Talent.com
Database Security Specialist

Database Security Specialist

Evolver FederalUSA
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
  • serp_jobs.filters_job_card.quick_apply
job_description.job_card.job_description

Evolver Federal is looking for a Database Security Specialist ­to join our team supporting our government client.

The successful candidate will work with Database Administrators, ISSOs and System Teams to support the client in ensuring the security of its databases across the enterprise. By collaborating with other stakeholders (Federal and Contractor), the candidate will support the ISD Security Tools Team and System DBAs in establishing the initial configuration of database scans using TIO (Tenable Nessus). The candidate will also monitor successful application of security patching for all databases and troubleshoot where necessary, review database-related POA&Ms and provide input into POA&M milestones and associated remediation plans, review artifacts for POA&M closure relating to documented database weaknesses and advise on closure, assist the team in hardening databases throughout the enterprise, and assist DBAs in onboarding database logs to the organization's SIEM tool. The candidate must be a self-starter.

The client environment is diverse and currently contains Oracle, Postgres, SQL Server, and mySQL databases.

Responsibilities

  • Review output of database scans using Tenable io (TIO), work with System DBAs to remediate findings, including vulnerabilities and hardening.
  • Provide input and recommendations into approved security configuration baselines for database types including Oracle, Postgres, SQL Server, and mySQL.
  • Provide input and recommendations into approved database versions based on database type.
  • Work with members of the POA&M Management Support Team to review artifacts submitted as evidence of POA&M closure for database-related weaknesses.
  • Review, validate, and track false positives and known deviations in scan results to provide assurance that IT systems meet established configuration baseline(s) for approved database types.
  • Review documentation submitted in support of requesting a waiver for compliance with specified security requirements per the NIST SP 800-53 and provide recommendations to client for approval and acceptance of associated risk. Specific to security requirements relating to databases and the database layer of a system.
  • Participate in process improvement initiatives to mature the client's internal business processes in areas including, but not limited to, vulnerability remediation, patch remediation efforts, STIG compliance, and approved database instances.
  • Work with Database Administrators, ISSOs, and System Admin Teams to configure database assets to send the appropriate logging data to Splunk / designated SIEM tool.
  • Provide recommendations for database logging standards across the enterprise for each database type within the enterprise to facilitate establishing new and enhancing existing logging standards.
  • Perform other duties as assigned by the Government.
  • Ability to work efficiently and effectively in a dynamic and fast-paced environment.
  • Determine the clearest and most logical way to present information and instructions for greatest reader comprehension and write and edit technical information accordingly.
  • Meet with other Technical SMEs (Federal and Contractor) to ensure specialized topics are appropriately addressed, discussed, and understood.

Basic Qualifications

  • Bachelor's Degree in Information Technology, Computer Science, or related field or 10 years of overall experience.
  • Minimum of 5 years of experience as a Database Administrator for Oracle and / or Postg res databases in the federal government, including configuring databases to comply with Industry-Standard configuration baselines.
  • Database certification such as Oracle Database Administrator Certified Professional, Certified PostgreSQL Database Administrator, or similar.
  • 5 years of experience with Oracle and Postgres.
  • 5 years of experience in troubleshooting complex issues involving database security settings and engaging in complex root causes analysis.
  • 5 years of experience with cloud-based environments and cloud infrastructure.
  • 3 years of experience using Tenable.io, specifically to review scan results, search, and create custom reports.
  • 3 years of experience one or more of the following tools : tenable.io, Nexus IQ Server, Splunk Enterprise v 7.3 and higher, DoJ CSAM, JIRA / Confluence, CloudCheckr, PrismaCloud
  • General awareness of the NIST SP 800-37 Risk Management Framework.
  • Must have previous client-engagement experience.
  • Must be a US Citizen with suitable eligibility for Public Trust position.
  • Preferred Qualifications

  • Experience with other database types including, but not limited to Postgres, SQL Server, or mySQL preferred, but not required.
  • Previous experience supporting Department of Homeland Security federal clients preferred.
  • Working knowledge of secure configuration guidelines for Oracle databases, specifically CIS Benchmarks.
  • General awareness of the NIST SP 800-53, specifically as the controls apply to database security.
  • Ability to work independently and possesses a solid understanding of database and cyber security concepts.
  • Ability to communicate clearly and effectively via written and verbal communication in both formal and informal situations.
  • Ability to clearly articulate database-related weaknesses for the purpose of documenting POA&M descriptions.
  • Ability to clearly articulate remediation strategies and / or compensating controls specific to database weaknesses.
  • Ability to clearly communicate complex technical concepts to Information Technology Project Managers, Database Administrators, Application Developers, and Security Compliance Analysts, as well as non-technical POCs such as Branch Chiefs and Business System Owners.
  • Ability to adapt to frequent changes in priorities, follow project schedules, meet established deadlines, and proactively communicate risks and issues to the Contractor PM and / or Federal Leads.
  • Ability to adapt to an Agile environment and provide quality, professional deliverables in a short timeframe with little to no guidance from the Government.
  • Possess good listening skills and the ability to detect explicit and implicit needs and wants of the client.
  • Demonstrated ability to exercise good judgment, prioritize multiple tasks, and problem solve under pressure of deadlines and resource constraints.
  • Possess strong analytical and critical thinking skills with the ability to apply them to the client / contract workspace.
  • Evolver Federal is an equal opportunity employer and welcomes all job seekers. It is the policy of Evolver Federal not to discriminate based on race, color, ancestry, religion, gender, age, national origin, gender identity or expression, sexual orientation, genetic factors, pregnancy, physical or mental disability, military / veteran status, or any other factor protected by law.

    Actual salary will depend on factors such as skills, qualifications, experience, market and work location. Evolver Federal offers competitive benefits, including health, dental and vision insurance, 401(k), flexible spending account, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies.

    Job Posted by ApplicantPro

    serp_jobs.job_alerts.create_a_job

    Security Specialist • USA

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.new
    w2 Cybersecurity Engineer

    w2 Cybersecurity Engineer

    Kanak Elite Services IncUnited States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Only W2 Role : Cybersecurity Engineer Location : Remote Duration : 6-12 Months MOI : Video<...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    Cybersecurity Engineer

    Cybersecurity Engineer

    SierTeK Ltd.BY, USA
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    SierTeK proudly serves our clients by providing expertise in the Program Management, Information Technology, and Administrative Support domains. Founded in 2007 as a minority and service-disabled ve...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    IT Security Architect 4

    IT Security Architect 4

    QuantaleapUS
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    This role is hybrid candidate should be go onsite for initial days and should be in Virginia) Hi, Greetings from Quantaleap Inc. This side Reetu kalra from Quantaleap Inc, We have an excellent job o...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.new
    VDOT IT Security Analyst 3

    VDOT IT Security Analyst 3

    RICEFW Technologies IncUnited States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Maximum Vendor Submittal Rate is NA / hr.VDOT is seeking a highly motivated Security Analyst to support cybersecurity operations within the Operations Technology (OT) ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    AI Security Architect (USA / Remote)

    AI Security Architect (USA / Remote)

    MRINetwork JobsIndependence, KS, US
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    Company : Established and fast growing company in Healthcare industry.Position Type : Full time / Perm.Compensation : Up to 160K plus great benefits. This healthcare technology firm is transforming the...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Test Engineer

    Test Engineer

    MRINetwork JobsBartlesville, OK, US
    serp_jobs.job_card.full_time
    They are building multiple facilities across the U.We are in search of a Test Engineer for their site in the Bartlesville, OK area. We are seeking a highly skilled and motivated Battery Pack Test En...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Enterprise Data Platform Security Professional

    Enterprise Data Platform Security Professional

    Cloud Security ServicesUS
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    We are currently looking for an experienced Data platform security consultant for our client.Our client requires an experienced Data platform security consultant with excellent project management s...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Customs and Border Protection Officer - Experienced (GS9)

    Customs and Border Protection Officer - Experienced (GS9)

    U.S. Customs and Border ProtectionAltamont, KS, US
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Border Patrol Agent - Earn up to $30,000 in Recruitment Incentives

    Border Patrol Agent - Earn up to $30,000 in Recruitment Incentives

    U.S. Customs and Border ProtectionOchelata, OK, United States
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Joint Cybersecurity Analyst

    Joint Cybersecurity Analyst

    Emerging Tech, LLCUS
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Emerging Tech is seeking a Joint Cybersecurity Analyst to support the Federal Electronic Health Records Modernization (FEHRM) office. This role is ideal for a cybersecurity professional with experie...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.new
    IT Security Analyst - Richmond VA (Onsite)

    IT Security Analyst - Richmond VA (Onsite)

    Brandon Consulting Associates, Inc.United States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Cleint is seeking a highly motivated Security Analyst to support cybersecurity operations within the Operations Technology (OT) environment, with a specific fo...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    IT Security Analyst

    IT Security Analyst

    Sandy Hook Promise(Multiple States), US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    IT Security Analyst About Sandy Hook Promise Sandy Hook Promise (SHP) envisions a future where all children are free from school shootings and other acts of violence.As a national nonp...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.new
    VDOT IT Security Analyst 3

    VDOT IT Security Analyst 3

    Software Technology IncUnited States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Maximum Vendor Submittal Rate is $$$ / hr.VDOT is seeking a highly motivated Security Analyst to support cybersecurity operations within the Operations Technology (OT) ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.new
    VDOT IT Security Analyst 3

    VDOT IT Security Analyst 3

    Advanced American Technologies, IncUnited States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Maximum Vendor Submittal Rate $$.VDOT is seeking a highly motivated Security Analyst to support cybersecurity operations within the Operations Technology (OT) < / b...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    PAS Representative - Data File Group

    PAS Representative - Data File Group

    THE VOICE OF THE MARTYRSBartlesville, OK, US
    serp_jobs.job_card.full_time
    The Voice of the Martyrs is a non-profit, inter-denominational Christian organization dedicated to assisting the persecuted church worldwide. VOM was founded in 1967 by Pastor Richard Wurmbrand, who...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Federal Police Officer (Uniformed Division) $50,000 Recruitment Incentive

    Federal Police Officer (Uniformed Division) $50,000 Recruitment Incentive

    The United States Secret ServiceMound Valley, KS, United States
    serp_jobs.job_card.full_time
    NOTE : This position must be performed in Washington, DC so relocation to Washington, DC will be required.Submit your CV and any additional required information after you have read this description ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.new
    Cybersecurity Engineer

    Cybersecurity Engineer

    Akaasa TechnologiesUnited States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Role : Cybersecurity Engineer Remote Deloitte Duration : 6mo Job Description Domain Expertise serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    R&D Team Leader

    R&D Team Leader

    ABBBartlesville, OK, US
    serp_jobs.job_card.permanent
    At ABB, we are dedicated to addressing global challenges.Our core values : care, courage, curiosity, and collaboration - combined with a focus on diversity, inclusion, and equal opportunities - are ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30