Abacus Technology

Cyber Security Principal

Abacus Technology • $125K — $150K *
Aerospace & Defense
11 - 15 years of experience
Job Overview by Ladders

Qualifications

  • 15+ years in IT with at least 10 years in cybersecurity roles.
  • Master’s degree in a cybersecurity-related field or equivalent experience.
  • Certification in compliance with DoDD 8140 IAM Level III (e.g., GSLC, CISM, CISSP).
  • Strong knowledge of Microsoft Windows technologies and basic Linux experience.
  • Familiarity with networking equipment like Cisco and Juniper.

Responsibilities

  • Serve as the Information System Security Manager (ISSM) to maintain system security posture.
  • Support the implementation of the Risk Management Framework (RMF).
  • Develop and enforce formal Information Systems security policies.
  • Guide the assessment and quality of authorization and accreditation (A&A) activities.
  • Address vulnerability and incident responses effectively.
  • Report on the status of information systems and necessary corrective actions.
  • Direct ISSOs to comply with established cybersecurity policies.

Benefits

  • Work in a stable full-time role within a critical security operations environment.
  • Collaborate closely with the U.S. government on important cybersecurity projects.
  • Contribute to national security efforts through advanced cybersecurity practices.
  • Engage in continuous learning and professional development opportunities.
Full Job Description
Overview

Abacus Technology is seeking a Cyber Security SME to serve as an Information System Security Manager (ISSM) and act as a technical advisor for security issues for the Command, Control, Communication, Intelligence and Networks (C3I&N) Directorate at Hanscom AFB.  This is a full-time position.

Responsibilities
  • Serve as the Information System Security Manager (ISSM) and act as technical advisors to AOs, primarily responsible for maintaining the overall security posture of the systems within their organization and are accountable for the implementation of DoDI 8510.01. 
  • Support implementation of the RMF.
  • Develop and maintain a formal Information Systems security program and policies for their assigned area of responsibility.
  • Supporting the system/application A&A effort, to include assessing and guiding the quality and completeness of A&A activities, tasks, and resulting artifacts mandated by governing DoD and Air Force policies (i.e., RMF).
  • Ensure proper measures are taken when an Information System incident or vulnerability is discovered.
  • Maintain and report IS and Platform Information Technology systems assessment and authorization status and issues in accordance with DoD Component guidance.
  • Provide direction to the ISSO to ensure they are following established cybersecurity policies and procedures.
  • Coordinate with the organization's security manager to ensure issues affecting the organization's overall security are addressed appropriately.
  • Monitor compliance with cybersecurity policy, as appropriate, and review the results of such monitoring.
  • Ensure that cybersecurity inspections, tests, and reviews are synchronized and coordinated with affected parties and organizations.
  • Ensure implementation of Information System security measures and procedures including reporting incidents to the AO and appropriate reporting chains, and coordinating system-level responses to unauthorized disclosures.
  • Ensure handling of possible or actual data spills of classified information resident in ISs, are conducted in accordance with DoD regulations.
  • Act as the primary cybersecurity technical advisor to the AO for DoD Information Systems and Platform Information Technology systems under their purview.
  • Ensure that cybersecurity-related events or configuration changes that may impact DoD Information Systems and Platform Information Technology systems authorization or security posture are formally reported to the AO and other affected parties.
  • Ensure the secure configuration and approval of IT below the system level (i.e., products and IT services) in accordance with applicable guidance prior to acceptance into or connection to a DoD Information System or Platform Information Technology system.
  • Author, review, certify, and/or maintain IA and security management plans to include RMF Implementation Plans, System Security Management Plans, Information Support Plans, PPPs, Security Risk Analyses, Security Vulnerability and Countermeasure Analyses, Security Concepts of Operations, OPSEC Plans, and other system/network security related documents.
Qualifications

15+ years experience in the IT field including at least 10 years in a cyber security role.  Master’s degree in a related field.  Additional years of experience may be substituted for degree requirements.  Must hold a certification in compliance with DoDD 8140 IAM Level III (e.g. GSLC, CISM, and/or CISSP).  Familiar with DIACAP, Risk Management Framework (RMF), STIGs, and IA Controls.  Experience with development/architecture for apps and services, and testing and administration.  Strong knowledge of Microsoft Windows technologies, including Active Directory, Windows Administration, scripting, and Windows configuration techniques.  Basic Linux experience to include Red Hat and Fedora.  Networking experience including routers, switches, and firewalls.  Experience with Cisco and Juniper.  Strong desktop application administration experience to include Microsoft Office, web browsers, and anti-virus applications.  Must be detail oriented and possess the ability to work in a multi-disciplined environment with an adaptive personality.  Excellent communication skills, both oral and written.  Analytical skills to troubleshoot IA issues.  Familiarity with EITDR and eMASS desired.  Must be able to apply intensive and diverse knowledge to problems and make independent decisions.  Must be a team player able to work professionally and collaboratively with the government customer and other contract members of the project team.  Excellent written and verbal communication skills and a client focus.  Must be a US citizen and hold a current Top Secret clearance.

 

Applicants selected will be subject to a U.S. government security investigation and must meet eligibility requirements for access to classified information.

 

About Abacus Technology

Abacus Technology is a provider of information technology services and solutions to government agencies and the private sector. The company offers a range of services, including cloud computing, cybersecurity, software development, and program management. Abacus Technology was founded in 1983 and is headquartered in Chevy Chase, Maryland.
Learn more about Abacus Technology
Size
1,000 employees
Industry
Founded
1983

Similar Jobs

More Jobs at Abacus Technology

More Aerospace & Defense Jobs

Find similar Cyber Security Principal jobs: