22nd Century Technologies, Inc. logo

Information Security Analyst 2

22nd Century Technologies, Inc.

  • Carson City, NV
  • 1 day ago
  • Remote

    Highlights

    Incumbents perform supervisory duties and manage projects of varying size, scope, and impact to agency operations to include serving as the project leader; planning, organizing, and directing project activities; resolving design conflicts; data administration; resource allocation; contract negotiation; timeline development; critical path tracking; justifying the need for additional resources; and coordination with other work units within and outside the organization as assigned. accordance with NIST Risk Management Framework (RMF), operational, and technical security controls employed within or inherited by a system to determine the overall effectiveness of the security controls using NIST 800-53 and Center for Internet Security (CIS) Controls for OMV ON-PREM and Cloud environments including AWS, Salesforce, and Mulesoft CSPs.

    Numbers & Facts

    LocationCarson City, NV (
    Remote
    )
    IndustryComputer/IT Services
    Company Size100 to 499 employees
    Year Founded1997
    Websitehttps://www.tscti.com/careers-0

    Description

    Experience and Skills Preferred-AI Security Framework Risk Assessments - NIST AI-100
    Frequency of Status Reports-Weekly
    Vendor/Resource Provided Items-laptop
    Percentage of Time Worked On-site/Off-site-100% remote
    Type of Interview-Teams

    Position Description
    Information Technology (IT) Professionals analyze, develop, implement, maintain, and modify computer operations, systems, networks, databases, applications, and/or information security. Incumbents may perform duties in one or more IT specialization areas depending on the needs of the
    agency. Incumbents perform supervisory duties and manage projects of varying size, scope, and impact to agency operations to include serving as the project leader; planning, organizing, and directing project activities; resolving design conflicts; data administration; resource allocation; contract negotiation; timeline development; critical path tracking; justifying the need for additional resources; and coordination with other work units within and outside the organization as assigned.

    Primary responsibilities wm be perfonning the duties of an Information
    Security Officer. Security functions include but are not limited to:

    • Support Penetration Testing
    • Conduct comprehensive assessments of the management in
    accordance with NIST Risk Management Framework (RMF),
    operational, and technical security controls employed within or inherited by a system to determine the overall effectiveness of the security controls using NIST 800-53 and Center for Internet Security (CIS) Controls for OMV ON-PREM and Cloud environments including AWS, Salesforce, and Mulesoft CSPs.
    • Generate and maintain required IS security documentation including Systems Security Plans (SSP), Information Assurance Standard Operating Procedures (IA SOP), Continuous Monitoring Plans, Security Control Traceability Matrices, Risk Assessments, Plan of Action & Milestones (POA&M), equipment specifications, practices, and procedures.
    • The position will perform security audits and support external agency audits to ensure compliance with state and federal rules in the following areas: investigations, security awareness training administration, security access control recommendations, badge access administration, risk assessments, approval authorization, anomalous activity detection alert notifications and incident response, and evaluation of software and hardware recommendations with related cost estimates.
     
    • Maintain day-to-day security posture and continuous monitoring of OMV networks and systems utilizing tools such as Tenable, Symantec, Alteris, Anomali, and Solarwinds in accordance with security policies and procedures .
    • Schedule, perform and maintain records of required IS auditing , patching, maintenance, software/hardware changes, and scanning based on evolving threaUvulnerabilities and customer compliance requirements.
    • Assess changes to an IS by performing periodic self-inspections for compliance with PCI-DSS, CJIS, and state and federal data privacy requirements, tests, and reviews of the IS program to ensure that systems are operating as authorized/accredited and that conditions have not changed; ensure corrective actions are taken for identified findings and vulnerabilities.
     
    Min i mum Qualificati o ns
     
    • Bachelor's degree from an accredited college or university with major course work in computer science, management information systems, or closely related field and five years of progressively responsible professional IT experience relevant to the duties of the position which may include systems administration , network administration, database administration, applications analysis and development , and/or information security, two years of which were at the advanced journey level or in a supervisory or project management capacity ; OR Bachelor's degree from an accredited college or university with major course work in computer science, management information systems, or closely related field and five years of progressively responsible professional IT experience which may include systems administration, network administration, database administration, applications analysis and development, and/or information security, relevant to the duties of the position, two years of which were at the journey level in information security; OR two years of relevant experience as an IT Professional Ill
    in Nevada State service ; OR an equivalent combination of education and experience as described above .


    Special Requirements
    • Current CISSP and PCI-DSS ISA certifications
    • A pre-employment criminal history check and fingerprinting are required. Persons offered employment in this position will be required to pay for these items.
    • Current AWS Certified Security, Salesforce Cloud Security Engineer
    (desired)
    • Work is with Confidential information and requires ONSITE duties and
    functions.

     

    About Company

    22nd Century Technologies, Inc., is one of the fastest growing IT Service Integrator and Workforce Solution companies in the United States. Founded in 1997, 22nd Century Technologies is a Certified National Minority Business Enterprise with 6,000+ people including 600+ Cyber SMEs nationwide supporting our customers in all 50 states, Canada, and Mexico. With HQs in Somerset, NJ and Mclean, VA, 22nd Century has 14 offices throughout the United States. As part of our unrelenting focus on quality and compliance, 22nd Century Technologies’ delivery is based on Certified Matured Processes including CMMI L3 Dev & SVC, ISO 20000, ISO 27001, and ISO 9001 quality processes. With a strong focus on the public sector, 22nd Century currently holds government contracts with 14 out of 15 Federal Executive agencies including DoD, 37 other Federal agencies, 50 States, 115+ Local agencies, and 37 School Districts. In the last three years, we have expanded our services to Fortune 500 and other commercial clients and currently support 80+ commercial clients.

    Recognized among “Best Company to Work For” by Forbes, 22nd Century Technologies, Inc., consistently exceeds our clients’ expectations by focusing on their absolute satisfaction with jobs while keeping our employees motivated.

    All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

    Similar Jobs