Serco

Security Engineer - SCAR (Ohio)

Serco$100K — $120K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Active DoD Secret Security clearance and US Citizenship
  • Bachelor's Degree in relevant technical field with 8 years experience, or Associate Degree with 10 years experience
  • Experience in DoD cybersecurity programs and RMF activities
  • Knowledge of NIST security controls and Information Assurance requirements
  • Proficient in security and vulnerability assessments with strong communication skills

Responsibilities

  • Perform SCAR duties for Assessment and Authorization activities
  • Assist in evaluating and validating cybersecurity compliance
  • Monitor and maintain security procedures for information systems
  • Identify risks and recommend mitigation strategies
  • Investigate security incidents to determine root causes
  • Support RMF activities and security documentation reviews
  • Review security requirements and assessment documents

Benefits

  • Comprehensive health insurance options
  • Generous retirement savings plan
  • Flexible work schedules and remote work opportunities
  • Professional development and training programs
  • Paid time off and holiday pay
Full Job Description
Position Description & Qualifications

Serco is seeking a highly experiencedSecurity Engineerto provide Security Control Assessor Representative (SCAR) support to the Air Force Life Cycle Management Center (AFLCMC) under AFMS 3.0 Task Order 1. The selected candidate will support Security Control Assessors (SCAs) and Authorizing Officials (AOs) in conducting security control assessments, supporting Assessment and Authorization (A&A) activities, implementing Risk Management Framework (RMF) requirements, and ensuring cybersecurity compliance across Modeling and Simulation (M&S) systems, networks, ranges, and operational training environments. The position supports AFLCMC cybersecurity operations and ensures Information Assurance (IA), Computer Network Defense (CND), Continuous Monitoring (CM), and vulnerability management activities are effectively executed.

In this role, you will:
  • Perform Security Control Assessor Representative (SCAR) duties in support of Assessment and Authorization (A&A) activities for simulators, networks, ranges, operational training systems, and M&S environments.
  • Assist Security Control Assessors and Authorizing Officials in evaluating and validating security controls and overall cybersecurity compliance.
  • Monitor, evaluate, and maintain systems and procedures designed to protect information systems, databases, and networks from unauthorized access, disclosure, modification, or destruction.
  • Identify potential cybersecurity threats, vulnerabilities, and compliance deficiencies and develop risk mitigation recommendations.
  • Investigate reported security incidents and violations, determine root causes, and recommend corrective and preventive actions.
  • Support Risk Management Framework (RMF) activities, including security assessments, authorization packages, security documentation reviews, and continuous monitoring activities.
  • Review security requirements, assessment and authorization documentation, and security control implementations for operational test and training infrastructure systems.
  • Develop, implement, and improve Computer Network Defense (CND) and Information Assurance Vulnerability Management (IAVM) programs across classified and unclassified environments.
  • Review and assess program Plans of Action and Milestones (POA&Ms).
  • Provide cybersecurity expertise and recommendations regarding DoD, Air Force, and RMF policies and procedures.


To be successful in this role, you will have:
  • Active DoD Secret Security clearance.
    • US Citizenship.
  • A Bachelor's Degreein Computer Science, Cybersecurity, Information Systems, Engineering, or a related technical field and 8 related experience;
    • OR anAssociate Degree'sin Computer Science, Cybersecurity, Information Systems, Engineering, or a related technical field and 10 years of related experience.
  • Experience supporting DoD cybersecurity programs, Assessment and Authorization (A&A) efforts, or Risk Management Framework (RMF) activities.
  • Experience conducting security assessments, vulnerability assessments, compliance reviews, and risk analysis.
  • Knowledge of NIST security controls, RMF processes, and Information Assurance requirements.
  • Experience identifying cybersecurity risks and implementing effective mitigation strategies.
  • Strong written and verbal communication skills with the ability to prepare technical reports, findings, and briefings.
  • The ability to travel up to 10%.


Additional desired experience and skills:
  • Active DoD Top Secret Security clearance with SCI eligibility.
  • Experience serving as a SCAR, ISSM, ISSO, Security Control Assessor, or cybersecurity compliance lead.
  • Experience supporting AFLCMC, AFAMS, Operational Test and Training Infrastructure (OTTI), or M&S environments.
  • Experience with Continuous Monitoring (CM), POA&M management, and cybersecurity compliance reporting.
  • Knowledge of DoDI 8510.01, NIST SP 800-53, and Air Force cybersecurity policies.
  • Experience supporting classified and Special Access Required (SAR) environments.
  • One or more of the following certifications is desired:
    • CISSP
    • CASP+
    • Security+ CE
    • CISM
    • GSLC
    • CCSP

About Serco

Serco Group plc is a British company providing public services. It is listed on the London Stock Exchange and is a constituent of the FTSE 250 Index. The company has four divisions: Health, Justice and Immigration, Transport, and Defence, and operates across the UK and Europe, North America, Asia Pacific and the Middle East. Serco primarily provides public services to governments, including the operation of prisons and hospitals, defence and aerospace services, and transport services. The company also provides IT and consultancy services to the public sector. Serco has been involved in a number of controversies, including allegations of overcharging the UK government and mismanagement of contracts.
Learn more about Serco
Size
50,000 employees
Industry
Founded
1988

Similar Jobs

More Jobs at Serco

More Aerospace & Defense Jobs

Find similar Security Engineer - SCAR (Ohio) jobs: