Cyber Technical Analyst

Posted 11 Hours Ago
Be an Early Applicant
Hiring Remotely in United States of America
Remote
101K-183K Annually
5-7 Years Experience
Information Technology • Software
The Role
The Cyber Technical Analyst will support cyber authorization and sustainment processes for the Military Health System, ensuring compliance with security frameworks, managing risk assessments, and overseeing information system security operations. Responsibilities include facilitating audits, maintaining documentation, and engaging with government stakeholders to uphold cybersecurity policies and practices.
Summary Generated by Built In

The DoD Healthcare Management System Modernization (DHMSM) Program is looking for a Cyber Authorization and Sustainment SME to join our cyber team in support of the continued development, sustainment, and deployment of the Military Health System (MHS) GENESIS system. MHS GENESIS is deployed globally to over 3700 locations at 138 Medical Treatment Facilities (MTFs), serving 190K users, providing 1100+ clinical workflows delivering medical electronic health record (EHR) capabilities for nearly 10M beneficiaries.

The Cyber Authorization and Sustainment SME will support the Cyber Authorization and Sustainment Lead (Authorization Lead) with all Risk Management Framework (RMF), Interim Authorization to Test (IATT), Authority to Operate (ATO), and Risk Assessment functions. Responsibilities include, but are not limited to, the following:

  • Provide cyber security support to the DHMSM EHR system and effectively support the review of systems architecture and technical documents from a cybersecurity perspective.

  • Provide technical planning, development, integration, verification, and validation support of systems.

  • Serve as key Information Assurance (IA) decision maker and responsible for the management and technical administration of the Information System (IS) per DHA/FISMA RMF.

  • Oversee the day-to-day information system security operations, provide solution to complex problems, and develop innovative solution to meet changing security requirements

  • Document compliance actions and develop Plan of Actions and Milestones (POA&M) to address non-compliance within the allotted timeframe. Regularly evaluate proposed changes or additions to the information system, and advise senior site leadership of security relevance to change.

  • Participate in internal/external security audits/inspections; perform risk assessments and Continuous Monitoring leading towards systems ATO/ATC.

  • Responsible for the management and enforcement of information security policies, conducting security and risk assessments using security frameworks (e.g., NIST-800-53, RMF, Common Criteria, etc.), mitigating risk via security controls, testing and evaluation to certify and accredit commercial security products.

  • As ISSO, Support the development of cyber documentation (SP, CM, SAP, POA&M, SAR) for submission to the DHMSM PMO and DoD Department of Health Agency (DHA) to attain system ATO/ATC.

  • Effectively engage with a variety of government stakeholders including the DoD-DHA Cyber Security Senior staff, including the AO, and ISSM, engineers in development of cyber security policies.

  • Provide support to the other DHMSM ISSOs supporting the Authorization Branch to ensure Authorization activities are properly coordinated inside of eMASS and on the program.

  • Support the Authorization Lead with all required RMF related tasks to support new and sustaining ATOs, Common Control Authorizations (CCA), and IATTs. 

  • Assist with the development of templates and recommendation of tools to support risk management and ATO activities.

  • Assist Authorization Lead in working with the Automation SME to determine manual processes that could be automated.

  • Provide pre-assessments for all Authorization and Assessments (A&A) systems in DHMSM utilizing DHA policy and eMASS as authoritative source for A&A. 

  • Identify requirements that are security critical and establish corresponding controls for these requirements

  • Periodically evaluate the effectiveness of information security controls and ensure operational security posture is maintained.

  • Support cybersecurity compliance assessment efforts by providing systems engineering and documentation support.

  • Ensure all DoD cybersecurity-related documentation is current and accessible to properly authorized individuals.

  • Ensure all users have requisite security clearances and access authorization.

Qualifications

  • BS degree and 8-12 years of prior relevant experience

  • US Citizen with Active Secret Clearance or higher – required. Contract requirement.

  • DoD 8570 Certification

  • Experience conducting network and network security assessments and documenting the results using NIST SP 800-53A, completing security plans and recommending Security Controls for Federal Information Systems

  • Experience documenting recommendations to correct security weaknesses resulting from security assessments and tracking implementation of corrective actions

  • Experience developing network security policies, system security documentation and procedures

  • Prior experience with DOD Accreditation and tools such as ACAS, eMASS, CMRS and HBSS

  • Knowledge of networks, cyber defense toolsets and processes. Strong understanding of related technologies such as: networking technologies, operating systems, and security related tactics, techniques, and procedures.

  • Excellent written and verbal communication skills and the ability to effectively interact and work with internal team members, vendors and clients.

  • Experience with DoD Information Assurance Vulnerability Management (IAVM) Program

  • Extensive experience as ISSO with DOD DHA Enterprise Mission Assurance Support Service (eMASS) tool and POAM management.

  • Experience with DISA scan tools such as HBSS and ACAS, STIG, in ensuring the sound security posture and configuration of DoD’s systems.

Preferred Qualifications

  • Minimum of 5 years’ hands-on experience on Defense Health Agency projects in a cybersecurity role.

  • Experience with DoD Military Health preferred

  • Scripting knowledge: PowerShell, Python, Shell Scripting

  • Experience with Oracle Cloud Infrastructure

  • Experience with Cloud Authorizations

Original Posting Date:2024-10-16

While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:Pay Range $101,400.00 - $183,300.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

The Company
Alexandria, VA
27,104 Employees
On-site Workplace

What We Do

We Are Leidos

For 50 years we have been tackling some of the biggest problems that face our nation and our world.

OUR MISSION
Through our culture of innovation and history of performance, we develop deep customer trust built on integrity and create enduring solutions that improve our world. Leidos is a science and technology solutions leader working to address some of the world’s toughest challenges in the defense, intelligence, homeland security, civil, and healthcare markets. The company’s 43,000 employees support vital missions for government and commercial customers. Headquartered in Reston, Va., Leidos reported annual revenues of approximately $11.09 billion for the fiscal year ended January 3, 2020.

Leidos was cited for the meaningful work employees perform that is challenging, impactful, and aligned with our customers’ missions as reasons professionals want to work and stay at our company. Leidos has also been named to lists including Forbes’ Best Employers for Diversity, Forbes’ America’s Best Employers for Women, Military Times Best for Vets Employers, and Ethisphere Institute’s World's Most Ethical Companies®.

Employees enjoy career enrichment opportunities available through mobility and development and experience rewarding relationships with supportive supervisors and talented colleagues and customers. Employees appreciate our flexible work environment, allowing for and encouraging a true work-life balance. Our professionals are also excited about our Employee Resource Groups, like the newly launched Collaborative Outreach with Remote and Embedded Employees (CORE), which strives to create an environment where every employee, regardless of location, feels fully engaged as a valued employee of Leidos.

Your most important work is ahead.

Jobs at Similar Companies

bet365 Logo bet365

Junior Sports Analyst

Digital Media • Gaming • Software • eSports • Automation
Denver, CO, USA
6100 Employees
55K-80K Annually

Silverfort Logo Silverfort

Sales Operations Analyst

Information Technology • Sales • Security • Cybersecurity • Automation
Remote
United States
357 Employees

Jobba Trade Technologies, Inc. Logo Jobba Trade Technologies, Inc.

Customer Success Specialist

Cloud • Information Technology • Productivity • Professional Services • Software
Hybrid
Chicago, IL, USA
45 Employees

Similar Companies Hiring

Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
357 Employees
bet365 Thumbnail
Software • Gaming • eSports • Digital Media • Automation
Denver, Colorado
6100 Employees
Jobba Trade Technologies, Inc. Thumbnail
Software • Professional Services • Productivity • Information Technology • Cloud
Chicago, IL
45 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account