Company

Howmet AerospaceSee more

addressAddressPittsburgh, PA
type Form of workFull-Time
CategoryInformation Technology

Job description

About Howmet Aerospace

Howmet Aerospace Inc. (NYSE: HWM), headquartered in Pittsburgh, Pennsylvania, is a leading global provider of advanced engineered solutions for the aerospace and transportation industries. The Company's sales for 2022 approximated $5.7 billion. The Company's primary businesses focus on jet engine components, aerospace fastening systems, titanium structural parts and forged wheels. With nearly 1,150 granted and pending patents, the Company's differentiated technologies promote more fuel efficiency for aircraft and commercial transportation. For more information, visit www.howmet.com , including content shared during the Company's May 2022 Technology Day.

Follow: LinkedIn , Twitter , Instagram , Facebook , and YouTube .

Howmet is proud to be an Equal Employment Opportunity and Affirmative Action employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

We do not discriminate based upon race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.

If you need assistance to complete your application due to a disability, please email TalentAcquisitionCoE_Howmet@howmet.comBasic Qualifications

  • Bachelor's degree in computer science, Information Systems or Cybersecurity from an accredited institution or an Associate's degree with 5 years of experience in IT, with a minimum 3 years of that in cyber security disciplines
  • Minimum 2 years of experience with DFARS 7012, NIST 800-171 and other NIST publications
  • Minimum 1 year of experience with various data types such as Controlled Unclassified Information (CUI), Controlled technical Information (CTI), Federal Contract Information (FCI), International Traffic in Arms Regulations (ITAR), or Export Administration Regulation (EAR99)
  • Employees must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of Hire. Visa sponsorship is not available for this position.

Preferred Qualifications:
  • Demonstrated experience in and exposure to Compliance programs especially CMMC and DIBCAC
  • Experience managing security in a manufacturing environment.
  • Security related Certifications such as CISSP, Security , CISA
  • CMMC Certifications such as CMMC-RP and/or CMMC CCP
  • Experience with and/or robust understanding of POA&Ms, assessment processes, risk management, procedure analysis
  • Experience implemented successful NIST 800-171 / CMMC / ITAR / Sarbanes-Oxley Act (SOX) security controls.

Salary Range: $70 - 90k/year approximation (Actual compensation is subject to variation due to factors such as education, experience, skillset, and/or location).Basic Qualifications

  • Bachelor's degree in computer science, Information Systems or Cybersecurity from an accredited institution or an Associate's degree with 5 years of experience in IT, with a minimum 3 years of that in cyber security disciplines
  • Minimum 2 years of experience with DFARS 7012, NIST 800-171 and other NIST publications
  • Minimum 1 year of experience with various data types such as Controlled Unclassified Information (CUI), Controlled technical Information (CTI), Federal Contract Information (FCI), International Traffic in Arms Regulations (ITAR), or Export Administration Regulation (EAR99)
  • Employees must be legally authorized to work in the United States. Verification of employment eligibility will be required at the time of Hire. Visa sponsorship is not available for this position.

Preferred Qualifications:
  • Demonstrated experience in and exposure to Compliance programs especially CMMC and DIBCAC
  • Experience managing security in a manufacturing environment.
  • Security related Certifications such as CISSP, Security+, CISA
  • CMMC Certifications such as CMMC-RP and/or CMMC CCP
  • Experience with and/or robust understanding of POA&Ms, assessment processes, risk management, procedure analysis
  • Experience implemented successful NIST 800-171 / CMMC / ITAR / Sarbanes-Oxley Act (SOX) security controls.

Salary Range: $70 - 90k/year approximation (Actual compensation is subject to variation due to factors such as education, experience, skillset, and/or location).Howmet Aerospace is currently in search of a Senior Cybersecurity Compliance Analystto join our Global Information Services (GIS) team in Pittsburgh, PA.

This position has global (domestic and international) accountabilities for all location operating units as well as GIS worldwide. Primary purpose is to provide professional-level support for the company's cyber security initiatives, projects, and ongoing activities.

Major Activities/Key Challenges:

  • Provide Support to Cybersecurity Maturity Model Certification (CMMC) Senior Operations Manager in all aspects of CMMC Operations Management
  • Assist in coordination of various Compliance Assessments (self, scheduled, and on-demand) to include CMMC (CyberAB/Certified 3rd Party Assessment Organization (C3PAO)), Defense Industrial Base Cybersecurity Assessment Center (DIBCAC), State Dept. etc.
  • Facilitate and assist in design, plan and management of the overall assessments including logistics and documentation release during assessments.
  • Assist in coordination with Corporate Communications to validate Controlled Unclassified Information (CUI)/Federal Contract Information (FCI) is not present for externally facing communications.
  • Assist in managing quarterly Authorization to Operate (ATO) and Assessment and Authorization (A&A).
  • Assist with any CMMC control changes/updates/realignments and review the controls for applicability or re-implementation.
  • Track and facilitate Policy/Standard/Procedure review and update cadence.
  • Store and manage limited CUI (e.g., Assessment Results, out briefs, Reclama forms/submissions, etc.).
  • Track Plan of Action and Milestones (POA&Ms) and Risk, Actions, Issues & Decisions (RAID) items.
  • Risk Management and Risk tracking as needed.
  • Corporate Commercial and Government Entity (CAGE) code maintenance and Supplier Performance Risk System (SPRS) reporting.
  • Manages and facilitates continuous monitoring of CMMC controls (10+ controls/month)
  • Provide support to Business Unit Assessments
  • Develops various mappings between different compliance program requirements and National Institute of Standards and Technology (NIST) special publications.
  • Provides interpretation of requirements (NIST, Defense Federal Acquisition Regulation Supplement (DFARS), CMMC, etc.) to different Resource Units and Business Units.
  • Coordinates with and assists different technology areas (Applications, Infrastructure, Network, Security, etc.) and functional areas (Compliance, Human Resources, Internal Audit, Legal, Physical Security, Procurement, etc.) regarding CMMC.
  • Performs other duties as assigned aligned to CMMC.

Skills:
  • Organizational skills and discipline to build and maintain structured plans.
  • Able to forge strong, trusting collaborative relationships.
  • Ability to create and think through complex technical problems and identify/resolve gaps.
  • Ability to objectively view and assess cyber security alternatives.
  • Self-driven with an acute sense of urgency.
  • Interpersonal skills to manage often difficult or highly technical conditions.
  • Results driven and accountable for actions.
  • Works equally well whether independently or as part of a physical or virtual, global team.
  • Ability to work with data of highest sensitivity in complete confidence.
  • Experience valuing a diverse workforce and inclusive work environment
Howmet Aerospace is currently in search of a Senior Cybersecurity Compliance Analystto join our Global Information Services (GIS) team in Pittsburgh, PA.

This position has global (domestic and international) accountabilities for all location operating units as well as GIS worldwide. Primary purpose is to provide professional-level support for the company's cyber security initiatives, projects, and ongoing activities.

Major Activities/Key Challenges:

  • Provide Support to Cybersecurity Maturity Model Certification (CMMC) Senior Operations Manager in all aspects of CMMC Operations Management
  • Assist in coordination of various Compliance Assessments (self, scheduled, and on-demand) to include CMMC (CyberAB/Certified 3rd Party Assessment Organization (C3PAO)), Defense Industrial Base Cybersecurity Assessment Center (DIBCAC), State Dept. etc.
  • Facilitate and assist in design, plan and management of the overall assessments including logistics and documentation release during assessments.
  • Assist in coordination with Corporate Communications to validate Controlled Unclassified Information (CUI)/Federal Contract Information (FCI) is not present for externally facing communications.
  • Assist in managing quarterly Authorization to Operate (ATO) and Assessment and Authorization (A&A).
  • Assist with any CMMC control changes/updates/realignments and review the controls for applicability or re-implementation.
  • Track and facilitate Policy/Standard/Procedure review and update cadence.
  • Store and manage limited CUI (e.g., Assessment Results, out briefs, Reclama forms/submissions, etc.).
  • Track Plan of Action and Milestones (POA&Ms) and Risk, Actions, Issues & Decisions (RAID) items.
  • Risk Management and Risk tracking as needed.
  • Corporate Commercial and Government Entity (CAGE) code maintenance and Supplier Performance Risk System (SPRS) reporting.
  • Manages and facilitates continuous monitoring of CMMC controls (10+ controls/month)
  • Provide support to Business Unit Assessments
  • Develops various mappings between different compliance program requirements and National Institute of Standards and Technology (NIST) special publications.
  • Provides interpretation of requirements (NIST, Defense Federal Acquisition Regulation Supplement (DFARS), CMMC, etc.) to different Resource Units and Business Units.
  • Coordinates with and assists different technology areas (Applications, Infrastructure, Network, Security, etc.) and functional areas (Compliance, Human Resources, Internal Audit, Legal, Physical Security, Procurement, etc.) regarding CMMC.
  • Performs other duties as assigned aligned to CMMC.

Skills:
  • Organizational skills and discipline to build and maintain structured plans.
  • Able to forge strong, trusting collaborative relationships.
  • Ability to create and think through complex technical problems and identify/resolve gaps.
  • Ability to objectively view and assess cyber security alternatives.
  • Self-driven with an acute sense of urgency.
  • Interpersonal skills to manage often difficult or highly technical conditions.
  • Results driven and accountable for actions.
  • Works equally well whether independently or as part of a physical or virtual, global team.
  • Ability to work with data of highest sensitivity in complete confidence.
  • Experience valuing a diverse workforce and inclusive work environment
Refer code: 7762698. Howmet Aerospace - The previous day - 2024-01-07 21:37

Howmet Aerospace

Pittsburgh, PA
Popular Senior Cybersecurity jobs in top cities
Jobs feed

Service Assistant

N/Naka

Los Angeles, CA

Server/Bartender

Terra E Mare

Chicago, IL

Clinic Supervisor Non licensed

Texas Back Institute

Plano, TX

Medical Office Specialist

Texas Joint Institute

Dallas, TX

Geriatrics/Primary Care in Houston, Texas - Salary Guarantee + Non-RVU Bonuses

Enterprise Medical Recruiting

Texas, United States

Family Peer Recovery Coach - Mental Health 614

Telecare Corporation

Riverside, CA

Internal Medicine in Southern New Hampshire - Signing Bonus & Loan Repayment

Enterprise Medical Recruiting

New Hampshire, United States

Network Administrator / VOICE ENGINEER

H1B Sponsorship Jobs In Usa

Sacramento, CA

Network Planning Engineer

Entegee

Melbourne, FL

Anesthesia Technician PRN

Lewisgale Hospital Montgomery

Blacksburg, VA

Share jobs with friends

Related jobs

Senior Cybersecurity Compliance Analyst

Cybersecurity Analyst - Senior

Computer World Services

$94.6K - $120K a year

Chambersburg, PA

a month ago - seen

Senior Cybersecurity Compliance Analyst

Oxford Solutions, Inc

Pittsburgh, PA

2 months ago - seen

Senior Cybersecurity Account Executive

Infoblox

$124K - $157K a year

Philadelphia, PA

2 months ago - seen

Cybersecurity Identity Management Senior Analyst

Pennsylvania Medicine

Philadelphia, PA

4 months ago - seen

Senior Cybersecurity Compliance Analyst

Maxus Technology USA

Pittsburgh, PA

4 months ago - seen

Senior Cybersecurity Compliance Analyst

True Find Staffing

Pittsburgh, PA

4 months ago - seen