Cybersecurity Lead with Security Clearance

Caelum Research Corporation

Huntsville (AL)

On-site

USD 130,000 - 170,000

Full time

36 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Medical, Dental, Vision insurance
401(k) Retirement Plan
Tuition/Training Assistance
Paid Leave and Holidays
Jury Duty benefits

Job summary

Caelum Research Corporation is seeking a Cybersecurity Lead to support a U.S. Army IT services contract in Huntsville, AL. You will develop RMF artifacts and maintain controls for Authority to Operate across network components.

You will manage patching, create extensive security documentation, and safeguard DoD data per CMMC requirements, uploading results to eMASS within required timelines. Active DoD Secret Clearance is required.

Qualifications

  • Minimum of five years' DoD Information Systems Security experience.
  • Experience creating RMF packages and entering data into eMASS.
  • Active DoD Secret Clearance.

Responsibilities

  • Develop and deliver cyber artifacts to support RMF for modernization projects.
  • Ensure artifacts are approved before deployment into Army network boundaries.
  • Create and maintain network boundary diagrams, hardware/software inventories, STIG/SRGs, architecture and information flow diagrams.
  • Ensure secure integration of network components into Army environments.
  • Document encryption, access controls, and cybersecurity controls for compliance and audit.
  • Provide artifacts for RMF Authorization to Operate (ATO) and related processes.
  • Produce Plans of Actions and Milestones (POAMs) detailing mitigations.
  • Oversee patch management and security update operations to maintain compliance.
  • Develop, update, and maintain baseline system documentation; obtain Government approval.
  • Safeguard government data per CMMC standards and pursue CMMC Level 3 certification.
  • Upload assessment results to CMMC/eMASS within ten business days.
  • Encrypt DoD emails and use DoD-approved channels for project communications.

Skills

RMF packages
DoD cybersecurity
CMMC 3
eMASS experience

Tools

eMASS

Job description

POSITION: Cybersecurity Lead LOCATION: Huntsville, AL SCOPE: Serves as a Cybersecurity on a major IT services contract for the U.S. Army RESPONSIBILITIES:

  • Develop and deliver cyber artifacts to support the RMF process for each modernization project. Provide the Government with all assessment artifacts necessary for technical and security review.
  • Prior to production deployment, any recommended technology must receive formal approval from the Government and be authorized for incorporation into ATEC network boundaries.
  • These include: network boundary diagram, hardware list, software list, completed Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs)/Security Requirements Guides (SRGs), list of cyber artifacts, encryption methods, system enterprise and information security architecture diagram, and information flow diagram.
  • Ensure network components (including wireless and fiber technologies) are securely integrated into the existing Army environment.
  • Ensure proper encryption, implement access controls and document cybersecurity controls for compliance and audit purposes.
  • Provide necessary artifacts to meet RMF requirements for the deployed systems under this TO.
  • To accompany the capabilities deliverable, all artifacts which support obtaining an Army RMF Authorization to Operate (ATO) related to the network components must be provided to each site in accordance with the U.S. ARCYBER and U.S. Army NETCOM standards.
  • These artifacts include: network boundary diagram, hardware list, software list, system enterprise and information security architecture diagram, information flow diagram, and created Plans of Actions and Milestones (POAMs) that capture rationale and mitigations for vulnerabilities or configurations that cannot be applied.
  • Perform patch management and security update operations support to maintain operating environment compliance until turnover of site is complete. Verify that unpatched vulnerabilities are documented and approved by the Authorizing Official via a POAM.
  • Responsible for patch and security update support, including:
  • Authoring and maintaining SOPs, policies, and appropriate patch/security documentation, including policies detailing patch and security update processes and procedures.
  • Providing oversight and periodic review of the patch management process.
  • Deploying and managing all patch/security update operations.
  • Performing patch and security update deployment testing.
  • Providing patch and security update status reports.
  • Complying with DoD rules and regulations governing patch and security update operations.
  • Ensuring end-point security tools operate in compliance with all devices and monitor, alert, troubleshoot non-compliance incidents.
  • Developing, updating, and maintaining existing and future baseline documentation of each system and application, including designs, build procedures, requirements documents, test procedures, problem reports, software code, and system knowledge base. Final documentation must be approved by the Government.
  • Safeguard all Government data according to Cybersecurity Maturity Model Certification (CMMC) standards and all applicable regulations regarding this subject.
  • Follow the processes and procedures required for achieving CMMC Level 3 certifications and utilize authorized CMMC Level 2 Self Assessments to assess existing DoD cybersecurity requirements.
  • Assessment results shall be uploaded to CMMC Enterprise Mission Assurance Support Service (eMASS) within ten business days.
  • Safeguard and encrypt all DoD emails in order to conduct regular correspondence and send products that are related to projects and Government day-to-day operations over acceptable DoD means of communication. QUALIFICATIONS:
  • Required Certifications (CAP, CompTIA Advanced Security Practitioner (CASP)
  • GIAC Security Leadership (GSLC) (GLSC)
  • Certified Information Systems Security Manager (CISSM), or Certified Information Systems Security Professional (CISSP)
  • Possess an industry certification and demonstrated success executing deploying the technical solution in an environment similar in size and scope to the requirement.
  • Minimum of five years' experience (within the last seven years) in the field of DoD Information Systems Security and/or Cybersecurity.
  • Minimum of five years' experience (within the last seven years) creating RMF packages and entering the data into eMASS to obtain an ATO/Authority to Connect, including all the ancillary artifacts. Minimum of one year experience working U.S. Army RMF processes.
  • SECURITY CLEARANCE: Active DoD Secret Clearance BENEFITS: We designed our employee benefits program around the goal of improving the quality of life for each employee. We offer some of the most competitive benefits in the industry to include Medical, Dental, Vision, and Life Insurances; Short- and Long-Term Disability; Paid Leave, Holidays, Bereavement, Military, and Jury Duty; 401(k) Retirement Plan, Flexible Spending Account, Dependent Care, Health Savings Account, Tuition/Training Assistance, and Referral Bonuses.
BENEFITS

We designed our employee benefits program around the goal of improving the quality of life for each employee. We offer some of the most competitive benefits in the industry to include

  • Medical, Dental, Vision, and Life Insurances
  • Short- and Long-Term Disability
  • Paid Leave, Holidays, Bereavement, Military, and Jury Duty
  • 401(k) Retirement Plan, Flexible Spending Account, Dependent Care, Health Savings Account, Tuition/Training Assistance, and Referral Bonuses
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Systems Analyst (TS/SCI) - RMF/A&A Expert
Cybersecurity Systems Analyst (TS/SCI) - RMF/A&A Expert

TJ Consulting Group • Fort Bragg (NC)

On-site
USD 70,000 - 85,000
PTO
401K with a 4% Match
Medical Insurance
+4
Cybersecurity Systems Analyst, Intermediate
Cybersecurity Systems Analyst, Intermediate

TJ Consulting Group • Fort Walton Beach (FL)

On-site
USD 90,000 - 120,000
PTO
Holiday Pay
401K with Match
+6
Cybersecurity Systems Analyst, Expert
Cybersecurity Systems Analyst, Expert

TJ Consulting Group • Smith (PA)

On-site
USD 145,000 - 150,000
PTO
Holiday Pay
401K
+6
Cybersecurity Operations Lead
Cybersecurity Operations Lead

Cwsc • Illinois

On-site
USD 95,000 - 130,000
Cybersecurity Systems Analyst, Intermediate
Cybersecurity Systems Analyst, Intermediate

TJ Consulting Group • Fort Bragg (NC)

On-site
USD 70,000 - 85,000
PTO
401K with a 4% Match
Medical Insurance
+4
Senior Manager Information Security
Senior Manager Information Security

ASRC Federal • Aberdeen (AR)

On-site
USD 120,000 - 180,000
Health care
401(k)
Education assistance
+1
IT Cyber Security Specialist (contingent 034)
IT Cyber Security Specialist (contingent 034)

Mssi Inc • Huntsville (AL)

On-site
USD 90,000 - 120,000
Cybersecurity Systems Analyst, Intermediate
Cybersecurity Systems Analyst, Intermediate

TJ Consulting Group • Tampa (FL)

On-site
USD 90,000 - 130,000
PTO
Holiday Pay
401K Match
+11
Cybersecurity Systems Analyst, Associate
Cybersecurity Systems Analyst, Associate

TJ Consulting Group • Tampa (FL)

On-site
USD 70,000 - 100,000
PTO
Holiday Pay
401K with a 4% Match
+13
Cybersecurity Engineer (DoD Enterprise Security)
Cybersecurity Engineer (DoD Enterprise Security)

SHR CONSULTING GROUP, LLC • Arlington (VA)

On-site
USD 135,000 - 155,000
Medical, dental, vision coverage
401(k) with company match
Paid time off and holidays
+1