THIS IS AN ONSITE POSITION
|
SCOPE OF WORK:
Consultant shall provide enterprise cybersecurity and network monitoring support services in support of USAC’s information security, network operations, compliance, risk management, and continuous monitoring objectives. Consultant shall furnish all management, supervision, labor, processes, and associated support necessary to provide integrated cybersecurity and network monitoring services in a managed services model, in accordance with the requirements of this Section B: Statement of Work.
Consultant shall provide support across enterprise cybersecurity and network monitoring functional areas, including, but not limited to, security compliance support, Information System Security Officer (“ISSO”) support, vulnerability management, IT risk support,
Security Architecture, 24x7x365 Security Operations Center (“SOC”) support, 24x7x365 Network Operations Center (“NOC”) support, security engineering support, Security Information and Event Management (“SIEM”) support, enterprise monitoring support, Supply
Chain Risk Management (“SCRM”), artificial intelligence (“AI”) security support, program management, reporting, performance management, and transition support.
Consultant shall perform services necessary to support the organization's ability to monitor, detect, analyze, respond to, report on, and continuously improve its handling of cybersecurity and network events affecting enterprise systems, services, applications,
and infrastructure.
Consultant shall support secure and reliable enterprise operations through coordinated cyber defense, network awareness, security compliance activities, risk-informed decision support, and technical engineering services.
Consultant shall provide services in a manner that supports continuous situational awareness, timely reporting, measurable performance, documented operational procedures, and a structured service delivery model. Consultant shall provide all required deliverables,
reports, dashboards, metrics, and management artifacts necessary for the organization to oversee performance and maintain continuity of operations.
Consultant shall perform all work in accordance with applicable laws, directives, standards, and guidance identified in this Section B: Statement of Work. Services shall be delivered using generally accepted cybersecurity, engineering, operational, and program
management practices appropriate to a formal government procurement environment.
Cyber Security Architect:
Cyber Security Architect responsible for establishing the Security Architecture capability and providing recommendations on the review and implementation of technology. This individual shall oversee the Security Architecture capability, drive the implementation
of ZTA, and provide recommendations for the implementation of emerging cybersecurity technology.
Minimum Qualifications
Proposed personnel possess education, certifications, training, and relevant experience appropriate to their assigned labor category. Personnel shall demonstrate experience performing similar work in enterprise cybersecurity, network operations, security engineering, security compliance, vulnerability management, or related environments of comparable scale, complexity, or criticality.
Key Personnel shall possess demonstrated experience leading or supporting enterprise-level cybersecurity service delivery, operational coordination, engineering support, or compliance support in complex environments.
At a minimum, the following certifications are required:
• Security Architect: CISSP, Certified Information Security Manager (CISM), Systems Security Certified Practitioner (SSCP), and/or relevant cybersecurity architecture certifications |