Cybersecurity Associate
ASRC Federal Aberdeen Proving Ground, Maryland, United States · $72K–$118K/yr
Information Technology & Services · 201-500 employees
About the role
The Cybersecurity Associate will serve as the primary interface for cybersecurity tickets, ensuring compliance with DoD and Army regulations across various systems. Responsibilities include managing network accounts, conducting security audits, performing software and hardware assurance, and coordinating incident responses.
What they look for
Requirements
Candidates must possess a Bachelor's degree in a relevant field or 5 years of equivalent experience, along with an active Secret clearance. A strong working knowledge of DoD and Army cybersecurity policies, including RMF and STIG/SRG audit processes, is required.
Benefits
Full description
ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™
ASRC Federal Technology Solutions LLC is looking for an Information System Security Officer with a minimum of an active Secret clearance to support their work with DEVCOM-CBC G6. In this role, you will provide cybersecurity support to the DEVCOM-CBC G6 Cybersecurity Branch, serving as the primary contractor interface between the Mission Support Desk and the Cybersecurity Branch for all cybersecurity-related tickets, requests, and compliance functions. You will apply your knowledge of DoD and Army cybersecurity regulations to triage, analyze, and coordinate resolution of requests requiring Cybersecurity Branch approval, while maintaining a broad portfolio of compliance and accounts management responsibilities across unclassified, classified, and standalone systems.
This is a cybersecurity operations and compliance role embedded within the DEVCOM-CBC G6 Cybersecurity Branch. You will triage cybersecurity help desk tickets routed from the IT Mission Support Center, analyze requests against DoD and Army cybersecurity policy, and coordinate with Cybersecurity Branch staff on resolution and implementation. Your work will span accounts management, workforce compliance, software and hardware assurance, PKI token administration, incident response coordination, and data sanitization, making this a broad and consequential role within the DEVCOM-CBC cybersecurity program.
A typical week involves processing network account creation and deletion requests through the IT ticketing workflow, conducting inactivity and out-processing audits in accordance with Army Regulation 25-2, reviewing new software and hardware assurance submissions, maintaining DoD Cybersecurity Awareness training compliance records, and generating weekly metrics for leadership. You will also serve as the Enhanced Trusted Agent for PKI hardware token issuance to DEVCOM-CBC personnel for classified systems, and provide first-response coordination for Negligent Disclosure of Classified Information incidents in accordance with established SOPs. This role requires someone with a solid grounding in DoD and Army cybersecurity policy who can work independently, manage multiple compliance tracks simultaneously, and communicate clearly with both technical staff and end users.
KEY RESPONSIBILITIES
- Perform first-response coordination for all DEVCOM-CBC G6 Cybersecurity Branch IT tickets created and routed by the IT Mission Support Center, triaging requests and coordinating resolution and implementation with Cybersecurity Branch staff in accordance with DoD and Army cybersecurity policy
- Maintain accounts management responsibilities for the Army Cybersecurity program, including authorizing network account creation and deletion via IT ticketing system workflow and conducting out-processing and inactivity audits for unclassified and classified network accounts in accordance with Army Regulation 25-2
- Create and maintain a Standard Operating Procedure for the organization G6 accounts management process
- Maintain DoD Cybersecurity Awareness training and compliance records for DEVCOM-CBC personnel, including policy enforcement, weekly metric reporting, and point-of-contact support for training assistance
- Maintain Acceptable Use Policy and Privileged Level Access Agreement compliance for all DEVCOM-CBC personnel
- Maintain the DoD Cybersecurity Workforce program for DEVCOM-CBC in accordance with DoD 8570.01-M, including validating certification and training requirements for privileged level access, drafting and maintaining appointment orders, and generating audit and reporting metrics
- Manage the DEVCOM-CBC unit and all subordinate subunits within the Account Validation System (AVS)
- Perform DoD RMF Access Control security control group STIG/SRG audits on unclassified and classified Active Directory network account Organizational Units
- Perform Enhanced Trusted Agent responsibilities for issuing and maintaining PKI hardware tokens to DEVCOM-CBC personnel for classified systems
- Perform first-response coordination for Negligent Disclosure of Classified Information incidents in accordance with organization SOPs for incident response
- Perform Software Assurance responsibilities for all new software applications to be introduced on DEVCOM-CBC unclassified networks, classified networks, and standalone systems
- Perform Hardware Assurance responsibilities for all new IT hardware to be introduced on DEVCOM-CBC unclassified networks, classified networks, and standalone systems
- Execute data sanitization procedures on CBC equipment designated for turn-in or destruction in accordance with Army and NSA data destruction policy and guidelines
- Respond to tasks related to privileged level access compliance issued by higher headquarters
REQUIRED QUALIFICATIONS
- Bachelor’s degree (BA/BS) in Computer Science, Information Technology, Engineering, or a related field or 5 additional years of experience in lieu of the degree
- Working knowledge of DoD and Army cybersecurity regulations including Army Regulation 25-2, DoD 8570.01-M, and DoD RMF policy
- Experience with Active Directory account management and STIG/SRG audit processes
- Familiarity with the Army Account Validation System (AVS) or equivalent DoD workforce compliance tracking platforms
PREFERRED QUALIFICATIONS
- Experience serving as an Enhanced Trusted Agent for PKI hardware token issuance
- Experience performing Software Assurance or Hardware Assurance reviews for DoD networks
- Familiarity with NSA and Army data sanitization and destruction policy
- Experience coordinating Negligent Disclosure of Classified Information or classified spill incident response
- Experience supporting DEVCOM or Army G-6 cybersecurity programs
CLEARANCE LEVEL
- This position requires an active Secret clearance or higher. An interim Secret clearance is acceptable until the full clearance is granted.
EDUCATION REQUIRMENTS
- Bachelor’s degree in Information Technology, Computer Science, or a related field or 5 additional years of experience in lieu of the degree
CERTIFICATION
- DoDI 8140.03 qualification for DCWF Work Role Information Systems Security Manager (722 Advanced). Accepted foundational qualifications include certifications mapped to Work Role 722 Advanced in the current DoD 8140 Qualification Matrix, such as CISM, CISSP, CISSP-ISSMP, FITSP-M, GCIA, GCIH, GICSP, and GSLC.
Preferred
- Security+
- SecurityX
- SSCP
WORK ENVIRONMENT AND PHYSICAL DEMANDS:
- This position primarily operates in a professional office environment at Aberdeen Proving Ground, MD, working within or alongside the DEVCOM-CBC G6 Cybersecurity Branch. The role involves extended use of computer equipment and may require the candidate to move between buildings on the installation to support users and coordinate with government staff. Some work may involve access to classified facilities and systems. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions of this position.
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.
EEO Statement
ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.
Similar roles
-
Interim Cybersecurity & IT Risk Lead Consultant
Fermi Inc Dallas, Georgia, United States
-
Cybersecurity Architect
North Suburban Family Physicians Bloomington, Minnesota, United States · $141K–$211K/yr
-
IT & Security Engineer
Albedo Broomfield, Colorado, United States · $107K–$115K/yr
-
Cybersecurity Engineer
TRIDENT SYSTEMS LLC Fairfax County, Virginia, United States · $70K–$101K/yr
-
Cybersecurity Administrator
Aleut Federal San Antonio, Texas, United States · $91K–$97K/yr
-
Co-op - Cybersecurity, Engineering & Operations
Chemtrade North Vancouver, British Columbia, Canada · CA$40K–CA$46K/yr