Information Assurance Analyst

Posted:
8/26/2024, 10:07:22 PM

Location(s):
Bridgewater, Virginia, United States ⋅ Virginia, United States

Experience Level(s):
Junior ⋅ Mid Level ⋅ Senior

Field(s):
IT & Security

Workplace Type:
On-site

Looking for an opportunity to make an impact?

At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers’ success. We empower our teams, contribute to our communities, and operate sustainably. Everything we do is built on a commitment to do the right thing for our customers, our people, and our community. Our Mission, Vision, and Values guide the way we do business.

Are you ready for your next challenge?  

Leidos is dedicated to making the world a safer place. This starts with helping our customers in the Defense Industry achieve their critical missions. From our airborne work with sensors alerting warfighters to what's over the next hill, to our autonomous maritime platforms protecting sea-lanes and shores; our dedicated Defense Group employees are solving critical challenges across the globe. This is an exciting opportunity to use your experience helping the Leidos mission. In this mission, we provide aerial intelligence, surveillance, and reconnaissance platforms for today’s warfighter.

We currently have an opening for a CONUS IA Analyst. This is an in-person day-shift position at our Bridgewater VA Leidos facility, although periodic travel to other Leidos facilities, customer facilities, or OCONUS sites may be requested.

THE CHALLENGE (primary responsibilities)

  • Use National Institute of Standards and Technology (NIST) and Department of Defense (DoD) standards to appropriately apply Risk Management Framework (RMF) processes.

  • Create and maintain program accreditation documentation, evidence, and RMF artifacts associated with Authority to Operate (ATO) and Interim Authorizations to Test (IATT) components.

  • Implement Information Assurance Vulnerability Management (IAVM) and continuous monitoring techniques.

  • Perform compliance assessments and vulnerability assessments.

  • Implement security controls in response to Nessus and Security Content Automation Protocol (SCAP) scans conducted on computer environments concerning Defense Information Systems Agency (DISA) Security Technical Implement Guide (STIG) requirements.

  • Apply Collaborative Security Solution (CS2) scripts to applicable systems.

  • Configure and evaluate reports on systems such as Security Information and Event Management (SIEM) tools, Host Based Security Systems (HBSS), Host Intrusion Prevention (HIPS) and Data Loss Prevention (DLP), Windows Server Update Services (WSUS), computer workstations & servers, network switches & firewalls, etc.

  • Support the design, development, and implement solutions that meet network and system security requirements and perform vulnerability/risk analyses of computer systems, networks and applications in conjunction with the tasking being simultaneously performed by the other Cyber professionals, network staff, other teammates and Government staff. 

  • Perform tasks to ensure applicable systems of the solution and pursue implementation across multiple technical areas.

  • Support multiple systems and function interchangeably within a team of analysts and engineers to support a cross functional approach to resolving the myriad of issues confronting applications and systems operating within a highly complex and interconnected networked environment. 

  • Brief Program Managers and customer Contract Officials on Information Assurance and Cybersecurity issues, achievements, incidents, challenges, etc.

  • Crosstrain co-workers on department specific responsibilities.

  • Administer Information System environment changes to comply with security best practices.

WHAT SETS YOU APART (basic qualifications)

  • Bachelor’s degree and 4 - 8 years of prior relevant experience or master’s with less than 4 years of prior relevant experience. Additional 4 years of experience may be used in lieu of a degree.

  • DoD 8570/8140 IAT or IAM Level II or higher

  • Security+ must be obtained within the first 6 months of employment.

  • A second additional professional certification must be obtained within the first 6 months of employment. i.e., Cisco, VMware, Microsoft.

  • Demonstrate proficiency with NIST SP 800-53 Risk Management Framework (RMF).

  • Supports Information Assurance Assess and Authorize (A&A) and associated IA processes, procedures, and activities with capability and expertise to implement DoDD 8530.1, DoDD 8500.2, DoDI 8510.1, DoDI 8510.01 and other applicable NIST and CNSS IA directives, instructions, guidelines.

  • Knowledge of DISA STIGs & SRGs and how to implement hardening to information systems and network devices i.e., workstations, servers, applications, routers, L3/L2 switches, Cisco ASAs, firewalls, etc).

  • Experience recommending additional security requirements and safeguards.

  • Must be capable of working independently and collaboratively with on-site personnel and off-site customers.

  • Possess excellent oral and written communication skills.

  • General IT knowledge and ability to identify issues and research corrective actions.

  • Be able to obtain a passport and visa to travel internationally.

  • Must be able to successfully accomplish the CONUS Replacement Center course which requires successful deployment physical, immunizations, and training.

  • Willing to work long, irregular hours in hardship and hazardous locations when OCONUS.

  • Active Top Secret security clearance, and therefore must be a US Citizen.

Preferred Qualifications

  • Possesses the following certifications: Security+ and PenTest+

  • Working knowledge of Risk Management Framework (RMF), Assessment and Authorizations (A&A), Xacta IA Manager or Enterprise Mission Assurance Support Service (eMASS) A&A workflow platforms are highly desired.

  • Experience with Windows & Linux operating systems, virtualized environments, and networking devices.

Original Posting Date:

2024-08-27

While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $81,250.00 - $146,875.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Leidos

Website: https://www.leidos.com/

Headquarter Location: Reston, Virginia, United States

Employee Count: 10001+

Year Founded: 1969

IPO Status: Public

Industries: Computer ⋅ Government ⋅ Information Services ⋅ Information Technology ⋅ National Security ⋅ Software