Job Requirements
Virginia Beach, VA
Secret Polygraph Unspecified
Career Level not specified
Salary not specified
Join Premium to unlock estimated salaries
Job Description
seeks a motivated, career and customer-oriented to join our team in . This is a position with 2-3 days onsite and 2-3 days remote.
This critical role focuses on the full lifecycle of cybersecurity engineering, from initial system design to maintaining a Continuous ATO (cATO) posture through diligent Annual Security Reviews (ASRs).
This critical role focuses on the full lifecycle of cybersecurity engineering, from initial system design to maintaining a Continuous ATO (cATO) posture through diligent Annual Security Reviews (ASRs).
- Performing cyber security research under NAVSEA for cloud and network solutions
- Assist in identifying information protection needs and defining security requirements for Information Systems (IS) and Cloud Network Environments.
- Support the design of security architecture and the implementation of specific cybersecurity countermeasures.
- Assist in cyber incident reviews and reporting. Conduct onsite SIPR-based research to retrieve and analyze incident data classified at the Secret level.
- Assist in performing Interconnection Approval (IAP) requests, Boundary Change Requests (BCRs), Privacy Impact Assessments (PIA), and Ports, Protocols, and Services Management (PPSM).
- Participate in Authorization to Operate (ATO) efforts using RMF, NIST 800-series, and Navy-specific guidance.
- Assist with auditing and updating IL5 & IL6 eMASS instances, including inheritance, POA&M, hardware, software, DADMS, diagrams for Secure Cloud Computing Architecture and Cloud Hosting Environments.
- Lead self-assessments and STIG reviews to ensure system hardening compliance.
- Manage the annual security review of full ATO packages to ensure on-time submission, extending accreditation dates and maintaining the Continuous ATO model.
- Track tasks via , creating and maintaining metadata (milestones, projects, descriptions and board linkages).
- Collect and integrate the latest Navy guidance to ensure issue templates and security documentation remain current.
- Bachelor's degree in Computer Science, IT, Engineering, or a related technical field and 1 year of relevant Information Systems experience OR High School diploma and 4 years of relevant Information Systems experience may be substituted in lieu of degree
- Active Security+ Certification (or other DoD 8570/8140 IAT Level II compliant certification).
- Knowledge of Navy Cloud brokerages and DoD and Navy-specific RMF guidance.
- Experience with GitHub for project tracking or documentation management.
- Familiarity with Federal compliance standards: FISMA, NIST Cybersecurity Framework, and FedRAMP.
- Understanding of technology for implementing security controls (Access Control, PAM, Data Loss Prevention, and Configuration Management).
- Must be able to obtain and maintain an active Secret security clearance.
- The person in this position must be able to remain in a stationary position 50% of the time.
- Must be able to move around the office and operate office equipment.
- Frequently communicate with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
group id: RTX14564a