Cybersecurity Program Lead - MASS

Applied Research Solutions
Dayton, OH, United States
14 days ago
Apply on recruiting.ultipro.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Cyber Security Identity and Access Management Information Systems Security Engineering Professional Systems Development Life Cycle Secure Coding Information Technology Patch Management Scap Compliance Checker Devsecops Vulnerability Analysis

Job description

Applied Research Solutions seeks an experienced and strategic leader to serve as our Cybersecurity Integrated Product Team (IPT) Lead. This is a senior-level position responsible for safeguarding our critical national security systems. You will lead a dedicated team of cybersecurity professionals and be given the authority and resources to build and execute a comprehensive cybersecurity strategy. Your primary mission will be to ensure the system achieves and maintains its Authority to Operate (ATO) within a highly classified environment, while proactively managing risk and ensuring mission readiness. This role requires a unique blend of deep technical expertise, proven leadership, and mastery of DoD accreditation processes. This is a challenging but rewarding position that places you at the center of our program’s success. If you are a cybersecurity leader ready to take on a critical national security mission, I look forward to reviewing your application., * Leadership and Management: Lead, mentor, and manage the Cyber IPT, overseeing all cybersecurity-related tasks, schedules, and resources to ensure program objectives are met.

  • Cybersecurity Strategy: Develop, implement, and maintain the Program’s Cybersecurity Strategy, ensuring alignment with overarching DoD, Intelligence Community, and program-specific requirements.
  • Risk Management Framework (RMF): Shepherd the COMPASE system through the entire RMF lifecycle, from system categorization and control selection to assessment, authorization, and continuous monitoring.
  • Accreditation and Authorization (A&A): Act as the primary liaison with the Authorizing Official (AO), Security Control Assessor (SCA), and other security stakeholders. Prepare and manage all necessary documentation to achieve and maintain the system’s ATO.
  • Security Documentation Creation and Review: Support required documentation, such as SCGs and SSPs
  • Technical Oversight: Direct and oversee all technical security activities, including vulnerability scanning (e.g., ACAS), Security Technical Implementation Guide (STIG) implementation, patch management, and the mitigation of security findings.
  • High-Side Operations: Ensure all cybersecurity operations, testing, and monitoring are conducted in accordance with policies governing the Joint Worldwide Intelligence Communications System (JWICS) and other high-side environments.
  • Stakeholder Engagement: Regularly brief program leadership and government customers on the system’s cybersecurity posture, risks, and mitigation strategies.
  • Other duties as assigned.

Requirements

  • US Citizenship Required
  • Security Clearance: Must possess an active Top-Secret clearance with SCI eligibility.
  • Experience: A minimum of 8-10 years of progressive experience in cybersecurity, with at least 3 years in a leadership or management role for a DoD or IC program.
  • Education: A Bachelor of Science (B.S.) degree from an accredited institution in Cybersecurity, Computer Science, Information Technology, or a related engineering field.
  • RMF Expertise: Demonstrated, hands-on experience leading a system through the DoD RMF process to a successful ATO decision.
  • DoD 8570/8140 Certification: Must meet IAT Level III or IAM Level II requirements with an active certification, such as CISSP (preferred), CISM, or CASP+.
  • Classified Environment Experience: Proven experience working in TS/SCI environments and a strong understanding of the unique security challenges and procedures on networks like JWICS., * Advanced Degree: A Master of Science (M.S.) degree in Cybersecurity, Information Assurance, or a related technical field.
  • Advanced Certifications: Higher-level certifications such as CISSP-ISSEP (Information Systems Security Engineering Professional) or a Project Management Professional (PMP).
  • Technical Tooling: Hands-on experience with security tools such as ACAS, HBSS, SCAP Compliance Checker, and the eMASS platform.
  • Secure Development: Experience integrating cybersecurity into the full system development lifecycle (DevSecOps) and familiarity with secure coding practices.
  • Cross-Domain Solutions (CDS): Experience with the design, accreditation, and operation of Cross-Domain Solutions.
  • Program Management: Experience managing budget and schedule for a technical team.

All positions at Applied Research Solutions are subject to background investigations. Employment is contingent upon successful completion of a background investigation including criminal history and identity check.

About the company

Applied Research Solutions (ARS) is respected as a world-class provider of technically integrated solutions as we deliver premier talent and technology across our focused markets for unparalleled, continuous mission support. Awarded a Best Places to Work nominee since 2020, ARS recognizes that without our career- driven, loyal professionals, we would not be able to deliver state-of-the-art results for our mission partners. We firmly believe that prioritizing our employees is of the upmost importance. We provide a culture where our employees are challenged to meet their career goals and aspirations, while still obtaining a work/life balance. ARS employees are motivated through our industry competitive benefits package, our awards and recognition program, and personalized attention from ARS Senior Managers.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on recruiting.ultipro.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:59 min

Applying secure coding practices and proactive system monitoring

Mihaela-Roxana Ghidersa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

Videos

See all

Related articles

See all