Position Summary:
We are seeking a Tactical Networks Cybersecurity Analyst to coordinate all cybersecurity activities and support Assessment and Authorization (A&A) Package documentation planning and development.
Hybrid role located in San Diego, CA.
Minimum Requirements:
- Must have an Active TS/SCI with no Foreign Exception Package (FEP) requirements.
- Minimum 4 years of professional experience with cybersecurity engineering leading Navy RMF projects, including A&A activities for up-to TS/SCI systems, and the preparation, direct development, and maintenance of RMF artifacts, packages, and deliverables.
- Minimum 3 years of professional experience with Implementing security controls and policies, performing cybersecurity compliance testing using industry standard tools, and performing vulnerability analysis and remediation of networks, systems, and communications protocols
- Bachelor's degree from an accredited university in Computer, Electrical, or Electronics Engineering or Mathematics with field of concentration in computer science.
- Must have a CompTIA Security + certification
- Experience with eMASS, including Security Plan development and hands-on processing of packages through workflows, assisting with generating security policies, evaluating assessment documentation, and developing written security risks, mitigations, and recommendations
- Experience with operating systems, platforms, and technologies, including Windows, Linux, networking, virtualization, or containers
- Experience with architecture visualization, and developing and maintaining system artifacts, including Boundary Diagrams and Data Flow Diagrams
Responsibilities:
- Prepare, develop, and maintain Risk Management Framework (RMF) artifacts, packages, and deliverables to support system validation and authorization to operate (ATO).
- Perform risk and vulnerability assessments in network, system, and application areas.
- Coordinate day-to-day cybersecurity operations with program technical leads to discover cyber risks, understand applicable policies, and develop mitigation plans.
- Maintain RMF documents for system baseline variants that have achieved ATO.
- Work independently, identify problems and devise analysis and solutions, communicate results to both technical and non-technical audiences, and lead the accomplishments of client tasks from inception to completion.
- Develop and deliver cybersecurity update presentations to high level stakeholders that incorporate analysis of National Institute of Standards and Technology (NIST) controls and identified expected system and workload impacts.