Job Requirements
Langley AFB, VA
Top Secret/SCI Polygraph not specified
Mid Level Career (5+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries
Job Description
Dynamo Technologies LLC is seeking an Information Security Analyst to provide cybersecurity and information security support to the ACC Cybersecurity Chief ISSO/ISSMs. The selected candidate will support the maintenance of an effective cybersecurity program that supports mission requirements and adequately protects the confidentiality, integrity, and availability of USAF IC information resources.
The Information Security Analyst will support SCI security administration, cybersecurity compliance monitoring, assessments and authorizations, security program oversight, personnel and physical security activities, and cybersecurity reporting. The position will interface with ACC/A2 SSO personnel, unit ISSOs/ISSMs, commanders, Government personnel, contractors, and military personnel to provide security guidance, assess compliance, support corrective actions, and improve cybersecurity programs.
The position will operate in accordance with applicable guidance, including DODM 5105.21, ICD 704, ICO 705, and AFMAN 14-403, and will perform duties associated with the administration, protection, accountability, and safeguarding of SCI materials and SCIF operations.
Duties/ Responsibilities:
Operate in accordance with guidance directed in DODM 5105.21, ICD 704, ICO 705, and AFMAN 14-403.
Interface with the ACC/A2 SSO office for matters relating to SCI materials, access, and security.
Administer the SCI security program, including SCI security oversight of division SCIFs.
Properly account for, control, transmit, transport, package, and safeguard SCI; provide for destruction of SCI by authorized means and in accordance with applicable guidance and DD Form 254, as appropriate.
Disseminate SCI only to personnel authorized access to the material and having an established need to know.
Serve as the official channel for certifying and receiving SCI visitor clearances and accesses.
Maintain the Defense Information System of Security accurately to reflect all personnel under cognizance.
Conduct or otherwise manage SCI personnel, information, physical, and technical security actions and procedures, including TEMPEST and TSCM activities, in accordance with applicable guidance.
Provide guidance and assistance for processing SCI position and eligibility requests.
Report and investigate unauthorized disclosures of classified intelligence information in accordance with applicable guidance and manuals.
Maintain continuing liaison, as required, with non-SCI security officials.
Maintain SCIF access rosters and validate clearances for non-badged visitors.
Update SF Form 700 and Container Combo Forms as needed; complete forms for combination changes; ensure Container Maintenance Records, including AFTO 36/Optional Form 89, are maintained in containers; and ensure inspections are accomplished at least every five years.
Approve all new media within the SCIF; verify the need for the media, classification markings, labeling, and accountability. When media is destroyed or transferred, ensure the applicable media log reflects the action.
Ensure no unmarked media is left unsecured within the facility.
Ensure SCIF badges are worn at all times by personnel within the SCIF.
Ensure Computer Virus Reporting Procedures are posted on or next to each system.
Ensure all systems are marked with required Program stickers.
Ensure every system has a classification/accountability label on the exterior identifying the hard drive and that a duplicate label is affixed to the hard drive without covering the drive serial number.
Ensure computer screen banners match the overall classification of the operating system and coordinate immediate correction with the unit ISSO when discrepancies are identified.
Ensure cell phones and unauthorized media are prohibited within the facility.
Update Alarm Access Records as required by reviewing access requirements, adding new personnel, removing personnel who no longer require access, and providing updates to the alarm shop.
Maintain accountability of all secure phones and associated secure cards.
Ensure Security Management contact signs on the exterior and interior of the facility are current for emergency contact purposes.
Ensure security approval letters for copiers and shredders are displayed above each device.
Inspect flashing lights indicating the presence of uncleared personnel within the facility and notify the Facility Custodian when repair is required.
Perform monthly updates of SF Form 702, Security Container Check Sheet, for the main entrance door and all safes, maintaining one month of records.
Perform monthly updates of SF Form 701, Activity Security Checklist, and use the checklist to conduct end-of-day checks. Conduct monthly random entry/exit checks.
Conduct quarterly alarm tests with the Law Enforcement Desk and test all applicable door and motion sensors within the facility.
Conduct quarterly verification of audible alarms on emergency exit doors.
Ensure all SCIF occupants complete and maintain required initial and recurring security training.
Gather data, analyze compliance, and report results concerning ACC Cybersecurity programs, security plans, POA&Ms, Assessment and Authorization (A&A) workflow tool data, patch management, Information Assurance Vulnerability Alerts (IAVAs), DoD 8140 certifications, Federal Information System Modernization Act (FISMA) compliance tasks, and Authorizations to Operate (ATOs).
Interact with unit ISSOs/ISSMs and commanders to provide cybersecurity guidance, complete assessment reports, and recommend solutions to improve cybersecurity programs.
Assist in developing and providing on-the-job work center training to Government, Contractor, and military personnel on IT security tools, policies, and procedures required to protect resources and meet applicable standards.
Support cybersecurity trainers by providing updated information and materials for their areas of responsibility to maintain compliance with USAF, DoD, IC, and other national agency standards.
Perform other related information security and cybersecurity duties as assigned in support of the ACC Cybersecurity mission.
Required Skills/Abilities:
Working knowledge of Information Security Officer and Information System Security Officer/Manager (ISSO/ISSM) functions and cybersecurity program requirements.
Knowledge of SCI security requirements, SCIF security procedures, classified information handling, access control, and security accountability processes.
Experience supporting cybersecurity assessments, authorizations, compliance monitoring, security plans, POA&Ms, ATOs, FISMA tasks, IAVAs, and patch management.
Ability to analyze cybersecurity compliance data and prepare assessment reports and program status information.
Ability to interpret and apply DoD, USAF, and Intelligence Community security policies and procedures.
Ability to maintain accurate security records, rosters, logs, forms, and accountability documentation.
Ability to communicate effectively with ISSOs/ISSMs, commanders, Government personnel, contractors, military personnel, and security officials.
Strong attention to detail and ability to identify security deficiencies and recommend corrective actions.
Ability to provide cybersecurity and information security training and guidance to personnel.
Ability to manage multiple security, compliance, and operational requirements in a mission-focused environment.
Education and Experience:
Bachelor's degree in business administration, Public Administration, Human Resources, Management, or a related field is preferred.
Six (6) years of relevant experience may be substituted for a bachelor's degree.
Five (5) or more years of experience supporting military personnel management, resource management, program management, or administrative operations within the Department of Defense or a related federal environment.
Clearance:
Occasional Travel may be required
Travel Requirement:
Active Top Secret clearance with Sensitive Compartmented Information (TS/SCI) eligibility/access required.
Salary Range: The salary range for this position represents Dynamo's good-faith estimate of the compensation expected to be offered at the time of posting. Actual compensation will be determined based on several factors, including, but not limited to, the responsibilities of the role, the candidate's experience, skills, education, work location, and internal equity.
100-115k annually
Dynamo is a full lifecycle digital transformation company providing best-in-class technology and mission support services to our clients. Dynamo’s mission is to lead the digital transformation industry and provide best-in-class solutions for our clients with a truly human touch.
We leverage industry leading practices to empower our clients, ultimately providing them with the necessary tools, knowledge, and information required to successfully achieve their strategic goals, while optimizing their operations.
Through our partnerships, boldness, and authenticity, Dynamo goes against the grain of a traditional government contracting company by providing top-caliber team members, delivering quality results, and always exceeding expectations.
Dynamo Technologies is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, national origin, religion, sex, pregnancy, disability, protected veteran status, age, or any other characteristic protected by law.
The Information Security Analyst will support SCI security administration, cybersecurity compliance monitoring, assessments and authorizations, security program oversight, personnel and physical security activities, and cybersecurity reporting. The position will interface with ACC/A2 SSO personnel, unit ISSOs/ISSMs, commanders, Government personnel, contractors, and military personnel to provide security guidance, assess compliance, support corrective actions, and improve cybersecurity programs.
The position will operate in accordance with applicable guidance, including DODM 5105.21, ICD 704, ICO 705, and AFMAN 14-403, and will perform duties associated with the administration, protection, accountability, and safeguarding of SCI materials and SCIF operations.
Duties/ Responsibilities:
Operate in accordance with guidance directed in DODM 5105.21, ICD 704, ICO 705, and AFMAN 14-403.
Interface with the ACC/A2 SSO office for matters relating to SCI materials, access, and security.
Administer the SCI security program, including SCI security oversight of division SCIFs.
Properly account for, control, transmit, transport, package, and safeguard SCI; provide for destruction of SCI by authorized means and in accordance with applicable guidance and DD Form 254, as appropriate.
Disseminate SCI only to personnel authorized access to the material and having an established need to know.
Serve as the official channel for certifying and receiving SCI visitor clearances and accesses.
Maintain the Defense Information System of Security accurately to reflect all personnel under cognizance.
Conduct or otherwise manage SCI personnel, information, physical, and technical security actions and procedures, including TEMPEST and TSCM activities, in accordance with applicable guidance.
Provide guidance and assistance for processing SCI position and eligibility requests.
Report and investigate unauthorized disclosures of classified intelligence information in accordance with applicable guidance and manuals.
Maintain continuing liaison, as required, with non-SCI security officials.
Maintain SCIF access rosters and validate clearances for non-badged visitors.
Update SF Form 700 and Container Combo Forms as needed; complete forms for combination changes; ensure Container Maintenance Records, including AFTO 36/Optional Form 89, are maintained in containers; and ensure inspections are accomplished at least every five years.
Approve all new media within the SCIF; verify the need for the media, classification markings, labeling, and accountability. When media is destroyed or transferred, ensure the applicable media log reflects the action.
Ensure no unmarked media is left unsecured within the facility.
Ensure SCIF badges are worn at all times by personnel within the SCIF.
Ensure Computer Virus Reporting Procedures are posted on or next to each system.
Ensure all systems are marked with required Program stickers.
Ensure every system has a classification/accountability label on the exterior identifying the hard drive and that a duplicate label is affixed to the hard drive without covering the drive serial number.
Ensure computer screen banners match the overall classification of the operating system and coordinate immediate correction with the unit ISSO when discrepancies are identified.
Ensure cell phones and unauthorized media are prohibited within the facility.
Update Alarm Access Records as required by reviewing access requirements, adding new personnel, removing personnel who no longer require access, and providing updates to the alarm shop.
Maintain accountability of all secure phones and associated secure cards.
Ensure Security Management contact signs on the exterior and interior of the facility are current for emergency contact purposes.
Ensure security approval letters for copiers and shredders are displayed above each device.
Inspect flashing lights indicating the presence of uncleared personnel within the facility and notify the Facility Custodian when repair is required.
Perform monthly updates of SF Form 702, Security Container Check Sheet, for the main entrance door and all safes, maintaining one month of records.
Perform monthly updates of SF Form 701, Activity Security Checklist, and use the checklist to conduct end-of-day checks. Conduct monthly random entry/exit checks.
Conduct quarterly alarm tests with the Law Enforcement Desk and test all applicable door and motion sensors within the facility.
Conduct quarterly verification of audible alarms on emergency exit doors.
Ensure all SCIF occupants complete and maintain required initial and recurring security training.
Gather data, analyze compliance, and report results concerning ACC Cybersecurity programs, security plans, POA&Ms, Assessment and Authorization (A&A) workflow tool data, patch management, Information Assurance Vulnerability Alerts (IAVAs), DoD 8140 certifications, Federal Information System Modernization Act (FISMA) compliance tasks, and Authorizations to Operate (ATOs).
Interact with unit ISSOs/ISSMs and commanders to provide cybersecurity guidance, complete assessment reports, and recommend solutions to improve cybersecurity programs.
Assist in developing and providing on-the-job work center training to Government, Contractor, and military personnel on IT security tools, policies, and procedures required to protect resources and meet applicable standards.
Support cybersecurity trainers by providing updated information and materials for their areas of responsibility to maintain compliance with USAF, DoD, IC, and other national agency standards.
Perform other related information security and cybersecurity duties as assigned in support of the ACC Cybersecurity mission.
Required Skills/Abilities:
Working knowledge of Information Security Officer and Information System Security Officer/Manager (ISSO/ISSM) functions and cybersecurity program requirements.
Knowledge of SCI security requirements, SCIF security procedures, classified information handling, access control, and security accountability processes.
Experience supporting cybersecurity assessments, authorizations, compliance monitoring, security plans, POA&Ms, ATOs, FISMA tasks, IAVAs, and patch management.
Ability to analyze cybersecurity compliance data and prepare assessment reports and program status information.
Ability to interpret and apply DoD, USAF, and Intelligence Community security policies and procedures.
Ability to maintain accurate security records, rosters, logs, forms, and accountability documentation.
Ability to communicate effectively with ISSOs/ISSMs, commanders, Government personnel, contractors, military personnel, and security officials.
Strong attention to detail and ability to identify security deficiencies and recommend corrective actions.
Ability to provide cybersecurity and information security training and guidance to personnel.
Ability to manage multiple security, compliance, and operational requirements in a mission-focused environment.
Education and Experience:
Bachelor's degree in business administration, Public Administration, Human Resources, Management, or a related field is preferred.
Six (6) years of relevant experience may be substituted for a bachelor's degree.
Five (5) or more years of experience supporting military personnel management, resource management, program management, or administrative operations within the Department of Defense or a related federal environment.
Clearance:
Occasional Travel may be required
Travel Requirement:
Active Top Secret clearance with Sensitive Compartmented Information (TS/SCI) eligibility/access required.
Salary Range: The salary range for this position represents Dynamo's good-faith estimate of the compensation expected to be offered at the time of posting. Actual compensation will be determined based on several factors, including, but not limited to, the responsibilities of the role, the candidate's experience, skills, education, work location, and internal equity.
100-115k annually
Dynamo is a full lifecycle digital transformation company providing best-in-class technology and mission support services to our clients. Dynamo’s mission is to lead the digital transformation industry and provide best-in-class solutions for our clients with a truly human touch.
We leverage industry leading practices to empower our clients, ultimately providing them with the necessary tools, knowledge, and information required to successfully achieve their strategic goals, while optimizing their operations.
Through our partnerships, boldness, and authenticity, Dynamo goes against the grain of a traditional government contracting company by providing top-caliber team members, delivering quality results, and always exceeding expectations.
Dynamo Technologies is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, national origin, religion, sex, pregnancy, disability, protected veteran status, age, or any other characteristic protected by law.
group id: 10514069