SUMMARY:
The Cybersecurity Engineer is responsible for cyber security assessment, continuous monitoring, vulnerability and penetration testing activities to support the Company's NIST 800-53 program. Detects security threats, conducts detailed and comprehensive investigations and drives issues to remediation and closure.
ESSENTIAL FUNCTIONS:
The incumbent should be able to perform all of the following functions at a pace and level of performance consistent with the job performance requirements.
Detects and responds to advanced threats, actor techniques, anomalous or suspicious activity to identify potential and active risks to systems and data. Investigates incidents, provides resolution, or makes recommendations for corrective action or enhancement to security systems and controls as needed.
Stays current on emerging vulnerability and threat trends and correlates these threats against systems and data under NIST 800-53 guidelines.
Performs assignments involving cyber security governance, policy, and process review/redesigns across the IT enterprise.
Assists in the implementation of security policies/requirements to support the NIST Cybersecurity Framework (CSF) and make recommendations in terms of accepting, mitigating and escalating risk.
Stays current on all aspects of cybersecurity and applies technical application security testing expertise to assist in identifying weaknesses and vulnerabilities that affect the confidentiality, integrity and availability of corporate protected, sensitive and confidential company information and data.
Recommends new capabilities and efforts to improve the effectiveness of a continuous monitoring program and assists with developing and maintaining plans of action and milestones (POA&M).
Collaborates on security issues related to systems and workflows ensuring internal security controls for business operations are in place and adhere to applicable InfoSec regulations. Serves as an internal consultant to various levels of management and facility leadership regarding emerging technologies.
Follows and adheres to defined processes, policies and change-management procedures.
QUALIFICATIONS:
Vaco Technology
Atlanta Georgia
United States
Information Technology
(No Timezone Provided)
SUMMARY:
The Cybersecurity Engineer is responsible for cyber security assessment, continuous monitoring, vulnerability and penetration testing activities to support the Company's NIST 800-53 program. Detects security threats, conducts detailed and comprehensive investigations and drives issues to remediation and closure.
ESSENTIAL FUNCTIONS:
The incumbent should be able to perform all of the following functions at a pace and level of performance consistent with the job performance requirements.
Detects and responds to advanced threats, actor techniques, anomalous or suspicious activity to identify potential and active risks to systems and data. Investigates incidents, provides resolution, or makes recommendations for corrective action or enhancement to security systems and controls as needed.
Stays current on emerging vulnerability and threat trends and correlates these threats against systems and data under NIST 800-53 guidelines.
Performs assignments involving cyber security governance, policy, and process review/redesigns across the IT enterprise.
Assists in the implementation of security policies/requirements to support the NIST Cybersecurity Framework (CSF) and make recommendations in terms of accepting, mitigating and escalating risk.
Stays current on all aspects of cybersecurity and applies technical application security testing expertise to assist in identifying weaknesses and vulnerabilities that affect the confidentiality, integrity and availability of corporate protected, sensitive and confidential company information and data.
Recommends new capabilities and efforts to improve the effectiveness of a continuous monitoring program and assists with developing and maintaining plans of action and milestones (POA&M).
Collaborates on security issues related to systems and workflows ensuring internal security controls for business operations are in place and adhere to applicable InfoSec regulations. Serves as an internal consultant to various levels of management and facility leadership regarding emerging technologies.
Follows and adheres to defined processes, policies and change-management procedures.
QUALIFICATIONS: