Information Assurance Engineer (ISSO) with Security Clearance

TEKsystems c/o Allegis Group
20 Jun 2024
18 Jul 2024
Employer Sector
Technology, IT & Telecoms
Contract Type
Full Time
Our Client has an opening for a highly motivated individual. The Information Assurance Engineer position at MacDill AFB, FL supports the Global Solutions Management–Operations II (GSM–O II), Joint Communications Support Element (JCSE). The JCSE team provides en–route, early entry, scalable C4 support to Regional Combatant Commands, Special Operations Command, and other agencies. In this role, you will be responsible for ensuring that the systems security meets all DoD/JCSE requirements and design, facilitating system assessments, documentation and providing hands–on security engineering support. Key elements of this position include: Capture and refine information security requirements and ensure their integration into information technology components and information systems: Perform vulnerability assessments, to determine weaknesses and exploit methods in systems/networks; Perform cybersecurity analysis and hardening of complex IT systems; and conducting cybersecurity mitigations on design solutions to comply with Risk Management Framework (RMF) cybersecurity requirements. Develop Security plan of action and milestones (POA&M) for all open security findings identified on the end–to–end enterprise infrastructure (Data Center, SATCOM Gateway, and deployed kits). Develop, staff, and maintain security–related statutory/regulatory documentation as required by DoDI 8510, including but not limited to: Cybersecurity Strategy (CS) and Program Protection Plan (PPP). Conduct weekly meetings to track the security process, status of the accreditation package and finding resolution on the enterprise infrastructure. Maintain documentation identifying what cybersecurity STIG, checklist, or control requirements apply for every component or software in the enterprise infrastructure (Data center, SATCOM Gateway, and deployed kits) Administration of IA scans with appropriate and approved tools (e.g. Security Content Automation Protocol (SCAP), Assured Compliance Assessment Solution (ACAS), etc.) of all items as directed. Scans shall be run using the most recent security definitions of each tool. Track all implementation information for assurance directed guidelines for all hardware as well as applicable software ensuring proper security for the JCSE Enterprise. Provide tracking and summary reports based on findings to leadership. Implementation actions include but are not limited to STIGs, compliant patch implementation/management, Information Assurance Vulnerability Management (IAVM) compliance, integration/ implementation of network or firewall approved devices, and react appropriately to cyber threats. Support and perform DoD Risk Management Framework (RMF) in accordance with CNSSI 1253 and NIST 800–53 (all revisions) for IA controls; 8570/8140 for IA Workforce training and DCID 6/3 for protection of sensitive compartmented information. This also includes the updates required for the JCSE packages and all updated instructions which support the Assess and Authorize (A&A) process. Assist with developing and maintaining system policies and procedures for network security, virus protection, user accounts, maintenance, and utilization. Provide technical support and guidance to the cybersecurity team as part of maintaining the JCSE IA processes and procedures in support of computer network defense in–depth protection for the JCSE enterprise infrastructure. Recommend network configuration, policy, training, operational or other changes/updates based on assessed risks. Coordinate with internal and external organizations, agencies, and activities to support resolution of security issues, accreditation and waiver requests that impact the ability to obtain connection approval. Recommend connection approval, disapproval or modification based on security risks and system vulnerabilities. Provide system administrator (ex. Linux, Windows, Firewalls, Intrusion Prevention/Detection Systems, End Point Security) support installing, operating, maintaining, troubleshooting, administrating, and cybersecurity hardening of operating systems on both the classified and unclassified systems (SIPR and NIPR). Maintain configuration documentation for the JCSE Enterprise to include network diagrams, technical sensor/administrative & policy POCs, and related information. Ensure proper protection of data in transit, in accordance with DoD policy. Additional Skills & Qualifications
– High level of ACAS proficiency
– Experience dealing with ATO inspections
– RMF interface experience
– Military veterans a plus – experience working in tactical environments
– COCOM experience