Cybersecurity Engineer III (48241)
| Estimated Pay info | Based on similar jobs in your market$50 per hour |
|---|---|
| Hours | Full-time, Part-time |
| Location | San Diego, CA San Diego, California open_in_new |
About this job
Job Description
Client: Information Systems Solutions, Inc.
Location: San Diego, CA
Work Arrangement: 100% Onsite at NIWC PAC
Employment Type: 6-Month Contract-to-Hire
Clearance: Active Secret
Worksite: 53560 Hull St., San Diego, CA 92152 Position Details
This position supports the NIWC PAC Information Technology Management Support Services contract. The Cybersecurity Engineer III will provide hands-on cybersecurity and accreditation support for a DoD environment, with a strong focus on RMF, A&A, eMASS, security controls, STIGs, POA&Ms, and ATO activities.
Key ResponsibilitiesSupport Assessment & Authorization (A&A) activities and the Risk Management Framework (RMF) accreditation lifecycle.
Develop, maintain, and update A&A documentation, including SSPs, SAPs, SARs, and POA&Ms.
Manage accreditation activities within eMASS, including scheduled tasking, ATO-related activities, quarterly IV&V, STIG checks, ASRs, and monthly POA&M updates.
Test and evaluate security controls based on security categorization, applicable overlays, and control tailoring.
Conduct security assessments, identify vulnerabilities, document findings, and recommend appropriate remediation.
Develop and maintain accurate POA&Ms, including mitigation statements, milestone tracking, and alignment with applicable security controls.
Perform and support DISA STIG assessments and remediation activities.
Support cybersecurity monitoring and incident response activities, including incident triage and impact assessment.
Support ATO, ATC, IATC, and IATT submissions and resubmissions, as applicable.
Maintain DISA circuit connections (CCSDs), system inheritance relationships, and accreditation workflow schedules.
Apply security requirements across classified, intelligence, privacy, and other applicable environments.
10+ years of cybersecurity or incident response experience, preferably within DoD or federal environments.
Active Secret clearance.
Strong hands-on experience with RMF and Assessment & Authorization (A&A).
Hands-on experience with eMASS and DoD accreditation processes.
- Experience developing and maintaining:
System Security Plans (SSPs)
Security Assessment Plans (SAPs)
Security Assessment Reports (SARs)
Plans of Actions & Milestones (POA&Ms)
Strong experience with security controls, DISA STIGs, vulnerability assessment, testing, and remediation.
Experience supporting cybersecurity monitoring, security testing, auditing, and risk assessment.
Ability to work 100% onsite in San Diego, CA at the NIWC PAC location.
IAM Level II certification required. One of the following:
CISSP or CISSP Associate
CASP+
CAP
CGRC
CISM
GSLC
Preferred: CISSP