Cybersecurity Specialist

Amyx, Inc.
McClellan Park, CA, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Active Directory Data Analysis Software System Penetration Testing Cyber Security Information Systems Data Centers Dynamic Host Configuration Protocol Domain Name System (DNS) Microsoft Office Windows Servers Red Hat Enterprise Linux TCP/IP
+6 more
Software Vulnerability Management Windows Desktop Network Routers SC Clearance Information Technology Cisco

Job description

The Cyber Security Specialist Level 2 will guide efforts certifying the customer information systems are compliant with NIST standards and guidelines. The systems include Unclassified Computing Environment (DUCE), Test and Development Network (TDnet), SIPRNet Computing System (DSCS), Research and Development Network (DRDN), multiple unclassified enclaves, and all Unclassified stand-alone computers. Primary responsibility is to maintain assigned customer IT Systems RMF authorizations accurately and on schedule, while sustaining, maintaining or generating customer vulnerability management, asset management, and risk management tools and processes.

Daily responsibilities include:

  • Participating in risk assessment during the Certification and Accreditation (C&A) process.
  • Designing, developing, implementing, and integrating information assurance architectures, systems, or system components for use within data center, network, and enclave environments.
  • Continuously maintaining a comprehensive list of STIGs applicable to client information systems based on RMF control selection, system owner/administrator interviews and detailed analysis of Host Based Security System (HBSS) data (where available), ACAS scans, and reports.
  • Participating in information systems risk assessments and designing security countermeasures to mitigate identified risks.
  • Verifying architecture and design of DoD information systems (ISs) are functional and secure. As necessary, design and develop IA or IA enabled products, interface specifications, and engineer approaches to secure the environment.
  • Assessing threats to the environment; and providing input on the adequacy of security designs and architectures.
  • Reporting to senior IA architect, IA manager, or AO for general IA operations, with additional reporting to senior management regarding network operational requirements.
  • Providing technical research, analysis and reports interpreting client’s vulnerabilities, while delivering technical expertise for risk management decisions and documentation requirements for DoD ISs.
  • Analyzing trends, emerging technologies, and threats for potential impact on the security architect and posture.
  • Developing POA&Ms and Risk Management Framework (RMF) Control artifacts as required.
  • Collecting and addressing Information Assurance Vulnerability Management (IAVM) of Information Assurance Vulnerability Alerts (IAVA) through guidance set forth by USCYBERCOM, DISA, NIST, NSA and client for Vulnerability and Penetration Testing.
  • Must have the ability to communicate accurate information

Requirements

o Microsoft Office Products o Cisco Network Equipment o Windows Servers 2012/2016 o Windows Desktop o Red Hat Enterprise Linux, o eMASS (Future) o EiQ SecureVue operator

  • Must have the ability to communicate accurate information, * BA/BS in a technical discipline.
  • Secret Clearance
  • 5+ years of cybersecurity experience in system(s) functions, security policies, technical security safeguards, and operational security measures
  • In-depth knowledge in providing continuous analysis, mitigation strategies, and administrative and technical implementation support for all activities associated with compliance with RMF on information systems.
  • Thorough understanding of Operating Systems, networking (TCP/IP, Ports, Active Directory, DNS, and DHCP), Switch / Router configuration, and Security
  • CSSP-A or CSSP-AU
  • Current ACAS console training
  • Current HBSS courses/cert. in 201 & 301, Employee needs to be able to sit at a workstation for extended periods; use hand(s) to handle or feel objects, tools, or controls; reach with hands and arms; talk and hear. Most positions require ability to work on desktop or laptop computer for extended periods of time reading, reviewing/analyzing information, and providing recommendations, summaries and/or reports in written format. Must be able to effectively communicate with others verbally and in writing. Employee may be required to occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Regular and predictable attendance is essential.

Benefits & conditions

  • Medical, Dental, and Vision Plans (PPO & HSA options available)
  • Flexible Spending Accounts (Health Care & Dependent Care FSA)
  • Health Savings Account (HSA)
  • 401(k) with matching contributions
  • Roth
  • Qualified Transportation Expense with matching contributions
  • Short Term Disability
  • Long Term Disability
  • Life and Accidental Death & Dismemberment
  • Basic & Voluntary Life Insurance
  • Wellness Program
  • PTO
  • 11 Holidays
  • Professional Development Reimbursement

Benefits include:

  • Medical, Dental, and Vision Plans (PPO & HSA options available)
  • Flexible Spending Accounts (Health Care & Dependent Care FSA)
  • Health Savings Account (HSA)
  • 401(k) with matching contributions
  • Roth
  • Qualified Transportation Expense with matching contributions
  • Short Term Disability
  • Long Term Disability
  • Life and Accidental Death & Dismemberment
  • Basic & Voluntary Life Insurance
  • Wellness Program
  • PTO
  • 11 Holidays
  • Professional Development Reimbursement

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · WWC Europe 2026

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

3:45 min

Prototyping deterministic agents with n8n and PyATS

Alfonso Sandoval Rosas Alfonso Sandoval Rosas · Europe 2026 Virtual

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all