Jacobs Engineering Group - Coronado, CA

posted 3 months ago

Full-time - Entry Level
Coronado, CA
Professional, Scientific, and Technical Services

About the position

As a Cybersecurity Systems Analyst - Associate at Jacobs Technology, Inc., you will play a crucial role in ensuring the security and compliance of IT systems within the U.S. Special Operations Command (USSOCOM) and its associated commands. Your primary responsibilities will include performing assessment and authorization coordination, advising on Risk Management Framework (RMF) processes, and developing Plans of Action and Milestones (POA&Ms) to address network deficiencies in accordance with Department of Defense Instruction (DODI) 8510.01 and Intelligence Community Directive (ICD) 503. You will assess network compliance against controls outlined in NIST 800-53 and create comprehensive Assessment and Authorization (A&A) packages to support the Cybersecurity program at USSOCOM and its Component Commands. In this role, you will conduct thorough assessments, compliance checks, and validations of IT systems to ensure they meet regulatory and security standards. Your efforts will be directed towards identifying and mitigating potential vulnerabilities within customer systems, thereby ensuring their integrity. You will also provide expert advice to USSOCOM and its Component Commands on network and system risks, as well as recommend risk mitigation strategies and operational improvements. Your technical expertise will be essential as you perform security evaluations and vulnerability assessments using tools such as the DOD Assured Compliance Assessment Solution (ACAS) and Nessus. You will identify applicable Security Technical Implementation Guides (STIGs) and perform assessments to ensure compliance. Additionally, you will collaborate with network and system administrators to rectify identified deficiencies and review scans for new systems and applications being introduced into the Special Operations Forces (SOF) environment. Your typical duties will include tracking the A&A status of systems, maintaining documentation for new and existing networks, and developing and reviewing A&A processes for various IT assets. You will also be responsible for preparing risk assessment reports, enforcing A&A standards, and ensuring compliance with cybersecurity regulations. Your role will require you to maintain an Information Security Continuous Monitoring (ISCM) Plan, coordinate with various defense organizations, and provide subject matter expertise for the development and implementation of cybersecurity strategies.

Responsibilities

  • Perform assessment and authorization coordination for IT systems.
  • Advise and assist customers with Risk Management Framework (RMF) processes.
  • Develop Plans of Action and Milestones (POA&Ms) for network deficiencies.
  • Assess network compliance against NIST 800-53 controls and create A&A packages.
  • Conduct compliance and validation assessments of IT systems for USSOCOM and its Component Commands.
  • Identify and mitigate potential vulnerabilities in customer systems.
  • Perform security evaluations and vulnerability assessments using ACAS and Nessus.
  • Liaison with network and system administrators to correct identified deficiencies.
  • Track A&A status of SIE governed information systems (ISs).
  • Maintain and validate DISN, cloud, and DIA connection approval packages.
  • Develop and maintain documentation for networks and cloud environments.
  • Prepare risk assessment reports for submission to the Authorizing Official.
  • Track and maintain A&A databases and tools for cybersecurity documentation.
  • Ensure timely notifications to prevent lapses in accreditations.
  • Develop and maintain an Information Security Continuous Monitoring (ISCM) Plan.
  • Coordinate with USCYBERCOM, DoD, DIA, NSA, and DISA for issue resolution.
  • Perform network and system security authorization and assessments.

Requirements

  • 5 years of experience in cybersecurity or related field.
  • Bachelor's degree in a relevant field.
  • Current DoD 8570.01-M certification, DoD IAT Level II certification required.
  • Technical background in system administration, architecture, and engineering preferred.
  • Experience with US Combatant Commands (USCENTCOM/USSOCOM) is desired.
  • Knowledge of networking, identity management, Microsoft and Linux operating systems, and databases.
  • Working knowledge of the Risk Management Framework (RMF).
  • Familiarity with Telos Xacta or Enterprise Mission Assurance Support Services (eMASS) system is desired.
  • Excellent written and oral communication skills.
  • Knowledge of DoD Information Assurance (IA) processes and policies.

Nice-to-haves

  • Experience with cybersecurity tools such as endpoint security and SIEM.
  • Familiarity with compliance to connect policies.
  • Experience in project management support services.

Benefits

  • Medical, dental, and vision insurance coverage.
  • Basic life insurance.
  • 401k plan with company match.
  • Deferred compensation plan and Executive Deferral Plan.
  • 15 days of vacation per year.
  • 10 paid holidays.
  • Caregiver leave.
  • Opportunity to purchase company stock.
  • Performance discretionary bonus.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service