Job Title: IT Security Architect IV
Client: Virginia Information Technology Agency (VITA)
Location: Richmond VA 23225
Job Type: Contractor (Onsite required 4 days/week until training is complete then flexibility available)
Parking: Available onsite for contractors
Position Overview:
The Virginia Information Technology Agency (VITA) is seeking an experienced IT Security Architect IV to join their team in Richmond VA. This contractor role is crucial in developing System Security Plans (SSPs) for various suppliers and enterprise applications ensuring compliance with the COV SEC530 security framework and NIST 80053 standards.
Key Responsibilities:
- System Security Plans (SSP) Development: Lead the creation and documentation of SSPs for various enterprise systems and suppliers by gathering analyzing and synthesizing information from business units.
- Collaboration: Conduct interviews with business unit stakeholders to understand system components security operations and specific security requirements.
- Security Control Evaluation: Assess responses to security control questions identifying any gaps or areas of concern that need remediation.
- Compliance Assurance: Ensure all systems align with the COV SEC530 and NIST 80053 standards and provide guidance on necessary adjustments to meet compliance.
- Documentation: Develop and maintain detailed documentation outlining the security measures in place risk assessments potential vulnerabilities and any mitigation strategies.
- Risk Mitigation Guidance: Recommend appropriate risk mitigation strategies based on identified vulnerabilities and assist teams in prioritizing security improvements.
- Stakeholder Communication: Provide clear communication with internal teams ensuring alignment between security measures business operations and compliance standards.
Qualifications:
- Experience: Proven experience in developing System Security Plans (SSPs) and conducting comprehensive security assessments for enterprise systems.
- Knowledge of Security Standards: Indepth knowledge of NIST 80053 COV SEC530 and other related security frameworks and regulations.
- Risk Management Expertise: Strong understanding of risk management processes security controls vulnerability assessments and compliance workflows.
- Communication Skills: Excellent verbal and written communication skills with the ability to work effectively with crossfunctional teams and stakeholders.
- SelfManagement: Ability to manage multiple projects independently and prioritize tasks to meet deadlines.
- Collaboration: Demonstrated ability to collaborate with various business units and technical teams facilitating alignment between security objectives and operational requirements.
"If you are: bright motivated skilled a differencemaker able to get things done work with minimum direction enthusiastic a thinker able to juggle and multitask communicate effectively and lead then we would like to hear from you. We need exceptionally capable people for this role for our client so get back to us and tell us why you think you are a fit."
About Us:
Knowledge of Security Standards: In-depth knowledge of NIST 800-53, COV SEC530, and other related security frameworks and regulations. Compliance Assurance: Ensure all systems align with the COV SEC530 and NIST 800-53 standards and provide guidance on necessary adjustments to meet compliance. Proven experience in developing System Security Plans (SSPs) and conducting comprehensive security assessments for enterprise systems.
Education
Bachelor degree and higher degree