Jobs and Careers
PB

Computer Security Systems Specialist

PBG Consulting
United States, United Statesfull_timeVerifiedPosted 7 Jun 2024

About the role

Title: Computer Security Systems Specialist

Location: Remote

Key Responsibilities:

Security Management:

  • Oversee and manage the security posture of cloud-based applications and services supporting ACL, ensuring alignment with HHS and federal security standards.
  • Develop, implement, and maintain comprehensive security policies, procedures, and guidelines to protect sensitive data and ensure compliance with relevant regulations.

Risk Assessment and Mitigation:

  • Conduct regular risk assessments to identify vulnerabilities, threats, and risks to the cloud infrastructure.
  • Develop and implement risk mitigation strategies to address identified vulnerabilities and enhance overall security.

Security Monitoring and Incident Response:

  • Implement and maintain security monitoring tools and processes to detect and respond to security incidents and threats in real-time.
  • Lead incident response efforts, including investigating security breaches, coordinating remediation activities, and documenting incidents and resolutions.

Compliance and Auditing:

  • Ensure compliance with federal regulations and standards, including FISMA, FedRAMP, HIPAA, and HHS-specific security requirements.
  • Conduct regular security audits and assessments, preparing detailed reports and remediation plans to address any findings.

Identity and Access Management:

  • Implement and manage identity and access management (IAM) solutions to ensure secure and controlled access to cloud resources.
  • Monitor and enforce access controls, ensuring that only authorized users have access to sensitive data and systems.

Security Architecture and Design:

  • Collaborate with cloud architects and developers to design and implement secure cloud architectures and solutions that meet ACL's specific needs.
  • Review and evaluate new cloud technologies and services to ensure they meet security requirements and best practices.

Training and Awareness:

  • Develop and deliver security awareness training programs to educate staff and stakeholders on security best practices and policies.
  • Promote a culture of security awareness across the organization, ensuring that security is integrated into all aspects of the cloud platform.

Continuous Improvement:

  • Stay up-to-date with the latest security trends, threats, and technologies, continuously improving the security posture of the cloud platform.
  • Implement and maintain a continuous improvement process for security practices, incorporating lessons learned from incidents and emerging best practices.

Collaboration and Coordination:

  • Work closely with ACL program managers, IT staff, and other HHS entities to ensure security measures align with overall organizational goals and requirements.
  • Coordinate with external partners and vendors to ensure their security practices meet ACL and HHS standards.

Qualifications:

  • Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field. A Master's degree or relevant certifications (e.g., CISSP, CISM, CEH) are preferred.
  • A minimum of 5-7 years of experience in information security, with a focus on cloud platforms and federal government projects, preferably within health and human services.
  • In-depth knowledge of cloud security principles, architectures, and best practices for platforms such as AWS, Azure, or Google Cloud.
  • Experience with security tools and technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), SIEM solutions, and endpoint protection.
  • Strong understanding of federal security standards and regulations, including FISMA, FedRAMP, HIPAA, and HHS-specific security requirements.
  • Experience ensuring compliance with these regulations and conducting security audits and assessments.
  • Proven experience in managing security incidents, including detection, response, remediation, and documentation.
  • Ability to lead incident response teams and coordinate with internal and external stakeholders during security events.
  • Experience conducting risk assessments, identifying vulnerabilities, and implementing risk mitigation strategies.
  • Strong analytical skills to evaluate risks and develop effective solutions to address them.
  • Ability to obtain a Public Trust

Professional Skills:

  • Sound business ethics, including the protection of proprietary and confidenti

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

PBG Consulting

View company profile →