ECS

Computer Security System Specialist

ECS$90K — $130K *
US-AnywhereRemote in Virginia, US
Healthcare
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Minimum 5 years of cybersecurity experience focusing on Health IT initiatives.
  • Bachelor's degree in computer science, Information Security, or related field.
  • Active Public Trust or higher security clearance required.
  • Experience with FISMA processes, including ATO status maintenance.
  • Ability to evaluate threats and recommend risk reduction techniques effectively.
  • Expertise in producing clear risk reports and visualizations for federal stakeholders.
  • Familiarity with cybersecurity tools and incident resolution automation.

Responsibilities

  • Analyze and assess security needs and risks for custom systems.
  • Ensure compliance of NIH Enterprise applications with FISMA standards.
  • Support FISMA security processes, including maintaining ATO status.
  • Design and implement solutions based on MLS requirements.
  • Conduct complex risk analyses and assessments.
  • Establish information assurance requirements based on analysis.
  • Support high-level customer engagement in policy development.

Benefits

  • Work in a high-impact role within a federal health agency.
  • Opportunity to contribute to national cybersecurity efforts.
  • Work with advanced security technologies and methodologies.
  • Engagement with federal stakeholders and systems.
  • Potential for career advancement in a reputable organization.
Full Job Description
The NIAID NEAT Computer Security System Specialist will be responsible for cyber security incident resolution, monitoring of NIAID systems and components to detect potential threats, and project management and engineering support for the improvement and automation of security operation tools and processes.

Key Responsibilities:
  • Analyze security needs, risks and requirements of custom systems developed by SEB.
  • Ensure all NIAID SEB-managed NIH Enterprise applications are FISMA compliant. Recommend and implement security features as necessary, to adhere to Federal, HHS, NIH, and NIAID security requirements.
  • Support FISMA security processes including obtaining and maintaining Authority to Operate (ATO) status and resolving Program of Milestones and Actions (POAMs).
  • Design, develop, engineer, and implement solutions to MLS requirements.
  • Perform complex risk analyses which also include risk assessment.
  • Establish and satisfy information assurance and security requirements based upon the analysis of user, policy, regulatory, and resource demands.
  • Support customers at the highest levels in the development and implementation of doctrine and policies.
  • Apply know-how to government and commercial common user systems, as well as to dedicated special purpose systems requiring specialized security features and procedures.
  • Perform analysis, design, and development of security features for system architectures.


  • Minimum 5 years of cybersecurity experience supporting Health IT software development initiatives.
  • Bachelor's degree in computer science, Information Security or related field.
  • Active Public Trust or higher security clearance.
  • Experience supporting FISMA security processes including obtaining and maintaining Authority to Operate (ATO) status and resolving Program of Milestones and Actions (POAMs).
  • Proven ability to consistently understand threats, evaluate the impact of potential incidents, and recommend risk reduction techniques based on a knowledge of different operation threat environments, general attack stages, incident categories, cyber defense tool data collection, and playbooks for resolving common incidents.
  • Demonstrated expertise in analyzing and providing clear and concise risk reports, dashboards, and other visualizations to federal risk executives, system operators, and system stakeholders.
  • Experience in setting up, administering, and enhancing cybersecurity tools and security operations processes to reduce alerting on false positives, to proactively identify configurations that may lead to a potential incident, and to automate incident resolution playbooks.
  • Knowledge of different operational threat environments (e.g., first generation [script kiddies], second generation [non-nation state sponsored], and third generation [nation state sponsored]); general attack stages (e.g., footprinting and scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks, etc.); incident categories, incident responses, and timelines for responses; as well as penetration testing techniques and tools.
  • Competency in verbal communication, technical written communication, and analytical skills.
  • Reside within the Washington DC Metro area.
  • Travel within the Washington DC Metro Area, and CONUS as needed.

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Healthcare Jobs

Find similar Computer Security System Specialist jobs: