PowerToFly
Recent searches
  • Events
  • Companies
  • Resources
  • Log in
    Don’t have an account? Sign up
Results 10527 Jobs
Loading...
Loading more jobs...

No more jobs to load

No more jobs to load

IV&S Specialist in St. Louis or Norfolk with a CI Poly

Deloitte LLP

Save Job
Deloitte LLP

IV&S Specialist in St. Louis or Norfolk with a CI Poly

Onsite Macao
Posted 3 hours ago
Save Job

Watch this video to learn more about Deloitte LLP

Job Details

Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify complexity, we enable our clients to operate with resilience, grow with confidence, and proactively manage to secure success.

Work You'll Do:

Our team, within Cyber Division, performs IV&V functions for infrastructure and applications / cybersecurity WAN risk assessments. JCIP Technical Reviewers play a pivotal role in evaluating the cybersecurity posture of enterprise environments across the Intelligence Community (IC). They conduct comprehensive technical assessments and perform detailed analysis of vulnerability scans to ensure compliance with Intelligence Community Directives (ICDs), IC Technical Implementation Guides (TIGs), Security Technical Implementation Guides (STIGs), Security Requirement Guides (SRGs), and NIST 800-53 rev 5 security controls. OTHER: Conduct comprehensive technical assessments and manual audits of virtualized infrastructure platforms and network-attached storage (NAS) environments in Intelligence Community (IC) settings.
  • Evaluate compliance with IC Directives, Security Technical Implementation Guides (STIGs), Security Requirement Guides (SRGs), and NIST 800-53 Rev 5 and 800-171 security controls relevant to virtualization and storage systems.
  • Perform independent manual STIG checklist reviews for leading virtualization platforms including VMware ESXi, Microsoft Hyper-V, and KVM, as well as NAS/SAN devices such as NetApp and Dell EMC systems.
  • Analyze risks and attack vectors associated with virtualized environments and storage architectures; assess controls including encryption, authentication, access management, and FIPS compliance.
  • Provide technical recommendations and architectural guidance to improve virtual infrastructure security posture.
  • Liaise with virtualization system administrators, storage teams, and leadership to communicate findings, risk assessments,and remediation strategies.
  • Lead and mentor Level 1 IDRs in conducting IV&S inspections and risk analysis.
  • Stay current with emerging virtualization and storage security threats, industry trends, and vendor hardening best practices.
  • Participate in inspection planning, execution, reporting, and deliver clear, concise written and oral assessments.
  • Travel as necessary to support onsite inspections. (8-12 weeks of travel avg, some international and passport required).

Knowledge:
  • Strong understanding of virtualization platforms: VMware ESXi, Microsoft Hyper-V, and KVM architectures and security features.
  • Familiarity with common NAS/SAN systems (NetApp, Dell EMC) and their security considerations.
  • Ability to interpret and apply STIGs, SRGs, and NIST 800-53/800-171 controls related to virtualized infrastructure and storage.
  • Knowledge of encryption standards, including FIPS, and their application in storage security.
  • Awareness of virtualization and storage-related attack vectors and mitigation strategies.


The Team

Deloitte's Government & Public Services (GPS) practice - our people, ideas, technology and outcomes - is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.

Our Enterprise Security offering embeds security in all aspects of digital transformation by securing a client's technical backbone while enabling secure digital transformation. Includes security architecture, secure development and deployment, end-to-end cyber cloud capabilities, application security, and security for emerging technologies and connected products.

The Project Delivery Talent Model is designed for professionals with specialized skills that align to a current client need. Team members focus on delivering services to clients, without additional expectations related to business development or promotion. Their employment is tied to their role on a project, and they are eligible for a benefits package that is competitive for project delivery-focused professionals.

Qualifications

Required:

  • Bachelor's degree + 13 years of experience OR Master's Degree with 5+ years of experience
  • Active Top Secret/SCI clearance with a CI Poly
  • Ability to travel 25%, on average, based on the work you do and the clients and industries/sectors you serve
  • Local to St. Louis, Missouri or Norfolk, VA area and able to come onsite 5 days a week.
  • IAT LEVEL III (CASP, CISA, CISSP, GCED, or GCIH)
  • 8+ years of experience with the following:
    • VMware ESX
    • Microsoft Hyper V
    • KVM Hypervisor
    • Dell/EMC ScaleIO
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future


Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html
Company Details
Deloitte LLP
 New York City, NY, United States
Work at Deloitte LLP

Don't imagine what's next. Discover it. We provide industry-leading audit & assurance services, consulting, tax and advisory services to many of... Read more

Did you submit an application for the IV&S Specialist in St. Louis or Norfolk with a CI Poly on the Deloitte LLP website?