Arctic Slope Regional Corporation - Huntsville, AL

posted 3 months ago

Full-time
Huntsville, AL
Support Activities for Mining

About the position

ASRC Federal Analytical Services, Inc is seeking a skilled Cyber Security Engineer to support system builds and implement information security best practices in a multi-platform and multi-network environment. The role involves performing security analysis, software assurance, and documentation of unique hardware and custom software throughout the full Risk Management Framework (RMF) life cycle. The Cyber Security Engineer will play a crucial role in supporting Information Assurance Certification and Accreditation (C&A) processes, ensuring compliance with Department of Defense (DoD) and Missile Defense Agency (MDA) directives, instructions, and guidelines across various hardware and software platforms. In this position, the engineer will collaborate with MDA cybersecurity management and case managers to ensure that all cybersecurity actions for the MDDC Program are addressed promptly, adhering to the requirements set forth by the MDA Designated Accrediting Authority and Certification Authority. The responsibilities include designing, developing, and implementing solutions that meet network and system security requirements, maintaining existing security products, and researching new monitoring and management tools to comply with MDA and DoD instructions. The engineer will also conduct vulnerability and risk analyses of computer systems, networks, software development deliverables, and applications, establishing complex system-wide information security requirements based on user, policy, regulatory, and resource demands. The ideal candidate will have experience in establishing a Defense Posture for Applications and maintaining compliance with DoD Cyber and Information Assurance (IA) policies. This role requires a proactive approach to security, with a focus on continuous improvement and adaptation to evolving threats and compliance requirements.

Responsibilities

  • System accreditations/authorizations through the NIST Risk Management Framework (RMF).
  • Understanding and validating NIST 800-53 Security Controls.
  • Understanding of the software assurance process per the MDA Software Assurance 8500.05 and Cybersecurity 8500.01.
  • Use of DoD mandated software including eMASS, ACAS, and McAfee HBSS preferred.
  • Demonstrated experience reviewing, implementing, and assessing DISA Security Technical Implementation Guides (STIGs), DISA Security Requirement Guides (SRGs), and NSA Security Configuration Guides preferred.
  • Perform tasks dealing with system builds, documentation review, system security hardening, and vulnerability management/reporting.
  • Support the development of CDRLs, library review and management, sprint release preparation, and threat and risk assessments as a member of software development scrums.
  • Research DoD policy and complete various security tasking.

Requirements

  • Experience in cyber/software assurance/DevSecOps security tools.
  • Secret Clearance.
  • US citizen.
  • Bachelor's degree in Engineering, Cybersecurity, Information Systems, or related field.
  • Certification: CCNP Security, CISA, CISSP (or other IAT-III certifications); Security +.
  • Familiarity with DoD security compliance documents as they relate to Linux and Windows environments is desired.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service