Lockheed Martin - Orlando, FL

posted 5 months ago

Full-time - Mid Level
Orlando, FL
Transportation Equipment Manufacturing

About the position

Lockheed Martin's Missiles and Fire Control (MFC) business is seeking a Classified Cyber Security Staff to join the Classified Cyber Security Special Programs team in Orlando, FL. The candidate must have a working knowledge of the Risk Management Framework (RMF). This position involves overseeing day-to-day information system security operations, assisting the Information System Security Manager (ISSM) on all technical security matters, and ensuring compliance with internal and customer security requirements. The role requires participation in auditing and continuous monitoring of information systems, as well as reviewing and overseeing RMF Package authorizations. The Classified Cyber Security Staff will be responsible for maintaining and monitoring security events, documenting compliance actions, and ensuring that systems are operated, maintained, and disposed of according to internal security policies. The candidate will also be tasked with ensuring configuration management for security-relevant software, hardware, and documentation, as well as evaluating proposed changes to the information system and advising the ISSM on their security relevance. Additionally, the role includes conducting security education and training, participating in internal and external audits, and assisting in investigations of security violations and incidents. The ideal candidate will have a strong background in information security, with hands-on experience in IS auditing and investigations, knowledge of operating system security requirements, and familiarity with industry-standard Information Assurance tools. The position requires a government security clearance, and the candidate must be a US Citizen. This is a full-time position that will be performed onsite at a designated Lockheed Martin facility, with a work schedule of 4x10 hours, providing three days off per week.

Responsibilities

  • Oversee day-to-day information system security operations including assisting the ISSM on all technical security matters.
  • Carry out technical administration of IS in accordance with internal LM and customer security requirements, primarily Risk Management Framework (RMF).
  • Participate in auditing and continuous monitoring of the IS.
  • Review and oversee RMF Package authorizations.
  • Upkeep, monitor, analyze, and respond to security events.
  • Document compliance actions within the approved automated compliance tracking system or develop a plan of actions and milestones (POA&M).
  • Ensure systems are operated, maintained, and disposed of in accordance with internal security policies and practices.
  • Ensure configuration management (CM) for security-relevant IS software, hardware, firmware, and system documentation.
  • Ensure all information systems lifecycle management documentation are maintained.
  • Evaluate proposed changes or additions to the information system, and advise the ISSM of their security relevance.
  • Assist and conduct security IS education and training.
  • Participate in internal/external security audits/inspections; perform risk assessments.
  • Assist in conducting investigations of computer security violations and incidents.
  • Ensure proper protection and corrective measures are taken when an incident or vulnerability has been discovered.
  • Implement and enforce Information Security Policies and Procedures together with ISSM and CPSO.

Requirements

  • Clearance required
  • Experience with IS auditing and investigations
  • Knowledgeable of operating system security requirements
  • Hands-on experience with industry standard Information Assurance tools
  • Experience with developing, reviewing and maintaining RMF artifacts
  • Sec+ or equivalent DoD Directive 8570 / 8140 Information Assurance Management Level II or III certification, or ability to attain within six months of hire date.

Nice-to-haves

  • Currently working in environment supporting IC customers
  • Proven ability to obtain and maintain system ATOs
  • Hands-on experience with ICD 503/JSIG and DAAPAM
  • Experience implementing new and complex technologies at multiple classification levels within large environments and at an Enterprise level
  • Bachelor's degree from an accredited college in a related discipline, or equivalent experience/combined education, with 9 years of professional experience; or 7 years of professional experience with a related Master's degree.

Benefits

  • Flexible work schedules
  • Paid Time Off benefits
  • Relocation assistance possible
  • Comprehensive benefits package
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service