Senior Cybersecurity Engineer

Gray Analytics
Huntsville, AL, United States
20 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Data Analysis Software Applications Systems Engineering Cyber Security Information Systems Information Technology Nessus

Job description

Gray Analytics, a Government System Engineering Technical Assistance contractor, is seeking a Senior Cybersecurity Engineer to join a diverse, highly skilled team as a member of the Army Program Acquisition Executive Fires (PAE Fires) Integrated Fires Mission Command (IFMC) Project Office on Redstone Arsenal.

The Senior Cybersecurity Engineer will be a key member of the Security Engineering and Administration Branch performing Software Cybersecurity Systems Engineering while working with Compliance personnel to engineer key cybersecurity functions supporting the Risk Management Framework (RMF) Assessment and Authorization (A&A) process for tactical systems.

The candidate will have the following responsibilities:

  • Provide accurate technical evaluations of tactical equipment, software applications, full system, or network and documenting the security posture, capabilities, and vulnerabilities against applicable NIST controls.
  • Selecting and implementing security controls, timely completion of accreditation package artifacts, formulating and implementing mitigations and maintaining the security posture of systems.
  • Identify, assess and mitigate system security threats/risks throughout a system’s lifecycle, validate system security requirements, formulate and maintain documentation and system certification and accreditation activities (planning, testing, assessing and coordinating).
  • Responsible for leading cybersecurity process/tool improvements.
  • Monitoring and evaluating a system’s compliance with Department of Defense (DoD) security, resilience, and dependability requirements including performing validation steps, comparing actual results with expected results and analyzing the differences to identify impact and risks at the software application, system, and network levels.
  • Work with the compliance team to provide solutions and to ensure continued functionality of systems within DoW RMF Framework
  • Additional duties as assigned

Requirements

  • Degree: Bachelor’s Degree (Information Technology or Cybersecurity)
  • 5+ years of experience in cybersecurity Analysis or related field.
  • Experience with implementing and evaluating DoD STIG requirements, NIST RMF, IAVMs and Cybersecurity assessment tools (ACAS, Nessus, SCC, STIG Viewer)
  • Knowledge of the Risk Management Framework (RMF) process and NIST security controls
  • Knowledge of information system architecture and standards as they apply to cyber security
  • Sec+ or higher certification
  • Ability to travel. Travel will be estimated up to 25% per year.

Desired Qualifications:

  • Master’s Degree preferred (Information Technology or Cybersecurity)
  • Experience in a DoW security environment preferred
  • Candidates should have strong communication and writing skills; be able to work in a team-oriented environment supporting a diverse customer base comprised of program managers, engineers, analysts, specialists, and technicians; and strong attention to detail.

Security Requirements:

  • Candidate must be a US Citizen and possess (and be able to maintain) a Final Secret Clearance.

Benefits & conditions

Pulled from the full job description

  • Professional development assistance
  • Pet insurance
  • 401(k) matching
  • Paid time off
  • Flexible spending account
  • Disability insurance

About the company

Gray Analytics values our employees as our most important resource. To showcase these values, we offer not only traditional medical, disability, life, etc. coverages that begin on day one of employment, but also unique benefits to improve our employees’ quality of life. Some of these unique benefits include:

  • A PTO policy based on total years of experience, not years of service to the company. PTO is available for use immediately at hire, subject to company needs.
  • Eligibility for 401K contributions and company matching, Pet Insurance through Spot, Flexible Spending Account, and Tuition and Professional Development Funds begin on day one of employment.
  • Charitable donations program on a yearly and quarterly basis where employees can nominate a non-profit of choice to receive donations.

Gray Analytics is an Equal Opportunity Employer and VEVRAA Federal Contractor. This contractor and subcontractor shall abide by the requirements of 41 CFR 60-1.4(a), 60-300.5(a) and 60-741.5(a). These regulations prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on their race, color, religion, sex, gender identity, sexual orientation, or national origin. Moreover, these regulations require that covered prime contractors and subcontractors take affirmative action to employ and advance in employment individuals without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, protected veteran status or disability. Gray Analytics, Inc. welcomes minority and veteran applicants.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

1:48 min

Automating exploratory data analysis within training pipelines

Dora Petrella · WWC 2023

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:36 min

Performing exploratory data analysis to uncover underlying patterns

Julian Joseph · LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all