EngineerJobs.io
← Back to all jobs

Job Description

This remote position focuses on assessing, implementing, maintaining, and reporting on the VA's Zero Trust architecture to secure VA digital assets, in partnership with cross-functional teams. Compensation is USD 107,900 to 195,050 per year.

Responsibilities

  • Evaluate infrastructure alignment with the Department of Defense Zero Trust Maturity Model.
  • Generate a Monthly Maturity Scorecard report using customer-driven parameters.
  • Develop a dashboard to present the Monthly Maturity Scorecard data.
  • Calculate and report the percentage compliance for each Zero Trust Pillar capability group.
  • Assess each Zero Trust Pillar and identify targeted improvement opportunities.
  • Refresh dashboard data from the Monthly Maturity Scorecard and underlying sources.
  • Incorporate the assessment approach based on CISA and DoD Zero Trust Maturity Models.
  • Expand VA specific reference architecture target capabilities.
  • Document how VA should implement ZTA across conceptual, logical, and implementation layers within the target architecture.
  • Collaborate with ZTA Pillar Leads to determine the use of existing toolsets or the need for additional tools.
  • Assist in assembling ZTA Engineering and Implementation plans, outlining processes to roll out ZTA Use Cases across VA information systems, considering all system variations.
  • Update plans in response to new cases, deployments, stakeholder input, and system owner feedback.
  • Support the completion of 100 information system implementations within each period of performance.
  • Coordinate with the VA Office of Information Security to onboard systems into an Operations and Maintenance Risk Management Framework process.

Requirements

  • Bachelor's degree and at least 10 years of cybersecurity engineering experience, or 18+ years of established industry experience.
  • Eligibility to obtain and maintain a Public Trust clearance.
  • Experience in dashboard creation.
  • Proven track record as a Cyber Security Engineer with a focus on implementing and maintaining Zero Trust architectures.
  • Deep knowledge of Zero Trust principles, Identity and Access Management, micro-segmentation, network security, and encryption techniques.
  • Experience with security tools such as firewall solutions, intrusion detection/prevention systems, and SIEM tools.
  • Familiarity with industry regulations and compliance requirements, including NIST 800-207, OMB M-22-09, CISA Zero Trust Security Model, and Executive Order 14028.
  • Strong problem-solving skills and the ability to work in a fast-paced, collaborative environment.
  • Excellent communication skills to convey complex security concepts to both technical and non-technical stakeholders.

Technologies

  • Department of Defense Zero Trust Maturity Model
  • CISA/DoD Zero Trust Maturity Models
  • NIST 800-207
  • OMB M-22-09
  • CISA Zero Trust Security Model
  • Executive Order 14028 – Improving the Nation's Cybersecurity
  • eMASS
  • ServiceNow CAM
  • Software-defined perimeter (SDP) tools
  • Identity and Access Management (IAM) solutions
  • Micro-segmentation technologies
  • Firewall solutions
  • Intrusion Detection Systems (IDS)
  • Intrusion Prevention Systems (IPS)
  • SIEM tools
  • PIV (VA certificate)

Benefits

  • Competitive compensation
  • Health and Wellness programs
  • Income Protection
  • Paid Leave
  • Retirement

Similar Jobs