Responsibilities
- Participate in the information assurance security program, ensuring cyber activities, processes, and procedures meet defined requirements, policies, and regulations.
- Plan, design, evaluate complex and implement effective controls with various software tools to secure protected data and ensure cyber security compliance with relevant security frameworks and regulations. support the security governance technology deployments and configurations.
- Candidate should be able to provide GRC guidance and interpretation of rules, regulations, risks, and best practices.
- Connect business requirements with the functional capabilities of a GRC platform.
- Inspect information system configurations to verify compliance and work closely with system administrators and other security professionals to maintain accreditation status.
- Adaptability and the capability to stay current with evolving regulations and industry trends.
- Perform other duties as assigned.
- Manage multiple parallel tasks and priorities of customers and stakeholders, ensuring deadlines are met, while leveraging team member’s skills.
- Provide solutions to moderately complex problems that require analysis of largely identifiable factors.
Requirements
- Hands-on experience in Cyber Security Engineering
- Support for GRC (Governance Risk and Compliance) efforts
- Implementation of security measures to safeguard digital assets
- Building and maintaining complex technical projects involving GRC software solutions
- Collaboration with stakeholders, business analysts, process leaders, and architects in interpreting requirements and configuring risk remediation measures
- Participation in the information assurance security program
- Planning, designing, evaluating, and implementing effective controls with various software tools to secure protected data
- Ensuring cyber security compliance with relevant security frameworks and regulations
- Supporting security governance technology deployments and configurations
- Providing GRC guidance and interpretation of rules, regulations, risks, and best practices
- Connecting business requirements with the functional capabilities of a GRC platform
- Inspecting information system configurations to verify compliance
- Working closely with system administrators and other security professionals to maintain accreditation status
- Adaptability and capability to stay current with evolving regulations and industry trends
- Performing other duties as assigned
Nice to Have
- Ability to manage multiple parallel tasks and priorities of customers and stakeholders, ensuring deadlines are met, while leveraging team member’s skills
- Providing solutions to moderately complex problems that require analysis of largely identifiable factors
Work Arrangement
Hybrid
Additional Information
- Position is in the Information Technology Solutions Division (ITSD) within the LivIT Program in the Computing Directorate
- Position offers a hybrid schedule, blending in-person and virtual presence
- Flexibility to work from home one or more days per week
- Position will be filled at either level based on knowledge and related experience as assessed by the hiring team
- Additional job responsibilities will be assigned if hired at the SES.2 level