Cyber Security Principal

Abacus Technology Corporation

Bedford (MA)

On-site

USD 150,000 - 200,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Abacus Technology Corporation is seeking a Cyber Security SME to serve as ISSM for Hanscom AFB, responsible for maintaining the security posture and RMF compliance across systems. The role requires detailed knowledge of DoD policies and close collaboration with AOs and the government customer.

Applicants must have 15+ years in IT with 10+ years in cyber security, a Master’s degree, and a TS clearance. The position offers a full-time on-site role at Hanscom AFB with a strong focus on risk

Qualifications

  • 15+ years in IT, with at least 10 years in cyber security.
  • Master’s degree in a related field; degree substitutions allowed.
  • Certification per DoDD 8140 IAM Level III (GSLC/CISM/CISSP).
  • Familiar with DIACAP, RMF, STIGs, and IA controls.
  • Experience with app/service development, architecture, testing, and administration.
  • Strong Windows knowledge: Active Directory, Windows admin, scripting.
  • Basic Linux experience (Red Hat, Fedora).
  • Networking: routers, switches, firewalls; Cisco/Juniper.
  • Desktop app administration: Office, browsers, antivirus.
  • Detail oriented; able to work in multi-disciplined, adaptive env.
  • Excellent oral and written communication; client-focused.
  • Familiarity with EITDR and eMASS desired.
  • Ability to apply diverse knowledge to problems; independent decisions.
  • Team player; able to work with gov customer and team.
  • US citizen with current Top Secret clearance.

Responsibilities

  • Serve as ISSM and technical advisor to AOs, maintaining security posture and RMF.
  • Support RMF implementation and develop formal information security program.
  • Guide A&A activities and ensure artifacts meet DoD and Air Force policies.
  • Ensure proper handling of incidents and vulnerabilities; coordinate responses.
  • Report IS/Platform IT assessment status per DoD guidance.
  • Direct ISSO to follow cybersecurity policies and procedures.
  • Coordinate with security manager to address security issues.
  • Monitor compliance with cybersecurity policy and results.
  • Coordinate cyber inspections, tests, and reviews with stakeholders.
  • Ensure secure configuration of IT products before connection.
  • Prepare and maintain IA and security management plans.

Skills

RMF expertise
DoD 8140 IAM III
Security governance
Windows/Linux admin
Network security
Team collaboration
Communication skills

Education

Master’s degree in related field

Tools

Active Directory
Windows Server
Cisco
Juniper
eMASS
EITDR

Job description

Overview

Abacus Technology is seeking a Cyber Security SME to serve as an Information System Security Manager (ISSM) and act as a technical advisor for security issues for the Command, Control, Communication, Intelligence and Networks (C3I&N) Directorate at Hanscom AFB. This is a full-time position.

Responsibilities
  • Serve as the Information System Security Manager (ISSM) and act as technical advisors to AOs, primarily responsible for maintaining the overall security posture of the systems within their organization and are accountable for the implementation of DoDI 8510.01.
  • Support implementation of the RMF.
  • Develop and maintain a formal Information Systems security program and policies for their assigned area of responsibility.
  • Supporting the system/application A&A effort, to include assessing and guiding the quality and completeness of A&A activities, tasks, and resulting artifacts mandated by governing DoD and Air Force policies (i.e., RMF).
  • Ensure proper measures are taken when an Information System incident or vulnerability is discovered.
  • Maintain and report IS and Platform Information Technology systems assessment and authorization status and issues in accordance with DoD Component guidance.
  • Provide direction to the ISSO to ensure they are following established cybersecurity policies and procedures.
  • Coordinate with the organization's security manager to ensure issues affecting the organization's overall security are addressed appropriately.
  • Monitor compliance with cybersecurity policy, as appropriate, and review the results of such monitoring.
  • Ensure that cybersecurity inspections, tests, and reviews are synchronized and coordinated with affected parties and organizations.
  • Ensure implementation of Information System security measures and procedures including reporting incidents to the AO and appropriate reporting chains, and coordinating system-level responses to unauthorized disclosures.
  • Ensure handling of possible or actual data spills of classified information resident in ISs, are conducted in accordance with DoD regulations.
  • Act as the primary cybersecurity technical advisor to the AO for DoD Information Systems and Platform Information Technology systems under their purview.
  • Ensure that cybersecurity-related events or configuration changes that may impact DoD Information Systems and Platform Information Technology systems authorization or security posture are formally reported to the AO and other affected parties.
  • Ensure the secure configuration and approval of IT below the system level (i.e., products and IT services) in accordance with applicable guidance prior to acceptance into or connection to a DoD Information System or Platform Information Technology system.
  • Author, review, certify, and/or maintain IA and security management plans to include RMF Implementation Plans, System Security Management Plans, Information Support Plans, PPPs, Security Risk Analyses, Security Vulnerability and Countermeasure Analyses, Security Concepts of Operations, OPSEC Plans, and other system/network security related documents.
Qualifications

15+ years experience in the IT field including at least 10 years in a cyber security role. Master’s degree in a related field. Additional years of experience may be substituted for degree requirements. Must hold a certification in compliance with DoDD 8140 IAM Level III (e.g. GSLC, CISM, and/or CISSP). Familiar with DIACAP, Risk Management Framework (RMF), STIGs, and IA Controls. Experience with development/architecture for apps and services, and testing and administration. Strong knowledge of Microsoft Windows technologies, including Active Directory, Windows Administration, scripting, and Windows configuration techniques. Basic Linux experience to include Red Hat and Fedora. Networking experience including routers, switches, and firewalls. Experience with Cisco and Juniper. Strong desktop application administration experience to include Microsoft Office, web browsers, and anti-virus applications. Must be detail oriented and possess the ability to work in a multi-disciplined environment with an adaptive personality. Excellent communication skills, both oral and written. Analytical skills to troubleshoot IA issues. Familiarity with EITDR and eMASS desired. Must be able to apply intensive and diverse knowledge to problems and make independent decisions. Must be a team player able to work professionally and collaboratively with the government customer and other contract members of the project team. Excellent written and verbal communication skills and a client focus. Must be a US citizen and hold a current Top Secret clearance.

Applicants selected will be subject to a U.S. government security investigation and must meet eligibility requirements for access to classified information.

EOE/M/F/Vet/Disabled

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

Abacus Technology Corporation • Lincoln (MA)

On-site
USD 110,000 - 150,000
Cyber Security Engineer
Cyber Security Engineer

Abacus Technology Corporation • Bedford (MA)

On-site
USD 110,000 - 160,000
Cyber Security Engineer
Cyber Security Engineer

Abacus Technology Corporation • Northern (KY)

On-site
USD 90,000 - 130,000
System Cyber Security Engineer
System Cyber Security Engineer

Abacus Technology Corporation • Bedford (MA)

On-site
USD 110,000 - 160,000
System Cyber Security Engineer
System Cyber Security Engineer

Abacus Technology Corporation • Northern (KY)

On-site
USD 110,000 - 160,000
Cyber Security Engineer
Cyber Security Engineer

Abacus Technology • Massachusetts

On-site
USD 110,000 - 140,000
Cyber Security Engineer
Cyber Security Engineer

Talentify • Lincoln (MA)

On-site
USD 110,000 - 150,000
Senior Cybersecurity ISSM & RMF Lead
Senior Cybersecurity ISSM & RMF Lead

Abacus Technology Corporation • Bedford (MA)

On-site
USD 150,000 - 200,000
System Cyber Security Engineer
System Cyber Security Engineer

Abacus Technology Corporation • Lincoln (MA)

On-site
USD 110,000 - 140,000
Cyber Security Analyst
Cyber Security Analyst

Abacus Technology Corporation • Northern (KY)

Hybrid
USD 85,000 - 115,000