Cybersecurity Assessment and Authorization Validator
Middletown, DE - USA
Job Summary
AMERICAN SYSTEMS is an employee-owned federal government contractor supporting national priority programs through our strategic solutions in the areas of Information Technology Test & Evaluation Program Mission Support Engineering & Analysis and Training.
We are seeking aCybersecurity Assessment and Authorization Validatorto supportNavy and DoD customersby delivering technical and programmaticInformation Assurance and Cybersecurity servicesforstrategic combat and non-enterprise network and information systems. This position is responsible for evaluating and strengthening system security posture supporting assessment and authorization activities and ensuring compliance withDoD Navy and Federal cybersecurity requirements.
- Provide technical and programmaticInformation Assurance (IA)services and perform independent risk assessments in support of network and information security systems.
- Lead and facilitate meetings briefings and cross-functional discussions with technical and non-technical stakeholders to communicate security risks vulnerabilities assessment results and remediation progress and to drive alignment and timely resolution of identified issues.
- Prepare cybersecurity documentation using accepted DoD guidelines and frameworks such as RMFand related certification/authorization processes.
- Review Security Assessment Plans (SAP) ensuring the implementation of Assured Compliance Assessment Solution (ACAS) Scans Security Technical Implementation Guides (STIG) Security Content Automation Protocols (SCAP) and Cybersecurity Assessment Reports (CSAR).
- Provide Assessment and Authorization (A&A)support including observing tests analyzing actual test results and making recommendations for improvement of security plans contingency plans and security risk/vulnerability assessments.
- Analyze policies and procedures and validate compliance with Risk Management Framework (RMF) Security Objectives and Controls against applicableFederal laws regulations and DoD/Navy requirements and recommend corrective actions to close compliance gaps.
- Recommend and support system enhancements to resolve identified security deficiencies.
- Review documented compliance scans results and evaluate system administration practices and security products.
- Conduct security program audits and develop mitigation strategies to reduce identified risks.
- Develop strategies to addressprivacy risk management and e-authenticationrequirements.
- Support the development and implementation of security architectures to meet emerging and evolving security requirements.
- Evaluate develop and improve security policies requirements and tools.
Performvulnerability assessmentsand develop risk mitigation strategies.
- Active Secret security clearanceor the ability to obtain/reinstate a Secret clearance.
- Bachelors degreein Cybersecurity Information Technology Computer Science Information Systems or a related field.
- 24 years of related professional experiencein information assurance cybersecurity risk management or systems security.
- Or 7 years of experience required for those without a Bachelors degree.
- IAT Level II or III certification - CompTIA Security certification required or obtainable within 3 months of hire.
- Working knowledge of security authorization processes security documentation and vulnerability assessment practices.
Preferred Qualifications
- Experience supportingDoD or Navy cybersecurity programs.
- CSWF certificationpreferred.
- Additional advanced cybersecurity certifications such as CISSP SecurityX CISM CCNA Security CySA GICSP GSEC SSCP or CND are a plus.
- Knowledge of Federal cybersecurity laws regulations and security compliance frameworks.
- Experience with vulnerability scanning tools security configuration management and incident response support.
- Strong analytical documentation and communication skills.
Key Skills
- Ability to manage multiple priorities and support deadlines in a regulated environment.
- Strong analytical documentation and problem-solving skills.
- Information Assurance and Cybersecurity
- Risk and Vulnerability Assessment
- Security Test and Evaluation
- Certification and Accreditation Support
- Compliance Analysis
- Security Documentation Development
- Security Architecture Support
- Audit and Risk Mitigation Planning
About Company
AMERICAN SYSTEMS has been delivering IT and Engineering solutions to complex national priority programs since 1975. Our mission-focused approach ensures a trusted, collaborative partnership with our customers. Performance is paramount. We know what’s at stake. ®