Company

BravensSee more

addressAddressSacramento, CA
type Form of workFull-Time
CategoryInformation Technology

Job description

Scope of Work:
SMUD is developing and implementing the National Institute of Standards and Technology (NIST) Risk Management Framework (RMF) to aid in identifying, communicating, and managing cyber risk throughout the organization. The proposer will consult with the Cybersecurity governance, risk and compliance program owner, key SMUD stakeholders and subject matter experts, to develop a cybersecurity process for Risk Management, as defined in NIST Special Publication (NIST SP) 800-37 revision 2.
A key component of the RMF is a security control catalog that contains the administrative, technical, and operational controls for implementation on systems and components. The Privacy and Security control catalog will incorporate the requirements established in laws and regulations applicable to SMUD as organization-defined values within specific privacy and security controls. The Privacy and Security control catalog will use the controls identified within NIST SP 800-53 revision 5.
 
Mandatory Requirements:
Proposed candidates must have specific knowledge, skills, and abilities that are aligned to Cyber Policy and Strategy Planner (OV-SPP-002) work role of the National Initiative for Cybersecurity Education (NICE) Cybersecurity Workforce Framework (NICE Framework)
 
Deliverables:
  1. A comprehensive end-to-end process document that integrates the NIST RMF into SMUD's IT/OT operations, procurement process and Cybersecurity program. The document must include, but is not limited to, instructions for SMUD stakeholders at each RMF task, a table of internal SMUD personnel that are Responsible, Accountable, Consulted, and Informed (RACI) for each task within the process document, and a list of templates or documents that must be completed and managed by responsible stakeholders. The process document must integrate functionality of Governance, Risk, and Compliance (GRC) tools utilized by the Cybersecurity department. These tools will be discussed after Task has been awarded and NDA has been signed.
  2. A Privacy and Security Control Catalog leveraging NIST Special Publication 800-53 Revision 5 tailored to include the requirements established within laws and regulations applicable to SMUD.
  3. Provide Privacy and Security Control assessment procedures leveraging NIST Special Publication 800-53A Revision 4 for assessing controls within the Privacy and Security Control Catalog.
  4. A Microsoft PowerPoint slide deck that discusses the RMF Process, SMUD's implementation of RMF, key tasks to perform, and the roles and responsibilities of key stakeholders.
 
Desirable Qualifications:
  • Certified Information System Security Professional (CISSP) or equivalent cybersecurity certification
  • Certified Authorization Professional (CAP)
Refer code: 7199509. Bravens - The previous day - 2023-12-17 16:56

Bravens

Sacramento, CA
Jobs feed

Housekeeper

Classy Maids 321

Cocoa, FL

$15 an hour

Personal Support Worker

Bridges Btc, Inc.

Rockledge, FL

$16 - $17 an hour

Assistant Manager Trainee Full-Time

Big 5 Sporting Goods

Northridge, CA

$18.56 an hour

Automotive Detailer - Car Washer - Woodland Hills

Enterprise Holdings

Woodland Hills, CA

$19.25 an hour

Fence Helper

National Construction Rentals, Inc.

Pacoima, CA

$50,000 - $70,000 a year

Valet Driver

The Variel Of Woodland Hills

Woodland Hills, CA

From $19 an hour

Front Desk Associate

Beasley's Floral Llc

Cocoa Beach, FL

From $15 an hour

Medical Receptionist

Florida Pain Physicians

Orange Park, FL

$17 - $18 an hour

Barista & Gelato Attendant Part-time

Driftwood Hospitality Management

Cocoa Beach, FL

Share jobs with friends

Related jobs

Risk Management Framework (Rmf) Process Development Consultant

Human Resources & Risk Manager

Dublin San Ramon Services District

Dublin, CA

a week ago - seen

Senior Business Banking Deposit & Lending Risk Management

Us Bank National Association

San Francisco, CA

a week ago - seen

HCC Risk Management Specialist

Hca Healthcare

Campbell, CA

2 weeks ago - seen

Automotive Finance Risk Management Consultant

Kpa

San Leandro, CA

2 weeks ago - seen

Risk Management Analyst

Jackson Square Aviation

San Francisco, CA

2 weeks ago - seen

Risk Analyst, Integrated Risk Management

California State University

San Marcos, CA

2 weeks ago - seen

Manager, Interest Rate Risk

Hyundai Capital America

Irvine, CA

2 weeks ago - seen

VP/FVP, Model Risk Manager

Cathay Bank

El Monte, CA

3 weeks ago - seen

Senior Crypto Risk Management Analyst

Treehouse Partners

Los Angeles, CA

3 weeks ago - seen

Risk Management Analyst

The Walt Disney Company

Burbank, CA

3 weeks ago - seen

Healthcare Risk Management Director

Affluent Staffing Oasis

Murrieta, CA

3 weeks ago - seen

Operational Risk Management Analyst

Workway, Inc.

Seal Beach, CA

3 weeks ago - seen

Director, Operations and Risk Management

Caminar

San Mateo, CA

3 weeks ago - seen

Director of Risk Management

County Of San Bernardino, Ca

San Bernardino, CA

3 weeks ago - seen

AVP, Risk Management

Ventura County Credit Union

Ventura, CA

3 weeks ago - seen

Vice President, Market Risk Analytics Manager FICCS

Wedbush

Los Angeles, CA

4 weeks ago - seen

Office Manager (Legal)

Venture Lynk Risk Management

Los Angeles, CA

4 weeks ago - seen