Cybersecurity Engineer

Quantum Sky

Virginia Beach (VA)

On-site

USD 90,000 - 130,000

Full time

43 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Quantum Sky is seeking a Cybersecurity Engineer for a government program management office at Virginia Beach, VA. The role requires applying RMF/A&A within the SDLC and ensuring security controls across architecture, design and deployment.

You will work on-site at Dam Neck Activity, coordinating with program managers and technical stakeholders to interpret requirements, perform risk assessments, and maintain eMASS documentation. A current SECRET clearance is required.

Qualifications

  • Bachelor’s Degree in computer science, cybersecurity, information systems, or related technical discipline; or an Associate’s Degree with six or more years of cybersecurity experience.
  • Experience applying RMF to government or DoD systems and performing A&A activities.
  • Working knowledge of NIST RMF, STIGs, and security assessment documentation.

Responsibilities

  • Work on a government site in Virginia Beach, Dam Neck Activity (DNA).
  • Provide cybersecurity engineering support across the SDLC by embedding security into architecture, design, development, testing, assessment, authorization, delivery and sustainment.
  • Apply RMF to program information systems per NIST SP 800-37 and DoDI 8510.01.
  • Implement RMF lifecycle steps to achieve Authority to Operate (ATO) and maintain system security baselines and eMASS documentation.
  • Support cybersecurity architecture and A&A processes to drive ATO decisions.
  • Incorporate security best practices aligned with DoD/Navy cybersecurity strategy and manage adaptations for hardware, software and applications.
  • Assist government managers with information security oversight, policy analysis, IT procurement and program execution per NIST SP 800-39 and DoDI 8500.01.
  • Engage with program office and technical stakeholders to interpret requirements, standards, budgets, and monitoring.
  • Review ACAS vulnerability scans; assess STIGs and SCAP content for applicable components.
  • Prepare and review SSPs, SAPs, RARs, A&A packages and System Requirements Traceability Matrices (SRTMs).

Skills

RMF methodology
A&A process
CSWF IAT II
CSWF IAT III
Navy/DOD policies
DISA tools
STIG Viewer
eMASS familiarity
Communication skills

Education

Bachelor’s degree in computer science/cybersecurity/info systems or related field
Associate’s degree + 6+ years cybersecurity experience

Job description

Quantum Sky is searching for a Cybersecurity Engineer to support a Government Program Management Office in Virginia Beach, VA.

Responsibilities

  • Work location is on government site in Virginia Beach, Dam Neck Activity (DNA).
  • Provide cybersecurity engineering support as part of the system development life cycle (SDLC). Ensure security requirements are integrated into the system architecture, design, development, testing, assessment, authorization, delivery, and sustainment.
  • Apply the cybersecurity risk management framework (RMF) to program information systems in accordance with NIST SP 800-37 (RMF for Information Systems and Organizations) and DoDI 8510.01 (RMF for DoD Information Technology).
  • Implement the RMF life cycle steps to achieve system authorization and operation. Build, maintain, and track system’s cybersecurity baselines and security authorization documentation to the Enterprise Mission Assurance Support Service (eMASS).
  • Provide support to cybersecurity architecture and assessment & authorization (A&A) processes, ultimately leading to Authority to Operate (ATO) decision.
  • Identify and employ cybersecurity best practices for the organization. Create a well-informed plan based on DOD and Navy cybersecurity strategy and manage the adaption process. Incorporate security management into hardware, software, and applications.
  • Assist Government managers with information security oversight, policy analysis, IT product acquisition, and program execution in accordance with NIST SP 800-39 (Managing Information Security Risk: Organization, Mission, and Information System View) and the DoDI 8500.01 (Defense Cybersecurity Program).
  • Engage with Program Office managers and technical stakeholders to interpret technical requirements, standards/policies, architectural artifacts, budget development, implementation, auditing, program briefs, and continuous monitoring.
  • Review Assured Compliance Assessment Solution (ACAS) vulnerability scans. Review, analyze and evaluate Security Technical Implementation Guides (STIGs) and Security Content Automation Protocol (SCAP) content for each applicable system component.
  • Prepare and review documentation to include Systems Security Plans (SSP), Security Assessment Plans (SAP), Risk Assessment Reports (RAR), A&A packages, and System Requirements Traceability Matrices (SRTMs).

Required:

  • Four (4) or more years of experience in IT security, including RMF methodology and A&A.
  • Bachelor’s Degree in computer science, cybersecurity, information systems, or other related technical discipline; or Associate’s Degree and six (6) or more years of cybersecurity experience.
  • Cybersecurity Workforce (CSWF) Intermediate Level knowledge/skills (IAT Level II), with specific course completion or renewal certificate.
  • Exceptional understanding of DOD cybersecurity policies, RMF steps and structure, A&A process, and gaining system authorization to operate (ATO).
  • Ability to operate and execute DISA tools, STIG Viewer, eMASSter and a strong familiarity with eMASS functionality.
  • Strong communication skills with all levels of the IT workforce and can translate complex technical topics for senior decision-makers. Prepare/deliver presentations to leadership.
  • Familiarity with Department of the Navy cybersecurity policies, organizations, and missions.
  • Cybersecurity Workforce (CSWF) Advanced Level knowledge/skills (IAT Level III).

Location:

Clearance

  • Current active Secret clearance as reported in DISS.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer
Cybersecurity Engineer

Tyto Athene • Virginia Beach (VA)

On-site
USD 100,000 - 112,000
Health/Dental/Vision
401(k) match
Paid Time Off
+4
RMF & A&A Cybersecurity Engineer - On-Site (Secret)
RMF & A&A Cybersecurity Engineer - On-Site (Secret)

Quantum Sky • Virginia Beach (VA)

On-site
USD 90,000 - 130,000
Cyber Security Lead
Cyber Security Lead

ALTA IT Services, LLC • Fort Belvoir (VA)

On-site
USD 100,000 - 140,000
Competitive compensation and benefits
Collaborative work environment
High-impact cybersecurity efforts
Cybersecurity Lead
Cybersecurity Lead

Client Solution Architects • Washington

On-site
USD 120,000 - 160,000
Cybersecurity Engineer
Cybersecurity Engineer

Jobtailor • San Diego (CA)

On-site
USD 120,000 - 190,000
Senior Cybersecurity Analyst/Engineer
Senior Cybersecurity Analyst/Engineer

Technomics, Inc. • Arlington (VA)

On-site
USD 100,000 - 130,000
Cybersecurity Engineer
Cybersecurity Engineer

Tyto Athene, LLC • Virginia Beach (VA)

On-site
USD 100,000 - 115,000
Health/Dental/Vision
401(k) match
Paid Time Off
+1
Cybersecurity Analyst V (Senior)
Cybersecurity Analyst V (Senior)

People Technology And Processes • Washington

On-site
USD 127,000 - 138,000
Senior Cybersecurity Analyst
Senior Cybersecurity Analyst

Technomics, Inc. • Arlington (VA)

On-site
USD 100,000 - 130,000
Cybersecurity Specialist
Cybersecurity Specialist

Saic • Pensacola (FL)

On-site
USD 90,000 - 130,000