IT Security Architect - RiVi Consulting Group L.L.C
Richmond, VA 23173
About the Job
ON SITE REQUIRED: 4 days/week required until training is completed. Then there is some flexibility.
Manager wants to clarify: There is no specification (or timeline), but I would say several weeks if not months for the 4 days/week on site. On Site requirement changes once the mgr is comfortable/they believe the contractor is ready.
Please set this expectation with any potential candidates and make sure they can commit to this arrangement or do not submit them! Tks!
Parking is available on site for contractors
ABOUT THE ROLE
Security Architect IV to create System Security Plans for suppliers. The role involves conducting interviews with business units, analyzing responses to security controls, and ensuring compliance with COV SEC530 (NIST 800-53).
We are seeking a highly skilled and experienced Security Architect IV contractor to develop and write System Security Plans (SSPs) for various suppliers and enterprise applications. This critical role requires a deep understanding of security controls, risk management, and compliance requirements.
Key Responsibilities:
- Collaborate with business units to gather and analyze information for the creation of comprehensive System Security Plans (SSPs).
- Conduct interviews with key stakeholders to understand system components, operations, and security needs.
- Evaluate responses to security control questions and identify any gaps or areas requiring remediation.
- Ensure all systems meet the security and compliance requirements of COV SEC530, based on NIST 800-53 standards.
- Develop detailed documentation outlining security measures, risk assessments, and system vulnerabilities.
- Provide guidance on risk mitigation strategies and recommend security improvements.
- Assist in ensuring that enterprise applications and supplier systems comply with industry standards and regulatory requirements.
Qualifications:
- Proven experience in writing System Security Plans and conducting security assessments.
- In-depth knowledge of NIST 800-53, COV SEC530, and other relevant security frameworks.
- Strong understanding of risk management, security controls, and compliance processes.
- Excellent communication skills, with the ability to collaborate with cross-functional teams and business units.
- Ability to work independently and manage multiple projects simultaneously.
This is a contractor position offering an opportunity to contribute to the security and compliance efforts of the organization, ensuring the protection of sensitive data and infrastructure.