Tantus Technologies, Inc.

Team Lead Security

ID
2024-2333
Active Clearance Required
Public Trust
Citizenship Required
Yes
Type
Regular Full-Time

Overview

In anticipation of an award, Tantus Technologies, Inc. (Tantus) is seeking a Team Lead to manage a cyber security contract for a Federal Health customer. You will be responsible for all aspects of contract delivery, customer satisfaction, and profit and loss. The ideal candidate will have experience effecting change and improving operations in a federal cyber security environment. We are seeking a skilled and experienced leader to oversee our organization's compliance with CMS information security requirements. The role will play a crucial role in maintaining the security and privacy posture of our CMS programs, and ensuring the protection of sensitive information and systems.
Top Place 2023

What You'll Do

  • Serve as the primary point of contact for all information security matters related to the CMS program.
  • Ensure compliance with federal regulations and cybersecurity best practices.
  • Oversee the security and privacy posture of the assigned CMS program, including data classification, access controls, and incident response.
  • Coordinate and conduct information system security risk management activities using a risk-based approach.
  • Facilitate and participate in security assessments, including Cybersecurity and Risk Assessment Program (CSRAP) assessments and penetration testing.
  • Stay informed about the latest cybersecurity threats and vulnerabilities, implementing appropriate security controls to safeguard program assets.
  • Promote a culture of security awareness within the organization, providing training and guidance on security policies and procedures.
  • Investigate and document security incidents, taking appropriate action to contain and remediate threats.
  • Report on the program's security posture to CMS leadership and participate in security audits as needed.

Required Knowledge and Skills

  • Bachelor's degree in Information Technology, Cybersecurity, or a related field (or equivalent experience).
  • Minimum of 3-5 years of experience in information security, preferably in a government or healthcare environment.
  • In-depth knowledge of cybersecurity frameworks, particularly NIST Cybersecurity Framework (CSF) and FISMA.
  • Strong understanding of risk management principles and practices.
  • Experience with security assessment methodologies and tools.
  • Excellent communication and leadership skills.
  • Ability to work effectively under pressure and manage multiple priorities.
  • In-depth knowledge of AWS and Red Hat OpenShift security features.
  • Strong understanding of data privacy regulations (HIPAA, GDPR, etc.).
  • Experience handling PHI and PII data.
  • Conduct regular security assessments and risk assessments.
  • Develop and implement security policies and procedures.
  • Collaborate with project teams to ensure security is integrated into all phases of development.
  • Incident response and management.

Abilities

  • Analytical Thinking: The ability to assess complex security situations, identify potential risks, and develop effective mitigation strategies.
  • Attention to Detail: Precision in reviewing security protocols, identifying vulnerabilities, and ensuring compliance with regulations.
  • Problem-Solving: Skill in addressing security incidents quickly and effectively, often under pressure.
  • Communication: Strong verbal and written communication abilities to explain technical concepts to both technical and non-technical audiences, provide training, and report to leadership.
  • Leadership: Ability to guide and influence others in adopting security best practices and fostering a security-aware culture.
  • Adaptability: Capacity to stay current with rapidly evolving cybersecurity threats and technologies, and adjust strategies accordingly.
  • Time Management: Skill in balancing multiple priorities and managing various security initiatives simultaneously.
  • Technical Proficiency: Ability to understand and work with various security tools, technologies, and frameworks.
  • Ethical Judgment: Strong sense of integrity and ability to handle sensitive information responsibly.
  • Collaboration: Skill in working effectively with different departments and stakeholders to implement security measures across the organization.
  • Continuous Learning: Commitment to ongoing professional development to stay current with the latest security trends and technologies.
  • Stress Management: Ability to remain calm and focused during security incidents or high-pressure situations.

Nice to Haves

  • Relevant cybersecurity certifications (e.g., CISSP, CISM, Security+).
  • Experience working with CMS or other federal healthcare programs.
  • Familiarity with healthcare-specific regulations (e.g., HIPAA).
  • Stay updated on emerging security threats and best practices.

Options

Sorry the Share function is not working properly at this moment. Please refresh the page and try again later.
Share on your newsfeed