Responsibilities
As a Cybersecurity Engineer, you will assist the Project Manager with Risk Management Framework (RMF) related activities, including Security Control Assessments (SCA), and assisting system owners in the transition to RMF compliance. In assuming this position, you will be a critical contributor to meeting Empower AI’s mission: To deliver innovative, cost-effective solutions and services that enable our customers to rapidly adapt to dynamic environments. This position is located in Fort Huachuca, Arizona.
Highlights of Responsibilities:
- Assist the Project Manager to edit and process cybersecurity deliverables, including RMF packages and associated artifacts.
- Assesses DoD Information Systems against the RMF security controls IAW DoDI 8500, DoDI 8510 and NIST SP 800-53
- Develops and reviews for compliance documentation and artifacts such as Configuration Management Plans, Network Infrastructure Plans, Business Continuity and Disaster Recovery Plans, Plan of Action and Milestones (POA&Ms), topology diagrams and all supporting policies in support of RMF A&A activities
- Perform ISSO/ISSM functions to ensure RMF compliance
- Effectively performs interviews of technical Subject Matter Experts (SMEs) as well as non-technical management personnel to ascertain the security posture of an IT system
- Identifies mitigating controls for identified risks and proposes additional mitigation strategies for identified vulnerabilities
- Evaluates a wide array of IT devices for Security Technical Implementation Guide (STIG) compliance using ACAS/ Nessus, SCAP Compliance Checker, and manual checklist reviews. This includes Windows, VMWare, and Red Hat Linux servers and desktops, routers, switches, firewalls, IDS, etc.
- Applies STIGs to a variety of devices to ensure compliance
- Experience with eMASS and a strong understanding of the CNSS 1253 CCIs
- Authors government deliverables such as the SAR, RMF recommendation memorandum, etc.
Qualifications
Requirements:
- Current/active Secret clearance.
- Bachelor's degree from an accredited university in Computer Science, Information Technology, or related field.
- 7-12 Years of Cybersecurity Experience.
- DoD 8570.01-M IAT III or IASAE II (e.g. CISSP or CASP) and Computing Environment certifications (e.g. vendor certification from Microsoft, Cisco, or VMWare) required.
Preferred Education and Experience:
- 7+ years of related experience in the fields of security engineering, cyber security, or Information Assurance.
PHYSICAL REQUIREMENTS:
This position requires the ability to perform the below essential functions:
- Sitting for long periods
- Standing for long periods
- Ambulate throughout an office
- Ambulate between several buildings
- Stoop, kneel, crouch, or crawl as required