Analyst / Evaluator Resume Examples & Samples

  • Penetration testing of existing networks and/or systems
  • Cyber security analysis of existing networks or systems
  • Validation of Information Assurance controls on existing networks or systems
  • Evaluation of appropriateness of Information Assurance controls, policies and guidance
  • Assist clients with developing and maintaining IA and IT programs required to establish and maintain compliance with DoD directives
  • At least ten (10) years of computer science experience inclusive of at least one (1) year each performing
  • Required Experience
  • Working at a computer or desk (considerations: sitting, eye strain, hand strain)
  • May involve long periods of sitting
  • An inside office environment (Considerations: Closed quarters, lighting, and temperature fluctuations)
  • Needs to have clear, concise and accurate communication skills
  • Need to work well with, co-operate, and support clients, supervisors, and co-workers
  • Normal hours are Monday – Thursday 7:00am – 5:00pm, non-flex Fridays 7:00am to 4:00pm
  • Punctuality and regular attendance are necessary to meet deadlines
  • Regular attendance is necessary and required
  • Must be able to communicate effectively
  • Must demonstrate professional behavior at all times when dealing with clients, supervisors and co-workers
  • Completion of required certifications required within six (6) months of hire date
22

Information Assurance Analyst Resume Examples & Samples

  • Researches, evaluates and administers information security policies, procedures and processes associated with personnel security, classification management, security education, information systems, classified visits and physical security in support of national security information (NSI) programs and/ or sensitive information, special access programs and company proprietary information programs, communications security (COMSEC), emissions security (EMSEC), web site segments, databases or other technologies in assigned areas. Specifically, Process & maintain compliance of account requests, alt-tokens (i.e., tokens requested, ordered, received), and CLO exceptions for users within the NETC UICs. Maintain & track status of Certification and Accreditation artifacts, such as hardware lists, software lists, network diagrams, eMASS Plan of Action and Milestones
  • Provide Vulnerability Remediation Asset Manager (VRAM) reporting and sustainment support to NETC Technical managers
  • Process, evaluate, and analyze monthly ACAS scan results for assets contained in the NETC NIPR network infrastructure and for assets within NETTC hosted FISMA systems
  • Record and track status of ACAS scan results based on monthly ACAS and VRAM Status Reports
  • Identify and document monthly changes to each vulnerability baseline (I.e., new findings, fixed findings, etc)
  • Record and track Security Technical Implementation Guides (STIGs) as they are released from the Defense Information System Agency (DISA)
  • Evaluate contents of newly released DISA STIGs and determine applicability to each established vulnerability baseline
  • Bachelor's degree in computer science, information technology, business management, criminal justice or related field preferred
  • Four or more years of experience in security policies and procedures, information systems security or computer operations
  • Experience working with domain structures, user authentication and digital signatures
  • Proven experience interacting directly with end users and decision-making (governance)
  • Results orientated with good communication and interpersonal skills
  • Two years’ work experience which required effective interpersonal skills, both verbal and written, and ability to multitask, manage details and execute effective follow through
  • Evidence of analyzing and documenting complex business processes
  • Familiarity with DoD 8500.2 Information Assurance Controls and NIST 800-37 Security Control
  • Familiarity with DISA Secure Technical Implementation Guides, SSVI, VRAM and ACAS
  • Knowledge of sever and workstation environments, configurations and devices
  • Research skills
23

Information Assurance Analyst, Senior Resume Examples & Samples

  • 5+ years of experience with Cybersecurity or information assurance compliance
  • 8570 Compliant Certification, including Security+
  • Experience in working with AF Cybersecurity compliance requirements
  • Experience with authorizing Platform Information Technology (PIT) systems
24

Information Assurance Analyst Resume Examples & Samples

  • Must be Security+ CE Certified
  • 5+ years systems security experience or 8 years military systems security experience
  • Possess a working knowledge of vulnerability assessment tools and applications such as Security Content Automation Protocol (SCAP) Compliance Checker, Assured Compliance Assessment Solution (ACAS) (Nessus), Windows Automated Security Scanning Program (WASSP), STIG Viewer, as well as Security Readiness Review Scripts and Security Technical Implementation Guide (STIGS) Benchmarks and Checklists
  • Possess a thorough understanding of the DIACAP, DCID 6/3, and Risk Management Framework (RMF) certification requirements
  • Experience with Accreditation Process, Risk Management Framework, and SSP
  • Proficient with Microsoft office
25

Information Assurance Analyst Resume Examples & Samples

  • 5+ years of experience in local or wide area networks, workstation or personal computer installation and maintenance, or the operation of application computer networks
  • Experience with computer security requirements to Secure Internet Protocol Routing Network (SIPRNET)
  • Experience with applying DoD Security Technical Implementation Guides (STIGs)
  • Active Secret clearance required
  • DoDD 8570.01-M IAT Level II or IAM Level II Certification
26

Information Assurance Analyst Resume Examples & Samples

  • 3+ years of experience with providing information assurance support, documenting compliance, or evaluating IA security posture in a DoD environment
  • Ability to develop and maintain DoD Information Assurance Certification and Accreditation Process (DIACAP) packages
  • Ability to develop and maintain Risk Management Framework (RMF)
  • Ability to perform and support periodic IA assessments, including manual and automated code reviews and validation reviews
  • Ability to review government guidance, including task orders, directives, and IAVAs, for applicability and implementation
  • Ability to identify security engineering requirements for incorporation into software releases based on evolving DoD instructions, directives, and policies
  • Experience with Linux Red Hat operating systems, DBMS, preferably Oracle, JAVA, and relational databases, including MySQL, Oracle, and SQL
  • Experience with JPES PMO organization
  • Knowledge of RMF migration from DIACAP
  • Ability to be a team player and drive collaborative efforts to improve product quality
  • Ability to be flexible and meet deadlines and changing priorities as part of an agile-development process
  • Possession of excellent organizational skills
  • Possession of excellent documentation skills
27

Information Assurance Analyst Resume Examples & Samples

  • 5+ years of experience with the military in an analyst role
  • 5+ years of experience with working in a collaborative and consulting environment
  • 5+ years of experience with developing creative client-ready products using Microsoft Office, including PowerPoint, Excel, and Word
  • Knowledge of operational and resource readiness
  • Ability to work in a highly dynamic and fast-paced environment with aggressive project timelines and continual client delivery
  • Experience with a defense readiness reporting system, including Navy or Marine Corps readiness reporting business practices
  • BS degree in Engineering, CS, or a technical field
  • CISSP, CASP, or CEH Certification
28

EMS Arcsight Senior Information Assurance Analyst With TS Resume Examples & Samples

  • Participates in special projects as assigned
  • Meet with business users to gather requirements and make recommendations for meeting customer requirements within the ArcSight SIEM
  • Identify events of interest in compliance with local audit policy for filtering, correlation and forwarding to enterprise SIEM
  • Determine how best to leverage ArcSight ESM to meet the strategic goals by defining "use cases"
  • Guide the content development to meet the organization's security operations goals, to include: the formation of content-specific queries, templates, reports, rules, alerts, dashboards, and workflows
  • Support all aspects of Sponsor's Security Information and Event Management initiatives
  • Participate in the operation of ArcSight Security Information and Event Management systems to include ArcSight ESM, Oracle, Connector appliances/SmartConnectors, Logger appliances, Windows and Linux servers, network devices and backups
  • Provide guidance to security analyst and network engineering staff
  • Working Closely with C&A Team to maintain Security requirements for Operation of ArcSight systems
  • Maintaining up to date documentation of designs/configurations
  • On-call support may be required
  • 5-8 years of related systems engineering experience
  • Able to recognize and identify potential threats to the network and systems based on collected security logs
  • Experience with forensic traffic and log analysis
  • Integrate data and event feeds with ArcSight SIEM and build custom parsing/flex connectors as necessary
  • Guide the development of the specific content necessary to meet the organization's security operations goals, to include: the formation of content-specific queries, templates, reports, rules, alerts, dashboards, and workflows
  • Have used network security analysis tools such as ArcSight, Snort, TCPDUMP, WireShark, etc
  • Train personnel on the use of ArcSight solutions
  • Minimum 6 years in IT and Information Assurance
  • Experience with JSON, HTML, and other scripting languages
  • Basic understanding of software/application development processes
  • Experience building EC2 instances for development, test, and production environments
  • In-depth experience in using ArcSight products, to include ArcSight Connectors, Logger, Event Security Manager (ESM), and/or Threat Response Manager (TRM)
  • Ability to integrate data and event feeds with ArcSight SIEM and build custom parsing/flex connectors as necessary
  • An advanced understanding of current threats and trends present in the Information Security and Technology field
  • Hands-on developing & managing use cases and content (Dashboards, Active Channels, Reports, Rules, Filters, Trends, Active Lists, etc)
  • Demonstrated ability to use problem solving techniques such as root cause analysis to resolve issues
  • DoD 8570.1 Compliant Information Security Certification(s), such as CISSP, ISSEP, GSEC, GCIA, GSLC, Security+ strongly desired
29

Junior Information Assurance Analyst Resume Examples & Samples

  • At least 3 year experience in helping client IT and business executives understand key Security Governance, Risk and Compliance issues, exposures and vulnerabilities using workshops, assessments, and strategy work
  • At least 3 year experience in defining business drivers and the associated Tactical and Strategic roadmaps and plans that can help the clients in achieving their business and security objectives
  • CISSP and /or CISA Certification
30

Senior Information Technology & Information Assurance Analyst Resume Examples & Samples

  • Bachelors and eight (8) years or more experience
  • The successful candidate must have 8+ years of experience in systems engineering, IT Program/portfolio management, IT security engineering and implementation, IT standards development, or a closely-related area that demonstrates the ability to successfully perform the tasks associated with this work
  • The candidate must have experience with virtual and cloud computing technologies and concepts; migrating to shared services; facilitating application readiness
  • Must have demonstrated ability to manage multiple tasks and deliverables simultaneously, work independently and with a team, and have excellent writing, organization, verbal communication, and presentation skills
31

Senior Information Assurance Analyst Resume Examples & Samples

  • Windows
  • Linux/Unix
  • Network Devices
  • Databases – MS SQL , Oracle
  • VMWare – Virtualization
  • Web Services
  • Active Directory / Group Policy
  • Group Policy
  • Scripting
  • BA/BS in Information Systems Management, Computer Science or related discipline plus 3 years of experience. In lieu of formal education, at least 10 years of related experience. Specific contract requirements regarding education and experience will prevail
  • Must have CompTIA Security + to start work
  • OS Certification/Approved Training completed within 180 days of hire
  • Candidates must have at least an active Secret clearance
  • Experience with DIACAP and RMF in NAVY a plus
  • Experience with Accreditation package management in eMASS a plus
  • Possession of excellent customer service and organization skills
32

Information Assurance Analyst Resume Examples & Samples

  • Supporting the A&A of the DoS environment, by providing guidance to, and coordinating the efforts of, relevant system operators across the environment
  • Compiling and submitting A&A packages for IA security control assessor (SCA) review and assessment
  • Bachelor’s degree in a related field, or equivalent and 6+ years related experience
  • Hands-on experience with traditional A&A using NIST Special Publications (SPs) including SP800-53 Rev 3 and SP800-37 / SP800-37 Rev 1
  • One of the following certifications
  • ISACA Certified Information Systems Auditor (CISA)
  • SCP Security Certified Network Architect (SCNA)
  • (ISC)2 Certified Authorization Professional (CAP)
  • GIAC Systems and Network Auditor (GSNA)
  • (ISC)2 Certified Information Systems Security Professional (CISSP)
  • PMI Project Management Professional (PMP) certification
  • GIAC Security Leadership (GSLC)
  • ISACA Certified Information Security Manager (CISM)
  • A relevant hands-on technical certification (e.g., Microsoft MCSE)
  • ITIL® Foundation certification
  • Experience with, and knowledge of, IT security architecture and engineering
  • Familiarity with DoS environment (data and voice networks, IT security systems, policies and procedures), Foreign Affairs Handbooks (FAHs), Foreign Affairs Manuals (FAMs) and DoS IRM/IA C&A Tool Kit, CNSSI 1253 and DIACAP
33

Senior Information Assurance Analyst Resume Examples & Samples

  • Serve as the Designated Approving Authority Representative (DAA-R) / Authorizing Official Representative (AO-R) on multiple Systems - assisting the U.S. government customer in making risk-based decisions to implement these systems into the environment
  • Assist U.S. government customer in performing Designated Approving Authority (DAA) / Authorizing Official (AO) duties, to include coordinating meetings, compiling reporting and managing deliverables
  • Provide direct support to the Security Control Assessor (SCA) to independently assess information systems as defined in NIST 800-53a (or current)
  • Act as the primary point of contact for all Security Assessment and Authorization (SA&A) related activities for the U.S. government customer to ensure compliance with Federal policies and guidelines
  • Ensure timely POA&Ms are uploaded and updated in the Federal mandated Trusted Agent tool
  • Track all authorization/accreditation expirations, Plans of Action and Milestones (POA&Ms) and relevant security artifacts for the ISSO
  • Draft notifications from the ISSO to System Owners at identified intervals for PIA, POA&M milestone, and authorization/accreditation expiration dates
  • Draft notifications from the ISSO of HHS annual assessment requirements that include the specific list of the security controls released by HHS that need to be assessed by the System Owners
  • Lead and coordinate efforts in training users on the Risk Management Framework (RMF) as defined in NIST 800-37 Revision 1 (or current), and Continuous Monitoring as defined in NIST 800-137 (or current)
  • Conduct risk assessments and prepare appropriate summaries of findings for inclusion within the accreditation documentation
  • Aid customer and internal teams in conducting self-assessments of the major applications and general support systems; empower team members to self-assess
  • Recommend corrective actions for deficiencies found during system self-assessments (NIST 800-53A Rev 3 or latest revision available), reviews and or during any review or monitoring period for the system/application
  • Assist the U.S. government customer in providing guidance, policy and reviews for cloud-computing to be in compliance with the Federal Risk and Authorization Management Program (FedRAMP)
  • Assist U.S. government customer in fulfilling ISSO (Information System Security Officer) duties, to include providing security solutions and interpretations of security policies as they relate to specific security infrastructure, architectures and information systems in customer environment
  • Establish rapport and develop a relationship across all Federal customer internal teams and all direct customers of the U.S. Government branch to become a recognized and integral member of the team
  • Maintain knowledge on current Federal, National, HHS and NIH standards, policies, requirements and procedures; update team members and customer with significant changes or developments
  • Assist the team in evaluating, documenting and coordinating technical cyber security capabilities of various groups supporting the client, with an emphasis on compliance, controls and logging
  • Assist team in implementation of various cyber operations systems and applications as needed; for example NAC
  • Ensure SA&A, Vulnerability Scanning and Penetration Testing reporting and metrics are maintained
  • Assist the team in coordinating and performing cyber security incident response on an as-needed basis
  • A Bachelor’s degree in Computer Science or related technical field. Additional years of experience may be considered in lieu of degree. Preference given for advanced degrees, such as Masters, or PhD in a related field. At least seven years’ experience in SA&A activities is required
  • 5+ years’ experience SA&A / C&A activities
  • 3+ years’ experience in a U.S. Government NOC, SOC, Incident Response Team, or similar environment
  • Candidates will also have proven working experience in a NOC, SOC, Incident Response Team, or similar Cyber Security related environment – with a minimum of three (3) years of that experience in the U.S. Government environment
  • Ability to effectively communicate with executive levels of federal leadership, such as Director, CIO (Chief Information Officer), Deputy CIO level
  • Demonstrated experience in clear and concise documentation and attention to detail
  • Proven experience in supporting or acting in DAA (AO), DAA-R (AO-R), SCA, SCA-R, ISSO, SO roles
  • Proven experience creating and managing SSPs, PIAs, POA&Ms and related documentation
  • Knowledge of SDLC and application of FISMA and NIST practices for in-house developed applications
  • Knowledge of FedRAMP, Federal and National standards, policies, requirements and procedures
  • Experience in supporting an Incident Response Team or SOC in an operational capacity
  • Experience utilizing enterprise IDS, AV, Vulnerability Scanning, Patch Management operational systems
  • Excellent communication, presentation, interpersonal, and organizational skills
  • Demonstrated project planning and complex task management
  • Demonstrated knowledge of applying QA and QC approaches to data ingest, exports and processes
  • Must possess or be able to obtain a Secret Clearance
  • Must be able to work full time
  • Prior experience supporting a U.S. Government Cabinet Level agency is highly desired, with additional preference given to experience involving HHS (Health and Human Services) OPDIV and STAFFDIV elements
  • Prior experience in supporting Focused Operation activities or interactions with Focused Operations teams is highly desired, as well as experience supporting Interagency and IC/LE activities
  • Prior experience in successfully tracking and performing communications on a recurring basis to a wide array of audiences is highly desired
  • In addition to any formal higher education, cyber security training or related certifications are also desired
  • Extensive experience and exposure to different federal civilian government, law enforcement, intelligence and/or military agency system accreditation activities are highly desired
  • Proven experience working with HHS and NIH specific tools and applications will be given strong preference
  • Prior possession of Secret or higher clearance given strong preference
  • Must be eligible for or able to obtain a Secret clearance
34

Information Assurance Analyst Resume Examples & Samples

  • Author policies and procedures which ensure adequate information security controls are in place to protect organizational resources
  • Plan, coordinate and/or lead information security audits, assessments, and penetration testing of IT resources
  • Prepare and present risk analysis, assessment reports, training material, and other briefings to diverse audiences
  • Provide subject matter expertise on enterprise cyber security risks and emerging threats
  • Partner with cyber security analysts, researchers, and other Lab staff to develop solutions which adequately protect resources while still enabling business success
  • Translating NIST or other information security guidance, standards, and best practices into actionable requirements
  • Familiarity with the Committee on National Security Systems (CNSS) instructions
  • Establishing and maturing information security risk management frameworks and Governance, Risk, and Compliance (GRC) systems
  • Effectively participating in diverse, multi-disciplinary, project and operational teams
  • Clearly communicating (written & verbal) technical information security and/or IT business-related information to senior management, peers, and customers
  • U.S. Citizenship
35

Associate Information Assurance Analyst Resume Examples & Samples

  • Assist in the development of policies and procedures to ensure appropriate information security controls are in place to protect organizational resources
  • Participate in information audits, assessments, and penetration testing of IT resources to validate that security controls are in place and operating as intended
  • Prepare and present risk analysis, assessment reports, and other briefings to diverse audiences
  • Help maintain compliance with regulatory government and organizational requirements
  • Develop and deliver tailored and timely information security training and awareness content
  • Partner with cyber security analysts, researchers, and engineers to develop solutions which adequately protect resources while still enabling business success
  • Exposure to NIST or other information security guidance, standards, and best practices
  • Participation in diverse, multi-disciplinary, project and operational teams
  • Introduction to information security risk management frameworks and Governance, Risk, and Compliance (GRC) systems
  • Clearly communicating (written & verbal) technical information security and/or IT business-related information to management, peers, and customers
36

Information Assurance Analyst, Mid Resume Examples & Samples

  • 3+ years of experience with DoD information assurance or security practices, including Air Force
  • Experience with DIACAP and Air Force C&A Force Platform IT C&A
  • Experience with evaluating security vulnerabilities and developing mitigation strategies for Avionics systems
  • DoDD 8570.01-M identified IA certification for IAT/IAM Level II or Level III
  • Experience with analyzing security risk assessment tool results, such as Gold Disk/SRRs and Eye Retina
  • Experience with aircraft electronics and avionics equipment
  • Experience with Windows, UNIX, and Linux operating systems
  • Experience with the Avionics System Security Engineering
  • Experience with Information Security, DoD STIGs, and C&A of Platform IT avionics systems
  • Experience with working security C&A joint system packages involving Air Force and other Services, such as Army, Navy, and Marine Corps
  • Experience with USAF Program Office
  • BA or BS degree preferred
37

Information Assurance Analyst Resume Examples & Samples

  • Provides technical and programmatic Information Assurance Services to internal and external customers in support of network and information security systems
  • Prepares documentation from information obtained from customer using accepted guidelines such as DITSCAP (DoD Information Technology Security Certification and Accreditation Process)
  • Provides certification and accreditation support in the development of security and contingency plans and conducts complex risk and vulnerability assessments
  • Recommends system enhancements to improve security deficiencies
  • Develops, tests and integrates computer and network security tools
  • Secures system configurations and installs security tools, scans systems in order to determine compliancy and report results and evaluates products and various aspects of system administration
  • Conducts security program audits and develops solutions to lessen identified risks
  • Evaluates, develops and enhances security requirements, policy and tools
  • Provides assistance in computer incident investigations
38

Information Assurance Analyst Resume Examples & Samples

  • Serve as the Information Systems Security Manager (ISSM) for PNNL FIE classified network systems and individual workstations. Primarily, the positon addresses the roles, responsibilities, authorities and accountabilities (R2A2s) of an ISSM addressing the oversight of the applicable Information Systems Security Officers (ISSOs) and system functions of multiple networks, multiple individual workstations for protection of those systems
  • The position requires work with a high degree of independence in executing responsibilities for secure and efficient operations, pertinent (ICD’s, DOE, and PNNL) procedures, requirements and policies
  • The position provides security consultation with the Special Security Officers (SSO’s), FIE IT Manager and DOE IN counter-parts to assist in assuring compliance with all applicable Executive Orders, Director of National Intelligence Community Directives and DOE procedures
  • Partner with cyber security analysts, researchers, and other Lab/DOE-IN staff to develop solutions which adequately protect resources while still enabling business success
  • A Bachelor’s degree in Computer Science, Management Information Systems, Information Technology, or a related field with 4+ years of progressively responsible experience or an advanced degree with 2+ years of related experience
  • Translating NIST or other information security guidance, standards, and best practices into actionable policies
  • Applying the Committee on National Security Systems (CNSS) instructions
  • Experience with Telos Xacta IA Manager
39

Information Assurance Analyst, Mid Resume Examples & Samples

  • 2+ years of experience with supporting DoD audits
  • Experience with providing information system security engineering support to technical and programmatic accrediting staff
  • Experience with generating and implementing system security accreditation packages for DoD clients
  • Experience with NIST and FISMA requirements
  • Knowledge of security violation reporting procedures
  • Ability to communicate technical and security-related topics concisely
  • Ability to identify and predict certification activities and plan mitigation strategies
  • Security+ CE or equivalent Certification, including DoD 8570 IA Baseline and IAM-I
  • Experience with working in a large and complex enterprise environment
  • Knowledge of LAN and WAN
40

Information Assurance Analyst, Disa Resume Examples & Samples

  • Bachelor's degree in a related field or additional work experience in lieu of a degree
  • Active Secret clearance with eligibility for a Top Secret
  • Experience/exposure to utilizing DITPR, eMASS, SNAP and SGS systems and databases
  • Experience with DISA, ID4 (Infrastructure Directorate 4), the DISN OSS(Defense Information System Network Operational Support System) and/or the Combatant Commands is a plus
  • Review proposed changes to the DISN OSS systems and evaluate the impacts of those changes to the Authority to Operate (ATO)
  • Develop all security documentation required to obtain an ATO in accordance with the RMF/DIACAP/DITSCAP/DCID requirements and procedures
  • Develop, update, review, analyze and submit RMF, DIACAP and FISMA requirements
  • Report (consistently and accurately) IA security requirements
  • Review documentation with a focus on Certification and Accreditation (C&A) and IA security
41

Information Assurance Analyst Resume Examples & Samples

  • Bachelor’s Degree and 5 years of IA/IS experience, Master’s degree and 3 years, AS/AA and 7 years, 9 years of experience may be considered in lieu of Degree
  • Active/current Top Secret/SSBI clearance with the ability to obtain TS/SCI access (TS/SCI Preferred)
  • Must have Security+ certification or equivalent
  • Knowledge and experience with the implementation of NIST SP 800-53, DCID 6/3, ICD 503, and other IC Standards
  • 8570 Certification: either IAT III, IAM II, IASAE II (CISSP, CISM or CASP)
  • Experience with XACTA for security package compilation and POA&M management
  • Experience implementing application security utilizing cloud services including AWS, PAAS, and FEDRAMP
42

Information Assurance Analyst Resume Examples & Samples

  • Audits computer systems to ensure that they are operating securely and that data is protected from both internal and external attack
  • Conducts security assessments to ensure adherence to customer specific security policy, procedures and industry standards
  • Monitors, evaluates, and maintains security systems according to industry best practices to safeguard internal information systems and databases
  • Assists with the review and definition of security requirements and reviews systems to determine if they are designed to comply with established standards
  • Investigates security violations and breaches; Prepares reports on intrusions as necessary
  • Reviews firewalls logs across the assigned area. Configures firewalls, intrusion detection systems, and other network security devices across assigned area
  • Executes DoD, DON and Command Cyber risk management programs. Develops and maintains DIACAP support documentation's. Develops information systems' disaster recovery and contingency plans
  • Aids in the collection of data/metrics in response to CTOs. Assists in response to reported and identified cyber security-related incidents
  • Recognizes network infrastructure/architecture systems, operating systems and applications vulnerabilities, via review of DoD IA/CND tools' (Flying Squirrel, HBSS, Retina/ACAS, etc) output files and dashboards, and through the use of various other DOD/NSA inspection/assessment tools to include STIGs, Checklists, SRGs and SRRs
  • Two or more years of computer science, management information systems, or data security experience
  • Experience working with information and network security practices
  • Experience working with security software packages
  • Experience working with security architecture
  • Analytical and problem solving skills for resolving security issues
  • Communication skills to interact with team members and support personnel
  • Skilled in implementing and configuring networks and network components
  • Ability to work with relational databases
43

Information Assurance Analyst Needed Resume Examples & Samples

  • Monitoring security assessments from tools (Nessus and Retina) to ensure adherence to customer specific security policy, procedures and industry standards
  • Monitor, evaluate, and maintains security systems according to industry best practices to safeguard internal information systems and databases
  • Use tools including Host Based Security System (HBSS), Assured Compliance Assessment Solution (ACAS), Vulnerability Remediation Asset Manager (VRAM), and Continuous Monitoring and Risk Scoring (CMRS)
  • Perform Certification and Accreditation verification and documentation per DIACAP and RMF standards
  • Investigates security violations and breaches
  • Prepare reports on intrusions as necessary
  • Review firewalls logs across the assigned area
44

Information Assurance Analyst Resume Examples & Samples

  • Identify and report all IAVA/B/T & CTOs that affect the system; apply applicable patches to system baselines
  • Coordinate with IAO for VRAM updates
  • Create/maintain program security related Enterprise Change Requests (ECRs) for IAVA/B/T, CTOs, TASKORDs, etc
  • Prepare test reports for IAVM fix/mitigation and implementation
  • Inform operational sites of fix/patch per documented procedures
  • Create/maintain SOPs documenting the patching processes, ACAS scanning, etc
  • Generate and review ACAS scans to include IAV and STIG related findings, upload results to program dashboard
  • Provide input to IAO for mitigation POA&Ms and C&A Plans (as necessary)
  • Administration of RHEL/Linux
  • NetApp Storage
  • VEEAM Backup
  • Enterprise PKI/DoD CAC deployments and Enterprise level Access, Authentication, and Authorization (AAA) Solutions
  • Major Programming Languages (C#, JAVA, Python, etc...)
45

Information Assurance Analyst Resume Examples & Samples

  • Audits computer systems to ensure that they are operating securely and that data is protected from both internal and external attack
  • Conducts security assessments to ensure adherence to customer specific security policy, procedures and industry standards
  • Monitors, evaluates, and maintains security systems according to industry best practices to safeguard internal information systems and databases
  • Assists with the review and definition of security requirements and reviews systems to determine if they are designed to comply with established standards
  • Investigates security violations and breaches; Prepares reports on intrusions as necessary
  • Reviews firewalls logs across the assigned area. Configures firewalls, intrusion detection systems, and other network security devices across assigned area
  • Bachelor's degree or equivalent combination of education and experience
  • Bachelor's degree in computer science or related field preferred
  • CISSP certification preferred
  • Two or more years of computer science, management information systems, or data security experience
  • Experience working with information and network security practices
  • Experience working with computer programming
  • Experience working with computer desktop packages such as Microsoft Word, Excel, etc
  • Experience working with operating systems
  • Experience working with security software packages
  • Experience working with security architecture
  • Analytical and problem solving skills for resolving security issues
  • Interpersonal skills to interact with customers and team members
  • Communication skills to interact with team members and support personnel
  • Skilled in implementing and configuring networks and network components
  • Ability to work with relational databases
  • Ability to work in a team environment
46

Information Assurance Analyst, Mid Resume Examples & Samples

  • M systems design to determine Cybersecurity vulnerabilities and to implement security controls. Reference PIT Weapon System Security Requirements Traceability Matrix (SRTM), develop the necessary security artifacts, including Security Assessment Plan (SAP), Security Assessment Report (SAR), Vulnerabilities Assessment, Plan of Action and Milestones (POA&M), Criticality Analysis, Risk Management Plan, and Continuous Security Control Monitoring, and ensure GPS systems obtain a successful assessment in the Aircraft System Cybersecurity Assessment and Authorization Process for PIT systems or provide the recommendations to mitigate open issues with any non
  • Successful assessment
  • M identified IA certification for IAT/IAM Level II or Level III
47

Information Assurance Analyst Resume Examples & Samples

  • Development and existing certification and accreditation (C&A) packages identified by the government. Support major portions of large or medium projects, including C&A efforts. Gather facts through research, interviewing, and surveys. Analyze the client's business, draw conclusions, prepare final reports, and give presentations. Interface with project managers, software developers, and other technical and functional support staff. Use In-depth consultative expertise and business knowledge to practice business objectives and processes
  • Ability to be flexible and meet deadlines and changing priorities as part of an agile
  • Development process
  • BA or BS degree in Information Systems, CS, or other computer
48

Information Assurance Analyst, Mid Resume Examples & Samples

  • Mail security, antivirus, firewalls, forensic tools, and vulnerability scanners. Comprehend the DoD Security Technical Implementation Guidance (STIG) and its relevance to infrastructure security. Apply the ability to draft documentation independently and comprehend existing relevant documentation. Interface with government and contract staff in support of security and engineering projects
  • Ability to communicate technical and security
  • Related topics concisely
  • Security+ CE or equivalent Certification, including DoD 8570 IA Baseline and IAM
49

Information Assurance Analyst Resume Examples & Samples

  • The
  • Shelf (COTS) information security (INFOSEC) product evaluation and related documentation. Conduct risk assessments and risk mitigation analysis, and develop contingency plans. Certify and accredit Department of the Navy (DON) information systems and networks, as well as Platform IT
  • 5+ years of experience with the mission critical procedures, systems, and processes, as they pertain to the Public Naval Shipyards Information Technology and Cyber Security requirements
  • Experience with system and network vulnerability analysis, risk assessment and risk mitigation analysis, security test and evaluation (ST&E), contingency planning, firewall policy, ports, and protocols
  • Experience with certifying and accrediting DON information systems and networks, as well as Platform IT
  • Knowledge of the DoD C&A process and standards
  • Knowledge of how to maintain all day
  • Day vulnerability remediation asset manager (VRAM) activities
  • Experience with Cybersecurity (CS) requirements
  • Qualified and registered as a Navy Validator
50

Information Assurance Analyst Resume Examples & Samples

  • Follow the DIACAP C&A process to achieve an Authority to Operate (ATO) and maintain security compliance for Navy client
  • Maintenance of Plan of Actions and Milestones for client systems
  • Review Federal, DoD and DISA Policies/Guidelines for best security practices in implementing secure systems for Navy Client
  • Coordinate with the IT staff to ensure all IA related issues are addressed during the preliminary and follow-on engineering phases
  • Maintain systems in the DISA Vulnerability Management System (VMS), responding to Communications Tasking Orders (CTO) and Information Assurance Vulnerability Management (IAVM) Alerts
  • At least 2 years of experience in DIACAP Activities, Deliverables and process to achieve ATO under the DIACAP C&A lifecycle
  • At least 2 years of experience (NOT the new RMF process—specifically the older DIACAP)
  • Conduct Information Assurance Control Assessment for DIACAP or NIST controls
  • At least 2 years of experience in Vulnerability compliance and remediation reporting
  • At least 2 years of experience in maintaining System Plan of Action and Milestones (POA&M)
  • NIST Risk Management Framework (RMF)
  • DoD eMASS
51

Information Assurance Analyst Resume Examples & Samples

  • Candidate must be able to weigh business needs against security concerns and articulate issues to customers and management
  • Must have excellent verbal and written communication skills with experience presenting information to groups
  • Candidate must have strong analytical, technical, and problem solving skills
  • Candidate must be able to manage time and priorities with multiple tasks and projects
  • Candidate must demonstrate leadership qualities and skills, including independent decision-making abilities
  • Candidate must be able to work with other engineers and departments in a positive, goal-directed manner
52

Information Assurance Analyst Senior Resume Examples & Samples

  • Experience conducting assessments using either the DoD IA Certification and Accreditation Process (DIACAP) or the DoD Risk Management Framework (RMF) processes
  • Experience in one or more of the following technologies: RSA Data Loss Prevention (DLP), HP Fortify, Protegrity Data Protection Platform, Active Directory, Lightweight Directory Access Protocol (LDAP), CA IdentityMinder, CA SiteMinder, eEye Retina, ACAS, and/or DISA Security Readiness Reviews (SRR)
  • Solid knowledge and understanding of operating systems including MS Windows, UNIX, and/or Linux
  • Experience responding to computer security incidents or intrusions
  • Demonstrated experience with application design reviews and threat modeling
  • Security+ certification (IAM Level II) required prior to first day on the job
53

Information Assurance Analyst Resume Examples & Samples

  • Experience (5+ years) in software security with in depth knowledge of security policy, code reviews, and hands-on configuring of security settings using standards such as Security Technical Implementation (STIG) or NSA Security Configuration Guides
  • Demonstrated experience programming and scripting for automation or integration
  • Solid knowledge and understanding of web application security
  • Contractor shall conduct security reviews. Looks for weaknesses in system design, implementation, or operation that could be exploited. Ensures the right checks and balances are in place
  • Certified Information System Security Professional (CISSP)
  • Certified Information System Manager (CISM) – Certified Information Security Auditor (CISA)
54

Information Assurance Analyst Level Resume Examples & Samples

  • Minimum 8 years' professional experience supporting technology delivery to commercial or government clients with a Bachelor's degree. With an Associate's degree the candidate must have 10 years of professional experience
  • Minimum of 5 years' experience in achieving cybersecurity certification and accreditation with a Bachelor's degree. Minimum of 7 years' experience with an Associate's degree
  • The contractor shall possess technical expertise in managing information-related risks within enterprise architectures, acquisition strategies, and testing and evaluation
  • Experience with the Risk Management Framework and DIACAP
  • Possesses an active security-related certification (i.e., CISSP, CAP, or Security+)
  • Proven ability to participate in the analysis of IT and business issues
  • Strong written and verbal communications skills are a must
  • B.S. in information systems related major. CISSP certification is preferred
55

Information Assurance Analyst Resume Examples & Samples

  • Analyze risks and issues and proposing mitigation plans to protect all types of information from unauthorized access or disclosure
  • Propose changes / improvements to the processes and procedures that will improve operational efficiency, provide better service, decrease incident response time, etc
  • Assists in the development and execution of security policies, plans and procedures
  • Formally assign and escalate incidents to and within the SOC
  • Perform ongoing reviews of security activities and reports providing technical and non-technical oversight toward the prevention of Information Security incidents
  • Conduct Privacy Impact Assessments,
  • Must have strong written and oral communication skills
  • Perform risk and security assessments
  • Audit system access and reports to ensure security policy enforcement
  • Knowledgeable about security issues, vulnerabilities, regulatory and legal changes, and security standards that may impact information security
  • Solid working knowledge and understanding of multiple operating systems and commands, as well as an understanding of IT security and network best practices and software/hardware solutions
  • Currently possess or willing to obtain certifications from EC-Council, GIAC, (ISC)² [CISSP, C|EH, GCIA, GCIH]
  • The Analyst will perform tasks including monitoring, research, classification and analysis of security events that occur on the network or endpoints
  • The Analyst should have familiarity with the principals of network and endpoint security, current threat and attack trends, and have a working knowledge of security principals such as defense in depth and the techniques and tools used to secure enterprise networks
  • Cybersecurity computing resources
  • Basic Office Equipment
  • One (1) year experience in Information Technology, Information Security or related field
56

Information Assurance Analyst Resume Examples & Samples

  • 5+ years of experience with IT networking, including 3+ years in an Air Force network
  • 2+ years of experience with DoD and Air Force certification and accreditation (C&A) processes
  • 2+ years of experience with the technical review of requirements
  • Knowledge of assessment and authorization (A&A) policies and procedures, including the risk management framework (RMF)
  • Knowledge of information assurance (IA) training and unit IA Inspections
  • Knowledge of Federal Information System Management (FISMA) reporting
  • Knowledge of DoD 8570 and 8140 requirements and metric reporting
  • BA or BS degree in IT or IA
  • IAT Level II, including Security+ or above or IAM Level II, including CISM, CISSP, or CASP Certification
  • Experience with working in or for program management offices (PMO) and project management
  • Knowledge of Air Force orders, including TCOs, TCNOs, and MTOs
  • Knowledge of Air Force administrative processes, tools, and forms
  • Knowledge of Air Force Cyber weapon systems
  • Knowledge of various commercial vendor IT applications, appliances, hardware, and software
  • Knowledge of Air Force roles and missions
  • Knowledge of Cyberspace policy and guidance
  • Knowledge of Air Force networks and network operation
  • Knowledge of Microsoft Office
  • Ability to interact and collaborate with senior leadership
57

Information Assurance Analyst Resume Examples & Samples

  • Travel to commands/sites and train personnel on technical functions such as running scans, review command documentation/policies, upload results into VRAM, and any other tasks necessary to complete a cyber inspection/assessment/audit
  • Train personnel on and/or perform or review vulnerability scans, conduct risk assessments, and implementing or overseeing of the implementation of vulnerability assessments
  • Analyze customer's requirements regarding applicable security disciplines (physical, personnel, information, communications, and computer)
  • Evaluate customer's security policy and provide recommendations
  • Provide guidance on Information Assurance matters during configuration design and modification of information systems; review system designs for IA directive compliance; recommend changes, mitigations and remediation
  • Monitor and review periodic vulnerability and IA compliance testing
  • Verify that applicable security measures identified by the IA Vulnerability Management (IAVM) program are applied
  • Monitor mitigation and remediation progress; draft and update Plans of Action and Milestones (POA&Ms)
  • Provide IA and risk analysis support; provide level of effort Technical Support on-site
  • BS in a technical field highly preferred. In lieu of a degree, 8 years of related experience (technical/engineering experience related to communications systems, computer networking or similar systems). Specific contract requirements will prevail
  • Minimum of 3 years experience in DoD Network Operations or information assurance operations to include Local Area Network (LAN) administrator experience required
  • Minimum of three (3) year experience working in-depth with MS ACCESS (expert-level experience), MS EXCEL (expert-level experience) and SharePoint software to manipulate online portals (expert-level experience)
  • Clearance: Secret
  • Desire and highest preference will go to candidates with database, especially SQL experience. Consideration will also be given to candidates with ACAS, HBSS experience
  • Acceptable certifications for this position are DoDI 8570 IAT-II, IAWF IAM Level II, PMP or RMP, and at least one of the following: CISSP, GLSC, Security +, CASP, CCNA, MCSE, or CISM
58

Iraq Information Assurance Analyst Resume Examples & Samples

  • Employ network scanning tools such as REM/Retina, SCCM/SMS, WSUS etc, to detect system and network vulnerabilities/deficiencies, as part of a proactive network security policy
  • Will provide daily status on findings and recommendations and provide follow-on written technical analyses and reports
  • Anti-Virus reporting 24/7, to include review of logs, open tickets, recommended process for remediation
59

Information Assurance Analyst Resume Examples & Samples

  • Employs network scanning tools such as ACAS, QTIP, and SCCM etc., to detect system and network vulnerabilities/deficiencies as part of a proactive network security policy
  • Provides daily status on findings and recommendations and provides follow-on written
  • The work environment will be 95% indoor and 5% outdoor. The outdoor work
60

Information Assurance Analyst Resume Examples & Samples

  • Candidate must have at least 2 years Information Assurance experience working with Department of Navy
  • Must be familiar with DOD and DoN Information Assurance policy
  • 2 Years related experience
  • Bachelors - experience more important than the degree
  • Gold Disk, Retina SRR script experience, ACAS
61

Information Assurance Analyst Resume Examples & Samples

  • Routinely scans and remediates Research, Development, Test and Engineering (RDT&E) computers
  • Ensures the rigorous application of information security / information assurance policies, principles, and practices in the delivery of all IT services
  • Operates, maintains, develops, upgrades and tests computer networks, SANs, databases, mail services and acquisition and analysis systems used in support of surface ship and submarine acoustic trials programs
  • Performs IA related customer support functions including installation, configuration, troubleshooting, customer assistance, and/or training, in response to customer requirements for the Network Environment (NE)
  • Provides end user support for all IA-related applications for the NE
  • Manages accounts, network rights, and access to NE systems and equipment
  • Installs, tests, maintains, and upgrades network operating systems software and hardware to comply with IA requirements
  • Ensures that hardware, software, data, and facility resources are archived, sanitized, or disposed of in a manner consistent with system security plans and requirements
  • Writes and maintains scripts for the NE
  • Maintains IA certification appropriate to position
  • Requires 5 to 8 years with BS/BA or 3 to 5 years with MS/MA or 0 to 2 years with PhD
  • CompTIA Security+ certification required
  • Active DoD Secret security clearance and U.S. citizenship required
  • Must be willing to travel occasionally (up to 20%)
  • Detailed knowledge in Information Assurance, network scanning, and remediation techniquest utilizing WSUS and ACAS
  • Detailed knowledge of network security through Active Directory with managed group policies
  • Knowledge in the installation, configuration, troubleshooting, maintenance of large Storage Area Networks (SAN) and Exchange Servers
  • Knowledge and familiarity with DoD computer security directives and instructions
  • Knowledge of designing, configuring and maintaining, relational databases through SQL Servers and SharePoint
  • Expert knowledge in installing and maintaining personal computer hardware and software, operating systems, and networks
  • MCSE or MCSA certification highly desirable
  • Bachelor's degree in computer technology, engineering, or related technical field perferred, but not required
62

Information Assurance Analyst Resume Examples & Samples

  • Requires 2-5 years related experience with BS/BA or 0-2 years with MS/MA/MBA or 8-10 years with no degree
  • Must be willing to travel occasionally (up to 20%). MCSE or MCSA certification highly desirable. Bachelor's degree in computer technology, engineering, or related technical field preferred, but not required
  • Knowlede in Information Assurance, network scanning, and remediation techniques utilizing WSUS and ACAS
  • Knowledge of network security through Active Directory with managed group policies
  • Knowledge in the installationk, configuration, troubleshooting, maintenance of large Storage Area Networks (SAN) and Exchange Servers
  • Knowlege of designing, configuring and maintaining, relational databases through SQL Servers and SharePoint
  • Knowledge in installing and maintaining personal computer hardware and software, operating systems, and networks
63

Information Assurance Analyst Resume Examples & Samples

  • Apply federal and organizational directives to manage system security operations
  • Support federal information system documentation to include
  • System Security Plan SSP
  • Security Concept of Operations SECONOPs,
  • Architectural overviews
  • System Security Standard Operating Procedures
  • SOP documents for performing assessments/security activities.oSystem configurations for devices and software performing security-relevant functions
  • Vulnerability and penetration test results
  • Security incident reports
  • System security performance metrics
  • Report on threat actor capabilities in order to clarify the details of security requirements or approaches and to implement solutions
  • Perform research and assess the impacts of system modifications and technological advances on the system's security
  • Review system security documentation in order to identify potential security weaknesses, recommend improvements to amend vulnerabilities, implement changes and document security relevant changes
  • Support source code analysis
  • Review, evaluate, and analyze all system documentation for assigned systems within the portfolio
  • 7+ years of experience in a related field
  • A Minimum of one year of progressive and highly specialized experience as an ISSO or similar role including generating security documentation for requirements, assessment, compliance, Standard Operating Procedures, test results, etc
  • Professional Certification such as DoD 8570 IAT Level I
  • Minimum 1 years of Unix/Linux experience, with system administration background desirable
  • Minimum 1 years of Microsoft Windows experience, with system administration experience desirable
  • Experience with vulnerability scanning and assessment tools
  • Strong desktop publishing skills utilizing Microsoft Word
  • Experience with industry writing style such as grammar, sentence form, and structure
  • Strong initiative, detail orientation, organizational skills, aptitude for analytical thinking
  • Ability to multi-task in a deadline oriented environment
  • Demonstrated ability to work well independently and as a part of a team
  • Excellent work ethic and a high commitment to quality
64

Information Assurance Analyst Resume Examples & Samples

  • 3+ years of experience in an information security role
  • 2+ years of experience with supporting Federal FISMA requirements
  • Experience with executing NIST 800–37, NIST 800-39, and NIST 800–53
  • Experience with network security, vulnerability management, Assessment and Authorization (A&A), and Incident Response
  • Experience with network, server, and application scanning tools, including Tenable Nessus and NGS Squirrel
  • Experience with static code analysis tools, including Fortify and IBM AppScan
  • Ability to analyze information system configurations and technical specifications against security control standards and identify deficiencies and remediation strategies
  • 8500 Compliant Certification
  • Experience with Microsoft Office, SharePoint, or Project Server
  • Knowledge of emerging security policy, governance, and continuous monitoring technologies
  • Knowledge of security as it pertains to the following platforms: Windows, Oracle, SQL Server, Cisco IOS, Firewalls, and encryption technologies, including VPN, TLS, and SSL
  • Knowledge of FIPS 199 and FISCAM
  • Ability to support the translating of vulnerability scan results into findings aligned to NIST SP 800-53 Revision 4 security controls
  • Ability to multi–task, set and follow priorities, and deliver timely products
  • Ability to speak in front of technical and non–technical audience members
  • Possession of excellent oral and technical written communication skills preferred
  • Possession of excellent analytical and organizational skills
  • BA or BS degree in a STEM field preferred
65

Mid Level Information Assurance Analyst Resume Examples & Samples

  • Knowledge of security information event management (i.e. identify threats, detect and deter penetration, identify usage trends, support IT related incidents and investigate and report on anomalous behavior
  • Ability to correspond and collaborate with fellow security professionals in responding to incidents
  • Ability to decompose complex problems into components and able to communicate it at all levels
  • Ability to multi-task in a dynamic environment with changing priorities
  • Experience with current IC or DoD operational environments and policies
  • Working knowledge of computer systems security in a classified environment
  • Education / Experience
66

Senior Information Assurance Analyst Resume Examples & Samples

  • Experience implementing network compliance with security requirements (i.e. risk management framework and other A&A processes)
  • Ability to analyze audit log data and determine compliance with published standards
  • Experience with implementation and integration of enterprise security services
  • Proven ability with security information event management (i.e. identify threats, detect and deter penetration, identify usage trends, support IT related incidents and investigate and report on anomalous behavior
  • Knowledge working with Windows, Linux, and Solaris operating systems in a virtualized environment
  • Good communication skills to support the effective and accurate exchange of information with teammates and customers
  • Demonstrated ability to work independently and trouble shoot problems with speed and efficiency
  • Position will be working in the Dulles and Chantilly VA areas and will require travel to Customer site
67

Senior Information Assurance Analyst Resume Examples & Samples

  • Bachelor’s Degree, preferably in an IT field is highly preferred. An equivalent combination of education and experience may be substituted for a degree
  • A minimum of seven (7) years’ experience managing administrative and technical support related to IA and Information Systems Security (INFOSEC); five (5) years demonstrated ability to supervise, plan and lead technical teams in multiple, complex tasks assignments involving disciplines to include analysis and decision support and experience with written and oral communications commensurate with a management role
  • Demonstrated and documented experience in two or more of the following areas
  • Performing IA controls analysis, risk assessment, contingency planning, Security Test and Evaluation (ST&E) and risk mitigation analysis
  • IA background in requirements analysis, design, development and implementation
  • IA concepts and requirements development and analysis
  • IA planning and management
  • Must attend a DISA SRR course for their assigned technology area within 90 days starting work (government provided)
  • Must be currently certified and meets training and certification requirements of IA Management (IAM) Level II in accordance with DoD 8570.01-M requirements. Certifications for this position are DoDI 8570 IAT-II, IAWF IAM Level II and at least one of the following: CISSP, GLSC, Security +, CASP, CCNA, MCSE, or CISM
  • Knowledgeable of and experienced with the new Risk Management Framework (RMF)
  • TRAVEL REQUIRED: Occasional travel INCONUS and OCONUS to provide expert technical support, attend various government/contractor meetings and conferences representing SAIC
68

Information Assurance Analyst Resume Examples & Samples

  • Bachelors degree in STEM field and 5 years of related experience
  • Experience supporting USTRATCOM TIF or technology laboratories
  • Knowledge of USTTRATCOM’s training environment
  • DoD-M 8570.1-M Certification
  • Mid-Level knowledge of DoDI 8510.01
  • Possess TS Clearance and be SCI eligible
  • Knowledge and understating of USSTRATCOM’s laboratories cyber security policies and procedures
  • IAT Level II DoD 8570 Certification or equivalent
  • Experience in PO&AM development and tracking
  • Experience in DoD Risk Management Framework (RMF)
  • Experience in USSTRATCOM Security documentation development
69

Information Assurance Analyst Resume Examples & Samples

  • Bachelors degree in STEM field and 9 years of related experience
  • Experience supporting USSTRATCOM TIF or technology laboratories
  • Knowledge of USSTRATCOM’s training environment
  • DoD-M 8570.1-M Certification with a CISSP or equivalent
  • Expert knowledge of DoDI 8510.01
  • Level 3 DoD 8570 Certification
  • Ability to lead cyber security activities
70

Cisr Information Assurance Analyst Resume Examples & Samples

  • The selected applicants will be subject to a security investigation and must meet eligibility requirements for access to classified information
  • Eight years of relevant Information Technology/Information Assurance
  • Bachelor’s degree in Computer Science or a related field
  • Twelve years’ experience may be considered in lieu of bachelor’s degree
71

Information Assurance Analyst Resume Examples & Samples

  • Auditing computer systems to ensure that they are operating securely and that data is protected from both internal and external attack
  • Assist with review and definition of security requirements and reviews systems to determine if they are designed to comply with established standards
  • Must possess a working knowledge of DoD 8501.10 DIACAP as well as experience with developing the certification and accreditation documentation and artifacts for submission to TSC West IAM
  • Must have experience with running and assessing workstations and server scans utilizing Gold Disk and/or eEye RETINA
  • Performs compliance actions and uploads artifacts to the Enterprise Mission Assurance Support Service (eMASS)
  • Investigates security violations and breaches. Prepare reports on intrusions as necessary. Review firewalls logs across the assigned area
72

Senior Information Assurance Analyst Resume Examples & Samples

  • Conduct network, endpoint, and log analysis by utilizing various consoles on a regular basis to analyze and triage cyber security events (e.g. SIEM, Qradar, Splunk, Solarwind,IDS, IPS, firewall, etc.) and perform continuous hunt across the environment
  • Reconstruct cyber events, assess cyber threat and scope of impact, identify and track any internal lateral or external movement, and develop response solutions
  • Research and track new exploits and cyber threats, lead containment of threats and remediation of the environment during or after an incident
  • Lead cursory and/or in-depth insider threat analysis (i.e. packet captures, endpoint behaviors, etc.), or collaborate with peers when appropriate for hand-offs/escalations
  • Conduct analysis of malicious code and weaponized documents through behavioral analysis or reverse engineering
  • Enhance detections, alerts and other cyber event correlation rules to reduce false positives
  • Oversee execution of established operational processes and procedures by SOC analysts to analyze, escalate, and lead remediation of security incidents
  • Work with Manager of Information Security to develop, establish and execute incident response and escalation processes and procedures
  • Performing command and control functions in response to incidents, execute real-time incident handling based on Security Operation Center (SOC) processes (e.g.,detection, categorization, escalation, forensic collections, intrusion correlation/tracking, threat analysis, and direct system remediation)
  • The successful candidate must also serve in a digital forensics capacity. This includes the creation of a forensically sound duplicate of evidence (i.e., forensic image) that ensures the original evidence is not unintentionally modified, to use for data recovery and analysis processes
  • Should have in depth experience with Firewall engineering concepts(such as CISCO, Palo Alto), security forensics and incident response
  • Intermediate knowledge of cyber defense mitigation techniques and vulnerability assessment tools, including open source tools, and their capabilities
  • Intermediate knowledge of cryptography and cryptographic key management concepts, penetration testing principles, tools, and techniques (e.g., metasploit, neosploit)
  • Intermediate knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code)
  • Intermediate knowledge of system administration, network, and operating system hardening techniques
  • Intermediate skill in using incident handling methodologies
  • Strong organizational and interpersonal skills needed to work effectively with a wide variety of internal and external resources
  • Strong decision-making skills and ability to work under pressure
73

Information Assurance Analyst Resume Examples & Samples

  • 3+ years experience conducting information security risk assessments (5-10+ years overall professional experience)
  • Experience performing in a professional services or customer-focused function
  • Experience delivering on client engagements
  • Experience with compliance frameworks including PCI DSS, HIPAA, ISO 27001, and NIST 800-53
  • Experience developing information security policies, standards and procedures
  • Experience with governance, risk and compliance programs and platforms
  • Demonstrated success in independently delivering solutions to customers
  • Must be organized, analytical and capable of identifying and solving problems
  • Excellent technical documentation, reporting, and review skills
  • Excellent written and verbal communication skills with strong presentation abilities
  • Strong customer skills, client presence and interaction abilities
  • Ability to travel up to 25% + as required
74

Cyber Operations Security Information Assurance Analyst Resume Examples & Samples

  • Monitors, verifies and tracks the level of enterprise security according to DON and DOD security policy and guidelines
  • Detects and contains all intrusion attempts and attempts at unauthorized access to DON information systems
  • Ensures the proper logging, management and reporting of all security events and exceptions
  • Performs initial investigation on any suspicious activity and reports the potential events to the NMCI Command Center (NMCICC) and/or CIRT
  • Monitors all incoming email IA alerts, performs initial investigation on any suspicious activity and reports it to NMCICC and/or CIRT
  • Ensures all tools and sensors are available and operational
  • Performs anti-virus definition updates according to current processes to the Unclassified and Classified NMCI network
  • Reviews security websites for potential threats
  • Manages and monitors all HPSM and Remedy queues both classified and unclassified
  • Investigates all rogues detected on the network in accordance with the approved Rogue Procedures
75

Senior Information Assurance Analyst Resume Examples & Samples

  • Develops, implements, and ensures timely completion and summarization of information assurance activities
  • Provides oversight and informal supervision to the Information Assurance Analyst job duties and outcomes
  • Conducts ongoing monitoring of compliance with federal, state, and industry-specific regulations, policies, and procedures relating to protection of information systems and confidential information. Addresses areas of non-compliance with follow-up documented remediation plans
  • Prepares and provides periodic reports to management and information management related governance committees regarding information assurance findings and trends. Drafts recommended strategy to mitigate risks associated with findings
  • Develops information assurance activities for new systems, as well as subsequent to major changes to the systems, to ensure appropriate controls and safeguards are maintained to protect information assets
  • Develops and delivers training programs for System Administrators, Departments, and individuals to comply with LG Health information security and privacy related policies, procedures, and standards
  • Works collaboratively with other staff members in conducting information security related risk assessments and remediation activities
  • Participates in information security incident response and recovery team activities
  • Ensures up to date knowledge of information security frameworks and the applicability to the LG Health environment
  • Maintains effective business relationships and networks with information security-related professional associations/groups
  • Bachelor’s degree in Computer Sciences, Information Management or a similar field required or a combination of relevant education and experience may be considered in lieu of degree
  • Five (5) years related Information Security experience
  • Three (3) years’ experience in information security or information assurance roles
  • Experience with HIPAA, PCI-DSS, and other information security related regulations and NIST or ISO or other information security frameworks
  • Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or other information security certification
  • Demonstrated experience in conducting training programs for management and staff
  • General professional experience with healthcare applications, functionality, and terminology
  • Understanding of best practices regarding access controls and information systems security
  • Experience with SQL, PowerShell, or other programming/scripting languages a plus
76

Information Assurance Analyst CA Resume Examples & Samples

  • Responsible for the development and maintenance of Information Assurance (IA) documentation for the network architecture and associated applications and Commercial Off-The-Shelf (COTS) in support of a Digital Integration Laboratory (DIL) *
  • Responsible for conducting IA support for the DIL which includes the development of Certification and Accreditation (C&A) as required under the Risk Management Framework (RMF) *
  • Conduct direct coordination with the designated Information System Security Officer (ISSO) to ensure compliance with network C&A requirements and the maintenance of the current Authorization to Operate (ATO) *
  • Provide IA support to the DIL Manager and designated ISSO during the RMF accreditation process *
  • Develop and manages the DIL Network Plans of Action and Milestones (POA&M) *
  • Communicate and implement IA security policies or plans *
  • Monitor and report on any unusual activity associated with network applications and hardware *
  • Monitor and analyze network architecture and data for needed/required updates and patches *
  • Inspect, identify, and analyze log files to detect and report anomalous malicious activity *
  • Analyze event data received form Network Security tools to eliminate false positives and identify incidents *
  • Bachelor’s Degree in Information Security, Computer Science, or related field, or equivalent experience (8 years of related experience may be substituted for degree)
  • Minimum of four years related experience, preferably in a DoD or DoE environment (total of 12 years of related experience if no degree)
  • Security+ certification is required
  • Knowledge of DoD C&A process, policies, and standards (DoD 8500 series, 8500.1 / 8500.2 Directives and IA Guidance)
  • Experience with RMF workflow tools (eMASS)
  • Experience with security control assessments and reporting
  • Experience with Windows OS
  • Secret Security clearance is required
  • Working knowledge of desktop applications including word processing, spreadsheets, and database programs preferred
  • Working knowledge of security log auditing
  • Working knowledge of ACAS, CISCO Firewalls, SPLUNK, DISA STIGS and STIG Tools, NESSUS, and HBSS
77

Information Assurance Analyst Resume Examples & Samples

  • Prepares, distributes, and maintains plans, instructions, guidance, and standard operational procedures concerning Information Security
  • Participates in an IA risk assessments during the C&A process
  • Prepares, reviews, and evaluates documentation of compliance
  • Prepare recommendations for the DAA
  • Reviews IA and IA enabled software, hardware, and firmware for compliance with appropriate security configuration guidelines, policies, and procedures
  • Reviews IA security plans
  • Develops, implements, and maintains information security programs appropriate for multiple networks
  • Manages information security compliance efforts, with an emphasis on regulatory requirements (DIACAP, RMF)
  • Interacts with various departments and individuals across the enterprise to achieve information security objectives
  • Provides leadership and concurrence in configuration control, planning and implementation of projects for computer security and enterprise systems administration
  • DOD 8570-01M IAT Level II certification (CompTIA Security +, CASP, CeH,or similar)
  • Desired Certifications
  • DoD 8570-01M IAT Level III certification (CISSP, CISA, or similar)
78

Information Assurance Analyst Resume Examples & Samples

  • Ability to analyze information system configurations and technical specifications against
  • Knowledge of security for the following platforms: Windows, Oracle, SQL Server, Cisco IOS, Firewalls, and encryption technologies, including VPN, TLS, and SSL
  • Possession of excellent oral and written communication skills preferred, including technical writing
79

Information Assurance Analyst Nsee Resume Examples & Samples

  • Support timely contributions to all activities to which the Data Protection and Privacy Manager is assigned
  • Ensure compliance with laws and regulations relating to privacy and international data transfers, including GDPR and Privacy Shield
  • Conduct privacy impact assessments for Monster’s data processing activities
  • Assist in responding to inquiries from product and business groups across the company regarding privacy and security requirements applicable to their activities
  • Work with groups within Monster on compliance activities related to privacy, security, data protection, and data retention
  • Ensure compliance with applicable laws and regulations relating to online advertising and marketing including CAN-SPAM, FTC, CASL, and do not call regulations in the United States, Europe, and other regions where Monster does business
  • Monitor developments in privacy best practices and legal requirements pertaining to online marketing, and advertising
  • Create and maintain relevant, current content for Privacy Office intranet site
  • Maintain key Privacy Office documentation for use in response to compliance investigations or regulatory inquiries
  • Bachelor’s Degree or equivalent role experience
  • Attention to detail and willingness to learn
  • Familiarity with privacy and security terminology and process workflow and design a plus
  • Experience with data analytics / data mining a plus
  • Experience in Microsoft Office Products (Excel, Word, PowerPoint)
80

Information Assurance Analyst, Mid Resume Examples & Samples

  • 3+ years of experience with information assurance, engineering, or operational support
  • Experience with a DoD certification and accreditation program, including developing or analyzing security test and evaluation reports
  • Experience with evaluating information assurance (IA) compliance of a system against current DIACAP, Risk Management Framework, and DoD Cybersecurity policies
  • DoD 8570 IAM III Certification
  • Experience in working with the Enterprise Mission Assurance Support Service (eMASS)
  • Knowledge of applicable regulations, including DoD 8500.02, DoD 8510, NIST SP 800, 37, NIST SP 800, 53 or 53A, NIST SP 800, 30, or CNSSI 1253
  • Possession of excellent time management and analytical skills
81

Information Assurance Analyst Resume Examples & Samples

  • Prepare test reports, configuration guides and implementation plans for IAVM fix/mitigation and implementation
  • Create/maintain Standard Operating Procedures (SOPs) documenting the patching processes, ACAS scanning, etc
  • Provide input to IAO for mitigation POA&Ms and Certification & Accreditation Plans (as necessary)
  • Minimum 8-12 years of related experience. Bachelor’s degree in related field or CISSP certification preferred
  • Candidate MUST possess DoD 8570 Information Assurance Technician (IAT) II compliant security certification (such as CISSP, Security+, or GSEC) upon Date of Hire
  • Administration of Red Hat Linux on hardened systems, automated patch deployment mechanisms
  • Experience conducting vulnerability testing on Red Hat Linux based systems, determining impact of vulnerabilities on network architecture, and communicating appropriate mitigation solutions
  • Experience writing, reviewing, and understanding System Security Plans (SSPs), network diagrams, Standard Operating Procedures (SOPs), Configuration Guides, Test Reports, and Implementation Plans
  • Experience incorporating baseline Information Assurance (IA) Controls as described in DoDI 8500.2
  • Experience performing security testing of applicable Security Technical Implementation Guides (STIGs), Information Assurance Controls (IACs), and current mandated DoD, DoN, and program security settings
  • Experience performing and reviewing ACAS scans and analyzing the results with respect to system applicability
  • Experience with DoD Information Assurance processes, particularly the DIACAP/RMF process
82

Information Assurance Analyst Resume Examples & Samples

  • Must have a current CISSP or CASP Certification to meet the baseline requirements for IAM III level under 8570.01M
  • Additional computer environment certifications like Server 2012, UNIX Solaris 10, CCNA-Security, CCNA-Voice, CCNP, and MCP are a plus
  • Must possess working knowledge of Assessment and Authorization practices within DoDI8510.01, ICD 503, CNSSI 1253, and the Risk Management Framework (RMF) process including various security tools (ACAS, HBSS, etc)
83

Information Assurance Analyst Resume Examples & Samples

  • Lead the development, update and compliance of Information Security standards, Baseline Security Configurations in accordance with industry standards, best practices and information security standard operating procedures
  • Conduct information security assessments of third party vendors to determine their ability to protect data
  • Assist in the formal risk assessment process for all departmental and enterprise systems and work closely with system owners to align risks identified with established risk tolerances
  • Work with technical teams to ensure baseline configurations are kept current and configurations for new technologies are designed and built prior to integration into the company environment
  • Develop the comprehensive information security awareness program and run year round campaigns. Create communications on behalf of IT Security for awareness activities, initiatives or other required security announcements. Assist in developing security awareness materials including presentations, brochures, posters and other medium as necessary
  • Maintain security and compliance metrics that are meaningful and actionable for Sr. Management. Metrics should establish baselines, highlight progress and drive behaviors
  • Coordinate with internal and external audit and compliance groups on improvement of information technology controls
  • Experience with analyzing, evaluating, prioritizing and processing results from security penetration tests
  • Provide governance for the identification, validation and remediation of information technology controls required by SOX, PCI DSS, PII, HIPAA and other applicable regulatory compliance frameworks. Ensure successful audits of these compliance programs
  • Develop and maintain relationships with internal and external customers to formulate information security governance solutions for Company
  • Participates in projects and assessments on risk determination
84

Information Assurance Analyst Resume Examples & Samples

  • Security+ ce
  • Linux+
  • Intelligence Reconnaissance Surveillance (ISR) experience
  • Familiar with basic computer skills
85

Senior Information Assurance Analyst Resume Examples & Samples

  • High School (HS) Diploma or equivalent
  • Eleven (11) or more years of information assurance/cybersecurity experience with military automated information systems and information technology
  • Expert knowledge of the defense information assurance certification and accreditation process (DIACAP) and risk management framework (RMF)
  • Possess an active Cybersecurity Workforce Baseline certification that meets the requirements of DoD 8570.01-M Information Assurance Management (IAM) Level III/SECNAV-M 5239.2 Advanced/Master Proficiency Level
  • Valid and current Security (+) Plus certification
  • Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) certification
  • Active Secret clearance at time of application is required
86

Information Assurance Analyst Resume Examples & Samples

  • Conducts ongoing monitoring of compliance with federal, state, and industry-specific regulations, policies, and procedures relating to protection of information systems and confidential information. Identifies areas of non-compliance and assists in resolving non-compliance. Focus areas include Role Based Access Controls, Identity and Access Management including verification of timely access controls for account management
  • Conducts routine reviews to assure that the auditing and monitoring requirements for information system applications are performed based on data classification prioritization. Works with Information Systems staff to resolve identified issues
  • Documents and ensures timely follow-up of information security incidents
  • Maintains application inventory, data dictionary and data flow of all electronic confidential information. Monitors device inventory to ensure appropriate safeguards are maintained for all devices with access to confidential information
  • Facilitate education and training programs for appropriate System Administrators, and other staff to comply with LG Health information security policies, procedures, and standards
  • Works collaboratively with other staff members in conducting risk assessments and remediation activities
  • Participates in incident response and recovery team activities
  • Provides Internet Usage and other assigned audit reports as requested
  • Assists in the provision of privacy and information security awareness and education activities
  • IT Technical and/or Security certification
  • Three or more years related Information Security experience
  • Demonstrated experience/participation in audit preparation, response and remediation
  • Experience in HITRUST, HIPAA, PCI-DSS, and other information security frameworks and requirements
  • Demonstrated experience in conducting education and training for management and staff
87

Information Assurance Analyst Resume Examples & Samples

  • Coordinate with Information Assurance Officer (IAO) for Vulnerability Remediation Asset Manager (VRAM) updates
  • Create/maintain Standard Operating Procedures (SOPs) documenting the patching processes, Assured
  • Compliance Assessment Solution (ACAS) scanning, etc
  • Candidate MUST possess Top Secret Security Clearance with SCI eligibility upon Date of Hire
  • Administration of Windows and Linux on hardened systems, automated patch deployment mechanisms
  • Experience conducting vulnerability testing on Windows and Linux based systems, determining impact of vulnerabilities on network architecture, and communicating appropriate mitigation solutions
  • Experience with various automated security tools including eEye Retina, DISA Gold Disk, NESSUS, and SCAP tools
  • Oracle Administration
  • Unix Solaris Administration
  • Major Programming Languages (C#, JAVA, Python, etc.)
  • VMware
88

Information Assurance Analyst Resume Examples & Samples

  • Provide the conducting of professional or scientific work in the area of cybersecurity and leading the integration of computer/information systems, or subsystems, and control networks for cybersecurity
  • Plan and manage complex information systems and networks
  • Support projects to coordinate the development, test, evaluation, authorization, and accreditation of information systems and subsystems or related components, and providing cybersecurity support for projects across multiple engineering and administrative disciplines
  • Provide information technology support which includes system administration, network administration, application administration, database administration, and computer security support for a broad range of computer systems, and weapon system software/hardware
  • Work with stakeholders and manage project teams (internally) and/or externally
  • An active DoD TS with SCI eligibility clearance is required
  • DoD 8570.01-M IAT II (Security+CE) certification
  • AS or BS in Information Technology or equivalent experience and min 5 years experience performing information assurance functions for complex networked systems or no degree with min 2 years ISR experience performing information assurance functions
  • Requires the following experience or knowledge specifically for the RPASOC, AF DCGS, or FPED systems: knowledge of ICD 503 and NIST publications. The definitions are: The Intelligence, Surveillance, and Reconnaissance business line includes weaponized IT products such as the Distributed Common Ground System (DCGS), Remotely Piloted Aircraft Squadron Operations Center (RPA SOC), and Forward Process Exploit and Disseminate (FPED)
  • Experience in continuous monitoring using ACAS and NESSUS scan utility, familiarity with audit reduction tools
  • Experience with EITDR, eMASS, and XACTA, experience with preparing Assessment and Authorization (A&A) packages, and experience with ensuring system security requirements are addressed during all phases of the system life cycle
  • Strong English language skills (both written and verbal)
  • High level of drive and ability to learn
  • The successful candidate must meet eligibility requirements to access sensitive information, which requires US citizenship
89

Information Assurance Analyst Resume Examples & Samples

  • BS or BA degree in Computer Science, Information Systems or a "Relevant Technical Discipline". ALLOWABLE SUBSTITUTION: A High School diploma and an additional four (4) years of experience can be substituted for a BS or BS degree
  • At least four (4) years of practical CEAT computer security experience in secure network and system design, analysis, procedure/test generation, test execution and implementation of computer/network security mechanisms
  • Secret Clearance
90

Information Assurance Analyst Resume Examples & Samples

  • At least 1 year of experience in supporting Risk Management Framework (RMF) for DoD Information Technology (IT), to include Deliverables and process to achieve and maintain an Authority to Operate (ATO)
  • At least 1 year of experience with the DIACAP ATO process (DoD 8500 series)
  • Prefer familiarity with / experience supporting DIACAP to RMF transition