Responsibilities & QualificationsTekSynap is seeking a
Lead Cybersecurity Engineer / Scientist to join our team at
Defense Health Agency to provide technical leadership for cybersecurity assessment and authorization activities supporting DHA systems and enclaves. Responsibilities include RMF implementation, IV&V testing, vulnerability assessment, STIG validation, and development of authorization packages for NIWC Atlantic managed cybersecurity efforts.
REQUIRED QUALIFICATIONSExperience- 15 years DoD engineering/cybersecurity; managerial experience required
- RMF lifecycle implementation experience
- STIG validation experience
- IV&V cybersecurity testing experience
- eMASS experience
- Vulnerability assessment experience
- Enterprise network security experience
Certifications- IAM Level III Certification preferred (e.g., CISSP, CISM, CASP)
Education- Bachelor's degree in Cybersecurity, Computer Science, Engineering, Information Systems, or related discipline.
Clearance- Secret clearance (ability to obtain TS preferred)
RESPONSIBILITIES - Serve as Lead Technical Engineer for cybersecurity assessment and authorization execution
- Lead implementation of RMF controls across systems, enclaves, and sites
- Develop and maintain Security Assessment Plans (SAP)
- Develop cybersecurity test procedures aligned to NIST and DoD guidance
- Conduct security control assessments across technical, operational, and management controls
- Perform Independent Verification & Validation (IV&V) testing activities
- Conduct vulnerability assessments using ACAS, HBSS, and related tools
- Analyze vulnerability scan results and identify remediation actions
- Develop Security Assessment Reports documenting findings and recommendations
- Perform reassessment of remediated controls and update test results
- Provide technical leadership for RMF package development
- Support creation of SSP, SAR, POA&M, and supporting artifacts
- Conduct system security architecture reviews
- Evaluate enclave and system boundary definitions
- Perform risk assessments and residual risk analysis
- Support development of authorization packages in eMASS
- Provide technical validation of RMF artifacts
- Support validation readiness review activities
- Support IV&V test event planning and execution
- Provide technical oversight of STIG implementation
- Develop cybersecurity test matrices and validation procedures
- Support automated tool development for cybersecurity testing
- Analyze ACAS data and generate vulnerability reports
- Support automation of STIG assignment and test planning
- Provide cybersecurity engineering support for DHA toolsets
- Support development of dashboards and reporting metrics
- Provide technical guidance to cybersecurity analysts and engineers
- Support network, server, and application security testing
- Support encryption, authentication, and boundary security reviews
- Participate in technical review boards and working groups
- Support continuous monitoring and risk scoring activities
- Support remediation tracking and POA&M closure validation
- Provide technical briefings to Government stakeholders
- Support CONUS and OCONUS site cybersecurity assessments
- Support cybersecurity documentation and reporting deliverables
COMPETENCIES - Cybersecurity engineering
- RMF implementation
- Risk assessment
- Vulnerability analysis
- System security architecture
- Technical leadership
- Problem solving
- Documentation development
OverviewWORK ENVIRONMENT The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.
- Location: North Charleston, SC area (contractor facility within 15 miles of NIWC Atlantic). Remote/telework may be approved
- Type of environment: Office environment
- Noise level: Medium
- Work schedule: Core hours (0800-1700), Monday through Friday. Occasional extended hours during testing events
- Amount of Travel: Minimal (10 - 20%). CONUS primarily, limited OCONUS
WORK AUTHORIZATION/SECURITY CLEARANCE
U.S. Citizen
Secret clearance (ability to obtain TS preferred)
PHYSICAL DEMANDS
The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus.
OTHER INFORMATION
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice