Summary
True Zero Technologies, a veteran-owned small business, is seeking a Junior Cyber Security Analyst to support system security assessments of cloud-based, NIST-regulated systems. The role involves working with technical teams to deliver security documentation, support remediation of deficiencies, and ensure compliance with security controls.
Responsibilities
- Provide support for system security assessments of cloud-based, NIST-regulated systems
- Work with technical and functional teams to define, document, and deliver security documentation and artifacts that demonstrate compliance with required security controls
- Support the remediation and tracking of identified deficiencies and work with the Security team to support continuous diagnostic and monitoring programs as needed
- Support the security work stream within the system release/change management process
- Review planned system changes, help identify and document security impacts, help coordinate security scanning, testing, reporting as well as production readiness and post implementation support activities
- Implement, administer, and use cybersecurity tools, systems and applications; develop policies, standards, and guidelines to ensure secure enterprise-wise operations, performance and resiliency
- Deploy and secure security systems, application layer and traditional firewalls, vulnerability management and forensics utilities, and other infrastructure deployed and maintained by the Information Security Office
- Develop plans to safeguard information against unauthorized access modification, and destruction, and ensure organizational continuity of operations
- Monitor, research, and respond to cyber related events and incidents such as malicious code detection, intrusion, detection, system configuration, and patch management issues
- Conduct risk assessments, audits, and validate that system functionality, and security controls are implemented appropriately according to policy and industry best practices
- Conduct cybersecurity training and outreach organization-wide
Skills
- Implement, administer, and use cybersecurity tools, systems and applications; develop policies, standards, and guidelines to ensure secure enterprise-wise operations, performance and resiliency
- Deploy and secure security systems, application layer and traditional firewalls, vulnerability management and forensics utilities, and other infrastructure deployed and maintained by the Information Security Office
- Develop plans to safeguard information against unauthorized access modification, and destruction, and ensure organizational continuity of operations
- Monitor, research, and respond to cyber related evens and incidents such as malicious code detection, intrusion, detection, system configuration, and patch management issues
- Conduct risk assessments, audits, and validate that system functionality, and security controls are implemented appropriately according to policy and industry best practices
- Conduct cybersecurity training and outreach organization-wide
- BA or BS degree, or at least 4 years of experience in related field
- Minimum 1+ years supporting OR conducting federal system security assessments
- Minimum 1+ years developing formal security documentation
- Minimum 1+ years assessing and remediating security findings
- Minimum 1+ years exposure to the SDLC
- Minimum 1+ years experience with Release Management or Change Management
- Thorough knowledge of NIST SP 800-series security guidelines
- Active clearance, or ability and willingness to submit for a clearance may be required
- Approved to work in the United States
- Excellent written and oral communication skills
- Ability to work well in a team environment
Qualifications
Must Haves
- Implement, administer, and use cybersecurity tools, systems and applications; develop policies, standards, and guidelines to ensure secure enterprise-wise operations, performance and resiliency
- Deploy and secure security systems, application layer and traditional firewalls, vulnerability management and forensics utilities, and other infrastructure deployed and maintained by the Information Security Office
- Develop plans to safeguard information against unauthorized access modification, and destruction, and ensure organizational continuity of operations
- Monitor, research, and respond to cyber related evens and incidents such as malicious code detection, intrusion, detection, system configuration, and patch management issues
- Conduct risk assessments, audits, and validate that system functionality, and security controls are implemented appropriately according to policy and industry best practices
- Conduct cybersecurity training and outreach organization-wide
- BA or BS degree, or at least 4 years of experience in related field
- Minimum 1+ years supporting OR conducting federal system security assessments
- Minimum 1+ years developing formal security documentation
- Minimum 1+ years assessing and remediating security findings
- Minimum 1+ years exposure to the SDLC
- Minimum 1+ years experience with Release Management or Change Management
- Thorough knowledge of NIST SP 800-series security guidelines
- Active clearance, or ability and willingness to submit for a clearance may be required
- Approved to work in the United States
- Excellent written and oral communication skills
- Ability to work well in a team environment
Benefits
- Competitive salary, paid twice per month
- Best in class medical coverage
- 100% of medical premiums covered by True Zero
- Company wide new business incentive programs
- Contribution Incentives (i.e. white papers, blog posts, internal webinars, etc.)
- 3 weeks of PTO starting + 11 Paid Holidays Annually
- 401k Program with 100% company match on the first 4%
- Monthly reimbursement of Cell Phone and Home Internet costs
- Paternity/Maternity Leave
- Investment in training and certifications to broaden and deepen your technical skills