Job DescriptionThis role is a technical advisor for the Information Systems (IS) security requirements that are necessary for the protection of all sensitive information processed, stored, and/or transmitted using the IS. You will Interpret government requirements; prepare, validate, and maintain documentation in support of the Risk Management Framework (RMF). This role will also implement and oversee the program security plans, policies, and procedures necessary to ensure compliance with all company and government requirements.
The Operations Strategic Capabilities Unit plays a fundamental role in enabling efficient business and program execution - from strategic capital investments, industrial operations and an efficient supply chain, to state-of-the-art manufacturing and test operations and top-notch facilities management.
What You'll Do:- Support the Information System Security Manager in obtaining and maintaining ATO approvals for various systems by ensuring all required authorization documentation and artifacts are accurate, complete, and compliant.
- Execute RMF activities across assigned programs, including developing and maintaining system security documentation, managing POA&Ms, assessing and auditing security controls, and performing continuous monitoring.
- Perform continuous monitoring activities (weekly, monthly, etc.) and ensure all actions and artifacts comply with cognizant security authority requirements.
- Conduct risk and vulnerability assessments on classified systems to identify vulnerabilities, risks, and protection needs.
- Maintain a configuration management system to track and control all components and software of an IS used in support of programs.
- Utilize tools such as Splunk and Tenable Nessus to support monitoring, analysis, and vulnerability assessment activities, as applicable.
- Leverage experience with Windows and Linux operating systems to support system security evaluations and RMF-related activities.
- Serve as a technical expert and focal point for cybersecurity policy, planning, initiatives, certification, and accreditation.
- Promote information security awareness across the program.
- Maintain a regular and predictable work schedule.
- Establish and maintain effective working relationships within the department, the Strategic Business Units, Strategic Capabilities Units and the Company. Interact appropriately with others in order to maintain a positive and productive work environment.
- Perform other duties as necessary.
On-Site Work Environment: This position requires regular in-person engagement by working
on-site five days each normally scheduled week in the primary work location. Travel and local commute between company campuses and other possible non-company locations may be required.
Working Conditions: - Work is performed in an office environment, laboratory, cleanroom, or production floor.
Required Skills and Education- Related Bachelor's and 4 or more years of related experience
- Each higher-level degree, i.e., Associate's, Bachelor's Degree, Master's Degree or Ph.D., may substitute for additional years of experience.
- Related certifications may count towards years of related experience.
- Related technical experience may be considered in lieu of education. Degree must be from a university, college, or school which is accredited by an agency recognized by the US Secretary of Education, US Department of Education.
- A current, active TS/SCI security clearance is required with the ability to obtain and maintain a TS/SCI Polygraph.
- Ability to identify and respond to potential cyber threats to company equities utilizing advanced software applications and information provided by government partners and open-source intelligence gathering.
- 8140 compliant certification is required.
#LI-JL2
This position will be posted for at least 5 calendar days. The posting will remain active until the position is filled, or a qualified pool of candidates is identified.
Multiple positions may be available on this opening.