Ensures network nodes are operated, maintained, and disposed of in accordance with security policies and practices.
Perform Information System Security Officer (ISSO) duties in support of in-house and external customers. Also, perform duties as the alternate Information Systems Security Manager (ISSM).
Cyber security paperwork (compliance) and Information Assurance (IA) controls.
Develop supporting documentation and apply standards, directives, guidance, policies, and security control to classified computing environments in support of Intelligence Community Directive (ICD) 503
Utilizing one or more Risk Management Framework implementation methods to include but not limited to; JSIG, CNSSI 1253, NIST SP 800-53, NIST SP 800-171, DoDM-5220-22 (NISPOM)
Assist in preparation and review documentation to include System Security Plans (SSPs), Risk Assessment Reports (RAR), Security Controls Traceability Matrix (SCTM), and other Assessment & Authorization (A&A) artifacts
Learn and conduct independent scans of the application, network, and database with tools such as Nessus, DISA STIGS compliance check and SCAP (SCC)
Bachelor’s Degree and at least 5 years of experience in Cybersecurity, Information Technology, Computer Science, or other relevant technical field; Experience can be any combination professional experience, internships, lab work or coursework. An additional 2 years of experience may be substituted in lieu of degree.
At least three years’ experience with Risk Management Framework, JSIG, or similar security frameworks.
Department of Defense (DoD) 8570/8140 Compliant, IAT Level III within 6 months of hire date
Strong Analytical and Critical Thinking Skills, Interpersonal and People Skills, Leadership Skills, Listening Skills, Multi-Tasking Ability, Communication Skills, Organizational Skills, Presentation Skills