Work Location: ONSITE - Dallas, TX
Engineer, GRC & Assessments (ANSP Program)
FOCUS
Ensure secure aircraft, ground, and communications systems relied upon for our ANSP Program, with concentrated attention towards risk, governance, vulnerability management, policies, and standards.
RESPONSIBILITIES
Develop and implement security policies and standards, ensuring compliance with industry regulations and best practices.
Conduct risk assessments and vulnerability assessments to identify1 and mitigate security risks.
Manage the vulnerability management program, including vulnerability scanning, penetration testing, and remediation.
Develop and deliver security awareness training programs.
Collaborate with stakeholders to integrate security considerations into the design and development of new aviation systems.
Stay informed about emerging threats and vulnerabilities in the aviation industry.
TOP SKILLS:
Minimum 3 years hands-on experience on below stack:
1. Risk Management Frameworks: (e.g., NIST RMF, NIST CSF, ISO 27005)
2. Risk Assessment Methodologies: (e.g., NIST 800-30, Threat Modeling)
3. GRC Platforms: (e.g., ServiceNow GRC, RSA Archer)
4. Vulnerability Management Tools: (e.g., Tenable Nessus, Tanium)
SKILLS:
Cybersecurity Risk & Governance Expertise: Requires 3-5 years of progressive cybersecurity engineering experience with a deep understanding of risk management frameworks (NIST SP 800-37, ISO 27005), governance principles, vulnerability management, and security policy development.
Risk Assessment & Mitigation: Proven experience conducting risk assessments (NIST 800-30, NIST CSF), identifying vulnerabilities, analyzing threats, and developing effective mitigation strategies.
Vulnerability Management Program Expertise: Expertise in vulnerability management tools and processes, including vulnerability scanning, penetration testing coordination, vulnerability prioritization, and remediation tracking.
Policy & Standard Development & Implementation: Strong ability to develop, document, and implement security policies, standards, and procedures that align with industry best practices, regulatory requirements, and risk tolerance
Communication & Stakeholder Collaboration: Excellent communication (written and verbal) and interpersonal skills to effectively communicate security risks, governance strategies, and policy recommendations to diverse stakeholders, including technical teams, management, and external partners.
PREFERRED CERTIFICATIONS:
CISSP (Certified Information Systems Security Professional)
CISM (Certified Information Security Manager)
CISA (Certified Information Systems Auditor)
CRISC (Certified in Risk and Information Systems Control)
CompTIA Security+
TOOLS AND TECHNOLOGIES:
Risk Management Frameworks: (e.g., NIST RMF, NIST CSF, ISO 27005)
Risk Assessment Methodologies: (e.g., NIST 800-30, Threat Modeling)
GRC Platforms: (e.g., ServiceNow GRC, RSA Archer)
Vulnerability Management Tools: (e.g., Tenable Nessus, Tanium)
Penetration Testing Understanding: (Familiarity with tools & methodologies for report interpretation)
Policy & Collaboration Tools: (e.g., SharePoint, Microsoft Teams, Policy Management Platforms)
Required Skills : Network Security
Basic Qualification :
Additional Skills :
Background Check : No
Drug Screen : No
...Responsibilities Registered Nurse (RN)- Behavioral Health- Full Time-$5000 SIGN ON BONUS Horizon Health is seeking highly organized... ...pay beginning at 3p ~ Earn 22% more than your base for all weekend shifts Benefit Highlights for full-time positions: ~...
Overview: Carle Health is seeking Neonatal Nurse Practitioners or Physician Assistants to join our Level III NICU team at Carle Foundation Hospital in Urbana, Illinois. Opportunity Details:~ Join a growing team of8 Nurse Practitioners and6 Neonatologists ~48...
...Job Purpose & Scope Responsible for performing fraud incident investigations and case management, including collaboration with internal... ...provide comprehensive investigative reports to law enforcement for criminal prosecution including the collection, preparation, and...
...safeguarding people, assets, and spaces? Join our team as an Armed Security Guard, where youll play a vital role in creating a secure and... ...at 209.341.7000. Gallo is enrolled in the Department of Homeland Security's E-Verify program and will use the program to verify...
...Description We are seeking a motivated and detail-oriented Engineering Intern to join our team. As part of an aerospace fastener design and manufacturing company, you will gain hands-on experience in engineering processes, contribute to real-world projects, and collaborate...