Summit Technologies & Solutions, Inc. · 1 day ago
Cybersecurity Engineer - ISSO
Summit Technologies & Solutions, Inc. is seeking a Cybersecurity Engineer - ISSO to support the Missile Defense Agency on the Integrated Research and Development for Enterprise Solutions contract. The role involves developing RMF Assessment and Authorization documentation, maintaining Authorization to Operate, and implementing security controls to ensure compliance with cybersecurity standards.
Information TechnologyManagement ConsultingProfessional Services
Responsibilities
Develop and provide RMF Assessment and Authorization (A&A) documentation in accordance DoD, NIST, and other governing documents
Maintain the current, approved Authorization to Operate (ATO) for assigned system. Gather and/or develop any needed A&A artifacts. Update artifacts as required ensuring that they are current and document findings in the approved Risk Management Framework (RMF) or similar A&A documentation format provided
Assist with monitoring and the implementation of security controls
Experience with incident management, response, and response coordination
Gathering artifacts/data to support cybersecurity metrics and reporting
Understanding of cybersecurity tools (ACAS, Trellix ePO, Elasticsearch) and verification of operation in accordance with requirements
Perform accurate and verified risk assessments that cover all of the security controls and policies for key stakeholders
Track, monitor, and manage the information system’s Plan of Action and Milestones (POA&M) and provide technical assistance as required
Analyze, verify and update PPSMs as required for programs
Provide artifacts that support the maintenance of security packages
Evaluate NIST 800-53 controls for applicability, generate implementation statements, and get implementations approved
Prepare documents in support of Control Validation Tests (CVTs) to confirm compliance of ATOs submitted for RMF packages
Qualification
Required
Must have 4, or more, years of general (full-time) work experience
Must have 2, or more, years of cyber security experience
Must have a high level of understanding for computer systems, operating systems, and network architecture
Must have a firm understanding and experience with Microsoft Office Suite
Must have experience with Configuration Management processes and workflows
Must have a current DoD 8570 IAT Level II certification (ex: Security+)
Must have an active DoD Top Secret Security Clearance with SCI eligibility
Have experience with conducting system and log auditing
Have experience with endpoint security enforcement and validation
Have experience with vulnerability management
Be familiar with Joint SAP Implementation Guide (JSIG)
Be familiar with Security Controls Traceability Matrix (SCTM)
Benefits
401(k)
401(k) matching
Dental insurance
Employee assistance program
Health insurance
Life insurance
Paid time off
Tuition reimbursement
Vision insurance