Cybersecurity Team Lead
Company
Spry Methods, Inc.
Location
Remote
Type
Full Time
Job Description
Who We’re Looking For (Position Overview):
Spry Methods is looking for an experienced Cybersecurity Team Lead to manage a medium-size team of professional analysts to support the Department of Transportation (DoT) Federal Railroad Administration (FRA). The Team Lead will manage a variety of cybersecurity program support activities and serve as the primary source of contact for the government/customer. This position is remote work with limited potential for travel.
What Your Day-To-Day Looks Like (Position Responsibilities):
- Daily responsibilities include, but are not limited to the following:
- Oversee the daily activities of the cybersecurity analysts.
- Assign tasks, set priorities, and ensure efficient workflow.
- Conduct regular team meetings to discuss progress, challenges, and updates.
- Plan and execute security assessments.
- Review assessment reports and provide guidance on remediation.
- Collaborate with other teams (e.g., development, operations) to address findings.
- Monitor security controls and compliance with policies and standards.
- Review security logs and alerts.
- Investigate incidents and coordinate response efforts.
- Ensure timely reporting to management and stakeholders.
- Identify and assess risks related to systems, applications, and processes.
- Develop risk mitigation strategies and action plans.
- Work with stakeholders to implement risk controls.
- Develop and update security policies, standards, and procedures.
- Ensure alignment with industry best practices and regulatory requirements.
- Provide guidance and mentorship to analysts.
- Arrange training sessions to enhance team skills.
- Collaborate with vendors for tool evaluations.
- Engage with business units and other teams to address security needs.
- Track key performance indicators (KPIs) for the team.
- Prepare regular reports for management and executive leadership.
What You Need to Succeed (Minimum Requirements):
- Certified Information System Security Professional (CISSP).
- Certified in Governance, Risk and Compliance (CGRC) certification.
- Certified Information Privacy Professional (CIPP)
- Certified Cloud Security Professional (CCSK) and other Cloud Certification as appropriate.
- 5-8 years direct experience managing medium sized teams.
- Public Trust
- Experience drafting FISMA related artifacts to include: system security plans, incident response plans, configuration management plan, FIPS 199, digital identity risk assessments, security impact analysis, contingency plan, security assessment plans and reports, Plan of Action and Milestones (POA&M), and training materials.
- Experience in applying NIST Special Publications to information systems.
- Experience with performing information system continuous monitoring of security controls to ensure that they continue to be implemented correctly, operating as intended and producing the desired outcome with respect for meeting the security requirements.
- Knowledge of cybersecurity tools such as: Tenable, Qualys, Governance Risk Compliance (GRC) tools (e.g. CSAM).
- Experience conducting security assessments and/or audits.
Ideally, You Also Have (Preferred Qualifications):
- PMP certification.
- 8+ years experience supporting federal organizations Cybersecurity programs.
Date Posted
11/08/2024
Views
0
Similar Jobs
Account Manager, Care Partnerships - Headway
Views in the last 30 days - 0
Headway a mental health care company founded in 2019 aims to revolutionize mental healthcare by building a national network of providers accepting ins...
View DetailsDirector of Pricing - Garner Health
Views in the last 30 days - 0
Garner Health is a rapidly growing company backed by toptier venture capital firms Their mission is to transform the healthcare economy by delivering ...
View DetailsDirector, Product, Customer, and Lifecycle Marketing - Garner Health
Views in the last 30 days - 0
Garner Health is seeking an experienced Product Marketing Leader to join their team The ideal candidate will lead the product marketing efforts focusi...
View DetailsLinux Support Engineer - Voltage Park
Views in the last 30 days - 0
Voltage Park is seeking a Linux Support Engineer for a fulltime remote position The ideal candidate will have command line level Linux sys administrat...
View DetailsData Analyst - Agero
Views in the last 30 days - 0
Agero a leading B2B whitelabel provider of digital driver assistance services is revolutionizing the vehicle ownership experience through datadriven t...
View DetailsDirector, Product (Remote) - Dscout
Views in the last 30 days - 0
Dscout is a leading company in experience research technology offering a platform for major companies to gain insights into user needs and behaviors T...
View Details