Job Requirements
Scott Air Force Base, IL
Secret Polygraph not specified
Mid Level Career (5+ yrs experience)
$120,000 - $140,000
Job Description
Work Location: Scott Air Force Base, Illinois (primary)
Leads all Cybersecurity Operations (CSO) under U.S. Army Transportation Command (ARTRANS) C4ISR and distribution operations, directing RMF, vulnerability management, security tool administration, and incident response across in-scope Army networks (NIPR/SIPR).
Key Responsibilities
• Direct RMF documentation and Authorization to Operate (ATO) sustainment; submit RMF packages via eMASS and RMF Strategy [RS3.1]
• Oversee weekly vulnerability scanning and POA&M management using Tenable/ACAS; STIG/SCAP compliance reporting.
• Administer Government-furnished security tools (Trellix ePO/HBSS, Cisco ISE, Palo Alto NGFW/Panorama, Splunk/SIEM, Symantec ProxySG).
• Lead incident response — identify, contain, eradicate, recover; report incidents; deliver Cybersecurity Scorecard data and quarantine reports.
Required Qualifications, Certifications & Experience
• 6+ years of cybersecurity operations experience in a DoD environment (RMF, vulnerability management, incident response).
• DCWF Work Role 621 - Cyber Defense Analyst, Intermediate proficiency. Common qualifying certifications: CySA+, GCIA, CEH.
• Full DoDM 8140.03 foundational qualification prior to start. Residentially Qualified at the start of work for elevated access to any system, network, or enclave.
• SECRET clearance (final, adjudicated) at minimum; U.S. citizenship as required for clearance.
• Experience achieving/sustaining ATO under RMF for Army systems; familiarity with USTCI 6600.01[RS4.1].
• Advanced certification such as CISSP, GCIH, or CASP+.
Leads all Cybersecurity Operations (CSO) under U.S. Army Transportation Command (ARTRANS) C4ISR and distribution operations, directing RMF, vulnerability management, security tool administration, and incident response across in-scope Army networks (NIPR/SIPR).
Key Responsibilities
• Direct RMF documentation and Authorization to Operate (ATO) sustainment; submit RMF packages via eMASS and RMF Strategy [RS3.1]
• Oversee weekly vulnerability scanning and POA&M management using Tenable/ACAS; STIG/SCAP compliance reporting.
• Administer Government-furnished security tools (Trellix ePO/HBSS, Cisco ISE, Palo Alto NGFW/Panorama, Splunk/SIEM, Symantec ProxySG).
• Lead incident response — identify, contain, eradicate, recover; report incidents; deliver Cybersecurity Scorecard data and quarantine reports.
Required Qualifications, Certifications & Experience
• 6+ years of cybersecurity operations experience in a DoD environment (RMF, vulnerability management, incident response).
• DCWF Work Role 621 - Cyber Defense Analyst, Intermediate proficiency. Common qualifying certifications: CySA+, GCIA, CEH.
• Full DoDM 8140.03 foundational qualification prior to start. Residentially Qualified at the start of work for elevated access to any system, network, or enclave.
• SECRET clearance (final, adjudicated) at minimum; U.S. citizenship as required for clearance.
• Experience achieving/sustaining ATO under RMF for Army systems; familiarity with USTCI 6600.01[RS4.1].
• Advanced certification such as CISSP, GCIH, or CASP+.
group id: 10105424