Network & Cybersecurity Engineer | C-sUAS
Alexandria, VA - USA
Job Summary
Security Clearance: Active Top Secret security clearance with eligibility and ability to obtain SCI access.
Travel Requirement: Up to 50%
Sherpa 6 is seeking an experienced Network Engineer with a strong cybersecurity background to provide direct technical support to the JIATF 401 Command and Control (C2) Capability Manager. The engineer will support the integration of tactical communications systems mission networks command-and-control applications connecting C-UAS sensors data platforms and authorized effectors.
This position serves as the C2 Capability Managers lead technical advisor for network architecture. The engineer will translate operational C2 requirements into a network architecture that is secure interoperable and supportable architectures for Department of War enterprise tactical classified unclassified and mission-partner environments. The network engineer will also ensure and lead cybersecurity compliance design oversee the Risk Management Framework (RMF) process and work to ensure the solution is achieves an Authorization to Operate (ATO).
Essential Duties and Responsibilities
- Develop network diagrams data-flow and authorization-boundary diagrams IP address plans port and protocol matrices interface-control documents and connection requirements.
- Design configure and troubleshoot routing switching VLANs firewalls VPNs SD-WAN SATCOM cellular terrestrial WAN wireless and tactical-radio interfaces.
- Design secure architectures connecting C-UAS sensors track-management services C2 applications mission databases tactical radios data platforms and authorized effectors.
- Support C2 integration with NIPRNet SIPRNet tactical networks laboratory environments Mission Partner Environments and other authorized Department of War networks.
- Provide direct network engineering and cybersecurity support to the JIATF 401 C2 Capability Manager.
- Advise the C2 Capability Manager on network architecture cybersecurity risk authorization strategy interoperability integration readiness and technical courses of action.
- Translate operational C2 requirements and mission threads into network cybersecurity interface and data-exchange requirements.
- Evaluate C2 systems for interoperability cybersecurity scalability resiliency latency availability data integrity and operational suitability.
- Define secure vendor-neutral interfaces and data exchanges among sensors C2 platforms data fabrics AI-enabled applications and authorized effectors.
- Develop and maintain C2 architecture baselines interface standards approved configurations and system-of-systems documentation.
- Lead or support the full RMF lifecycle for C2 capabilities and supporting network infrastructure in accordance with applicable Department of War and service policies.
- Develop update and maintain eMASS authorization packages including System Security Plans control implementation statements inventories diagrams risk assessments Security Assessment Reports POA&Ms and continuous-monitoring evidence.
- Determine applicable security controls and overlays based on system categorization information types authorization boundaries operating environments and mission requirements.
- Coordinate RMF activities with the C2 Capability Manager system owners ISSMs ISSOs Security Control Assessors Authorizing Officials network service providers program offices and vendors.
- Support Interim Authorizations to Test Authorizations to Operate Interim Authorizations to Operate Authorities to Connect reciprocity decisions and other required approvals.
- Develop authorization strategies that enable rapid C2 integration testing operational assessment fielding and sustainment.
- Collect review organize and maintain objective evidence required for security-control validation and authorization decisions.
- Review vendor cybersecurity documentation and identify gaps that could delay integration connection approval testing or operational deployment.
- Implement and validate DISA Security Technical Implementation Guides and secure configuration baselines.
- Conduct or coordinate ACAS Nessus SCAP or other approved vulnerability assessments; analyze findings coordinate remediation document residual risk and maintain POA&M entries.
- Support Zero Trust implementation through identity management least-privilege access device compliance segmentation data protection logging monitoring and continuous validation.
- Troubleshoot connectivity authentication encryption certificates firewalls routing DNS application and C2 data-exchange issues using packet captures system logs security events and performance data.
- Develop and execute cybersecurity and network test plans for laboratory field interoperability operational and mission-thread testing.
- Participate in C2 demonstrations exercises operational assessments new-equipment fielding and other JIATF 401 events.
- Track technical risks cybersecurity findings integration dependencies interface issues and corrective actions for the C2 Capability Manager.
- Prepare technical assessments decision briefs engineering recommendations and courses of action for JIATF 401 leadership.
- Coordinate with other JIATF 401 capability managers to ensure the C2 architecture supports sensor identification tracking data communications and authorized defeat mission threads.
- Maintain C2 network and cybersecurity documentation throughout capability evaluation integration fielding modification and sustainment.
- Eight or more years of experience in network engineering C2 systems integration cybersecurity engineering information assurance.
- Demonstrated experience supporting Department of War or classified federal C2 systems and tactical networks.
- Strong knowledge of TCP/IP routing switching VLANs firewalls VPNs segmentation wireless networking and enterprise network services.
- Ability to translate operational mission requirements into technical architecture requirements and brief risks to senior leaders.
- Experience integrating systems applications sensors and other data sources into a C2 systems.
- Working knowledge of the DoD Risk Management Framework and NIST SP 800-53 security controls.
- Experience supporting ATO IATT IATO ATC reciprocity or equivalent authorization activities.
- Experience developing SSPs POA&Ms SARs control implementation statements network and data-flow diagrams inventories and authorization evidence.
- Experience or strong knowledge of implementing DISA STIGs and conducting vulnerability analysis and remediation with ACAS Nessus SCAP or comparable tools.
- Bachelors degree with a focus on network engineering computer science information technology systems engineering or a related field.
- Ability to work on-site primarily in the National Capital Region and travel up to 50 percent.
- Active Top Secret security clearance with eligibility and ability to obtain SCI access.
Preferred Qualifications
- Current Top Secret/SCI clearance.
- Experience supporting C-UAS integrated air and missile defense force protection airspace management or tactical C2 systems.
- Experience integrating radar RF detection EO/IR acoustic sensors AI-enabled applications tactical data links and authorized effectors.
- Current DoD 8140-compliant certification appropriate to the assigned work role; CISSP CAP/CGRC CASP/SecurityX Security CCNP CCNA CISM or GIAC preferred.
- Experience with NIPRNet SIPRNet tactical networks Mission Partner Environments and coalition networks.
- Experience with Cross Domain Solutions Commercial Solutions for Classified NSA-approved encryption PKI certificate management and identity services.
- Experience with Zero Trust architectures and Department of War Zero Trust implementation requirements.
- Experience supporting rapid acquisition experimentation operational assessments prototyping and new-equipment fielding.
- Knowledge of TAK FAAD C2 common operating pictures track management sensor fusion or comparable tactical C2 platforms.
- Military or government civilian experience involving tactical communications cybersecurity network operations air defense or C-UAS missions.
About Sherpa 6:
At Sherpa 6 we love to solve problems and provide the best solutions for our customers. Our approach to a problem is to find a user-focused and design-driven solution that is simple yet functional and effective. We are a group of enthusiastic forward-thinkers who are excited to build amazing solutions with bleeding-edge technology. We hire people who are forward thinkers passionate about what they do love to collaborate and want to constantly learn. We enjoy what we do and were not afraid to put the extra effort in to accomplish the mission; call us Sherpas. As a Service-Disabled Veteran Owned Small Business we know what it means to serve. We have made it our mission to be the leaders in solutions that protect and give our Warfighters the edge they need when put into harms way.
Background Screening/Check/Investigation:
Successful completion of a background screening/check/investigation will/may be required as a condition of hire.
ADA:
Sherpa 6 will make reasonable accommodations in compliance with the Americans with Disabilities Act 1990.
EEO/AA:
Sherpa 6 does not discriminate based on race color national origin sex religion age disability sexual orientation gender identity veteran status height weight or marital status in employment or the provision of services and is an equal access/opportunity/affirmative action employer.
Benefits:
We offer a competitive benefits package covering the cost of medical for you and your family; we also offer dental vision health and wellness benefits and a generous retirement savings plan. We believe that our employees can manage their workload and their personal life therefore we extend a generous PTO policy. This allows our employees to balance their lives as they see fit.
Salary Range:
The proposed salary range is reflective across all Sherpa 6 locations years of experience and skill levels. Salary negotiations will be based on a host of factors including but not limited to your geographic location prior experience relevant skills education and certifications.
Required Experience:
IC
About Company
Sherpa 6 is a Veteran-Owned full-service engineering firm and the answer for all your design, development, and engineering needs.