This is a rare opportunity to join a fast-growing team of information security experts as we transform, enhance, and expand the security program for one of the largest information technology providers in the world. You will support Federal Solutions Group supporting governance, risk, and compliance consulting services as well as security service delivery across one or more US-based industries. The successful candidate will have a broad knowledge of current security practices as well as the ability to identify and apply legal, regulatory, and industry-specific security requirements. You will help our clients define and deploy effective security solutions and strategies while addressing ever-changing regulatory and industry compliance challenges. You must be able to collaborate with a variety of technical and management disciplines including infrastructure and security architecture, security operations, application development, project managers, product owners, and others.
This position can be located at any CGI office in the U.S, preferred location is Knoxville, Tn; however, a hybrid working model is acceptable.
The responsibilities of the Information Systems Security Officer include, but are not limited to:
Support the Information System Security Manager in providing and maintaining the below:
Maintain operational security posture for an information system or program to ensure information systems security design, implementation, management and review of policies, standards, baselines, procedures, and guidelines are established and followed. Understand the business functions to help ensure business is conducted as securely as possible.
Create and review documentation to support Systems Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and Client Responsibility Matrix (CRM)
Identify, manage and monitor POA&Ms, assisting Business Units or Clients in improving the quality and effectiveness of their POAMs. Provide guidance through remediation as well as develop corrective action plans for each POA&Ms.
Provide continuous monitoring and event-driven monitoring management services to include running adhoc or on demand scanning of project teams environment. Identify assets and associated vulnerabilities and provide recommendations for remediation. Ensure audit records and event logs are collected, reviewed, and documented (to include any anomalies) Document security breaches and assess their damage.
Provide configuration management (CM) for information system security software, hardware, and firmware; manage changes to system and assess the security impact of those changes.
Work with multiple teams and client project team members and establish and maintain a strong customer-focused working relationship. Assist the System Owner operate the system as securely as possible to fulfill mission requirements.
Establish and maintain regular written and in-person communications with the organization's executives, department heads and end users regarding pertinent security activities.
Keep up to date with developments in IT
Education or Experience:
High School Diploma and four (4) years of relevant experience
Cyber Information Security Analysis
Experience with FedRAMP and NIST compliance
Experience with cloud security for Google, and Azure environments
Experience with web application scanning tools and translating results into actionable tasks
Experience with network architecture concepts, common ports and protocols, and network monitoring tools
Experience with writing clear and concise technical documents specifically policies, processes, and procedural documentation
Experience with Cloud Native Security Tool
Experience with container security tools
Organizational skills and the ability to work autonomously or under supervision with attention to detail and processes
Experience with NIST 800-53 Rev 5 Agency ATO process and documentation
Direct experience with certification and accreditation techniques and methodologies
Desired qualifications/non-essential skills required:
Security+, Project+, or another Cybersecurity Industry Certification
CGI is required by law in some jurisdictions to include a reasonable estimate of the compensation range for this role. The determination of this range includes various factors not limited to skill set, level, experience, relevant training, and licensure and certifications. To support the ability to reward for merit-based performance, CGI typically does not hire individuals at or near the top of the range for their role. Compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range for this role in the U.S. is $69,700.00 - $137,100.00.
CGI Federal's benefits are offered to eligible professionals on their first day of employment to include:
Competitive compensation
Comprehensive insurance options
Matching contributions through the 401(k) plan and the share purchase plan
Paid time off for vacation, holidays, and sick time
Paid parental leave
Learning opportunities and tuition assistance
Wellness and Well-being programs
#CGIFederalJob
#LI-JK6
Together, as owners, lets turn meaningful insights into action.
Life at CGI is rooted in ownership, teamwork, respect and belonging. Here, youll reach your full potential becauseIf an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Lead innovative security architecture for Boston Consulting Group as a Director in Atlanta, ensuring robust, cloud-first strategies and solutions.
The University of Alabama seeks a skilled IT Manager to enhance technology strategy and implementation for college programs remotely.
We're looking for a seasoned Data Center Area Security Manager to bolster our security measures at Google’s data centers in Texas.
Be a part of Palo Alto Networks' mission to reshape cybersecurity by joining as a Technical Specialist for DLP & SaaS.
Seeking a detail-oriented Mulesoft Production Support Specialist to maintain the efficiency of our integration platform in a fully remote role.
Join Peraton as a Program Information System Security Officer Lead, driving critical cybersecurity efforts for essential government programs.
As a Senior Application DBA at Node.Digital, you'll leverage your expertise in PostgreSQL and cloud-based environments to ensure robust database performance and reliability.
Make a significant impact at Alexion as a Generative AI Engineer by developing innovative AI solutions in a collaborative environment.
Join Arrow Electronics as an Application Engineer to leverage your expertise in software development and Oracle applications in a dynamic environment.
Join SQLI Group as a Microsoft Dynamics 365 Technical Expert and play a crucial role in optimizing business processes while training teams on best practices.
Be a pivotal part of Sedgwick's IT team as the Mgr IT Applications, driving technological solutions in a supportive work environment.
Join Peraton as an Information System Security Engineer to play a critical role in safeguarding national security through advanced IT solutions.
Join Northrop Grumman as a Principal Enterprise-Wide Applications Analyst, where you'll influence the future of technology with your expertise in timekeeping and labor processing.
To serve as trusted advisors to our clients, delivering insights they can act on to achieve meaningful and sustainable outcomes.
137 jobsSubscribe to Rise newsletter