Peraton requires CTO Manager to support the Special Operation Command Information Technology Enterprise Contract (SITEC) – 3 EOM. This position is located at MacDill AFB in Florida.
The purpose of the Special Operations Forces Information Technology Enterprise Contract (SITEC) 3 Enterprise Operations and Maintenance (EOM) Task Order (TO) is to provide USSOCOM, its Component Commands, its Theater Special Operations Commands (TSOCs), and its deployed forces with Operations and Maintenance (O&M) services to maintain Network Operations (NetOps); maintain systems and network infrastructure; provide end user and common device support; provide configuration, change, license, and asset management; conduct training, and perform Install, Move, Add, Change (IMACs) services. The responsibilities and tasks associated with each requirement play a pivotal role to USSOCOM, the CIO/J6 organization, and ultimately the end-user who operate around the globe 24x7x365.
Directive Management & Coordination
- Receive, review, document, and distribute CTOs, IAVM Alerts, IAVM Bulletins, and related cybersecurity directives to responsible system and service owners.
- Review cybersecurity directives to identify requirements, affected systems, responses, and reporting deadlines.
- Coordinate with ISSMs, ISSOs, system owners, service owners, administrators, engineers, and other stakeholders to obtain status updates, responses, and supporting documentation.
Task Tracking & Lifecycle Management
- Create and maintain task records in approved ticketing, change-management, tracking, and reporting systems.
- Track cybersecurity taskings from initial receipt through response, validation, and official closure, ensuring authorized personnel complete the closure.
- Monitor suspense dates, follow up with responsible stakeholders, and escalate overdue, incomplete, or unresolved actions.
Technical Validation & Compliance
- Review tasking responses and compliance documentation for completeness, consistency, accuracy, and alignment with established reporting requirements.
- Use ACAS scan results to validate reported vulnerabilities, affected assets, remediation actions, and current vulnerability status.
- Document ACAS validation results, reporting discrepancies, incomplete evidence, and unresolved findings, providing them for review by authorized cybersecurity personnel.
Reporting & Process Improvement
- Maintain CTO and IAVM trackers, dashboards, metrics, audit records, status reports, and leadership briefing materials.
- Prepare recurring and ad hoc reports identifying compliance status, outstanding actions, upcoming suspense dates, overdue taskings, and unresolved vulnerabilities.
- Support the development and improvement of CTO and IAVM procedures, playbooks, templates, reporting processes, dashboards, and workflow automation.