TS/SCI cleared
Nabout Leidos
United States
2 months ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$87,100.0 - $157,450.0
Working hours
Regular working hours
Job source
Tech stack
Amazon Web Services
Microsoft Azure
Bash Shell
Configuration Management
CompTIA Security+
Cyber Security
System Configuration
Linux
Identity and Access Management
Python (Programming Language)
Microsoft Visio
Network Architecture
+16 more
Network Forensics
Microsoft Network Monitor
Performance Tuning
Red Hat Enterprise Linux
Security Content Automation Protocol
Security Information and Event Management
Virtualization Technology
Software Vulnerability Management
Scripting
Computer Networking Systems
Cloud Platform System
Information Technology
Nessus
Splunk
Vulnerability Analysis
Vmware
Job description
- Assess current ACAS implementations for each network and recommend improvements to scanning coverage, architecture, and policy configuration.\n
- Document the design of the ACAS solution for each network.\n
- Lead and guide team members in troubleshooting and resolving operational issues within the ACAS environment.\n
- Develop reporting dashboard designs and reports tailored for three audiences: Leadership; Cybersecurity Staff; and System Administrators.\n
- Generate, analyze, and present vulnerability assessment reports and risk mitigation updates to and ISSMs/ISSOs.\n
- Ensure networks receive timely updates from the DISA/DoD Patch Repository or Tenable; implement and track IAVA compliance.\n
- Implement reporting dashboard designs and generate environment-specific compliance and vulnerability reports.\n
- Verify scheduled scans achieve required coverage of intended assets and complete successfully; remediate scan failures.\n
- Maintain Nessus scanner, Nessus Agents, Nessus Network Monitor, and PVS connectivity with the associated Security Center (SC) across Linux and Windows environments.\n
- Create and manage ACAS organizations, repositories, and scan zones; import, upload, and validate scan results.\n
- Coordinate with ISSMs, ISSOs, system owners, and administrators to drive vulnerability remediation efforts and track POA&M items.\n
- Ensure ACAS operations remain compliant with DoD security policies and DISA STIGs.\n
Requirements
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field - or additional years of equivalent hands-on experience will be considered in lieu of a degree.\n
- Active DoD Top Secret/SCI clearance required.\n
- Active DoD 8570/8140 IAT Level III or IAM Level II certification: CISA, GSE, SCNA, CISSP (or Associate), CAP, GSLC, or CISM.\n
- Foundational security certification such as CompTIA Security+ required as a baseline if higher certifications are in progress.\n
- ACAS official training.\n
- 3+ years of hands-on ACAS and/or Nessus administration experience in a DoD or federal environment.\n
- 5+ years supporting, configuring, and administering Red Hat Enterprise Linux (RHEL) in an enterprise environment.\n
- Experience with DoD Risk Management Framework (RMF) and eMASS, including developing RMF packages and maintaining Plan of Action & Milestones (POA&M).\n
- Demonstrated experience managing vulnerability scanning across large enterprise networks with 1,000+ assets.\n
- Experience with virtualized environments (VMware or equivalent).\n
- ACAS Security Center (SC), Nessus Vulnerability Scanners (NVS), and Passive Vulnerability Scanner (PVS) administration.\n
- Red Hat Enterprise Linux (RHEL) - installation, hardening, and maintenance.\n
- Application of DISA STIGs and SCAP compliance tooling.\n
- IAVA Management, Implementation, and remediation tracking.\n
- Experience with eMASS for artifact submission, control compliance, and system authorization packages.\n
- Working knowledge of NIST SP 800-37/800-53 and DoDI 8510.01 RMF processes.\n
- Familiarity with OPORD/FRAGO support and military operations security requirements.\n, * Scripting proficiency in NASL, Python, or Bash for scan automation and report customization.\n
- Experience with PVS deployment, tuning, and passive network traffic analysis.\n
- Familiarity with DISA/DoD Patch Repository processes and Tenable plugin/feed update workflows.\n
- Experience presenting technical findings and risk summaries to executive and non-technical audiences.\n
- Exposure to SIEM platforms (e.g., Splunk, Security Onion) and integration with ACAS scan data.\n
- Experience with Microsoft Visio for network architecture and ACAS component diagramming.\n
- Knowledge of SE Linux, AppArmor, or other access control frameworks.\n
- Familiarity with cloud environments (AWS GovCloud or Azure Government) and scanning in hybrid infrastructure.\n
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on military.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
CH
Chris Heilmann
almost 2 years ago
AJ
Austin Joy
What Are The Top Skills Required For Azure Developers?
over 4 years ago
LM
Luis Minvielle
9 Ways to Make Money Hacking
about 2 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
6 months ago
BB
Benedikt Bischof
Walking Into The Era of Supply Chain Risks
about 4 years ago
DC
Daniel Cranney
Understanding and Mitigating Common Web Vulnerabilities
over 1 year ago