Cybersecurity Engineer
Astrion Bedford, Massachusetts, United States
Defense and Space Manufacturing · 5,001-10,000 employees
About the role
The Cybersecurity Engineer will support the Air Force Life Cycle Management Center by developing security documentation and managing system authorization and accreditation activities. They will also conduct risk assessments, implement security updates, and ensure compliance with DoD cybersecurity policies.
What they look for
Requirements
Candidates must be U.S. citizens with an active Secret clearance and a bachelor's degree in an engineering discipline. At least 7 years of professional experience, including 3 years in the DoD, is preferred along with Security+ certification.
Full description
Overview
Cybersecurity Engineer
LOCATION: Hanscom AFB, MA
Salary Range:$150-$160,000 annually*
*depending on experience, certifications, and qualifications
JOB STATUS: Full-time
CLEARANCE:Secret
TRAVEL: Limited, as needed
Astrion has an exciting opportunity for a Cybersecurity Engineer to support the the Air Force Life Cycle Management Center Electronic Systems PEO (AFLCMC/ES). The Electronic Systems System (ESS) Division aka Force Protection Division's mission responsibility is to manage and execute the modernization, design, development, testing, fielding, and sustainment of the various software and hardware within the ESS Portfolio.
REQUIRED QUALIFICATIONS / SKILLS:
- Citizenship: Must be a US citizen
- Must have and be able to maintain an active Secret clearance
PREFERRED QUALIFICATIONS / SKILLS:
- Education: Bachelor’s degree in a professional engineering discipline from an ABET-accredited educational program and at least 7 years of experience in the respective technical/professional discipline, 3 of which must be in the DoD.
- Certifications: Security +
- Understanding of cybersecurity in DoD cloud infrastructure.
- Knowledge of Agile methodologies including CI/CD, DevSecOps, and DevOps.
- Expereinece with systems analysis and eMASS
- Strong ability to communicate technical topics effectively in both written and verbal forms.
- Technical Skills:• STIG compliance
- Risk Management Framework (RMF) implementation and documentation.
- DoD cybersecurity policies and compliance.
- System Authorization and Accreditation (A&A) processes.
- DoD cloud infrastructure security.
- Agile development methods including CI/CD, DevSecOps, and DevOps.
- Security risk, vulnerability, and contingency planning.
- PKI management and access control.
- Classified material handling and accountability.
- Interpersonal Skills• Strong verbal and written communication skills for both technical and non-technical audiences.
- Ability to collaborate with government, contractor, and industry stakeholders.
- Effective problem-solving and analytical thinking.
- Ability to work independently and manage multiple priorities in a fast-paced environment.
- Adaptability to evolving program requirements and security challenges.
RESPONSIBILITIES:
Duties include, but not limited to:
- Assist in the development of security documentation including System Security Management Plans, Program Protection Plans, Security Risk Analyses, OPSEC Plans, and other required system security engineering artifacts.
- Support RMF Authorization and Accreditation (A&A) activities, ensuring compliance with DoD and Air Force cybersecurity policies.
- Manage system user accounts, ports/protocols, PKI requirements, and access control lists.
- Implement and track system security updates, configurations, and vulnerability remediation in accordance with DoD requirements.
- Conduct risk and vulnerability assessments; recommend security policies, contingency plans, and disaster recovery procedures.
- Participate in system/network design to ensure alignment with security policies.
- Provide leadership in analyzing and integrating cybersecurity requirements into system design and operations.
- Review and assess the implementation of RMF security controls across system architecture, documentation, and design artifacts.
- Collaborate with stakeholders to ensure RMF A&A approval by all Authorizing Officials.
- Maintain and audit databases for classified information, visits, and clearances.
- Support classified material handling, accountability, and compliance with security classification guides.
- Develop and deliver security awareness training and education programs.
- Prepare and review acquisition security documentation and ensure compliance with CDRLs.
- Plan and implement security-related surveys, assessments, and evaluations throughout the program life cycle.
Similar roles
-
Lead AI Security Engineer
Quantium Sydney, New South Wales, Australia
-
Senior Security Engineer
Scyne Advisory Melbourne, Victoria, Australia
-
Nuclear Physical Security Engineer
TerraPower LLC. Rockville, Maryland, United States · $168K–$252K/yr
-
Network Cloud Security Engineer
EOS Austin, Texas, United States
-
Cybersecurity Engineer
Hamilton City Council Hamilton, Waikato, New Zealand · NZ$110K/yr
-
Senior Application Security Engineer
Jobgether Germany