Operational Cybersecurity

Science Applications International Corporation
Augusta, GA, United States
1 day ago
Apply on www.techcareers.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
0 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Windows Cyber Security Information Systems Distributed Computing Environment Infrastructure as a Service (IaaS) Red Hat Enterprise Linux Security Content Automation Protocol Tenable Nessus Vmware

Job description

  • Review, provide comments, and update DISA STIG Checklists in accordance with the Quarterly Build Cycle. STIG vulnerabilities marked as opened will be compiled including resolution recommendations/instructions and provided to GISA for review/remediation.
  • Review and provide comments on ACAS scans in accordance with the Quarterly Build Cycle. Open Plugins will be compiled, provided to GISA for review/remediation. Any Open Plugins that were not closed prior to the Build Release date/shipment will be documented and added to the Anticipated Findings List (AFL) for Cybersecurity to document.
  • Review the Army Intelligence Enterprise Architecture (AIEA) Infrastructure hosts, software, and configuration; review updated DISA STIG checklists and provide listing of applicable checklists.
  • Generate STIG Hardening Guide to include checklist, version, and applicable VM on a quarterly basis.
  • Support shall provide Cybersecurity expertise at the DoD 8140 Information Assurance Manager II Level.

Requirements

  • Have experience with Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG) review/development, Assured Compliance Assessment Solution (ACAS) scan review, Windows, RHEL, VMware, and other COTs products.
  • Experience with the Converged Infrastructure (CI) Distributed Processing, Exploitation, Dissemination (DPED) Infrastructure as a Service (IaaS) environment is a plus

Qualifications

Required Education:

Bachelors and five (5) years or more experience; Masters and three (3) years or more experience; PhD and 0 years related experience., * 5 years of hands-on experience with DoD or federal cybersecurity frameworks

  • ACAS Expertise: Practical experience managing Tenable Nessus/SecurityCenter tools
  • eMASS Proficiency: Confident navigating eMASS and managing RMF control checklists
  • STIG & SCAP Mastery: Proven ability to apply STIGs and verify compliance using the STIG Viewer and SCAP tools
  • Active Security+ certification
  • DOD 8140 IAT Level III Certification such as SecurityX / CASP
  • Excellent organizational, written, and oral communication skills
  • Ability to occasionally travel (~10%) in support of INSCOM G7 requirements

Clearance:

  • Candidate must have an active TS/SCI security clearance with ability to obtain a Poly. (Clearance must be listed and active in DISS.)

About the company

SAIC is a premier technology integrator, solving our nation’s most complex modernization and systems engineering challenges across the defense, space, federal civilian, and intelligence markets. Our robust portfolio of offerings includes high-end solutions in systems engineering and integration; enterprise IT, including cloud services; cyber; software; advanced analytics and simulation; and training. We are a team of 23,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $6.5 billion. For more information, visit saic.com. For information on the benefits SAIC offers, see Working at SAIC. EOE AA M/F/Vet/Disability

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.techcareers.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:40 min

Managing containerized infrastructure with Podman Desktop

Cedric Clyburn Cedric Clyburn +1 · World Congress 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:07 min

Summarizing critical actions for organizational cybersecurity compliance readiness

Matthew Brady Matthew Brady · World Congress 2026 Europe

1:41 min

Parallels between cloud and legacy infrastructure lock-ins

Björn Stahl Björn Stahl · World Congress 2024

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all