Cybersecurity Administrator

Posted Yesterday
Be an Early Applicant
Virginia Beach, VA, USA
In-Office
40-55 Hourly
Senior level
Logistics • Professional Services • Defense • Industrial
The Role
Implement and maintain CMMC Level 3 and RMF controls; perform NIST-based security assessments and SSP development; conduct vulnerability scanning, patch compliance, and incident response; perform supply chain risk assessments and IS audits; manage POA&Ms, metrics, and KPIs; advise engineers and provide technical guidance to junior cybersecurity staff to support authorization and compliance activities.
Summary Generated by Built In

Job Title: Cybersecurity Administrator

Job Location: Virginia Beach, VA

Job Category: Information Technology/Systems

Job Status: Full Time

Salary Range: $40-$55/hr

Job Description: The Cybersecurity Administrator will be responsible for implementing and maintaining the CMMC (Cybersecurity Maturity Model Certification) Level 3 for the enterprise. The Cybersecurity Administrator will assist and/or implement the Risk Management Framework (RMF) for applicable federal systems. The administrator will have an in-depth understanding and experience implementing the NIST SP 800-171, Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations, RMF, NIST SP 800-53 or the legacy DoD Information Assurance Certification and Accreditation Process (DIACAP). The Cybersecurity Administrator shall have experience in IA boundary defense techniques, various IA Commercial Off the Shelf (COTS), and Cloud products to support the enterprise’s system security objectives.

Duties and Responsibilities:

  • Plan, develop, execute, test, and document controls for the CMMC L3 security framework requirements.
  • Develop and enforce information security policy
  • Perform IT Risk and security Assessments and assist with risk mitigation efforts
  • Perform Supply Chain Risk Assessments on vendors and subcontractors
  • Develop approaches to mitigate vulnerabilities, recommend changes to systems or system components as needed
  • Facilitate an IT Business Continuity Plan
  • Perform Information Systems (IS) audits
  • Identify information protection needs for computing environment and network environment systems
  • Complete System Security Plan (SSP)/Data Security Plan cybersecurity risk analysis
  • Advise network. System and software engineers on results of the cybersecurity risk analysis
  • Execute and support network security initiatives
  • Conduct vulnerability scanning
  • Ensuring patch compliance
  • Support incident response and remediation efforts
  • Participate in any audit activities, including but not limited to interviews, documentation requests, and artifact requests
  • Review auditee responses and deliverables for appropriateness and assist with interpreting requests
  • Perform reviews of Notice of Findings and Recommendations and assist management in responding
  • Assist system support staff and ISSOs in creating the Mission Action Plan resulting from Notice of Findings and Recommendations
  • Create, track and provide status updates to Plan of Action and Milestones (POA&M)
  • Develop, update and maintain metric / KPI status reports on a designated schedule frequency for IT initiatives
  • Respond to requests for clarification and information
  • Oversee and provide technical guidance to Cybersecurity Analyst I

Job Requirements/Skillsets:

  • Experience implementing controls to meet the requirements of NIST SP 800-171 or the NIST 800-37 (RMF).
  • Experience with designing, and maintaining a System Security Plan (SSP)
  • Experience performing security audits with and without specialized SIEM tools
  • Experience with certifying compliance of information systems
  • Current certification compatible with IAT Level III certification in accordance with DoD 8570.01, or ability to obtain within six months of hire
  • Understanding of computer security and the ability to communicate clearly and succinctly in written and oral presentations.
  • Working knowledge of a Vulnerability Management System.
  • Experience with securing cloud-based security controls.

Job Preferences:

    • Current ICS2 CISSP Certification
    • Experience with developing and testing Incident Response Plan
    • Mobile Device Management Administration
    • Job Experience with Network Administration
    • Job Experience with System Administration
    • Experience with implementing or managing FedRAMP vendor products
    • Familiarity with the DISA Enterprise Mission Assurance Support Service (eMASS) application as used to develop, manage and track IA artifacts.
    • Experience in a classified environment
    • Familiarity with preparation and execution of an Information Assurance Vulnerability Management (IAVM) Plan.

    Education: A High School diploma or GED plus 12 years of experience or; an Associate’s Degree plus 8 years of experience or; a Bachelor’s Degree in Computer Science, Information Technology, Computer Information Systems or related field and 5 years of experience in field or related area or; a Master’s Degree in a related field and 2 years of experience in field or a related area. Active Industry Cybersecurity Certifications (ICS2, CompTIA, CISCO, Microsoft) may substitute for some years of experience depending on the certification.

    Security Clearance: Require U.S. citizenship and the ability to obtain a DoD Secret clearance.

    Q.E.D. offers competitive benefits such as: Paid Leave, Medical, Dental, Vision, Short/Long Term Disability, 401(k) retirement plan, Basic Life Insurance, supplemental insurance, and Employee Assistance Program.

    Job Contact information: To apply for the position, email resume to Mark Kesselring at [email protected]

    EOE, including disability/vets

    Skills Required

    • Experience implementing controls to meet NIST SP 800-171 or NIST 800-37 (RMF).
    • Experience designing and maintaining a System Security Plan (SSP).
    • Experience performing security audits with and without specialized SIEM tools.
    • Experience certifying compliance of information systems.
    • Current certification compatible with IAT Level III per DoD 8570.01, or ability to obtain within six months.
    • Working knowledge of a Vulnerability Management System and conducting vulnerability scanning.
    • Experience securing cloud-based security controls.
    • Understanding of computer security and ability to communicate clearly in written and oral presentations.
    • Ability to develop and enforce information security policy, perform IT risk assessments, and support incident response/remediation.
    • Education: High School/GED +12 years OR Associate's +8 years OR Bachelor's in relevant field +5 years OR Master's +2 years (or equivalent certifications substitution).
    • U.S. citizenship and ability to obtain a DoD Secret clearance.
    Am I A Good Fit?
    beta
    Get Personalized Job Insights.
    Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

    The Company
    600 Employees
    Year Founded: 1969

    What We Do

    Q.E.D. Systems, Inc. is a nation-wide engineering and technical services firm that has provided high-quality support to government and commercial clients since 1969. Specializing in marine engineering, the company provides alteration development, installation support, and technical documentation. They focus on enhancing the material readiness of surface ships, submarines, and shore-based commands, primarily supporting the U.S. Navy and the maritime industry.

    Similar Jobs

    Arthur Grand Technologies Inc Logo Arthur Grand Technologies Inc

    Network Administrator

    Information Technology • Consulting
    In-Office
    Richmond, VA, USA
    135 Employees

    PNC Bank Logo PNC Bank

    Software Engineer

    Machine Learning • Payments • Security • Software • Financial Services
    Remote or Hybrid
    USA
    55000 Employees

    EchoStar Logo EchoStar

    Residential Starlink & Dish Installer

    Aerospace • Cloud • Digital Media • Information Technology • Mobile • News + Entertainment • Generative AI
    In-Office
    Richmond, VA, USA
    14500 Employees
    5-20 Hourly

    PNC Bank Logo PNC Bank

    Detection and Response Manager, Tempus Technologies

    Machine Learning • Payments • Security • Software • Financial Services
    Remote or Hybrid
    USA
    55000 Employees
    100K-223K Annually

    Similar Companies Hiring

    Axle Health Thumbnail
    Artificial Intelligence • Healthtech • Information Technology • Logistics
    Santa Monica, CA
    22 Employees
    Amalgamated Sugar Thumbnail
    Food • Greentech • Agriculture • Industrial • Manufacturing
    Boise, Idaho
    768 Employees
    Outpost Space Thumbnail
    Aerospace • Defense
    US
    24 Employees

    Sign up now Access later

    Create Free Account

    Please log in or sign up to report this job.

    Create Free Account