Job Requirements
Palm Bay, FL
Top Secret/SCI Polygraph not specified
Mid Level Career (5+ yrs experience)
$92,000 - $157,000
Job Description
Responsibilities
• Prepare and maintain Assessment & Authorization (A&A) documentation to support Authority to Operate (ATO) efforts using NIST Risk Management Framework (RMF) methodologies.
• Support the design, integration, implementation, and sustainment of secure information systems and system architectures.
• Apply cybersecurity engineering principles and security-by-design practices throughout the system development lifecycle.
• Analyze system requirements and translate them into security requirements, controls, and technical solutions.
• Conduct security assessments, gap analyses, vulnerability reviews, and risk evaluations across information systems and supporting infrastructure.
• Research security vulnerabilities and support remediation, mitigation, and corrective action efforts.
• Implement and validate security controls to ensure compliance with regulatory, contractual, and organizational requirements.
• Support Windows and Linux system hardening, patch management, secure configurations, and vulnerability remediation activities.
• Develop and maintain cybersecurity documentation, policies, procedures, standards, and technical artifacts.
• Support audits, inspections, customer assessments, and compliance reviews by providing technical evidence and documentation.
• Communicate cybersecurity risks, findings, and recommendations to technical and non-technical stakeholders.
Requirements
• Bachelor’s degree and 4+ years of Information Assurance, Information Security, Cybersecurity Engineering, ISSE, ISSO, Systems Engineering, or related experience. Equivalent experience may be considered in lieu of degree.
• Active Top Secret / SCI security clearance.
• Must have IAT Level II certification or higher.
• Experience supporting ATO efforts and managing RMF documentation and security packages.
• Working knowledge of NIST RMF, NIST 800-53, DoD cybersecurity frameworks, security controls, and accreditation processes.
• Experience with Windows and Linux operating systems, system hardening, patch management, and security compliance.
• Experience performing vulnerability assessments, risk analysis, security control implementation, and remediation activities.
• Familiarity with vulnerability management tools, endpoint protection platforms, and enterprise security technologies.
• Strong technical writing, documentation, analytical, and communication skills.
• Ability to work effectively in secure and highly regulated environments.
Preferred Qualifications
• Experience with STIG/SRG compliance validation and automated compliance scanning tools.
• Experience with vulnerability scanning tools, IDS/IPS technologies, endpoint security platforms, and risk assessment tools.
• Knowledge of cloud security, containerization technologies, Kubernetes, Docker, and microservices security.
• Familiarity with DevSecOps methodologies, CI/CD pipeline security, and Infrastructure as Code (IaC) security practices.
• Experience supporting defense, aerospace, federal government, intelligence community, or other highly regulated environments.
Understanding of cloud-based security architectures, security control inheritance, and hybrid infrastructure security models.
Compensation: $92,000 - $157,000.
• Prepare and maintain Assessment & Authorization (A&A) documentation to support Authority to Operate (ATO) efforts using NIST Risk Management Framework (RMF) methodologies.
• Support the design, integration, implementation, and sustainment of secure information systems and system architectures.
• Apply cybersecurity engineering principles and security-by-design practices throughout the system development lifecycle.
• Analyze system requirements and translate them into security requirements, controls, and technical solutions.
• Conduct security assessments, gap analyses, vulnerability reviews, and risk evaluations across information systems and supporting infrastructure.
• Research security vulnerabilities and support remediation, mitigation, and corrective action efforts.
• Implement and validate security controls to ensure compliance with regulatory, contractual, and organizational requirements.
• Support Windows and Linux system hardening, patch management, secure configurations, and vulnerability remediation activities.
• Develop and maintain cybersecurity documentation, policies, procedures, standards, and technical artifacts.
• Support audits, inspections, customer assessments, and compliance reviews by providing technical evidence and documentation.
• Communicate cybersecurity risks, findings, and recommendations to technical and non-technical stakeholders.
Requirements
• Bachelor’s degree and 4+ years of Information Assurance, Information Security, Cybersecurity Engineering, ISSE, ISSO, Systems Engineering, or related experience. Equivalent experience may be considered in lieu of degree.
• Active Top Secret / SCI security clearance.
• Must have IAT Level II certification or higher.
• Experience supporting ATO efforts and managing RMF documentation and security packages.
• Working knowledge of NIST RMF, NIST 800-53, DoD cybersecurity frameworks, security controls, and accreditation processes.
• Experience with Windows and Linux operating systems, system hardening, patch management, and security compliance.
• Experience performing vulnerability assessments, risk analysis, security control implementation, and remediation activities.
• Familiarity with vulnerability management tools, endpoint protection platforms, and enterprise security technologies.
• Strong technical writing, documentation, analytical, and communication skills.
• Ability to work effectively in secure and highly regulated environments.
Preferred Qualifications
• Experience with STIG/SRG compliance validation and automated compliance scanning tools.
• Experience with vulnerability scanning tools, IDS/IPS technologies, endpoint security platforms, and risk assessment tools.
• Knowledge of cloud security, containerization technologies, Kubernetes, Docker, and microservices security.
• Familiarity with DevSecOps methodologies, CI/CD pipeline security, and Infrastructure as Code (IaC) security practices.
• Experience supporting defense, aerospace, federal government, intelligence community, or other highly regulated environments.
Understanding of cloud-based security architectures, security control inheritance, and hybrid infrastructure security models.
Compensation: $92,000 - $157,000.
group id: 10112344
Defining Company Culture