SMX is seeking a Cybersecurity Subject Matter Expert to support at Ft. Belvoir as a trusted advisor to senior leadership, by providing expert guidance on information assurance and cybersecurity.
Responsibilities & Essential Duties
- Perform the duties of an Information System Security Officer (ISSO) as defined in AR 25-2, DA 25-2-14, and the NIST SP 800-53 security controls when organizationally defined personnel include the ISSO.
- Actively manages the organization’s Risk Management Framework (RMF) processes which includes but is not limited to:
- Validates security controls including associated artifacts
- Assesses security scan results and STIGs are required
- Performs POA&M updates, tracking, and resolution
- Leads the continuous monitoring activities of the organization
- Manages the day-to-day activities and the professional development of the Cybersecurity Analysts
- Collaborates with the O-ISSM on all assessment and authorization activities to ensure the information systems maintain an authority to operation (ATO) on all applicable DoD/IC networks
- Main up-to-date status on all assigned systems and communicate status to the Government leads.
- Maintain complete records of communications, submit written status reports as required, perform peer-review as directed, and attend weekly meetings.
- Correspond with the Government customer and system administrators to communicate any unacceptable risks identified and correct deficient POA&M items to meet DoD and IC standards.
- Coordinate with the Security Control Assessor (SCA) to perform analysis of the overall risk level the system poses to enterprise networks and to mission data.
- Create and maintain cybersecurity policies and standards.
- Ensure that cybersecurity plans, controls, processes, standards, policies, and procedures are aligned with cybersecurity standards.
- Ensures security scans and STIG checklists are updated according to DA G2 policy.
- Produces actionable, risk-based reports on security assessment results.
- Assists with vulnerability remediation when necessary.
- Develops and maintains security plans and security testing plans.
- Periodically updates and improves risk models; metrics; reports; processes; and activities to stay compliant with evolving DoD and IC standards.
- Ensures the user community understands and adheres to necessary procedures to maintain security posture of the information systems.
- Provides guidance in the creation and maintenance of Standard Operating Procedures (SOPs); Tactics, Techniques, and Procedures (TTPs); and other similar documentation.
Required Skills and Experience
- Bachelor’s degree in an area of Science, Technology, Engineering or Mathematics with at least 5 years’ experience as a cybersecurity professional.
- Active TS security clearance and eligible for SCI and NATO read-on prior to starting work.
- Meet the DoD requirements for a privileged user on a TS/SCI information system prior to starting work – DoD 8140 / 8570.01-m requirements - IAT II
- 7 years’ experience with the assessment and accreditation activities of national security systems (NSSs)
- 5 years’ experience validating system security controls.
- 5 years’ experience with vulnerability management.
- 4 years’ experience with DISA Security Technical Implementation Guides (STIGs); DISA Security Requirements Guide (SRG), and vendor-specific security guides.
- 4 years’ experience with RMF and eMASS.
- 2 years’ experience with POA&M tracking and resolution.
- 1 years’ experience performing the continuous monitoring of system security controls.
Desired Qualifications
- 5 years’ experience as an ISSO on Army Intel programs.
- 1 years’ experience with AC2SP tenant assessment and accreditation activities.
Application Deadline: December 16, 2024
#LI-KH1 #CJPOST
#LI-onsite
The SMX salary determination process takes into account a number of factors, including but not limited to, geographic location, Federal Government contract labor categories, relevant prior work experience, specific skills, education and certifications. At SMX, one of our Core Values is to Invest in Our People so we offer a competitive mix of compensation, learning & development opportunities, and benefits. Some key components of our robust benefits include health insurance, paid leave, and retirement.
The proposed salary for this position is:
$110,900—$184,800 USD
At SMX®, we are a team of technical and domain experts dedicated to enabling your mission. From priority national security initiatives for the DoD to highly assured and compliant solutions for healthcare, we understand that digital transformation is key to your future success.
We share your vision for the future and strive to accelerate your impact on the world. We bring both cutting edge technology and an expansive view of what’s possible to every engagement. Our delivery model and unique approaches harness our deep technical and domain knowledge, providing forward-looking insights and practical solutions to power secure mission acceleration.
SMX is committed to hiring and retaining a diverse workforce. All qualified candidates will receive consideration for employment without regard to disability status, protected veteran status, race, color, age, religion, national origin, citizenship, marital status, sex, sexual orientation, gender identity or expression, pregnancy or genetic information. SMX is an Equal Opportunity/Affirmative Action employer including disability and veterans.
Selected applicant may be subject to a background investigation and/or education verification.
Top Skills
What We Do
SMX is a global technology and advanced engineering provider specializing in Cloud Solutions, C5ISR, and Advanced Engineering / IT. Our tradition of delivering innovative, technical solutions dates back to 1995, however, you may know us better by one of our legacy company names: Trident Technologies, Smartronix, Datastrong, or C2S Consulting Group. With the support of OceanSound Partners, our private equity investment sponsor, we began operating as one business starting in 2019 and became SMX in 2021. We operate in close proximity to our clients around the globe and have core locations in Alabama, California, the DC Metro, Florida, Hawaii, Maryland, and Massachusetts.
Today, as SMX, we are one team and together empower government and commercial enterprises to become more effective, innovative, and resilient, no matter what challenges they face.
SMX offers competitive benefits, excellent work environments, and growth opportunities for our employees while continuing to expand operations and support our communities. We have more than 25 years of rapid and consistent growth with continuous recognition as an employer-of-choice technology company. In addition, we have earned coveted industry quality and business certifications; have a strong commitment to business partnerships, ethics, compliance, and sustainability; and have a multitude of premier contracting vehicles. The combination of these attributes allows us to provide sound, repeatable business solutions yet remain flexible and agile to quickly adapt to specific customer requirements.
Committed to ensuring the highest levels of customer satisfaction, SMX is structured around the programs and technologies we support to provide optimal and seamless operations. We have maintained a reputation for excellence, helping to assure the missions of our Department of Defense, Public Sector, Fortune 1000, and other Government and commercial customers.