Jobs and Careers
GU

HVA Analyst Lead (Public Trust)

GuidePoint Security LLC
Springfield, United Statesfull_timeVerifiedPosted 21 Aug 2024

About the role

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation’s top organizations, such as Fortune 500 companies and U.S. government agencies, to identify threats, optimize resources and integrate best-fit solutions that mitigate risk.

An active Public Trust clearance, or eligibility to obtain, is required for consideration for this opportunity. 

Work will be performed 100% onsite

GuidePoint is seeking highly qualified candidates for an upcoming Government contract award. Hiring for this position is contingent upon contract award.

The HVA Analyst Lead will be responsible for leading a team focused on evaluating and assessing High Value Assets in alignment with CISA Assessment Evaluation and Standardization (AES) guidelines. Ideally, the candidate for this role will already be a qualified AES HVA Assessor and have past experience performing CISA based AES assessments and have familiarity with the DHS AES-HVA program. 

This position requires an active Public Trust security clearance.  It will be performed on multiple customer sites in the DC Metro area.

What You'll Get To Do:

  • Follow CISA AES guidelines for all assessments to ensure compliance and standardization in the evaluation process.
  • Ensure that all AES-HVA Program assessment teams are adequately staffed for each assessment role (assessment lead, technical lead, and operator) required to conduct Non-Tier 1 HVA assessments. The lead will provide a monthly report of all AES-HVA qualified staff, their roles, and the assessments that have been conducted.
  • Conduct assessments within AES-HVA Program established deadlines, ensuring timely completion to meet project timelines and objectives.
  • Manage all aspects of the assessment process, including setup, execution, and conclusion, ensuring a thorough and comprehensive evaluation of HVAs.
  • Prepare detailed reports post-assessment in accordance with AES guidelines and formatting, ensuring clear communication of findings and recommendations within 30 days of assessment outbrief.
  • Develop and document standard operating procedures (SOPs) and best practices for HVA assessments, ensuring their availability in corporate knowledge repositories for future reference and consistency.
  • Provide adequate and qualified personnel for each role in the HVA assessment process, ensuring a skilled and effective assessment team.
  • Establish, refine, and document Standard Operating Procedures (SOPs) for the operation of the HVA Team.
  • Maintain an electronic repository on the customer network for all HVA related information.
  • Develop and maintain an execution schedule for all inspection and assessment activities, in coordination with the customer HVA PMO.
  • Develop, maintain, and update HVA assessment evaluation methods in coordination with the customer HVA PMO.
  • Develop and provide advance preparation instructions and materials prior to inspections and or assessments.
  • Develop training and training materials for newly onboarded team members.
  • Provide operating environment and training for CISA tools required to perform HVA Assessments.

You'll Bring These Qualifications:

  • Minimum 4 years of experience conducting both technical and compliance cyber assessments in a federal agency.
  • Minimum 1 years of experience leading a team of technical analysts performing cyber assessments.
  • Must possess an active Public Trust clearance or eligible to obtain a Public Trust clearance
  • Experience evaluating operational resilience and cybersecurity practices through an interview-based assessment.
  • Familiarity with wide ranging cybersecurity technologies and best practices deployed in a federal environment.
  • Experience performing interview-based assessments of federal systems.
  • Familiar with incident response and management processes and workflows, including various incident response frameworks.
  • Experience performing risk and vulnerability assessments, understanding the threat landscape against identified vulnerabilities, and identifying mitigating controls.
  • Experience evaluating systems, networks, and security services to determine their reliability and resiliency of design, construction, and operation.

These Qualifications Would Be Nice To Have:

  • Certified or qualified CISA HVA-AES Assessor
  • Experience performing CISA Assessments

We use Greenhouse Software as our applicant tracking system and Free Busy for HR screen request scheduling. A

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

GuidePoint Security LLC

View company profile →