SPA Job - 49583450 | CareerArc
  Search for More Jobs
Get alerts for jobs like this Get jobs like this tweeted to you
Company: SPA
Location: Colorado Springs, CO
Career Level: Mid-Senior Level
Industries: Manufacturing, Engineering, Aerospace

Description

Qualifications

Required Qualifications

  • Active DoD TOP SECRET clearance
  • High School Diploma with 10+ years experience in IT or cybersecurity experience performing IAT Level II functions (threat, attacks, vulnerabilities, identification and access management, architecture and design, and risk management); and/or IAM Level II functions (developing and implementing IA policies in coordination with IA inspections and reviews)
  • Bachelor's degree counts for 4 years experience; Masters degree counts for 6 years of experience
  • DoDI 8140 fundamental qualification at the intermediate or higher level.  (BS in Information Technology, Cybersecurity, Data Science, Information Systems or Computer Science or GFACT, GISF, Cloud+ GCED, PenTest+, Security+, CySA or GSEC)

Preferred Qualifications

  • Experience with Xacta
  • Experience with ITIPS, eMASS, ACAS, FISMA, and/or DISA IASE
  • Bachelor's or Master's Degree
  • SCI Eligibility 

 

At SPA, we strive to deliver a robust total compensation package that will attract and retain top talent.  Elements of the compensation package include competitive base pay and variable compensation opportunities.  

 

SPA provides eligible employees with an opportunity to enroll in a variety of benefit programs, generally including health insurance, flexible spending accounts, health savings accounts, retirement savings plans, life and disability insurance programs, and a number of programs that provide for both paid and unpaid time away from work.  

 

The specific programs and options available to any given employee may vary depending on eligibility factors such as geographic location, date of hire, etc.

 

Please note that the salary information shown below is a general guideline only.  Salaries are commensurate with experience and qualifications, as well as market and business considerations.  Colorado Pay Transparency Range:  115k - 125k



Responsibilities

This is an exciting opportunity to support the United States Space Force (USSF) Position Navigation and Timing Spaced Based Infrared Systems (SNP/SBIRS) program. The Space  Systems Command (SSC) has the collective SF mission responsibility for the development, deployment, maintenance, and sustainment of AF space systems providing early missile warning capability, environmental sensing, precision navigation, guidance and timing, nuclear event detection, space launch capability, national and military satellite communications capabilities, launch range and network systems, advanced systems, and technology development programs. 

 

This position ensures that the information security requirements necessary to protect the core mission and business process are adequately addressed in all aspects of the enterprise architecture, to include reference documentation and system architectures. The ideal candidate will function as a Subject Matter Expert (SME) on each system architecture and design, review technical documentation in support of analysis, system design, development testing, and deployment of security systems. You will provide information assurance assessment and recommendations concerning safeguarding of IS through risk analysis, vulnerability assessment, and compliance with NIST SP 800.53. You'll be expected to interact with military, Government civilians, and contractor staff at all levels to support the A&A efforts of each mission/system. You will provide input on assigned enclaves as relates to how proposed modifications, additions, and technology upgrades would impact the overall security posture of the system.

 

Responsibilities include, but are not limited to:

  • Ensure that Cybersecurity requirements are effectively integrated into Information Systems and components through purposeful security architecting, design, development, and configuration
  • Employ best practices when implementing security controls within an Information System
  • Provide assessment and technical inputs to any system changes for all associated system enclaves
  • Perform FISMA required risk assessment of policies, procedures, supplemental plans addressing network, facilities and system security, security awareness training, testing and evaluation of security controls, incident response plan, and continuity of operations plans
  • Evaluate the requests for compliance and integration with all applicable cybersecurity policies, Notice to Airmen (NOTAMs), and Technical Change Orders (TCOs)
  • Create/maintain a Government owned Cyber Schedule that captures all mission cybersecurity activities and actions. The schedule needs to be capable of showing a high-level view of all project/activity milestones, accomplishments, and discrete tasks including Authorization and Assessment activities for RMF packages, cyber assessments, and O&M Mods or depot sustainment cases that improve the systems cybersecurity posture
  • Provide IS and compliance documentation to include but not limited to:
    • Categorize ISs IAW Committee on National Security Systems Instruction (CNSSI) 1253
    • Initiate the security plan, register system with DoD Information Technology Investment Portfolio System (ITIPS) and Enterprise Mission Assurance Support System (eMASS) and select security controls for all computer enclaves IAW National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53
  • Identify common controls; develop monitoring strategy, and plan, review, and obtain approval IAW NIST SP 800-53 and CNSSI 1253
  • Implement and document control solutions consistent with DoD cybersecurity architectures IAW NIST SP 800-160 and NIST SP 800-18
  • Prepare the Plan of Action and Milestone (POA&M) and submit security authorization packages, to include all required artifacts to Authorizing Official (AO)
  • Provide RMF training/education for program managers and integrated product team leads


 Apply on company website