Cybersecurity Engineer
Role details
Job location
Tech stack
Job description
Our organization is seeking an experienced Cybersecurity Engineer to support the Air Force's Air Operations Center (AOC) Falconer Weapon System team. This role is part of the AppTX (applications transformation) integrated product team, focusing on a cloud-based initiative to enable cloud solutions for non-cloud-based applications. The position is essential for safeguarding and ensuring that newly cloud-enabled solutions are compliant with required standards., * Ensure all system and application deliverables meet the requirements of all applicable cybersecurity policies.
- Verify that system deliverables comply with established cybersecurity policy and program management standards.
- Implement cybersecurity policy correctly on systems and ensure compliance with the Risk Management Framework (RMF).
- Support activities to meet requirements for Public Key Infrastructure (PKI) and Public Key (PK) Enabling to achieve standardized capabilities for biometrics, digital signatures, encryption, identification, and authentication.
- Install, maintain, and support Assured Compliance Assessment System (ACAS) and Host Based Security System (HBSS) and associated point products.
- Support the deployment of CI/CD pipeline security-related Infrastructure as Code (IaC) and Configuration as Code (CaC).
- Utilize AWS tools to troubleshoot and resolve security-related issues with AWS configurations and EC2 instances.
- Conduct STIG reviews of Windows- and Linux-based systems and various applications, leveraging automation tools.
- Ensure that 100% of the labor for cybersecurity services is certified in accordance with professional standards.
Requirements
Education: A Bachelor's Degree in Cybersecurity, Information Systems, Computer Engineering, or a related field is required. Additional years of experience may be considered in lieu of a degree.
Experience: A minimum of nine (9) years of experience in cybersecurity, information assurance, and certification and accreditation is required, including at least two years in a related environment. This includes over three (3) years of experience implementing vulnerability assessment and conducting data analysis.
Technical Skills: Knowledge of Cyber Situational Awareness, including Security Information and Event Management (SIEM) tools such as Splunk, Elastic Stack, and others, is required. A Security+ certification is also required.
Preferred Qualifications
- A CISSP certification is desired.