Found Description
Responsibilities
- Execute the VA Enterprise Risk Analysis process using custom tools to identify cybersecurity risk factors in medical devices and special purpose systems
- Summarize, evaluate, and report risk factors using quantitative and qualitative scores
- Acquire and review system documentation through questionnaires and interviews with field customers and vendors
- Document critical security posture elements including hardware/software inventory, communications profiles, and system interconnections
- Perform annual reviews to support continuous monitoring and ensure residual risks are current
- Collaborate with Federal and contractor teammates within a Risk Management team
Requirements
- Experience with Cybersecurity, risk management, or risk assessment for complex systems
- Experience with NIST SP 800‑53 and NIST SP 800‑30
- Experience documenting and depicting network top...