Salary
💰 $99,450 - $134,550 per year
About the role
- Perform security analysis of operational and development environments, threats, vulnerabilities and internal interfaces to define and assess compliance with accepted industry and government standards
- Implement the Assessment and Authorization (A&A) processes under the Risk Managed Framework (RMF) for new and existing information systems
- Facilitate development of Memorandums of Understanding (MOU), Interconnection Security Agreements (ISA), Risk Acceptance Letters (RAL) and support Continuous Monitoring (CONMON)
- Oversee configuration management of assigned systems; auditing systems to ensure security posture integrity
- Partner with Information Technology, Program Engineering, and Management with security requirements
- Conduct risk assessments and investigations, execute appropriate risk mitigations, and oversee incident response activities
- Conduct periodic hardware/software inventory assessments
- Serve as an organization spokesperson on advanced projects and programs
- Act as advisor to management and customers on advanced technical research studies
- Interface with the appropriate government customers, suppliers, and company personnel to implement protective mechanisms and to ensure understanding of and compliance with cybersecurity requirements
Requirements
- Successfully completed Tier 5 Investigation (T5), formerly known as a Single Scope Background Investigation (SSBI) by the federal government within the last 5 years, or requires candidate to have been enrolled in a Continuous Vetting program within the last 5 years
- IAM Level 1 DoD 8140.01 (previously 8570.01) compliant certification (i.e. CAP, Security+ CE, CISSP, CASP, CISM, GSLC)
- 3+ years of experience in cybersecurity policies and implementation of Risk Management Framework (RMF): e.g. DAAPM, CNSSI 1253, ICD-503, JSIG, or NIST SP 800 series
- 3+ years of experience as an information system security officer (ISSO) or information system security manager (ISSM) supporting classified programs (preferred)
- 3+ years of experience utilizing security relevant tools, systems, and applications in support of Risk Management Framework (RMF) to include NESSUS, ACAS, DISA STIGs, SCAP, Audit Reduction, and HBSS (preferred)
- 3+ years of experience assessing and documenting test or analysis data to show cyber security compliance (preferred)
- Active U.S. Top Secret Security Clearance (U.S. Citizenship Required)
- U.S. Person as defined by 22 C.F.R. §120.15 (U.S. Citizen, lawful permanent resident, refugee, or asylee)
- Drug Free Workplace compliance (subject to testing)