Bedford / Hanscom AFB, Massachusetts, United States
9 hours ago
Principal Cybersecurity Engineer
Overview

Principal Cybersecurity Engineer

LOCATION: Hanscom AFB, Bedford, MA

Salary Range: $175-$185,000 annually

JOB STATUS: Full-time

CLEARANCE: TOP SECRET

CERTIFICATION: n/a

TRAVEL: Limited; as needed

 

Astrion has an exciting opportunity for a Principal Cybersecurity Engineer located at Hanscom AFB in Bedford Massachusetts providing support to the Air Force Life Cycle Management Center (AFLCMC/HBD), Theater Battle Control Division.

 

The Theater Battle Control Division manages efforts focused on developing, acquiring, fielding and sustaining programs that support worldwide communications, Battle Management, Command & Control, Intelligence, Surveillance & Reconnaissance (C2ISR), Tactical Air Control, Air/Ground Surveillance, Time Critical Targeting, Combat Identification, Radar Imagery, Integrated Air/Missile Defense, and Mobile/Fixed C2ISR Performance, Exploitation & Dissemination Facilities.

Command, Control, Communications, and Battle Management Division (C3BM). 

 

QUALIFICATIONS / SKILLS:

Citizenship: Must be a US citizen

Clearance: Must have a be able to maintain a Top Secret Level Clearance

 

Education: BS/BA Degree

 

Years of Experience:15 years of experience in the respective technical/professional discipline being performed, 10 of which must be in the DoD

Proficieny in: Risk Management Framework (RMF), with empasis on taking projects from Step 1 to Step 5Vulnerability Management, Tenable Nessus (ACAS-DoD version of Nessus)STIGs

PREFERRED QUALIFICATIONS /SKILLS:

Experience with Cross Domain Solutions and USAF CDS-ECloud Service ModelsSupply Chain SecurityNIAPDoD Policies for Procedures for CybersecurityNetwork SecurityEndpointDoD Impact LevelsNSA Type 1 encryptionWorking with a CSSP - 16th AF

RESPONSIBILITIES:

Duties include, but not limited to: 

 

Assist with development of System Security Management Plans, Program Protection Plans, Security Risk Analyses, OPSEC Plans, Computer Certification and Accreditation, Security Vulnerability and Countermeasures Analyses, Security Concepts of Operations, and other system security engineering-related documents identified in MIL-STD 1785, DoDI 5000.02, Operation of the Adaptive Acquisition Framework, and DoDI 8510.01Support the system/application Authorization and Accreditation (A&A) effort to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and Air Force policies (i.e., Risk Management Framework (RMF)Update, monitor, and manage information in systems for the program officeProcess and manage system user account requests and process toolsProcess and manage system port/protocol and access control list requirementsProcess  and   manage  system  Public  Key  Infrastructure  (PKI)  identification  and authorization requirementsManage the distribution, implementation, remediation, and tracking of system security updates and configurations as required by the DoDRecommend  policies  and  procedures  to  ensure  information  systems  reliability  and accessibility to prevent and defend against unauthorized access to systems, networks, and dataConduct risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities, risk, and protection needsPromote awareness of security issues among management and ensuring sound security principles are reflected in organizations’ vision and goalsConduct systems security evaluations, audits and reviewsRecommend systems security contingency plans and disaster recovery proceduresRecommend and implementing programs to ensure that systems, network, and data users are aware of, understand, and adhere to systems security policies and proceduresParticipate in network and systems design to ensure implementation of appropriate systems security policiesRecommend initial, or updates to, software and configurations to new or existing system security mechanismsObtain waivers to mandated security mechanisms/policies which would be detrimental to system performance and impact the system’s missionFacilitate the gathering, analysis and preservation of evidence used in the prosecution of computerProvide leadership assistance in the analysis of the design, development, integration, implementation and testing of cybersecurity requirementsDevelop risk-based strategies to address identified gapsReview,  analysize,  and  assess  implementations  of  cybersecurity  (i.e.  RMF  security controls) throughout the open systems architecture and associated services, derived requirements specifications, design documents & design implementationCollaborate with stakeholders (Government and commercial) to ensure the system is approved by all Authorizing Officials via the RMF A&A processProvide technical advice in the area of systems security across all systems and supportsDevelop recommendations for the Government regarding how well designs satisfy current requirements and business goalsMaintain databases that reflect receipt, storage, inventory, and disposition of classified information to include data entry, updates, and generation of reportsSupport Government program office in audits of Government classified holdings to ensure proper accountabilityMaintain databases of classified visits and clearance levelsPerform inspection, inventory, logging, storage, documentation, transmittal and internal distribution of classified information receivedEvaluate Contractor classified data submittals for compliance with the appropriate System Security Classification Guide (SSCG)Provide security inspection and protection to areas where classified information is being stored, and develop and establish security procedures and policies IAW DOD, USAF, AFMC, and local directivesDevelop training and provide security awareness and other security education programs  Review and verify personnel qualifications for access to special access programs  Develop, implement and maintain a communications security programAssess program disclosure issues and provide FMS case management support Assist and advise FMS program office management and leadership in interfacing with FMS customers and all USG organizations, including but not limited to SAF/IA, Air Force Security Assistance Center (AFSAC), Air Force Security Assistance Training (AFSAT) squadron, Defense Finance and Accounting Services (DFAS)Support execution of all aspects of acquisition program security throughout a program’s lifecycle Assist with development of sound security practices and policies regarding acquisition, physical, personnel and documentation securityUpdate security classification guides Prepare acquisition security related sections of acquisition program documentationReview Contractor deliverables to ensure compliance with CDRLs Plan and implement security-related surveys, assessments, and studiesEvaluate program security information and hardware throughout the program life cycle, to include studies, analyses, plans, procedures, production, test plans/results, transportation, technology, and storage of end itemsProvide security support to source selections
Confirm your E-mail: Send Email