Cybersecurity Principal
Applied Research Solutions Bedford, Massachusetts, United States · $180K–$200K/yr
Defense and Space Manufacturing · 501-1,000 employees
About the role
The Principal Cybersecurity Engineer will lead the development of system security documentation and manage Authorization & Accreditation activities under the Risk Management Framework. They will also provide technical leadership in network architecture design and conduct cybersecurity risk and vulnerability assessments.
What they look for
Requirements
Candidates must possess a Bachelor's degree and at least 20 years of experience, with 10 years specifically in the DoD sector. A Top-Secret clearance and CISSP certification are required for this role.
Benefits
Full description
Applied Research Solutions has an exciting opportunity for a Principal Cybersecurity Engineer to support the Air Force Life Cycle Management Center-Ground Base Air Defense Sensor division (AFLCMC/ESG).
The ESG Division manages efforts focused on developing, acquiring, fielding and sustaining programs that support worldwide communications, Battle Management, Command & Control, Intelligence, Surveillance & Reconnaissance (C2ISR), Air/Ground Surveillance, Time Critical Targeting, Combat Identification, Radar Imagery, Integrated Air/Missile Defense, and Mobile/Fixed C2ISR Performance, Exploitation & Dissemination Facilities.
This is a full-time position located at Hanscom Air Force Base in Bedford, Massachusetts.
Why Work with us?
Applied Research Solutions (ARS) is respected as a world-class provider of technically integrated solutions as we deliver premier talent and technology across our focused markets for unparalleled, continuous mission support. Awarded a Best Places to Work nominee since 2020, ARS recognizes that without our career- driven, loyal professionals, we would not be able to deliver state-of-the-art results for our mission partners. We firmly believe that prioritizing our employees is of the upmost importance. We provide a culture where our employees are challenged to meet their career goals and aspirations, while still obtaining a work/life balance. ARS employees are motivated through our industry competitive benefits package, our awards and recognition program, and personalized attention from ARS Senior Managers.
Responsibilities
Duties include, but not limited to:
Cybersecurity & RMF Support
- Lead development and review of system security documentation including System Security Management Plans, Program Protection Plans, Security Risk Analyses, OPSEC Plans, and security CONOPS in accordance with DoDI 5000.02, DoDI 8510.01, MIL-STD-1785, and the Adaptive Acquisition Framework
- Support system and application Authorization & Accreditation (A&A) activities under the Risk Management Framework (RMF), ensuring completeness, quality, and compliance of all artifacts
- Manage RMF implementation activities including ATO/ATC, reciprocity, and ongoing continuous monitoring
- Administer and manage eMASS system packages
System, Network & Infrastructure Security
- Provide technical leadership in network and system architecture design with an emphasis on cybersecurity, including DoD and joint networking environments
- Support cross-domain solutions (CDS), Commercial Solutions for Classified (CSfC), and NSA approval processes
- Assess and mitigate system, network, and application vulnerabilities, including ACAS scanning and STIG implementation
- Recommend security configurations, software changes, and compensating controls to mitigate risk
Risk, Compliance & Policy
- Conduct cybersecurity risk and vulnerability assessments across planned and fielded systems
- Develop risk-based mitigation strategies and advise leadership on security tradeoffs impacting mission execution
- Recommend and update cybersecurity policies, procedures, and contingency plans, including disaster recovery
- Support waivers and deviations for mandated security controls when required to meet mission performance needs
Program Security & Classified Information Support
- Provide acquisition program security support throughout the system lifecycle, including source selections
- Maintain and audit classified information databases, visit records, clearance tracking, and classified holdings
- Evaluate contractor classified data submissions for compliance with System Security Classification Guides (SSCGs)
- Update security classification guides and prepare acquisition security documentation
Leadership, Collaboration & Training
- Advise government leadership on cybersecurity design, implementation, and compliance
- Collaborate with government and commercial stakeholders to achieve RMF authorization approvals
- Develop and deliver cybersecurity awareness and training programs
- Other duties as assigned
Qualifications
Citizenship: Must be a US citizen
Minimum Required Qualifications
Clearance: Must have a be able to maintain a Top-Secret Level Clearance
Education: BS/BA Degree
Years of Experience: 20 years of experience in the respective technical/professional discipline being performed, 10 of which must be in the DoD
- Risk Management Framework (RMF), with emphasis on taking projects from Step 1 to Step 5
- Vulnerability Management, Tenable Nessus (ACAS-DoD version of Nessus)
- STIGs
- CISSP Certification
- Experience with Cross Domain Solutions and USAF CDS-E
- Cloud Service Models
- Supply Chain Security
- NIAP
- DoD Policies for Procedures for Cybersecurity
- Network Security
- Endpoint
- DoD Impact Levels
- NSA Type 1 encryption
- Working with a CSSP - 16th AF
The annual salary range: $180k - $200k. Salary is dependent upon the role and associated responsibilities, candidate's experience, and qualifications to include education/training, and key skills.
All positions at Applied Research Solutions are subject to background investigations. Employment is contingent upon successful completion of a background investigation including criminal history and identity check.
This contractor and subcontractor shall abide by the requirements of 41 CFR 60-741.5(a). This regulation prohibits discrimination against qualified individuals on the basis of disability and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified individuals with disabilities.
This contractor and subcontractor shall abide by the requirements of 41 CFR 60-300.5(a). This regulation prohibits discrimination against qualified protected veterans and requires affirmative action by covered contractors and subcontractors to employ and advance in employment qualified protected veterans.
Similar roles
-
Sr. Analyst, Cybersecurity
TMRW Sports Inc Orlando, Florida, United States
-
Cybersecurity Analyst IAM II Intermediate
Five Stones Research Corporation Madison County, Alabama, United States
-
Founding Member, Senior AI & Application Security Specialist (Delhi NCR - Hybrid)
J.S. Held LLC Delhi, Delhi, India
-
Security Engineer - Vulnerability Management
Accenture Federal Services Washington, District of Columbia, United States · $106K–$221K/yr
-
Cybersecurity Engineer I (Grade 13)
Space Coast Credit Union Broward County, Florida, United States · $99K–$105K/yr
- Cybersecurity Specialist (DISA)