Teracore is a Service Disabled Veteran Owned Small Business (SDVOSB) classified management consulting and information technology services firm. We are committed to creating and maintaining a corporate environment and culture that promotes long-term employment. Diverse talents help us to achieve the missions and objectives of our customers. We hope we can partner together to achieve those goals.
Project Background:
Support the government in providing an enterprise-wide Security Risk Management program. Responsible for supporting the security and resilience of critical IT functions and business processes and for those system assets classified as needing to meet FISMA requirements as well as additional Security Risk Management analysis.
Position Description:
- Manage, coordinate, and facilitate a team in the execution of the following assessment programs:
- Annual Security Controls Assessment Program
- Security Assessment and Authorization
- Event-Driven Security Controls Assessment
- Manage the program optimal planning and design of their assessment strategy
- Guide/execute assessments and create accurate and complete artifacts and final deliverables with the collaboration of the government
- Validate the deliverables and submit them to the PM for final review, sign-off, and submission to the government
- Provide advisory consultation to government personnel on the optimal application of this assessment that leads to future FISMA Compliance initiatives
Required Skills:
- BS preferred with education/certifications pertaining to security assessments:
- Knowledge of FISMA, NIST Special Publications, OMB, Risk Management Framework (RMF), and Information Security Continuous Monitoring (ISCM) Plan development
- IT security knowledge with desired Professional Certifications from (ISC)2, ISA, PMI, CompTIA, SANS
- Knowledge and experience with technology risk assessments covering web services, network appliances and software
- Knowledge and experience with System Development Lifecycle (SDLC)
- Min 5 years Team Lead experience, experience in monitoring and overseeing multiple tasks concurrently lasting 4-6 months long
- Knowledge of the following Security engineering principles, to include:
- Developing layered protections
- Establishing sound security policy, architecture, and controls as the foundation for design
- Incorporating security requirements into the system development life cycle
- Delineating physical and logical security boundaries
- Ensuring that system developers are trained on how to build secure software
- Tailoring security controls to meet organizational and operational needs
- Performing threat modeling to identify use cases, threat agents, attack vectors, and attack patterns as well as compensating controls and design patterns needed to mitigate risk
Desired Skills:
This is a 5 year, fully remote contract. If you’re interested in partnering with Teracore, let’s chat. We look forward to discussing the details with you.
At Teracore, we support, depend and thrive on differences for the benefit of our associates and customers. Teracore is an equal opportunity employer. Employment decisions are based solely on a person's merit and professional qualifications directly related to job competence.
More Information on Teracore
Teracore operates in the Consulting industry. The company is located in Washington, DC. Teracore was founded in 2002. It has 72 total employees.