Overview
Senior Cybersecurity Engineer LOCATION: Washington DC - Navy Yard JOB STATUS: Full-time CLEARANCE: Secret CERTIFICATION: DoD 8140 IAT Level II TRAVEL: As Needed Astrion has an exciting opportunity for a Senior Cybersecurity Engineer located at the Washington Navy Yard in Washington, DC. Work for this position is onsite at Washington Navy Yard a minimum of 4 days per week. REQUIRED QUALIFICATIONS / SKILLS
- A master's degree in a relevant field and ten (10) years of relevant experience in cyber security, information system management, software development, design or authorization; or
- A Bachelor's degree in a relevant field and fifteen (15) years of relevant experience in cyber security, information system management, software development, design or authorization; or
- A high school degree, or a GED, and more than twenty (20) years of relevant experience in cyber security, information system management, software development, design or authorization.
- In depth knowledge of all steps in the RMF Process.
- Knowledge of DoD and DON cyber policies and procedures and/or NIST 800-53, DoDI 8500.01, and DoDI 8510.01.
- Must be flexible in adapting to deadlines, changing schedules, competing priorities, and unpredictable events.
- Ideal candidate has demonstrated ability to assign work and manage personnel and tasks.
- Familiar with and able to present data and recommendations to Government and Military leadership.
- Thorough, detail oriented, and organized, with excellent time management skills and ability to prioritize and handle multiple projects at once.
- Superb verbal and written communication skills.
- Self-motivated and independent thinker with out-of-the-box ideas.
- Leadership skills.
PREFERRED QUALIFICATIONS / SKILLS
- Familiarity with PEO IWS organization and systems.
- Familiarity with the NAVSEA FAO RMF Process.
- Working knowledge of DoD, DON, NAVSEA, and PEO cyber regulations.
- Proficient in eMASS and eMASSter tool.
RESPONSIBILITIES
- Provide cybersecurity expertise to surface combat system program offices.
- Lead efforts to bring Platform Information Technology systems and other systems through the full life cycle of the Risk Management Framework (RMF) process to achieve/renew Authority to Operate (ATO).
- Review RMF package submission to ensure alignment with the NAVSEA Standard Operating Procedures (SOP).
- Develops, coordinates, and reviews detailed Assessment & Authorization documentation in accordance with DoD Instruction 8510.01 - DoD Information Assurance Assessment and Authorization (A&A) Process (RMF).
- Review systems scans/tests using the Security Content Automation Protocol (SCAP) Compliance Checker (SCC), and the Assured Content Assessment Solution (ACAS).
- Work with the NAVSEA, PEO IWS, combat system program offices to ensure DOD/DON cybersecurity regulations and best practices are followed in the design, development, and sustainment of the integrated combat systems and weapon systems.
- Assist in RMF package development activities as an ISSE or Validator.
|