Cybersecurity Specialist (TS/SCI - CI Poly)
Role details
Job location
Tech stack
Job description
Zachary Piper Solutions is seeking a Cybersecurity Specialist to support a federal customer in Ft. Belvoir, VA. This role is part of a dynamic team responsible for design, implementation, operations, maintenance, and cybersecurity for large-scale, resilient hardware and virtualized infrastructure. The ideal candidate will have experience managing enterprise Windows environments, virtualization platforms, and physical security systems while ensuring compliance with Information Assurance standards., As part of a multidisciplinary team, you will be responsible for coordinating and implementing technical controls and configuration settings and will work in a team environment alongside other cybersecurity engineers and Risk Management Framework (RMF) analysts responsible for supporting Information System Security Engineering efforts.
- Working closely and supporting team members, vendors, and government customers.
- Implementing DoD Security Technical Implementation Guides (STIGs) on traditional Information Technology (IT) and Operational Technology (OT) systems.
- Assisting in the development and verification of documentation necessary to complete the DoD RMF assessment and authorization process.
- Conducting ICS/SCADA system inventories following DoD guidance.
- Conducting vulnerability scanning and document system vulnerabilities.
- Supporting ISO standardization and Quality inspections.
- Participating in continuous improvement of organizational cybersecurity posture.
Requirements
- Active TS/SCI with the ability to obtain or maintain a CI Polygraph, * 3+ Years of Experience with a Master's Degree in Information Technology, Risk Management, Cybersecurity.
- 5+ Years of Experience with a Bachelor's Degree in Information Technology, Risk Management, Cybersecurity.
- 8+ Years of Experience with an Associate's Degree in Information Technology, Risk Management, Cybersecurity.
- 10+ Years with a High School Diploma.
One of the Required Certifications:
- CASP CE CISSP CISSP - ISSAP CISSP - ISSEP CSSLP CISA CISM GCED GCIH.
Qualifications:
- Must have an active TS/SCI with the ability to obtain or maintain a CI Polygraph.
- Experience with ACAS, HBSS, and mitigation strategies.
- Experience with risk assessment, mitigation, and closure of network vulnerabilities, and vulnerability management eMASS.
- Establishing, managing, and tracking of Plan of Action & Milestones (POA&M) Applying STIGs to servers, databases, applications, and other hardware Security Readiness Review (SRR) Tools (scripts and ACAS ).
- Ability to identify, maintain, and troubleshoot control network components.
- Excellent understanding of the DoD RMF lifecycle and NIST 800-53 controls implementation.
- Awareness of NIST Special Publication 800-82, Guide to Industrial Control Systems (ICS) Security and UFC 4-010-06 Unified Facilities Criteria (UFC) Cybersecurity of Facility.
- Working knowledge of operational control systems and implementing a variety of security assessment tools.
- Working knowledge of other operational control systems.
- Familiarity with DoDIN CCRI/CCORI and CYBERCOM TASKORDS.
Benefits & conditions
- Salary: $125,000 - $150,000 (based on experience and education).
- Benefits: Comprehensive package including medical, dental, vision, 401(k), paid time off, federal holidays, paternity leave, tuition reimbursement, military reserve pay offset, and sick leave.