Job Description
By solving some of today’s toughest challenges, our teams are helping to transform the government in the areas of business, technology and marketing. Working at Public Sector, you will be in an environment that fosters growth and creativity, demands openness and client-focused delivery, and celebrates initiative and innovation.
The chance to bring your ideas and new thinking to today’s challenges and work in a truly unique work environment is now – it’s at Publicis Sapient | Public Sector.
This is a position for an Information Security SME with experience in Federal government Certification and Accreditation (C&A) practices and policies. The candidate will work within an established and structured consulting team, responsible for developing and delivering all security assessments, documentation and vulnerability management in order to meet required security standards and maintaining the security posture. The candidate will facilitate working sessions and work closely with client Office of Information Technology team. This position requires excellent analytical and writing skills to effectively communicate and deliver on required life-cycle deliverables.
Responsibilities:
- Responsible for designing and documenting security controls for client network and infrastructure elements, in order to meet federal regulatory compliance specifications.
- Individual will perform an in-depth analysis of the current infrastructure environments, risk assessments, and will document and conduct risk assessments and validate the security controls.
- Use Federal Certification and Accreditation (C&A) processes to research, verify and document information security controls in order for the "systems" to be accredited.
- Actively coordinate & support 3-4 C&A initiatives per year for ATO renewal or update for IT systems
- Develop System Security Plans and standard operating procedures for Federal Information Systems
- Understand and develop Privacy Impact Assessments
- Closely work with federal stakeholders including Information System Security Officer (ISSO) to maintain high-security posture of the IT systems
- Maintain and update System Security documentation
- Report on security status and security incidents
- Manage vulnerabilities reported by various security scanning tools.
- Experience working with multiple teams to remediate the vulnerabilities on time-based on Government policies.
Requirements:
- Must be a U.S. Citizen or U.S. Permanent Resident
- Eligible for U.S. Government Clearance
Qualifications
- Eight years of progressively responsible IT Security assessment and authorization-related responsibilities
- Eight years of experience directly performing Assessments and Authorizations, knowledge of specific NIST guidelines. The candidate will demonstrate experience analyzing IT security controls and developing solutions to security problems to meet federal security standards
- Knowledge of Federal government security guidelines:
- Federal government C&A practices and policies
- Moderate and high-impacting security control families listed in NIST Publication 800-53 Rev5
- Knowledge of security industry-standard security scanning tools for hardware, application, and static code.
- Experience in client-facing situations and dealing with security standards and protocols.
- Excellent oral and written communication skills including the ability to clearly and openly communicate with a client on a daily basis as well as the ability to create and deliver security-related deliverables.
- Understand security requirements within management, operational, and technical controls.
- Experience with Systems Security in the Federal space.
Education:
- Bachelor’s degree in computer science, information assurance, engineering or related field
About Public Sector
Public Sector, part of Publicis Sapient, is a leading provider of strategy, technology, and marketing services to a wide array of U.S. governmental agencies. Focused on driving long-term change and transforming the citizen experience, we use technology to help agencies become more accessible and transparent. With a track record of delivering mission-critical solutions and the ability to leverage commercial best practices, we serve as trusted advisors to government agencies, such as the Federal Bureau of Investigation, Library of Congress, National Institutes of Health, United States Department of Health and Human Services, and United States Department of Homeland Security..