IT Support Lead - Assistant

Summit Technologies, Inc.
Fayetteville, NC, United States
22 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Cyber Security Information Systems Linux Network Security Information Technology Nessus Vulnerability Analysis

Job description

The Assistant IT Support Lead supports SOMTC cybersecurity and information-system security operations. This position performs Information Systems Security Officer functions, manages DoD Risk Management Framework packages in eMASS, maintains authorization documentation, analyzes system vulnerabilities, and helps ensure compliance with applicable DoD and federal cybersecurity requirements., * Support Information Systems Security Officer activities.

  • Manage DoD Risk Management Framework authorization packages within the Enterprise Mission Assurance Support Service application.
  • Develop, update, and maintain RMF documentation and artifacts.
  • Develop and maintain System Security Plans.
  • Develop, update, and track Plans of Action and Milestones.
  • Conduct vulnerability scans using ACAS and Nessus.
  • Analyze vulnerability-scan results and support remediation activities.
  • Support the design, implementation, assessment, and continuous monitoring of security controls.
  • Assess cybersecurity risks and develop or recommend mitigation measures.
  • Support cybersecurity incident-response and handling activities.
  • Support security-system design and implementation.
  • Maintain security compliance for Windows, Linux, network, and related information systems.
  • Support vulnerability assessments and penetration-testing activities.
  • Ensure compliance with applicable cybersecurity laws, regulations, policies, and standards.
  • Support network-security architecture, protocols, technologies, and system-security implementation., * Must comply with applicable DoD, Army, USSOCOM, USASOC, installation, cybersecurity, personnel-security, CAC, and information-system access requirements.
  • Mission requirements may require work beyond normal operating hours, occasional weekend support, surge support, or support for simultaneous events.
  • Telework requires prior Government approval.
  • Classified work is not normally authorized from an alternate worksite.
  • Occasional travel may be required to support mission activities.

Requirements

  • Bachelor’s degree in Information Technology, cybersecurity, or a related field; or
  • Associate degree in Information Technology, cybersecurity, or a related field and at least five years of relevant experience.

Required Experience

  • Minimum of two years of experience managing DoD RMF packages in eMASS.
  • Experience conducting vulnerability scans using ACAS or Nessus and analyzing the results.
  • Experience developing and maintaining RMF artifacts.
  • Experience developing and maintaining System Security Plans.
  • Experience developing, updating, and tracking Plans of Action and Milestones.

Required Knowledge and Skills

  • Cybersecurity principles and methodologies.
  • Risk-management processes and frameworks.
  • Network-security architecture and protocols.
  • Vulnerability-assessment and penetration-testing techniques.
  • Security-system design and implementation.
  • Security incident-response and handling.
  • Windows and Linux operating-system security.
  • Network-security architecture, protocols, and technologies.
  • Compliance with relevant cybersecurity laws, regulations, and standards, including NIST and FISMA requirements.
  • Strong technical writing, documentation, analysis, and coordination skills.

Certification Requirements

  • Current certification meeting the requirements for the DCWF Information Systems Security Officer, Work Role 722, at the Intermediate or Advanced proficiency level.
  • Acceptable certifications include CISSP, CISM, or an equivalent qualifying certification.
  • Must complete at least 20 hours of Continuous Professional Development annually, or the amount required to maintain the applicable certification, whichever is greater.

About the company

Position descriptions serve as a guideline and may not be construed as a guarantee of employment. Summit Technologies, Inc. is an at-will organization.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · WWC Europe 2026

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

2:39 min

Experiencing core Linux capabilities for DevOps administration

Michael Cade · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all