An application made for this job — a tailored resume and cover letter that speak straight to the posting.
McBride Consulting provides a Principal Cybersecurity Engineer role at Hanscom AFB in Bedford, MA. The position emphasizes RMF lead work, system security documentation, and risk management for Air Force Life Cycle Management Center projects.
You will drive RMF implementation, manage eMASS packages, and guide DoD cybersecurity decisions for complex DoD environments while coordinating with government and industry partners.
McBride Consulting has an exciting opportunity for a Principal Cybersecurity Engineer providing support to the Air Force Life Cycle Management Center-Ground Base Air Defense Sensor division (AFLCMC/ESG). This is a full-time position located at Hanscom Air Force Base in Bedford, Massachusetts.
Cybersecurity & RMF Support Lead development and review of system security documentation including System Security Management Plans, Program Protection Plans, Security Risk Analyses, OPSEC Plans, and security CONOPS in accordance with DoDI 5000.02, DoDI 8510.01, MIL-STD-1785, and the Adaptive Acquisition Framework Support system and application Authorization & Accreditation (A&A) activities under the Risk Management Framework (RMF), ensuring completeness, quality, and compliance of all artifacts Manage RMF implementation activities including ATO/ATC, reciprocity, and ongoing continuous monitoring Administer and manage eMASS system packages System, Network & Infrastructure Security Provide technical leadership in network and system architecture design with an emphasis on cybersecurity, including DoD and joint networking environments Support cross-domain solutions (CDS), Commercial Solutions for Classified (CSfC), and NSA approval processes Assess and mitigate system, network, and application vulnerabilities, including ACAS scanning and STIG implementation Recommend security configurations, software changes, and compensating controls to mitigate risk Risk, Compliance & Policy Conduct cybersecurity risk and vulnerability assessments across planned and fielded systems Develop risk-based mitigation strategies and advise leadership on security tradeoffs impacting mission execution Recommend and update cybersecurity policies, procedures, and contingency plans, including disaster recovery Support waivers and deviations for mandated security controls when required to meet mission performance needs Program Security & Classified Information Support Provide acquisition program security support throughout the system lifecycle, including source selections Maintain and audit classified information databases, visit records, clearance tracking, and classified holdings Evaluate contractor classified data submissions for compliance with System Security Classification Guides (SSCGs) Update security classification guides and prepare acquisition security documentation Leadership, Collaboration & Training Advise government leadership on cybersecurity design, implementation, and compliance Collaborate with government and commercial stakeholders to achieve RMF authorization approvals Develop and deliver cybersecurity awareness and training programs.
Citizenship: Must be a US citizen Minimum Required Qualifications Clearance: Must have a be able to maintain a Top Secret Level Clearance Education: BS/BA Degree Years of Experience:20 years of directly related experience, 10 years of which must be in the DoD Risk Management Framework (RMF), with emphasis on taking projects from Step 1 to Step 5 Vulnerability Management, Tenable Nessus (ACAS-DoD version of Nessus) STIGs CISSP Certification Preferred Qualifications Experience with Cross Domain Solutions and USAF CDS-E Cloud Service Models Supply Chain Security NIAP DoD Policies for Procedures for Cybersecurity Network Security Endpoint DoD Impact Levels NSA Type 1 encryption Working with a CSSP - 16th AF
Location: Hanscom Air Force Base