- Verifying configuration management and tracking security update implementation to the systems using existing automated tools
- Adhering to pre-defined configuration management and change management policies and procedures for authorizing software prior to its implementation on systems
- Ensuring systems are operated, used, maintained, and disposed of in accordance with all applicable security policies and practices
- Performing cybersecurity testing, analysis, and reporting by conducting the following: Assured Compliance Assessment Solution (ACAS) scans, Security Technical Implementation Guide (STIG) checks, port scanning, application code review, Risk Management Framework (RMF) control review, and Plan of Action and Milestone (POAM)
- Providing in depth analysis on cybersecurity test results, remediation steps, and potential mitigating factor(s)
- Supporting the Information System Security Manager (ISSM) and Cybersecurity Lead in meeting all RMF documentation, process, policy, risk assessment, testing, and continuous monitoring requirements per the NIST SP-800 series
- Providing RMF support for all future and/or new Assessment and Authorization (A-A)
- Maintaining security reporting compliance requirements outlined in the System SLCM Strategy
#LI-TF1
Requirements- Must currently hold a DoD 8570-compliant IAT II certification (SSCP or Security+CE with appropriate CE/OS certificate) or be able to obtain within six months
- CE/OS certificate may include Windows or Linux
- Experience with eMASS, SSPs, POAMs, ACAS/Nessus, SCAP, Security Checklists, and STIG Viewer
- Experience with risk management framework processes
- Have developed communication skills and the ability to express thoughts and ideas clearly and concisely
- Must be capable of multitasking and working several complex and diverse tasks with simultaneous or near simultaneous deadlines
- Be a self-starter who is accountable and requires minimal direction and supervision
- Be open to new and innovative ideas
- Be a team player willing to interface with client(s) and relay information back to team
- Experience in a RHEL environment
- Experience with Networking Devices
- Experience with DevSecOps
- Experience with EvaluateSTIG and/or STIGManager
- Experience with Virtual Machines (VMware, Vsphere)
- Experience with Cisco products (Switches & Routers)
SRC IS A CONTRACTOR FOR THE U.S. GOVERNMENT, THIS POSITION WILL REQUIRE U.S. CITIZENSHIP AS WELL AS, A U.S. GOVERNMENT SECURITY CLEARANCE AT THE SECRET LEVEL
Travel Requirements- None
Scientific Research Corporation is an advanced information technology and engineering company that provides innovative products and services to government and private industry, as well as independent institutions. At the core of our capabilities is a seasoned team of highly skilled engineers and scientists with multidisciplinary backgrounds. This team is challenged daily to provide cutting edge technology solutions to our clients.
SRC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with a company match, life insurance, vacation and sick paid time off accruals with amounts increasing based on role and years of service, 11 paid holidays, tuition reimbursement, and a work environment that encourages excellence and more. For positions requiring a security clearance, selected applicants will be subject to a government security investigation and must meet eligibility requirements for access to classified information.
EEOScientific Research Corporation is an equal opportunity employer that does not discriminate in employment.
All qualified applicants will receive consideration for employment without regard to their race, color, religion, sex, age, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other protected characteristic under federal, state or local law.
Scientific Research Corporation endeavors to make www.scires.com accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact [email protected] for assistance. This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.
Skills Required
- Must currently hold a DoD 8570-compliant IAT II certification, such as SSCP or Security+ CE with an appropriate CE/OS certificate, or obtain one within six months.
- Experience with eMASS, SSPs, POAMs, ACAS/Nessus, SCAP, security checklists, and STIG Viewer.
- Experience with Risk Management Framework processes.
- Clear communication skills and ability to express thoughts and ideas clearly and concisely.
- Ability to multitask across complex and diverse tasks with simultaneous or near-simultaneous deadlines.
- Ability to work independently with minimal direction and supervision.
- Ability to collaborate with teams and interface with clients.
- U.S. citizenship.
- U.S. government security clearance at the Secret level.
- Experience in a RHEL environment.
- Experience with networking devices.
- Experience with DevSecOps.
- Experience with EvaluateSTIG and/or STIGManager.
- Experience with virtual machines, VMware, or vSphere.
- Experience with Cisco switches and routers.
Scientific Research Corporation Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Scientific Research Corporation and has not been reviewed or approved by Scientific Research Corporation.
-
Retirement Support — Retirement support is highlighted by a 401(k) with a company match of up to 7%, signaling strong long-term financial benefits. Feedback suggests this element is a standout feature within the overall package.
-
Leave & Time Off Breadth — Time off includes paid vacation and 11 company-paid holidays, along with sick and bereavement leave. This breadth of leave is presented as a meaningful part of the total rewards offering.
-
Wellbeing & Lifestyle Benefits — Wellbeing resources include HSA/FSA options and wellness incentives with up to $1,000 in company contributions. These offerings indicate a holistic approach to employee health and wellness.
Scientific Research Corporation Insights
What We Do
Sciolex Corporation is a CVE-certified Service-Disabled Veteran-Owned Small Business that provides systems and mission engineering, technical assistance, operations advisory, cloud computing, acquisition support, and executive and administrative services. The company supports federal civil, defense, and Intelligence Community agencies, helping them plan, integrate, test, deploy, and manage information, technology, and mission capabilities while improving information operations through research and innovative processes.






