Cyber Security Specialist, Senior (Top Secret)
Role details
Job location
Tech stack
Job description
Praescient Analytics is a leader in delivering advanced analytic, data engineering, and technology integration solutions in support of the Department of Defense (DoD), Intelligence Community, and federal law enforcement. Our mission is to empower analysts and decision-makers through data-driven insights, enabling faster and more effective mission outcomes., Praescient Analytics is seeking a Cyber Security Specialist to lead all cybersecurity and Risk Management Framework (RMF) activities for a contract with the Defense Counterintelligence and Security Agency (DCSA). You will ensure the application suite-hosted within a Government-provided AWS IL5 cloud environment-maintains its Authorization to Operate (ATO) and strictly complies with DoD cybersecurity policies., * RMF & ATO Management: Lead the Authorization and Accreditation (A&A) process, creating and updating all required documentation to obtain and maintain a full ATO.
- System Security Planning: Develop and maintain the System Security Plan (SSP) and ensure all security-related software and hardware configuration management is documented.
- Vulnerability Remediation: Identify points of vulnerability or non-compliance and manage the Plan of Actions and Milestones (POA&M) to address relevant security controls.
- eMASS Oversight: Manage and contribute to eMASS packages by collaborating with ISSOs and ISSMs to ensure continuous compliance.
- STIG Compliance: Implement changes required to maintain compliance with Security Technical Implementation Guides (STIGs) and DoD policy.
- Security Assessments: Conduct periodic technical security assessments of computing environments and perform regular reviews to ensure SSP compliance.
- Incident Response: Report security-related incidents to the ISSM and initiate protective or corrective measures when vulnerabilities are discovered.
- DevSecOps Integration: Ensure 100% of the codebase is free of High or Critical Static and Dynamic vulnerabilities prior to production pushes., * Real opportunity for career growth in an environment where your achievements will be celebrated
- Constant collaboration with numerous teams to ensure client success
- A team that respects and embraces your ideas and expertise
- Coworkers that are motivated by pursuing excellence, rather than the prospect of personal gain
- A workplace dedicated to supporting and bettering public safety and government agencies
Requirements
- Clearance: Active Top Secret clearance with SCI eligibility.
- Certification: Must hold an active CISSP or CISM certification.
- Experience: 10+ years of experience in cybersecurity or information assurance.
- Cloud Proficiency: Proven experience securing systems in cloud environments (AWS preferred).
- Framework Knowledge: Deep expertise in NIST SP 800-53 and implementing RMF processes within DoD environments.
- Technical Compliance: Experience with STIG implementation and automated security scanning., * Direct experience utilizing eMASS for DoD accreditation.
- Expertise in DevSecOps security integration, specifically managing SAST/DAST vulnerabilities within an Agile Software Factory.
- Hands-on experience with AWS security services (IAM, KMS, CloudTrail, GuardDuty).
- Experience implementing security controls specifically within AWS IL5 / FedRAMP environments.
- Familiarity securing the OPIS technical stack, including Java-based web applications, Oracle databases, and FileNet document management.
- Knowledge of CMMC Level 2 self-assessment and independent assessment requirements.
Benefits & conditions
- Competitive salary based on qualifications and experience
- Comprehensive, Company paid healthcare for you (We pay your premiums and deductibles)
- 401(k) with company match
- Travel & performance incentives
- 3 weeks paid time off (plus Federal Holidays)
- $5K annual training allowance
- $500 book allowance
- Tuition reimbursement program