Base Career helps you apply smarter for this job.
Key skills for this role
• Leads the strategic initiative to ensure the application of STIGS across the network, servers, on-premise, and cloud environments.
• Directs the overarching strategy for Cybersecurity Engineering, Information Assurance, vulnerability analysis, risk remediation, and the establishment of cybersecurity controls in line with DoD system specifications and policies.
• Champions the implementation of the DoD Risk Management Framework (RMF) to bolster Assessment and Authorization (A&A) across DoD network environments. This leadership role involves engaging with system stakeholders to craft comprehensive system security plans (SSPs), contingency plans, and other pivotal documentation.
• Oversees the assembly and submission of A&A packages for IA Security Control Assessor (SCA) evaluation and feedback.
• Guides the utilization of tools like eMASS (Enterprise Mission Assurance Support Service) and ACAS (Assured Compliance Assessment Solution) Security Center for A&A management, ensuring thorough analysis and system security.
• Fosters a collaborative environment, working hand-in-hand with system owners and operators to address SCA findings and pinpoint, execute, and document mitigating controls.
• Drives the Professional Development of the team, ensuring that each member is equipped with the latest technical knowledge and certifications relevant to their roles.
• Orchestrates the Synergy of diverse technical talents, ensuring that the team's combined expertise is leveraged to its fullest potential.
• Supervises the Execution of complex technical projects, ensuring that deliverables meet the highest standards of quality and efficiency.
• Steers the Integration of tools and platforms, ensuring that the team utilizes the best resources for optimal performance and results.
• Schedule and oversee periodic security reviews of the Azure environment to ensure sustained compliance and address evolving threats.
• Cultivates a Culture of open communication and continuous feedback, promoting a collaborative atmosphere where technical experts can thrive and innovate.
• Reviews and updates the Plan of Action and Milestones (POA&M) regularly, addressing any identified vulnerabilities or compliance gaps within the Azure environment.
• Coordinates with teams on the collection and analysis of security-related telemetry data within Azure Sentinel, ensuring that all RMF monitoring requirements are met.
• Works with Configuration Management to ensure the creation and updating of the Hardware/Software (HW/SW) list, ensuring all components within our Azure environment are documented and compliant with RMF standards.
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
, USA
, USA
Minneapolis, USA
, USA
, USA
Minneapolis, USA
, USA
Minneapolis, USA
, USA
, USA
, USA
• Working with Configuration Management on versioning and release control that ensures all proper security controls and countermeasures are in place before release into the cyber terrain for operations.
• Has full knowledge and understanding of the process and tools in the Agile Scrum methodology to include the Application Development Life Cycle Process, Sprint Cycles, and the requirements for Flaw identification using SonarQube for code verification.
• Can work with and engage development engineers and teams on way forward on moderate and complex solutions to issues that arise concerning cybersecurity requirements during those cycle.
• Can utilize Azure DEVOPS toolset in order to work with multiple teams during the initiating, planning, and execution of the build of applications that will be moving into a cloud environment.
Leads the strategic initiative to ensure the application of STIGS across the network, servers, on-premise, and cloud environments.
Directs the overarching strategy for Cybersecurity Engineering, Information Assurance, vulnerability analysis, risk remediation, and the establishment of cybersecurity controls in line with DoD system specifications and policies.
Champions the implementation of the DoD Risk Management Framework (RMF) to bolster Assessment and Authorization (A&A) across DoD network environments. This leadership role involves engaging with system stakeholders to craft comprehensive system security plans (SSPs), contingency plans, and other pivotal documentation.
Oversees the assembly and submission of A&A packages for IA Security Control Assessor (SCA) evaluation and feedback.
Guides the utilization of tools like eMASS (Enterprise Mission Assurance Support Service) and ACAS (Assured Compliance Assessment Solution) Security Center for A&A management, ensuring thorough analysis and system security.
Fosters a collaborative environment, working hand-in-hand with system owners and operators to address SCA findings and pinpoint, execute, and document mitigating controls.
Drives the Professional Development of the team, ensuring that each member is equipped with the latest technical knowledge and certifications relevant to their roles.
Orchestrates the Synergy of diverse technical talents, ensuring that the team's combined expertise is leveraged to its fullest potential.
Supervises the Execution of complex technical projects, ensuring that deliverables meet the highest standards of quality and efficiency.
Steers the Integration of tools and platforms, ensuring that the team utilizes the best resources for optimal performance and results.
Schedule and oversee periodic security reviews of the Azure environment to ensure sustained compliance and address evolving threats.
Cultivates a Culture of open communication and continuous feedback, promoting a collaborative atmosphere where technical experts can thrive and innovate.
Reviews and updates the Plan of Action and Milestones (POA&M) regularly, addressing any identified vulnerabilities or compliance gaps within the Azure environment.
Coordinates with teams on the collection and analysis of security-related telemetry data within Azure Sentinel, ensuring that all RMF monitoring requirements are met.
Works with Configuration Management to ensure the creation and updating of the Hardware/Software (HW/SW) list, ensuring all components within our Azure environment are documented and compliant with RMF standards.
Working with Configuration Management on versioning and release control that ensures all proper security controls and countermeasures are in place before release into the cyber terrain for operations.
Has full knowledge and understanding of the process and tools in the Agile Scrum methodology to include the Application Development Life Cycle Process, Sprint Cycles, and the requirements for Flaw identification using SonarQube for code verification.
Can work with and engage development engineers and teams on way forward on moderate and complex solutions to issues that arise concerning cybersecurity requirements during those cycle.
Can utilize Azure DEVOPS toolset in order to work with multiple teams during the initiating, planning, and execution of the build of applications that will be moving into a cloud environment.
Education: Minimum of a 4-year college degree in a related field
Experience: 10 years with MA/MS or 12 years with BA/BS
Meet DoD 8570.01M Baseline Certification Requirement and DoD Summary of IA Qualification Requirements: IAM Level II (Must possess one of the following certifications in good standing: CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, or CCISO). – [ REQUIRED ]
Industry Certification: DISA ACAS 5.3 or greater [ PREFERRED ]
CSSP Incident Responder Certification: CEH, CFR, CCNA Cyber Ops, CCNA-Security, CHFI, CySA+, GCFA, GCIH, SCYBER, PenTest+ - [ PREFERRED ]
Clearance Required: Candidate must be a US Citizen, and have at least a SECRET clearance.
Provides fiscal and administrative support for CUNY research programs.
Visit company websiteJobs and hiring trendsFull-time
Senior · 10+ years experience
Hybrid
Apply faster on company sites with our extension.