Job Title: Security Architect IV to create System Security Plans for suppliers.
Location: Richmond VA (Hybrid)
Duration: 612 Months with possible extension
ON SITE REQUIRED: 4 days/week required until training is completed. Then there is some flexibility.
Manager wants to clarify: There is no specification (or timeline) but I would say several weeks if not months for the 4 days/week on site. On Site requirement changes once the mgr is comfortable/they believe the contractor is ready.
Please set this expectation with any potential candidates and make sure they can commit to this arrangement or do not submit them! Tks!
ABOUT THE ROLE Security Architect IV to create System Security Plans for suppliers. The role involves conducting interviews with business units analyzing responses to security controls and ensuring compliance with COV SEC530 (NIST 80053). We are seeking a highly skilled and experienced Security Architect IV contractor to develop and write System Security Plans (SSPs) for various suppliers and enterprise applications. This critical role requires a deep understanding of security controls risk management and compliance requirements.
Key Responsibilities:
- Collaborate with business units to gather and analyze information for the creation of comprehensive System Security Plans (SSPs).
- Conduct interviews with key stakeholders to understand system components operations and security needs.
- Evaluate responses to security control questions and identify any gaps or areas requiring remediation.
- Ensure all systems meet the security and compliance requirements of COV SEC530 based on NIST 80053 standards.
- Develop detailed documentation outlining security measures risk assessments and system vulnerabilities.
- Provide guidance on risk mitigation strategies and recommend security improvements.
- Assist in ensuring that enterprise applications and supplier systems comply with industry standards and regulatory requirements.
Qualifications:
- Proven experience in writing System Security Plans and conducting security assessments.
- Indepth knowledge of NIST 80053 COV SEC530 and other relevant security frameworks.
- Strong understanding of risk management security controls and compliance processes.
- Excellent communication skills with the ability to collaborate with crossfunctional teams and business units.
- Ability to work independently and manage multiple projects simultaneously.
This is a contractor position offering an opportunity to contribute to the security and compliance efforts of the organization ensuring the protection of sensitive data and infrastructure.
Required/Desired Skills
Skill | Required /Desired | Amount | of Experience |
Solid Sr level IT Security Experience | Required | 7 | Years |
Security Architecture Design & Implementation. Exp writing System Security Plans and conducting security assessments | Required | 5 | Years |
Compliance & Regulatory Knowledge. Indepth knowledge of NIST 80053 and other relevant security frameworks to ensure compliance with COV SEC530 | Required | 4 | Years |
Collaboration & CrossFunctional Coordination | Required | 2 | Years |