
Multinational telecom company.
Senior Security Control Accessor (Government)
薪酬
$98,100 - $235,000
福利待遇
•医疗保险
•401k
•无限假期
•育儿假
•Learning Budget
•心理健康支持
必备技能
Security Control Assessment
Risk analysis
NIST 800 series knowledge
Cyber security
Compliance
Vulnerability assessment
CNSSI knowledge
RMF
XACTA
This position requires office presence of a minimum of 5 days per week and is only located at customer's site. No relocation is offered.
AT&T Global Public Sector is a trusted provider of secure, IP enabled, cloud-based, network solutions and professional services to the Federal Government. We are dedicated to recruiting, developing and empowering a diverse, high-performing workforce that is passionate about what they do, committed to our shared values and dedicated to our customers’ mission.
Our team supports the federal government leveraging the Enterprise Infrastructure Solutions (EIS) contract vehicle providing multiple and diverse solutions to streamline, simplify, reuse, rebuild, modernize, or enhance the government’s network. This includes professional services, design, engineering, system architecture, installation, monitoring, solutioning, etc. Our customers are widespread agencies in the public sector and intelligence communities.
AT&T has an opening for an Independent Accessor to support the Department of State in Washington, D.C. on a 10-year contract charged with performing independent Security Control Assessments (SCA) of all networks under the customers purview inclusive of Unclassified, Secret, & TS/SCI, etc.) The role is inclusive of reviews of all existing security system documentation, system security plans, current Plan of Action & Milestone (POA&M) and Contingency Plan (CP) while utilizing the automated scanning tools to ensure existing applicable policies and standards currently being used are within the Risk Management Framework (RMF) for National Security Systems. Candidate will be responsible for General Support Systems (GSS), major applications, minor applications, cross domain solutions and cloud instance. Expectations include not only maintaining but to improve, make professional recommendations to improve systems by ensuring confidentiality, integrity, and availability of the Bureau’s systems and network infrasturers.
Job Duties/Responsibilities:
Maintain the current systems while assessing areas of immediate improvement, short-term improvement, and long-term improvement.
Use XACTA or other methods deemed viable
Perform on-going/constant compliance and vulnerability scanning
Generate & articulate presentable findings for all levels of management, inclusive of Senior Government Officials and/or stakeholders
Maintain staffing strategy and approach providing the government with appropriately cleared IT security professionals where needed in SCA’s functions
Manage and maintain all systems which shall comply with Intelligence Community Directives (ICDs) and Standards (ICS), DOD and DOS compliance.
Create, maintain and provide a project plan to ensure a repeatable process for assessing systems and delivering standardized deliverable documentation
Must operate in a manner consistent with the Committee on National Security Systems (CNSSI) Instruction 1254, Risk Management Framework Documentation, Data Element Standards, and Reciprocity Process for National Security Systems (NSS), dated 8/31/2016 and ensure compliance with all appropriate Intelligence Community; National Institute of Standards and Technology (NIST); and Department of State policies, directives, and guidelines to include Intelligence Community Directives (ICD) and Standards (ICS).
Make recommendations regarding opportunities to enhance the security posture of all Department systems.
Ensure security is thoroughly incorporated into requirements, design, implementation, deployment, and operations and maintenance (O&M) of the agencies boundary and associated information system components.
Provide kick off meetings, using power point, create timelines, define actions being performed and make assignments.
Validate security controls to assure compliance
Serve as security knowledge expert as it pertains to confidentiality, integrity, and availability
Conduct evaluations, verification and analysis review of COTS/GOTS hardware/software for security flaws
Perform all applicable Compliance scans using the most current DOD Security Technical Implementation Guides (STIGs) and generate a clear concise report.
Perform all applicable Vulnerability Scans and generate a usable, clear, and concise report which could be used for senior level government management
Maintain and advanced familiarity with applicable STIGs, industry best practices and/or vendor specific practices for ensuring secure configurations – stay up to date with new technologies, including educating and briefing on new technological advancements.
Support testing environments well ahead of schedule for new technologies to be on the latest innovations with forward thinking and strategic future proofing.
Develop a Security Assessment Report (SAR) to be presented to Senior Leadership and Stakeholders – providing information on potential risks and solutions well in advance to assist with budgetary planning and implementation planning or testing.
Provide Weekly Status Report (WAR)
Ensure time off/PTO is updated and communicated at all times of staff members
Transition plan creation, submission, and performance
Comprehensive understanding of Cyber Security posture of the bureau
Maintain billable hours, provide burn rate reports, adhere to schedules
Required Clearance:
TS/SCI (#tssci)
Required Qualifications:
- Bachelors Degree in a field such as Information Systems, Computer Science, Engineering, Management Information’s Systems or related technical field AND 10+ years providing independent risk analysis, determining assessment criteria, and documented recommendations which became standard and/or actionable.
- Minimum 7+ years experience as a Security Control Assessor and/or related field
- Comprehensive knowledge of NIST 800 series, CNSSI, ICD’S, ICS’s, RMF and Operation Vulcan Logic (OVL).
- Expert knowledge of Cyber Security best practices
- Expert experience with authoritative risk determinations and recommendations critical for the Authorizing Official (AO) to grant an Authority to Operation (ATO).
- Evidence of independent risk assessments of assigned systems and an authorization recommendation
- Current active security certification – CISSP, CISA, CISM
- Other professional certifications a plus
Desired Qualifications:
- Strong client focus
- Strong presentation skills
- Ability to proactively network and establish relationships
- Be able to work in an office environment with other contractors and balance those relationships
Our Senior Security Control Accessor's earn between $98,100 - $235,000. Not to mention all the other amazing rewards that working at AT&T offers. Individual starting salary within this range may depend on geography, experience, expertise, and education/training.
Joining our team comes with amazing perks and benefits:
- Medical/Dental/Vision coverage
- 401(k) plan
- Tuition reimbursement program
- Paid Time Off and Holidays (based on date of hire, at least 23 days of vacation each year and 9 company-designated holidays)
- Paid Parental Leave
- Paid Caregiver Leave
- Additional sick leave beyond what state and local law require may be available but is unprotected
- Adoption Reimbursement
- Disability Benefits (short term and long term)
- Life and Accidental Death Insurance
- Supplemental benefit programs: critical illness/accident hospital indemnity/group legal
- Employee Assistance Programs (EAP)
- Extensive employee wellness programs
- Employee discounts up to 50% off on eligible AT&T mobility plans and accessories, AT&T internet (and fiber where available) and AT&T phone
Weekly Hours:
40
Time Type:
Regular
Location:
Chantilly, Virginia
It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made.
浏览量
0
申请点击
0
Mock Apply
0
收藏
0
相似职位

Senior Cloud Security Engineer - K8s
Datadog · New York, New York, USA

Sr Engineer - Endpoint Security
Target · 7000 Target Pkwy N,NCD-0375 Brooklyn Park,MN 55445

Cloud Security Engineer, Senior
Booz Allen Hamilton · Chantilly, VA

Senior Information Security Engineer
Leidos · Chantilly, VA

Staff Product Security Engineer
Rippling · Seattle, WA
关于AT&T

AT&T
PublicAT&T Inc., an abbreviation of its predecessor's original name, the American Telephone and Telegraph Company, is an American multinational telecommunications company headquartered at the Whitacre Tower in Downtown Dallas, Texas.
10,001+
员工数
Dallas
总部位置
$186.83B
企业估值
评价
10条评价
3.4
10条评价
工作生活平衡
3.2
薪酬
3.5
企业文化
3.8
职业发展
2.5
管理层
2.3
65%
推荐率
优点
Good benefits and health coverage
Flexible hours and work-life balance
Good pay and job security
缺点
Poor management and lack of direction
Limited career advancement opportunities
High stress levels
薪资范围
38个数据点
Senior
Senior · LEAD CYBERSECURITY
1份报告
$187,200
年薪总额
基本工资
$144,000
股票
-
奖金
-
$187,200
$187,200
面试评价
6条评价
难度
3.0
/ 5
时长
14-28周
面试流程
1
Application Review
2
Recruiter Screen
3
Technical Phone Screen
4
Onsite/Virtual Interviews
5
Final Interview
6
Offer
常见问题
Coding/Algorithm
Technical Knowledge
Behavioral/STAR
System Design
Past Experience
最新动态
5 Must-Read Analyst Questions From AT&T’s Q1 Earnings Call - StockStory
StockStory
News
·
1w ago
AT&T CEO offers 'first look' at multibillion-dollar Plano HQ - Dallas News
Dallas News
News
·
1w ago
AT&T Extends Home Internet Savings With $25 Off Internet Air for Eligible Customers - | Cord Cutters News
| Cord Cutters News
News
·
1w ago
Family’s phone lines switched to AT&T without their consent - FOX4KC.com
FOX4KC.com
News
·
1w ago