Security Specialist-Skill Level 4
Overall Assignment Description: Information Management / Technical (U)
Support Duties may include:
• (U) Provide technical database management and administration support to effectively and efficiently manage the security databases.
• (U) Develop a training plan to teach new and existing staff the day-to-day elements of the security database
• (U) Maintain and update the database by continuous day-to-day update of content, and ensuring accurate and adequate security measures are in place to safeguard government and contractor sensitive and priority data.
• (U) Prepare and maintain all SOPs and research and prepare policies and procedures for NGA SIS.
• (U) Analyze and review security files and provide security file maintenance support.
• (U) Coordinate with database administrators and system engineers to populate the security database for NGA.
• (U) Maintain and support a comprehensive understanding of the continuity of operations for NGA, SIS.
• (U) Design report capabilities to maintain and deliver sensitive security metrics and statistics and provide associated briefings.
• (U) Design and develop report capabilities, generate reports containing security metrics and other statistical information; and further prepare and present briefings on security database operations, and metrics.
• (U) Design, develop and maintain Security related websites, emails, SharePoint sites and other technology-related platforms.
• (U) Skills and Experience:
Required:
• (U) Demonstrate experience with Administrative information Technology (IT) capabilities including SharePoint, and Microsoft suite products.
• (U) CompTIA Security+ certified
Desired:
• (U) Bachelor’s Degree or equivalent experience in a related field to security engineering
• (U) Minimum of 3-6 years of experience
• (U) Experience in assessing systems using NIST 800-53 and DISA, Defense Information Systems Agency(DISA) Security Technical Implementation Guides (STIGs)and Security Requirements Guide (SRG) Department of Defense (DOD) 8070/8140 Compliant
• (U) Efficient with Risk Management Framework Package development, including Plan Of Action Milestone (POAM) (mitigation statements) Security plans, Risk assessment system/site policies, procedures and processes, architecture.