Journeyman Cybersecurity Engineer

Astrion • $120K — $130K *
Technical Services
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • U.S. citizen with a Secret Level Clearance
  • Bachelor’s degree in computer science, IT, cybersecurity, or related field
  • 5+ years of hands-on DOW cybersecurity experience with RMF under NIST SP 800-53
  • IAM Level III Certification (CISSP/CISO)
  • Solid understanding of networking concepts and Windows/Linux operating systems
  • Strong analytical, problem-solving, and communication skills

Responsibilities

  • Lead Assessment & Authorization (A&A) for system's Authorization to Operate (ATO) using eMASS
  • Oversee continuous monitoring strategies and vulnerability scanning with ACAS/Nessus
  • Manage security incident reporting and develop corrective action plans
  • Integrate cybersecurity throughout the lifecycle of the Air Operations Center Weapon System
  • Ensure all AF IT cybersecurity documentation is current and accessible
  • Monitor security events and assess impact of configuration changes
  • Process Firewall Exemption Requests and approve critical security update requests

Benefits

  • Comprehensive healthcare coverage
  • Retirement savings plan
  • Professional development opportunities
  • Flexible work schedule
  • Collaborative work environment
Full Job Description
Overview

Journeyman Cybersecurity Engineer (ISSM)

LOCATION: Hanscom AFB, Bedford, MA

SALARY RANGE: $120,000.00 - $130,000.00 Annually

JOB STATUS: Full-time

CLEARANCE: Secret

CERTIFICATION: IAM Level III Certification

TRAVEL: Limited; as needed

 

Astrion has an exciting opportunity for a Journeyman Cybersecurity Engineer located at the Hanscom AFB in Bedford, MA providing support to the Command, Control, Communications (C3C)/Kessel Run division.

 

Kessel Run is an Air Force unit that delivers resilient command and control and targeting software capabilities that provide warfighters with decision advantage. Under the Department of the Air Force Program Executive Office for Command, Control, Communication, and Battle Management (DAF PEO C3BM), Kessel Run technologies make up the DAF BATTLE NETWORK, the systems-of-systems designed to help the Joint Force make operational decisions faster than our adversaries. The Division architects and acquires the means to connect weapon systems with warfighters and decision makers to enable the warfighter to win against the pacing challenge in an era of great power competition.

 

 

REQUIRED QUALIFICATIONS / SKILLS: 

  • Must be a US citizen
  • Clearance: Must have and be able to maintain a Secret Level Clearance

  • Education: Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related technical field
  • Years of Experience: 5+ years of dedicated DOW cybersecurity experience executing RMF under NIST SP 800-53
    • IAM Level III Certification (Certified Information Systems Security Professional / Certified Information Security Officer)
    • Basic understanding of networking concepts and protocols.
    • Familiarity with Windows and Linux operating systems.
    • Strong analytical and problem-solving skills.
    • Excellent written and verbal communication skills

 

PREFERRED QUALIFICATIONS / SKILLS:

  • Experience with the Tenable ACAS suite (Nessus, Security Center/Tenable.sc, NNM/Tenable.asm).
  • Security+ or other relevant cybersecurity certifications.
  • Experience with scripting languages such as Python or PowerShell.
  • Familiarity with DoD security policies and procedures

RESPONSIBILITIES:

Primary cybersecurity advisor to the Program Manager and Authorizing Official (AO) charged with securing and accrediting the AOC weapon system, which orchestrates global air operations. This role bridges the gap between traditional RMF compliance and modern, continuous DevSecOps pipeline security 

 

  • Lead the Assessment & Authorization (A&A) process to obtain and maintain the system's Authorization to Operate (ATO) using the Enterprise Mission Assurance Support Service (eMASS)
  • Oversee continuous monitoring (ConMon) strategies, vulnerability scanning (using ACAS/Nessus), and configuration hardening (DISA STIGs) across multi-classification networks
  • Manage security incident reporting, perform root-cause analysis, and develop corrective action plans / POA&Ms
  • Ensures the integration of cybersecurity into, and throughout the lifecycle of the Air Operations Center (AOC) Weapon System, on behalf of the AO and in accordance with DoDI 8510.01
  • Completes and maintains required cybersecurity certification IAW AFMAN17-1303. Individuals in this position must be U.S. citizens
  • Ensures all AF IT cybersecurity-related documentation is current and accessible to properly authorized individuals. AFI17-101 6 FEBRUARY 2020 15
  • Supports the PM or ISO in maintaining current authorization to operate, and approval to connect and in implementing corrective actions identified in the plan of action and milestones
  • Coordinates, with the PM and AO staffs, development of an ISCM strategy and monitor any proposed or actual changes to the system and its environment
  • Continuously monitors the IT and environment for security-relevant events, assess proposed configuration changes for potential impact to the cybersecurity posture, and assess the quality of security controls implementation against performance indicators
  • Ensures cybersecurity-related events or configuration changes that impact AF IT authorization or adversely impact the security posture are formally reported to the AO and other affected parties, such as IOs and stewards and AOs of interconnected IT
  • Ensures the AF IT is acquired, documented, operated, used, maintained, and disposed of properly and IAW DoDI 5000.02 and DoDI 8510.01
  • Process Firewall Exemption Requests (FERs)
  • Approve change requests (i.e.: Critical Security Updates)
  • Assist with the installation, configuration, and maintenance of ACAS components, including Nessus scanners, SecurityCenter/Tenable.sc, and Nessus Network Monitor (NNM)/Tenable.asm.
  • Assist in scheduling and executing vulnerability scans using Nessus scanners.
  • Analyze scan results to identify vulnerabilities, and misconfigurations.
  • Assist with compliance assessments against DoW standards and internal security policies.
  • Generate reports on vulnerability status, compliance posture, and remediation progress.
  • Collaborate with system administrators  to facilitate vulnerability remediation efforts.
  • Assist with system administration tasks for ACAS servers and databases.
  • Stay up to date on the latest vulnerability trends and security threats.

 

 

About Astrion

Astrion Careers

Joining Astrion presents an unparalleled opportunity to become part of a leading team of professionals dedicated to pioneering innovation and digital transformation. Astrion, a beacon in the tech industry, offers a variety of job opportunities that cater to ambitious individuals eager to drive change and lead industries forward.

Work That Matters

At Astrion, every position is a chance to collaborate with some of the brightest minds in technology and business. The company helps the world’s most renowned companies navigate their digital transformation journeys, leveraging a unique blend of industry expertise and technological innovation.

Explore Job Opportunities and Internships

Astrion is constantly seeking passionate, curious, and creative individuals to join its team. Whether looking for full-time employment or an internship, Astrion provides a platform to develop professional skills, engage in meaningful networking, and contribute to impactful projects. Explore the myriad of positions available and find where your skills can help shape the future of technology.

Innovative Work Environment

Astrion fosters a culture of innovation where team members from diverse backgrounds come together to solve complex challenges. The company is committed to diversity training and leadership development, ensuring that all team members have the opportunity for personal and professional growth.

Benefits and Growth

Astrion is dedicated to the growth of its team members, offering substantial benefits and resources to support career advancement. This includes comprehensive health benefits, leadership training programs, and opportunities for professional development. Astrion’s commitment to career growth ensures that every team member has the resources to reach their full potential.

Join the Astrion Team

Astrion is hiring! Search open positions that match your skills and interests. The company looks for driven, solution-oriented team players. Prepare your resume, refine your interview skills, and get ready to join a team that values leadership and professional growth.

Stay Connected with Astrion Careers

Keep up to date with career tips, insider perspectives, and industry-leading insights—all from the professionals who are part of Astrion. Personalize your subscription to receive job alerts, latest news, and insider tips tailored to your preferences. Discover the exciting and rewarding career opportunities that await at Astrion.

Networking and Professional Development

Astrion values the power of networking and encourages its team to engage in events and activities that foster professional connections. This commitment to networking is integral to maintaining a vibrant, innovative, and inclusive workplace.

Empower Your Career with Astrion

Embark on a journey of professional discovery and innovation at Astrion. Whether you are starting your career or looking to enhance it, Astrion offers a dynamic environment where your ambitions can take flight.
Learn more about Astrion

Similar Jobs

More Jobs at Astrion

More Technical Services Jobs

Find similar Journeyman Cybersecurity Engineer jobs: