12 дней назад
Journeyman Cybersecurity Engineer (DoD)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Journeyman Cybersecurity Engineer (DoD): Supporting cybersecurity engineering and RMF authorization activities for Air Force command, control, and surveillance systems with an accent on compliance documentation, vulnerability remediation, and classified system security. Focus on recovering high-volume ATO backlogs, assessing security controls, maintaining auditable eMASS records, and integrating cybersecurity requirements into system architecture.
Location: Tinker AFB, Oklahoma, United States; onsite
Company
provides engineering and cybersecurity support to the Air Force Life Cycle Management Center's Ground Base Air Defense Sensor division.
What you will do
- Develop security documentation, including System Security Management Plans, Program Protection Plans, Security Risk Analyses, and OPSEC Plans.
- Support Risk Management Framework authorization and accreditation activities and review security control implementation.
- Manage user accounts, ports and protocols, PKI requirements, access control lists, configurations, and security updates.
- Conduct risk and vulnerability assessments and support remediation, contingency planning, and disaster recovery planning.
- Maintain auditable eMASS records, classified-information databases, visits, and clearance information.
- Coordinate with government, contractor, industry, and Authorizing Official stakeholders and deliver security awareness training.
Requirements
- Must be a US citizen.
- Must hold and maintain an active Top Secret clearance.
- At least 7 years of experience in the relevant technical or professional discipline, including 3 years in the Department of Defense, is preferred.
- Bachelor's degree in a professional engineering discipline from an ABET-accredited program is preferred.
- Experience with STIG compliance, RMF implementation, DoD cybersecurity policies, A&A processes, vulnerability management, and classified material handling.
- Ability to communicate technical risks, work through incomplete documentation, and collaborate with government and industry stakeholders.
Nice to have
- Security+ certification.
- Experience with legacy, isolated, or non-AFNET-connected systems.
- Knowledge of DoD cloud infrastructure, CI/CD, DevSecOps, and DevOps.
- Experience with eMASS, DAF authorization processes, CSSP coordination, POA&M remediation, and Security Plan development.
Culture & Benefits
- Full-time position supporting a high-volume Air Force authorization and compliance effort.
- Limited travel may be required as needed.
- Work involves collaboration with government, contractor, and industry stakeholders.
- Responsibilities include managing multiple priorities in a fast-paced environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →