Computer Security Specialist
CurrentSupporting the company across various projects evaluating risks and developing security standards, procedures, and controls to manage that risk, with a mindset of continuous process improvement. Supported consultations for preestablished patterns and assists with the more complex engagements. Assisted other team members in threat modelling, risk identification and mitigation strategies, control documentation, evaluation of control design, evaluation of control operation, reporting of control… Show more Supporting the company across various projects evaluating risks and developing security standards, procedures, and controls to manage that risk, with a mindset of continuous process improvement. Supported consultations for preestablished patterns and assists with the more complex engagements. Assisted other team members in threat modelling, risk identification and mitigation strategies, control documentation, evaluation of control design, evaluation of control operation, reporting of control deficiencies, and remediation strategies. Reviewing and documenting processes, designs and documents controls and testing procedures.•Assist in the development and implementation of security policies, procedures.•Coordinate along with the client lead and the Program of Record (PoR) PM assigned Authority to Operate (ATO) efforts and make recommendations to improve the processes. •Support security testing and analysis of Information Management/Information Technology (IM/IT) capability requests (applications, systems, networking devices) being introduced to the enterprise •Analyze general Cybersecurity-related technical problems and provides basic engineering and technical support in solving these problems. •Ensure that all information systems are functional and secure.•Serves as Alternate Information Systems Security Officer (ISSO) with responsibility for assisting the client ISSO in the execution of the duties and responsibilities ISSO.•Monitor and assess (using automated Security Incident and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), and Endpoint Detection and Response (EDR) tools) effectiveness.•Responsible for collecting and maintaining data needed for cyber reporting on vulnerability and compliance reporting to the ISSO.•Provide high-level, weekly/monthly vulnerability management briefings and dashboards across multiple platforms and cloud environments for review by senior management. Show less