Job Closed
This listing is no longer active.
Cybersecurity Engineer – ISSE
Location
Virginia
Posted
85 days ago
Salary
0
Seniority
Senior
Job Description
Cybersecurity Engineer – ISSE
AUSGAR Technologies Inc.
• Provide Cybersecurity Engineering and Risk Management Framework (RMF) support for The United States Air Force (USAF) Life Cycle Management Center (AFLCMC) Engineering Directorate (AFLCMC/EN-EZ) Cyber Systems Engineering Division (AFLCMC/EZH). • Provide state-of-the-art technical support for the acquisition of cloud Development Security Operations (DevSecOps) boundary systems within AFLCMC. • Play a critical role in supporting the RMF Assessment and Authorization (A&A) processes for AFLCMC/EN-EZ. • Responsible for the technical implementation of the RMF. • Conduct cybersecurity and risk assessments on networks, systems and applications to identify and mitigate technical and non-technical vulnerabilities. • Handle multiple RMF authorization types, including baseline changes, use cases, Assessment Summary Results (ASR), Authorization to Operate (ATO), CAR, Denial of Authorization to Operate (DATO) & HRR/HR. • Conduct vulnerability assessment and analysis utilizing standard technologies, such as Security Content Automation Protocols (SCAPs), Assured Compliance Assessment Solution (ACAS)/NESSUS scans and DISA Security Technical Implementation Guides (STIGs)/ Security Requirements Guides (SRGs). • Conduct security assessments and create RMF documentation, including Security Assessment Plans (SAPs), eMASS Security Risk Assessment (SARs), Special Access Programs (SAPs) Executive Summary, SAPs Body of Evidence (BOE). • Provide accurate assessments and document security posture, capabilities and vulnerabilities. • Lead the creation of the SAPs and SARs and convey technical findings and risk assessments. • Perform detailed risk analysis, identify system vulnerabilities and provide comprehensive recommendations for risk mitigation. • Verify, validate and document risk, perform Security Control Assessments (SCAs) and document compliant and failed security controls in eMASS. • Assess STIGs and SRGs. • Ensure traceability of all vulnerabilities from raw assessment results to the Plan of Action and Milestones (POA&Ms). • Support the Continuous Security Monitoring (CSM) program as necessary.
Job Requirements
- Must possess a TS/SCI level security clearance; or a Top Secret with SCI eligibility will be considered.
- Security+ CE is required, CISSP is desired.
- Cloud certification is desired.
- Bachelor’s degree in Information Technology or related field or business-related field
- Desired: Advanced degree in Information Technology or related field or business or related field
- Minimum of 5-7 years of experience in cybersecurity risk assessment and supporting RMF A&A processes for DoD and Navy systems.
- Hands-on experience conducting vulnerability assessment and analysis utilizing standard technologies, such as SCAPs, ACAS/NESSUS scans and DISA STIGs/SRGs.
- Experience developing mitigations and writing mitigation statements for ongoing vulnerabilities.
- Experience using eMASS.
- Experience working in Navy environments.
- Experience with wireless networks technology.
- Experience with Visio required.
- Ability to author and maintain policy documents in support of RMF and Vulnerability Management.
- Substantive knowledge of NIST RMF.
- Good working knowledge of Windows and RHEL OS, layer 2 and 3 network devices and supporting infrastructure.
- Analytical skills to troubleshoot high-level, complex, technical problems.
- Employ strong written and verbal communication skills to advise various levels of technology stakeholders, program initiatives and accrediting authorities on security requirements and cybersecurity trends and solutions, to include risk assessments and mitigations.
Benefits
- Competitive salary
- Comprehensive benefits
- Company that cares
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
• Drive adoption of a Secure Software Development Lifecycle (SSDLC) across engineering teams. • Implement and integrate application security tooling into CI/CD pipelines, improving vulnerability detection and remediation. • Establish consistent threat modelling and secure design practices across new features and products. • Improve application security posture through proactive code reviews, vulnerability assessments, and developer enablement. • Produce audit-ready evidence supporting regulatory and compliance requirements.
Sales Director – Government Defense & Security
SpeedA Bitcoin & Stablecoin Company - Buy, Sell, Accept & Payout easily !
• You will be responsible for driving new revenue growth by selling Clearspeed's solutions to US federal government agencies. • Identify opportunities and work closely with internal teams to deliver solutions that meet client mission needs. • Develop and execute strategies to penetrate US federal, defense, and security sectors. • Identify, develop, and cultivate relationships with key stakeholders, contracting officers, and decision-makers. • Manage the full sales cycle: prospecting, qualification, proposals, negotiations, contract documentation, and closing. • Ensure compliance with federal contracting requirements, security regulations, and company policies. • Maintain accurate pipeline, forecasting, and CRM documentation. • Represent the company at networking opportunities, industry events, conferences, and client meetings.
• Maintain and improve a comprehensive Compliance Management System (CMS) that aligns with applicable federal and state consumer lending laws and regulations (e.g., TILA, ECOA, FCRA, GLBA, UDAAP). • Manage and maintain strong working relationships with our bank partners, ensuring ongoing compliance with bank oversight requirements and participation in exams and audits. • Oversee licensing, regulatory reporting, and interactions with federal and state regulators. • Advise senior leadership on compliance risks, trends, and mitigation strategies. • Lead compliance training, monitoring, and issue management programs. • Own the design and execution of our enterprise information security program to protect customer and company data. • Ensure compliance with GLBA, SOC 2, PCI DSS, and other applicable data security frameworks. • Develop and enforce policies, procedures, and controls for data privacy, cybersecurity, and incident response. • Oversee vendor due diligence and third-party risk management as it relates to information security. • Report regularly to executive leadership and the Board on the state of information security.
Learning Facilitator – Security, Property Protection
WBS TrainingServing the Global Quantitative Finance Community since 2000
• Subject-specific instruction from the home office in WBS LearnSpace 3D® • Applying a variety of teaching methods to design lessons • Preparing and creating course-related learning materials according to the curriculum • Conducting assessments to measure competency development • Excellent proficiency in German as the language of instruction (C2 level)



