Jobs and Careers
PB
Computer Security Systems Specialist
PBG ConsultingUnited States, United Statesfull_timeVerifiedPosted 7 Jun 2024
About the role
Title: Computer Security Systems Specialist
Location: Remote
Key Responsibilities:
Security Management:
- Oversee and manage the security posture of cloud-based applications and services supporting ACL, ensuring alignment with HHS and federal security standards.
- Develop, implement, and maintain comprehensive security policies, procedures, and guidelines to protect sensitive data and ensure compliance with relevant regulations.
Risk Assessment and Mitigation:
- Conduct regular risk assessments to identify vulnerabilities, threats, and risks to the cloud infrastructure.
- Develop and implement risk mitigation strategies to address identified vulnerabilities and enhance overall security.
Security Monitoring and Incident Response:
- Implement and maintain security monitoring tools and processes to detect and respond to security incidents and threats in real-time.
- Lead incident response efforts, including investigating security breaches, coordinating remediation activities, and documenting incidents and resolutions.
Compliance and Auditing:
- Ensure compliance with federal regulations and standards, including FISMA, FedRAMP, HIPAA, and HHS-specific security requirements.
- Conduct regular security audits and assessments, preparing detailed reports and remediation plans to address any findings.
Identity and Access Management:
- Implement and manage identity and access management (IAM) solutions to ensure secure and controlled access to cloud resources.
- Monitor and enforce access controls, ensuring that only authorized users have access to sensitive data and systems.
Security Architecture and Design:
- Collaborate with cloud architects and developers to design and implement secure cloud architectures and solutions that meet ACL's specific needs.
- Review and evaluate new cloud technologies and services to ensure they meet security requirements and best practices.
Training and Awareness:
- Develop and deliver security awareness training programs to educate staff and stakeholders on security best practices and policies.
- Promote a culture of security awareness across the organization, ensuring that security is integrated into all aspects of the cloud platform.
Continuous Improvement:
- Stay up-to-date with the latest security trends, threats, and technologies, continuously improving the security posture of the cloud platform.
- Implement and maintain a continuous improvement process for security practices, incorporating lessons learned from incidents and emerging best practices.
Collaboration and Coordination:
- Work closely with ACL program managers, IT staff, and other HHS entities to ensure security measures align with overall organizational goals and requirements.
- Coordinate with external partners and vendors to ensure their security practices meet ACL and HHS standards.
Qualifications:
- Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field. A Master's degree or relevant certifications (e.g., CISSP, CISM, CEH) are preferred.
- A minimum of 5-7 years of experience in information security, with a focus on cloud platforms and federal government projects, preferably within health and human services.
- In-depth knowledge of cloud security principles, architectures, and best practices for platforms such as AWS, Azure, or Google Cloud.
- Experience with security tools and technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM solutions, and endpoint protection.
- Strong understanding of federal security standards and regulations, including FISMA, FedRAMP, HIPAA, and HHS-specific security requirements.
- Experience ensuring compliance with these regulations and conducting security audits and assessments.
- Proven experience in managing security incidents, including detection, response, remediation, and documentation.
- Ability to lead incident response teams and coordinate with internal and external stakeholders during security events.
- Experience conducting risk assessments, identifying vulnerabilities, and implementing risk mitigation strategies.
- Strong analytical skills to evaluate risks and develop effective solutions to address them.
- Ability to obtain a Public Trust
Professional Skills:
- Sound business ethics, including the protection of proprietary and confidenti
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s