Advanced Concepts Enterprises - Hurlburt Field, FL

posted 5 months ago

Full-time
Onsite - Hurlburt Field, FL
Professional, Scientific, and Technical Services

About the position

The Cyber/Information Assurance Security Advisor position at Advanced Concepts Enterprises, Inc. involves providing comprehensive cybersecurity administration and cyber assurance management/documentation. The role is crucial for overseeing AFSOC-managed information systems that support Intelligence, Surveillance, and Reconnaissance (ISR) operations in accordance with Intelligence Community (IC) Directive 503 and relevant Risk Management Framework (RMF) regulations and policies. The incumbent will work autonomously, managing and maintaining RMF documentation and security files, which include emission security documents, facility/network accreditation documentation, floor plans, emergency action plans, and standard operating procedures. In this role, the employee will perform a variety of tasks including security impact analysis, software and hardware product evaluations, security assessments, compliance testing, RMF package registration and decommissioning, and the review and submission of interconnection security agreements. The advisor will also be responsible for registering ports, protocols, and services, creating hardware/software baselines, and developing system/software/network data flow diagrams. Additionally, the role includes network scanning, vulnerability management, and the creation of Plans Of Actions And Milestones (POAMs), System Security Plans (SSPs), and Continuous Monitoring (CM) plans. The employee will assist with trusted agent duties for public key infrastructure and execute site surveys and security program assessments. Furthermore, the advisor will play a key role in the administration, management, facilitation, and remediation of information system/network security incidents and any negligent disclosure of classified information incidents. This position requires a proactive approach to cybersecurity and a thorough understanding of the associated regulations and best practices.

Responsibilities

  • Provide cybersecurity administration and cyber assurance management/documentation.
  • Manage and maintain RMF documentation and security files.
  • Perform security impact analysis and software/hardware product evaluations.
  • Conduct security assessments and compliance testing.
  • Register and decommission RMF packages.
  • Review and submit interconnection security agreements.
  • Register ports, protocols, and services.
  • Create hardware/software baselines and system/software/network data flow diagrams.
  • Conduct network scanning and vulnerability management.
  • Create Plans Of Actions And Milestones (POAMs) and System Security Plans (SSPs).
  • Develop Continuous Monitoring (CM) plans.
  • Assist with trusted agent duties for public key infrastructure.
  • Execute site surveys and security program assessments.
  • Administer, manage, facilitate, and remediate information system/network security incidents.

Requirements

  • Minimum 10 years of hands-on cyber and information assurance experience within the last 12 years.
  • Technician-level experience creating, managing, and maintaining RMF packages within security control databases (such as XACTA and eMASS).
  • Experience preparing RMF packages for discovery meetings, design reviews, and security assessments.
  • Experience reviewing, understanding, applying, and implementing RMF security controls, system data flows, hardware/software baselines, POAMs, SSP documentation, security assessment results, CM plans, and compliance testing results.
  • Must be DoD 8570.01-M (or current standard) IAM Level II certified.

Nice-to-haves

  • Bachelor's degree with at least 8 years of additional experience supporting Air Force and Special Operations Cyber and Information Assurance programs.
  • Additional years of general experience in the fields of Cyber and IA.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service