Enterprise Risk Analyst-Cybersecurity/NIST

Remote Full-time
About the role Core Hours: 9am-5pm EST The experienced Risk Analyst. The role executes the VA Enterprise Risk Analysis process using a custom ERA tool to identify key cyber security risk factors in network connected medical devices and Special Purpose Systems (e.g., building automation systems, physical security systems, operational technology). These risk factors are summarized, evaluated, and reported using quantitative and qualitative scores to provide a VA authorizing official with awareness of the residual cyber risk prior to connecting these devices to the VA network. What you'll do Risk Analyst must acquire, review and leverage system documentation and data gathered through questionnaires and interviews with customers in the field and vendor/manufacturer representatives to accurately document critical security posture elements in a common reporting format. These elements include hardware/software inventory, communications profile, system interconnections, data types and stores, and the presence or lack of security controls, settings and mechanisms for a given device type. The analyst works within the Specialized Device Cybersecurity Department Risk Management team and is expected to collaborate with Federal and contractor team mates to achieve best outcomes for the ERA process .Qualifications Experience with Cybersecurity, risk management, or risk assessment for complex systems Experience with NIST SP 800-53 and NIST SP 800-30 Experience with documenting and depicting network topology and network protocols Ability to engage directly with clients, and third parties to facilitate enterprise risk analysis Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements Bachelor's degree in computer science, Electronics Engineering, or technical equivalent and 10 years of professional experience or a total of 18 years in lieu of education Nice If You Have: Experience with cybersecurity analysis of medical technology or Internet of Things (IoT) Experience with Governance, Risk, and Compliance (GRC) Experience with Assessment and Authorization (A&A) and eMASS Experience with Excel and Visio CompTIA Security+ or Certified Risk Management Professional (CRISC) or Certified in Risk and Information Systems Control (CRISC) Public Trust clearance Salary range-$90k-$110k Apply tot his job
Apply Now

Similar Opportunities

Cyber Risk Analyst, AVP

Remote Full-time

Senior Associate – Governance, Risk, Compliance, SOX Focus

Remote Full-time

Model Risk Analyst, CCAR/CECL Model Validation (Remote)

Remote Full-time

Risk Control Advisor – Housing Authorities Risk Retention Pool (Remote)

Remote Full-time

Sr Analyst, Risk Analytics Researcher

Remote Full-time

Risk Management / Compliance Consultant

Remote Full-time

[Remote] Compliance Officer II – Risk Assessment (Remote)

Remote Full-time

[Remote] Cybersecurity Risk Assessor Senior

Remote Full-time

Finance and Insurance Risk Management Consultant

Remote Full-time

Compliance Analyst I – P&C Compliance Monitoring and Risk Assessment 4 Locations

Remote Full-time

Research Consultant

Remote Full-time

Entry-Level Data Entry Specialist – Remote Work Opportunity with Flexible Hours and Comprehensive Training at arenaflex

Remote Full-time

Experienced Virtual Customer Service Representative – Delivering Exceptional Support in a Dynamic E-commerce Environment at blithequark

Remote Full-time

Case Manager, Metabolics

Remote Full-time

Geisinger Healthcare Data Analyst II (Remote capable) in Danville, Pennsylvania

Remote Full-time

Backend Cloud Solutions Engineer

Remote Full-time

Remote Customer Service Agent - Work from Home Opportunity with blithequark - Flexible Schedules & Career Growth

Remote Full-time

Remote Data Entry Clerk

Remote Full-time

Special Investigations PIP Claims Adjuster

Remote Full-time

Experienced Oracle CC&B (Customer Care & Billing) Functional Lead – Remote Opportunity for Utilities Industry Experts

Remote Full-time
← Back to Home