Job Description
BAE is looking for an Cybersecurity Specialist to support our customer as they develop, deploy, modernize, and expand the program. The candidate will help to mature current processes, to include leveraging existing and incoming security tools, develop policy and procedures, and coordinate with both internal and external partners. The candidate will also provide project management and subject matter expertise to guide risk management framework (RMF) activities, working closely with internal stakeholders and external oversight organizations to ensure timely and compliant system authorizations.
Primary duties include:
• Work as part of an integrated team to develop and maintain RMF body of evidence documentation (e.g., System Security Plan, Security Controls Traceability Matrix, Plan of Action and Milestones, etc.) using Enterprise Mission Assurance Support Service (eMASS) and/or Microsoft products such as Word, Excel, PowerPoint, and Visio
• Install, configure, troubleshoot, and design solutions with a wide selection of Cyber industry tools
• Maintain repositories of all body of evidence documentation for systems under your purview and ensure they are accessible only to properly authorized individuals
• Work with identity management/rights management tools and implementation models
• Apply of PKI and other common cryptographic best practices
• Develop and execute security control assessment procedures to verify conformance with control requirements as part of ongoing continuous monitoring and authorization assessment activities
• Ensure all security-related vulnerabilities and deficiencies are documented in the Plan of Action and Milestones (POA&M)
Required Skills and Education
• Active Top Secret or DoE Q clearance with SCI eligibility (must be eligible for SCI indoctrination within first 3 months of start date) and be able to obtain and maintain TS/SCI
• Bachelor's degree in Computer Science or a STEM-related field and 9 years of relevant experience.
Four (4) years of experience will be accepted in lieu of education
• 5+ years of relevant cybersecurity experience
• RMF and ATO experience
• eMASS experience
• POAM creation experienc
This position will be posted for at least 5 calendar days. The posting will remain active until the position is filled, or a qualified pool of candidates is identified.
Preferred Skills and Education
• IAT Level II or Cyber Security Service Provider (CSSP) certification
• Linux and Windows integration in a virtualized environment
• ESS and ACAS installation and management experience
• Experience with SCAP scans and STIG viewer
• Experience with patching and applying STIGs and other cyber technologies that implement security controls in military cyberspace operational environments, to include firewalls, router ACLs, PKI, OWASP, scripting, identity management, virtualization, etc.
• Experience with Static Code Analysis using tools such as Fortify