Endpoint Security Solution (ESS) Administrator - Active Secret C
Role details
Job location
Tech stack
Job description
The Endpoint Security Solutions (ESS) Administrator is a vital member of the Computer Network Defense (CND) team, responsible for managing and maintaining the ESS and Comply to Connect (C2C) services. This role ensures the confidentiality, integrity, and availability of information assets across the USINDOPACOM networks, operating in close collaboration with systems/information owners, Defensive Cyber Operations (DCO), and Cybersecurity staff., * Key responsibilities include implementing, installing, and troubleshooting ESS and C2C systems, which involves developing custom content, monitoring system health, performing upgrades, and ensuring the operational readiness of physical and virtual appliances. The Endpoint Security Solutions (ESS) Administrator also monitors and tunes these systems according to DoD policies, ensuring all devices on the network meet security and compliance standards.
- Additionally, this role involves proactive system analysis to identify and prioritize discrepancies or shortfalls and making engineering recommendations for complex resolutions. The ESS Administrator participates in monthly program office meetings, assesses the organization's cybersecurity posture, and works closely with other cybersecurity professionals to ensure effective communication and collaboration.
- The Administrator is tasked with developing and implementing training programs for network operations personnel on ESS and C2C usage, performing event analysis using Splunk, and maintaining comprehensive documentation of all system configurations and changes. They also manage incident responses according to the USINDOPACOM Cyber Incident Response Plan, perform regular operations and maintenance of ESS components, and ensure all systems are compliant with DoD Public Key Infrastructure (PKI) requirements.
- The role requires occasional after-hours and weekend work to support service outages. The ESS Administrator must also provide a Monthly Status Report to the Contracting Officer's Representative (COR)-appointed Technical Assistant (TA), detailing accomplishments, identifying issues, and providing a configuration management summary of ESS-related systems. This position is critical in maintaining the security posture and compliance of all assigned systems and applications within the command.
Requirements
-
IAW DoD 8140.03-M, must meet the Intermediate Proficiency Level qualifications.
-
Minimum of four (4) years of system or network administration experience, with at least one (1) year of CND or SOC experience.
-
Minimum of one (1) year of system administration experience with Forescout, ESS, or other endpoint security systems.
-
Must have one or more relevant CND certifications; CISSP, CASP, OSCP, CySA+, CEH, or GCIH.
-
Must have experience managing and administering ESS Endpoint Protection Components as a global administrator for multiple sites.
-
Must possess expert level knowledge of Windows operating systems and intermediate-level knowledge of Linux operating systems. Certifications a plus.
-
Must have experience identifying and applying applicable security requirements (STIGS, IAVAs, and CTOs) to DoD systems.
-
Must have experience administering ACLs for local and/or network firewalls.
-
Demonstrated experience of strong analytical and problem-solving skills Forescout and ESS system administrator training certificates of completion are required in the first 60 days of employment.
-
Experience using Microsoft Office tools (Word, Excel, PowerPoint, Outlook, and Visio) in preparing analytical reports, information papers, and briefings for executive level recipients.
-
Minimum High School Diploma/GED.
-
Must have an active secret clearance.
Desired Qualifications:
- Splunk or other SIEM experience preferred.
Benefits & conditions
Regular - The company offers a comprehensive benefits program, including medical, dental, vision, life insurance, 401(k) and a range of other voluntary benefits. Paid Time Off (PTO) is offered to regular full-time and part-time employees.