Principal Security Specialist
Company Description
Infojini Consulting is a full service IT consulting, services, and staffing firm with offices in Linthicum Heights ,Maryland, Washington, DC and Mumbai, India.
Infojini Consulting is recognized as one of the fastest growing IT services and software development Companies. With a partnership of all major technology vendors, Infojini Consulting has built a strong Government and commercial customer base including fortune 100 companies and most state and federal agencies such as State of North Carolina, State of South Carolina, State of Maryland, State of California, State of Pennsylvania, State of Virginia, State of Washington and many others.
Infojini Consulting is an equal opportunity employer and considers all qualified individuals for employment irrespective of their race, gender, age, color, sexual orientation. We offer an excellent compensation package
Job Description
We are looking for Principal Security Specialist in Arlington, VA for 3+ years contract position.
Please refer someone else if you are not available at this time or you are not right match for this job opportunity. We have great Referral Bonus up to $2500!!! Please don't miss to refer someone who are looking for projects.
Job details mentioned below:
Job Title: Principal Security Specialist
Location: Arlington, VA
Duration: 3+ years
Duties include but are not limited to:
Perform Security Assessments and Technical Security Reviews (TSR) for classified and unclassified systems;
Ensure adherence to the DHS Systems Engineering Lifecycle (SELC) and Change Management (CM) principles;
Develop and update testing procedures, Rules of Engagement (RoE) and security assessment scripts;
Review output from existing vulnerability assessment tools (Nessus, AppDetective, etc.) to validate findings and identify false positives;
Identify security risks, threats and vulnerabilities;
Use NIST SP800-53 (Rev 3 and 4) and DHS 4300A/B controls for testing the security controls within the C&A phase;
Review security controls using manual processes and automated tools;
Create, review, edit System Security Plans (SSP);
Perform Risk Analysis;
Work with ISSOs, developers, and System Owners on the assessment of systems under test;
Develop Security Assessment Reports (SAR)
Required:
Eligible for Secret, Top Secret or DHS/OBIM/NPPD Clearance
B.S. from an accredited institution in a Technical or Engineering related discipline. Relevant experience can be substituted in lieu of a degree.
Five (5) plus years of experience in IT Security with relevant security assessment planning and execution including use of automated assessment tools (Nessus, AppDetective, WebInspect, Core Impact, etc.)
In-depth knowledge of and experience in applying: OMB, DHS 4300A/B, FIPS, NIST SP-800 series standards; related Federal IT security mandates and best practices; and agency specific policies and directives derived from such
Excellent written and verbal communication skills
Excellent interpersonal skills
Preferred:
Active Secret, Top Secret or DHS Clearance
DHS Agency or other Component experience
CISSP, CISA or GIAC Certification
Telos Xacta IA Manager experience