ASRC Federal

Information Security Engineer

ASRC Federal Huntsville, Alabama, United States

Information Technology & Services · 201-500 employees

21 h ago
security Mid (2-5 yrs) Full-time United States
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The IA Professional is responsible for developing and maintaining cybersecurity policies, standards, and procedures while ensuring compliance with DoD and Army regulations. They will execute the Risk Management Framework (RMF) lifecycle for multiple systems and provide strategic support to the ACC CIO/G6 Cybersecurity Division.

What they look for

Risk Management Framework Cybersecurity Compliance Policy development Incident response eMASS DoD regulations Army regulations Technical writing Communication Analytical skills Problem-solving Strategic planning Privacy standards Information assurance

Requirements

Candidates must have at least 3 years of experience in cybersecurity, RMF implementation, and compliance, along with a Bachelor's degree in a relevant field. A Secret clearance and a professional certification such as CISSP, CISM, or equivalent are required.

Benefits

Health care Dental Vision Life insurance 401(k) Education assistance Paid time off Holidays

Full description

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™

ASRC Federal is looking for an experienced IA Policy and Compliance Certified Professional – Intermediate to support their work with the U.S. Army Contracting Command (ACC) Chief Information Officer (CIO) G6 at Redstone Arsenal, AL. The IA Professional serves as a subject matter expert (SME) and technical leader within the ACC Headquarters (HQ) Cybersecurity Division (CSD). This position is responsible for the development, implementation, and maintenance of cybersecurity policies, standards, and procedures, ensuring compliance with applicable Department of Defense (DoD), Army, and ACC regulations.

The IA Professional will work with a team of personnel, providing guidance and oversight in all aspects of Risk Management Framework (RMF) activities, cybersecurity assessments, and incident response. This role requires a deep understanding of cybersecurity principles, a strong analytical ability, and excellent communication skills to effectively convey complex information to both technical and non-technical audiences.

KEY RESPONSIBILITIES

  • Establish, maintain, and retain the Command Cybersecurity Standard Operating Procedures (SOPs) and Tactics, Techniques, and Procedures (TTPs).
  • Develop and maintain an ACC CIO/G6 Cybersecurity portal for dissemination of key products and documentation.
  • Execute the Risk Management Framework (RMF) lifecycle for multiple systems. Work with the other IA Professionals to maintain current Authority to Operate (ATO) status for these systems and provide RMF guidance and support to other ACC locations with similar systems.
  • Ensure all Military, Government, and Contractor IT/Cybersecurity personnel maintain records of training and certifications in the approved repository. Administer and maintain the repository, tracking requirements and notifying users of deficiencies.
  • Provide support for monthly briefings and reports to Senior Level Government Representatives on cybersecurity status and performance metrics (e.g., Cyber Scorecard). Report all deficiencies to the Government on a weekly basis.
  • Provide plans, strategies, and analysis to support the ACC CIO/G6 Cybersecurity Official with strategic program development. Utilize assessment tools to determine current cybersecurity posture, identify risks, and develop actionable strategies. Align cybersecurity priorities with Army and ACC strategic plans.
  • Identify, investigate, research, analyze, and report on Cyber-related capabilities and technologies to meet current and emerging command needs. Assess and report on technology solutions for potential integration into the DoDIN or command enclaves.
  • Conduct research to increase Cyber awareness and protection. Assess the feasibility of emerging ideas and participate in service, joint, and interagency events. Identify emerging Cyber trends and prepare vision documents and strategic studies.
  • Complete, track, and report completion of Cybersecurity taskers to the responsible HQ ACC Division Chief.
  • Provide plans, strategies, and analysis to support implementation of privacy standards (AR 340-21) and strategic development of Privacy training and policies. Support the ACC CIO/G6 Privacy Official with program support, incident handling, and reporting.
  • Attend and participate in Cyber-related working groups, meetings, and briefings as directed by the Government and maintain the Cyber Division calendar.

REQUIRED QUALIFICATIONS

  • Minimum of 3 years of experience in cybersecurity, RMF implementation, and compliance.
  • Proficient in:
  • DoD and Army cybersecurity regulations and policies.
  • The Risk Management Framework (RMF) process.
  • Strong analytical and problem-solving skills.
  • Proficiency in using cybersecurity tools and technologies (eMASS).
  • Strong written and verbal communication skills, including the ability to prepare and deliver briefings to senior leadership.

CLEARANCE LEVEL

  • SECRET Clearance

EDUCATION REQUIRMENTS

  • Bachelor’s degree in information technology, Cybersecurity, Data Science, Information Systems, or Computer Science

CERTIFICATION

  • One of the following required: CISM, CISSO, FITSP-M, GCIA, GCSA, GCIH, GSLC, GICSP, CISSP-ISSMP, or CISSP

WORK ENVIRONMENT AND PHYSICAL DEMANDS:

  • This role is 100% on-site at Redstone Arsenal, AL.

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

EEO Statement

ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.

Similar roles