Start Date: 12/10/2018 End Date: 12/09/2019
Deadline to Submit: 01/16/2019
Max Submittals by Vendor: 4 Per Opening
Work Location: 2105 Umstead Drive, Raleigh, NC 27603
Rate: $70.00
Interview: Either Webcam Interview or In Person
NC DHHS - Privacy and Security Office (PSO) requiring services of an IT Security Specialist to aid Division for Public Health (DPH) in the identification of gaps through risk management, and assist in the development of mitigation strategies.
The primary purpose of this position is to achieve and support program privacy, security, and continuity of operations goals, policies and practices. This position is responsible for analyzing and developing privacy, security, and continuity of operations related activities for Division for Public Health (DPH). Other job responsibilities include the following:
Update the the divisions BCP and COOP plan
Perform Business Impact Analysis
Conduct Access Control Reviews
Monitor Employee HIPAA and Security Training
Perform NIST and HIPAA based assessments
Review CAPS\POAMS and vulnerability scanner findings and assist with remediation
Respond to security incidents
Review security exception requests and Privacy Threshold Analysis
Review IT Contracts
Skill | Required /Desired | Amount | of Experience | |
Risk Management - must be able to Identify gaps through risk management, and assist in the development of mitigation strategies. | Required | 7 | Years | |
Experience updating privacy and security policies based on gaps found through an assessment process. | Required | 7 | Years | |
Discover, evaluate, assess, systems, networks, and components through the use of vulnerability scanning and risk assessment method. | Required | 7 | Years | |
Experience documenting vulnerability assessment results in a accurate, clear, actionable, and available way to appropriate personnel | Required | 7 | Years | |
Must be able to review & assess projects and systems throughout all phases of their life cycle in an effort to identify Privacy org needs | Required | 7 | Years | |
Experience Performing risk assessments based on NIST 800-53 Rev 4. ISO-27001, HIPAA, and IRS Pub 1075. | Required | 7 | Years | |
Experience with network mapping and vulnerability scanning tools such as NESSUS and NMAP. | Required | 7 | Years | |
Create/update the the BCP, COOP and DR plan | Required | 7 | Years | |
Perform Business Impact Analysis | Required | 7 | Years | |
Conduct Access Control Reviews | Required | 7 | Years | |
Monitor Employee HIPAA and Security Training | Required | 7 | Years | |
Respond to privacy and security incidents | Required | 7 | Years | |
Manage IDS signatures and Respond to Intrusion detection alerts | Required | 7 | Years | |
Proven experience in information security | Required | 7 | Years | |
Experience with North Carolina DHHS (or any Government agency) business and IT functions | Required | 5 | Years | |
Review firewall change requests | Required | 7 | Years | |
Experience with Tenable Security Center reports and dashboards | Required | 7 | Years | |
Experience reviewing SOC2 Type 2 reports | Required | 7 | Years | |
Enjoys accepting challenges and persists until goals are achieved | Required | 7 | Years |
Thanks & Regards,
Ashwin Panicker
Account Manager (Hiring & Recruitment)
CLOUD BIG DATA TECHNOLOGIES LLC
(A Cloud Hybrid Group Company)
12200 Ford Rd, Suite A405, Dallas, TX 75234
Office: (405)-342-8030
Email: ash.panick@cloudbigd.com
LinkedIn: https://www.linkedin.com/in/ashwin-panicker-40865942/
Web: https://www.cloudbigd.com
"Please ignore typos and brevity"
The information contained in this email is intended only for the person or entity to whom it is addressed and may contain confidential or privileged material; unauthorized use of this information is prohibited. If you have received this in error, please notify the sender and delete the material immediately. ~~ Thank you
No comments:
Post a Comment
Thanks
Gigagiglet
gigagiglet.blogspot.com