Intel IT Security Manager

Guidehouse
Reston, VA, US
Full-time

Job Family :

IT Risk & Controls Consulting

Travel Required : None

None

Clearance Required :

Active Top Secret SCI (TS / SCI)

What You Will Do :

Responsibilities include some or all of the following :

Leading a team of IT security auditors performing IT risk and controls assessments

Performing rigorous assessments of IT controls using industry-standard guidance and leading practices

Performing walkthrough interviews and maintaining communication with a variety of client stakeholders, including system personnel such as system and database administrators

Requesting, obtaining, reviewing, and analyzing a variety of artifacts to assist in executing IT controls testing such as security plans, SOPs, system screenshots, and system configuration settings

Evaluating the design and operating effectiveness of IT controls using provided artifacts, industry-standard guidance, leading practices, and professional judgement

Documenting the results of IT controls test work in a consistent and high-quality manner that would allow a reviewer to repeat the test and reach the same conclusion

Summarizing and communicating IT controls assessment results to a variety of client stakeholders, including senior leadership personnel

Planning and executing day-to-day activities of IT controls assessments individually and for the team

Working with client personnel to understand and analyze known IT control weaknesses, identify root causes, and develop detailed, robust remediation plans

Providing subject matter expertise to client personnel on all matters relating to IT controls and responding to ad-hoc IT controls requests from client personnel

What You Will Need :

ACTIVE and CURRENT TOP SECRET / SCI federal security clearance MUST obtain COUNTERINTELLIGENCE (CI) Polygraph

Bachelor's of Science or Bachelor's of Arts Degree

At least FOUR (4) years of experience providing IT consulting services focused on IT Risk and Controls

Experience in consulting with the federal government to include senior government clients

Understanding and knowledge of federal information security and assurance laws, requirements, and guidance (i.e. FISMA, NIST SP 800, FISCAM)

What Would Be Nice To Have :

An ACTIVE and CURRENT TOP SECRET / SCI federal security clearance with COUNTERINTELLIGENCE (CI) Polygraph

Individual should demonstrate knowledge and experience in IT risk and controls through IT audits, IT control assessments, and IT security reviews.

It is desired that individual maintains a relevant certification such as the Certified Information Systems Auditor (CISA) or is eligible to attain certification.

Individual should demonstrate a working knowledge of FISMA, NIST SP 800 series, FISCAM, and other relevant Federal information assurance laws, regulations, and guidance.

Experience performing FISMA, OMB Circular A-123, or similar internal control assessments is preferred. Experience remediating and implementing IT controls is beneficial.

At least six (6) years experience testing or remediating the following IT controls topic areas is preferable :

Access and account management, including authorization, provisioning, recertification, and separation

Segregation of duties, including identifying and defining segregation of duties risks and conflicts, preventive and detective segregation of duties controls, and understanding the difference between segregation of duties and least privilege

Technical account management controls, such as password length, complexity, and expiration

Audit logging and monitoring, including generation of audit logs, use of audit log aggregation and analysis tools, and audit log monitoring and review

Configuration management, including configuration baseline concepts, baseline deviations, baseline maintenance, monitoring for ongoing compliance with a baseline, and industry-accepted baselines such as DISA STIGs and CIS benchmarks

Change management, including authorization, development, testing, and deployment of changes

Contingency planning, including backups, testing of backups, and alternate sites

What We Offer :

Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.

Benefits include :

Medical, Rx, Dental & Vision Insurance

Personal and Family Sick Time & Company Paid Holidays

Position may be eligible for a discretionary variable incentive bonus

Parental Leave and Adoption Assistance

401(k) Retirement Plan

Basic Life & Supplemental Life

Health Savings Account, Dental / Vision & Dependent Care Flexible Spending Accounts

Short-Term & Long-Term Disability

Student Loan PayDown

Tuition Reimbursement, Personal Development & Learning Opportunities

Skills Development & Certifications

Employee Referral Program

Corporate Sponsored Events & Community Outreach

Emergency Back-Up Childcare Program

Mobility Stipend

30+ days ago
Related jobs
Promoted
Booz Allen Hamilton
Herndon, Virginia

We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page. Experience in a flexible environment interacting with IT executives, business product owners, developers, and functional managers. With an array of busi...

Promoted
AT&T
Chantilly, Virginia

It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital ...

Promoted
Booz Allen Hamilton
McLean, Virginia

We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page. Ability to perform in a high paced work environment with multiple competing priorities. With an array of business resource groups and other opportunitie...

Promoted
ManTech
Herndon, Virginia

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access. For all positions requiring access to technology/software source code that is subject to export control laws, emplo...

Promoted
Arcfield
Fairfax, Virginia

Providing oversight and guidance during requirements definition activities, technical assessments and product evaluations, project verification and validation, IT system administration, hardware and software support, concept development activities, testing and deployment activities, transition facil...

Promoted
ManTech
Chantilly, Virginia

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access. For all positions requiring access to technology/software source code that is subject to export control laws, emplo...

Promoted
V2X
Springfield, Virginia

Industry-standard IT Asset Management certification, such as Certified Asset Management Professional (CAMP), Certified Software Asset Manager (CSAM), Certified Hardware Asset Management Professional (CHAMP), IT Asset Management Foundation Certification, IT Asset Management Essentials, or Certified O...

Promoted
Somatus - Revolutionizing Kidney Care
McLean, Virginia

The Project Manager, Security & IT Operations will be responsible for monitoring and analyzing the operations project. This position will partner with the IT project management team to lead and manage IT projects. Duties, responsibilities, and activities may change at any time with or without no...

Guidehouse
Reston, Virginia

Individual should demonstrate knowledge and experience in IT risk and controls through IT audits, IT control assessments, and IT security reviews. Audit logging and monitoring, including generation of audit logs, use of audit log aggregation and analysis tools, and audit log monitoring and review. L...

EMCOR Group Inc.
McLean, Virginia

The Regional Security & Compliance Manager position reports to the ECS Director of IT and works closely with the ECS Security & Compliance Manager and the EMCOR Security & Compliance Team. Security & Compliance - Provide support and guidance to ECS HQ and ECS Operating Companies (OpCos) to ensure co...