SAIC

Cloud Information Security Analyst

SAIC$80K — $120K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of relevant experience with a Bachelor's degree; 3+ years with a Master's; no experience required with a PhD.
  • Active DoD Secret clearance or higher.
  • One IAT Level II certification such as Security+, CySA+, or equivalent.
  • One Computing Environment certification related to network support/defense or operating systems.
  • Familiarity with AWS cloud concepts and services. The benefit of this experience will enhance the cloud capabilities within the team.

Responsibilities

  • Develop and coordinate authorization documentation including Security Plans and risk assessments.
  • Support control assessments using the Cyber Security Assessment Management (CSAM) system.
  • Create and maintain modification documentation for systems.
  • Assist ISSMs with security decisions impacting their systems.
  • Perform risk assessments and document security vulnerabilities.
  • Facilitate Contingency/Incident response assessments.
  • Utilize tools like eMass and PPSM for security management.

Benefits

  • Normal business hours, Monday through Friday, with potential after-hours support required.
  • Support for continuous professional development through certification opportunities.
Full Job Description
Job Description

Description

SAIC is seeking an Information Systems Assessment and Authorization analyst for the Cloud team to support an IT Service Management effort for USTRANSCOM located at Scott Air Force Base (AFB) in Illinois. The USTC Managed Information Technology Services (MITS) contract provides strategic, technical, and program management guidance and support services to facilitate the operations and modernization of the combatant command's infrastructure, systems, and applications. This support will be provided to the USTC Command, Control, Communications & Cyber Systems Directorate (TCJ6).

The successful candidate will be responsible for working on high-visibility or mission critical aspects of a given program and performing all functional duties with some oversight.

Additional responsibilities may include:
  • Develop and coordinate all authorization documentation associated including the Systems Categorization, Systems Security Plan, and Systems risk assessment.
  • Support the control assessment, reporting and monitoring processes using the Cyber Security and Assessment Management (CSAM) system.
  • Create and maintain all minor/major modification documentation.
  • Maintain all waivers and Risk assessment for the ISSMs.
  • Assist the ISSMs with decisions that affect security of their systems and networks.
  • Facilitate preparations for all Contingency/Incident response assessments.
  • Perform and document risk assessments, analyzing security vulnerabilities, and the metrics to measure the risks associated with those vulnerabilities.
  • Design and development of comprehensive Systems Security Plan, covering at a high level the infrastructure, policies and procedures which define the systems security profile for the enclave systems.
  • Review and validate System Test and Evaluation (ST&E) and Interim Authority to Test (IATT) reviews for new and/or legacy systems.
  • Review and conduct NIST-based Self Assessments, identifying any weaknesses which need to be addressed, and developing a POA&M for each of those weaknesses based on industry best practices. Requesting risk acceptance for vulnerabilities that cannot be remediated or mitigated.
  • Based on the risk profile, Create and track Plan of Action and Milestones (POA&M) for mitigation of risks identified via the ACAS and STIG processes.
  • Design and development of Initial Privacy Assessment (IPA) and Privacy Impact Assessments (PIAs) for each major Federal Government IT Systems Developing and conducting System Test and Evaluations (ST&Es) and Independent Verification and Validation (IV&Vs) of the security profiles of Federal Government IT Systems.
  • Utilize the eMass tool to manage the security profile for the system.
  • Utilize the PPSM tool and processes to register ports protocols and services in use by the enclaves.
This position is Monday through Friday, normal business hours. However, employee may be required to provide after-hours and weekend support during planned or emergency events.

Qualifications

Required Education and Experience:
  • 5+ Years with BS 3+ Years with MS 0 Years with PhD.
  • DoD Secret clearance or higher.
  • Must have at least one of these IAT Level II certifications: Security+, CECCNA-Security, CySA+ **, GICSP, GSEC, CND, SSCP.
  • Must have at least one Computing Environment (CE) certification or certificate for the technical area of responsibility for Network. support/defense (e.g., Splunk, Cisco, McAfee, etc.) OR Operating System (e.g., Microsoft, Linux, Solaris, AWS Cloud Practitioner, AWS Solutions Architect etc.
  • Familiarity with AWS cloud concepts and services.
  • Familiarity with DevOps practices in an agile environment.
Desired Qualifications:
  • MA/MS.
  • ITIL Foundations (v4 or higher) certification.
  • One of the IAM Level II certifications: CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO, HCISPP.

Target salary range: $80,001 - $120,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.

Overview

SAIC accepts applications on an ongoing basis and there is no deadline.

About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

  • SAIC
    Test Engineer Senior
    $100K — $130K *
    Arlington, VA 22204 (Arlington County)
    Information Technology
    In-Person
  • SAIC
    Windows System Administrator
    $75K — $95K *
    Pensacola, FL 32514 (Escambia County)
    Information Technology
    In-Person
  • SAIC
    Security Specialist
    $80K — $120K *
    Fort Washington, MD 20744 (Prince Georges County)
    Aerospace & Defense
    In-Person
  • SAIC
    Security Specialist
    $80K — $120K *
    Washington, DC 20011 (District Of Columbia County)
    Education, Government & Non-Profit
    In-Person
  • SAIC
    Mechanical Engineer
    $70K — $95K *
    Crane, IN 47522 (Martin County)
    Aerospace & Defense
    In-Person

More Information Technology Jobs

Find similar Cloud Information Security Analyst jobs: