Odyssey Systems

System Cybersecurity Engineer

Odyssey Systems$108K — $130K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Must be a US Citizen with a Top-Secret Security Clearance.
  • DoD IAM Level I certification required (e.g., Security+ CE, CISSP).
  • 10 years of relevant experience, including 5 years with DoD, or commensurate education and experience.
  • Experience with eMASS and the RMF lifecycle to achieve IATTs and ATOs.
  • Background in software engineering, secure coding, and DevSecOps practices.

Responsibilities

  • Deliver certified cybersecurity services in adherence to DoD standards.
  • Ensure compliance with NIST SP 800-53 and relevant cybersecurity policies.
  • Maintain cybersecurity policies for IATTs and ATOs.
  • Identify and mitigate system vulnerabilities affecting information confidentiality, integrity, and availability.
  • Conduct cybersecurity assessments for system changes through SIAs.
  • Integrate Systems Security Engineering into program lifecycles as a cybersecurity SME.
  • Oversee secure software development and manage Supply Chain Risk Management efforts.

Benefits

  • Hybrid work environment with some approved telework.
  • Opportunities for career growth within the DoD framework.
  • Engagement with cutting-edge cybersecurity technologies and methodologies.
Full Job Description
Position Summary

Odyssey has an exciting new opportunity for a System Cybersecurity Engineer to support SW&SS Directorate program offices at Peterson SFB, CO. This is a full-time position at Peterson SFB with some telework time approved at the discretion of the customer. 

Responsibilities

Duties include, but not limited to: 

 

  • Labor provided to deliver cybersecurity services are certified in accordance with DoDI 8140.03 and AFMAN 17-1303 standards. 
  • Ensure that all system deliverables comply with latest applicable version of NIST SP 800-53, Risk Management Framework as incorporated and directed in DoW and Air Force/Space Force cybersecurity policy, specifically DoDI 8500.01, Cybersecurity, DoDI 8510.01, Risk Management Framework (RMF) for DoD Information Technology, and AFI 17-101, Risk Management Framework (RMF) For Air Force Information Technology (IT).
  • Ensure that cybersecurity policy is implemented correctly on covered systems to both obtain and maintain Interim Authorities to Test (IATTs) and Authority to Operate (ATOs).
  • Direct the discovery, monitorization, and elimination or mitigation of both known and unknown vulnerabilities that could compromise the confidentiality, integrity, or availability of the information being processed, stored, or transmitted by covered systems and maintain eMASS Programs of Action and Milestones (POA&M) for same, to include DISA STIGs and the DoD IAVA/IAVM process.
  • Conduct Cybersecurity Risk Management for additions/changes to all systems via the Security Impact Assessment (SIA) process.
  • Develop a focused approach in the continual improvement of processes and producers to manage the RMF packages in Enterprise Mission Assurance Support Service (eMASS), Xacta and SGN/CORE.
  • Integrate Systems Security Engineering (SSE) into the DoW acquisition lifecycle, providing inputs on requirements, evaluating prime contractor deliverables (CDRLs), and serving as the primary cybersecurity SME during major program technical reviews (e.g., System Requirements Review [SRR], Preliminary Design Review [PDR], Critical Design Review [CDR]).
  • Oversee and validate contractor secure software development practices, ensuring the proper execution of automated security scanning (e.g., Static/Dynamic Application Security Testing [SAST/DAST], Software Composition Analysis [SCA]) within DevSecOps pipelines, and manage program Supply Chain Risk Management (SCRM) efforts.
  • Design Test & Evaluation (T&E) Requirements for RMF Control identification, to include building implementation plans and validation plans, overseeing broader Cybersecurity Test and Evaluation (T&E) strategies (e.g., Test & Evaluation Master Plan [TEMP] inputs, cooperative/adversarial assessments), in accordance with DoDM 5000.103, Cyber Developmental Test and Evaluation, and DoDI 5000.89, Test and Evaluation, assist with the entry and review of entered information to the Information Technology Investment Portfolio Suite (ITIPS), assist with the preparation and review of Federal Information Security Modernization Act documentation.
  • Advise on the secure design and integration of continuous monitoring architectures, and Zero Trust models, to include ensuring systems can securely interface and share required telemetry with enterprise Defensive Cyberspace Operations (DCO) and Cybersecurity Service Providers (CSSP).
  • Perform the full range of cyber security and information security processes, procedures, and functions, to include reviewing data, maintaining/implementing and compliance notification of required IAVAs, NOTAMs and cybersecurity posture for systems. This includes leading cybersecurity working groups to coordinate efforts across engineering, software, and test stakeholders.
  • Advise division leadership on architecture mitigations to limit risk posture within the systems and represent the risk posture in briefings and slides to DoD Chief Information Officer, Headquarters USSF and USSTRATCOM; utilize National Institute of Standards and Technology (NIST) 800 series special publications in the development of new system artifacts to ensure compliance.
Qualifications

Minimum Qualifications:

Citizenship:  Must be a US Citizen.

Clearance:  Must have and be able to maintain a Top-Secret Security Clearance.

Certification:  DoD IAM Level I (CAP, CND, Cloud+, GSLC, Security+ CE, CISSP).

Education: High School Diploma.

Years of Experience: 10 years’ directly related experience with proper certifications as described in the functionally aligned job description, 5 of which must be in the DoD; OR,

  • BA/BS degree and 5 - 8 years of experience in the respective technical/professional discipline being performed, 3 of which must be in the DoD; OR,
  • MA/MS degree and 2 - 3 years of experience in the respective technical/ professional discipline being performed, 2 of which must be in the DoD.

Additional Experience:

  • Demonstrated experience building, managing, and successfully navigating Enterprise Mission Assurance Support Service (eMASS) packages through the complete Risk Management Framework (RMF) lifecycle to achieve Interim Authorities to Test (IATT) and Authorities to Operate (ATO).
  • Demonstrated experience in software engineering, secure coding practices, and the direct administration or engineering of DevSecOps Continuous Integration/Continuous Deployment (CI/CD) pipelines.
  • Experience securing and evaluating virtualization technologies, container orchestration platforms (e.g., Kubernetes), and hypervisors.
  • Experience engineering or assessing systems designed to meet Zero Trust Architecture (NIST SP 800-207) principles.
  • Familiarity with crypto-agile architectures and evolving NSA cryptographic modernization standards (CNSA 2.0).
  • Familiarity with Model-Based Systems Engineering (MBSE) tools (e.g., Cameo, DOORS) for requirements traceability.
  • Experience navigating the Mission-Based Cyber Risk Assessment (MBCRA) process to translate threat intelligence into actionable engineering requirements.
  • Familiarity with securing Department of Defense Cloud Computing Security Requirements Guide (CC SRG) across various impact levels.
  • Possess the advanced knowledge, experience and recognized ability to be considered an expert in their technical/professional field.
  • Possess the ability to perform tasks and oversee the efforts of junior and mid-level personnel within the technical/professional discipline.
  • Demonstrate advanced knowledge of their technical/professional discipline as well as possess a comprehensive understanding and ability to apply associated standards, procedures and practices in their area of expertise.

 

Preferred Experience:

Certification:  DoD IAM Level II/III (CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO,).

Education:  BA/BS degree.

Years of Preferred Experience:  10 years of experience in the respective technical/professional discipline being performed, 5 years of which must be in the DoD.

 

Additional Information:,

Location:  Peterson SFB, CO

Hybrid: Some telework is allowed, subject to change per the customers’ discretion 

Travel Requirement:  25%

 

#LI-JC1

About Odyssey Systems

Odyssey Systems is an information technology company based in Rockville, Maryland. It was founded in 1997 and provides a range of IT services to government agencies and private sector clients. Odyssey Systems specializes in software development, data analytics, and cybersecurity. The company has a team of over 500 employees and has worked with clients such as the Department of Defense, the Department of Homeland Security, and the National Institutes of Health. Odyssey Systems is committed to providing innovative solutions to its clients and helping them achieve their goals.
Learn more about Odyssey Systems
Size
500 employees
Industry
Founded
1997
Revenue
$100 million

Similar Jobs

More Jobs at Odyssey Systems

More Aerospace & Defense Jobs

Find similar System Cybersecurity Engineer jobs: