Job Openings

Embark on an exciting journey with us. Revolutionize technology, drive innovation, and unlock your potential. Explore our job openings now.

Current Openings

Search by Keyword, Location, etc.

JOB DESCRIPTION:

  • Manage a team of Program Analyst in Quantico primarily working in a Hybrid Setting and supporting Contract PM/ CISO/COR and Branch Chief.
  • Supports Program Manager with reports, personnel, and other program-related actions.  Meets with stakeholders regularly to assess needs and requirements, analyze metrics, and identify trends and emerging requirements for the cybersecurity team mission.
  • Maintain and support current and future organizational operations.  Various technical documents, procedures, and policies are to be developed in order to provide support.
  • Assignments can include:
    • Analyze, recommend, and execute changes to current Policies/Procedures and Processes.
    • Provide support in creating, writing, and maintaining missing or outdated Policies/Procedures and Processes.
    • Provide document development support to OCIO focused on both required day-to-day and longer-term strategic operations.
    • Develop and maintain required tools and/or templates, communications, briefings, workshops, and other efforts required to initiate the implementation of OCIO initiatives successfully.
    • Document and update policies, business processes, analyses, and support activities, as directed.
    • Review and approve all work done and documents produced by Contractors for Technical Publications Support.
    • Manage, maintain, and update the SharePoint portal, coordinate import/export, and create/configure objects (libraries, lists, and tasks)
    • Develop and provide for the Government all other waiver documentation specified in the applicable Government.
    • Monitor IT system authorization termination dates, and publication and assessment expiration dates for required updates.
    • Develop cyber awareness correspondence and artifacts such as digital posters, banners, and memorandums.
    • Maintain schedule of events.
    • Take meeting minutes.

CLEARANCE LEVEL:

Active Secret or Top-Secret Clearance required

LOCATION:

Quantico, VA Hybrid (1 Days Onsite)

REQUIREMENTS:

Minimum General Experience:

  • Provide advice, recommendations, and strategic guidance to the team and key stakeholders as a Cyber Publication Specialist Subject Matter Expert (SME) in addition to leading the team of Cyber Publication Specialists in the areas of cyber publication management to support all cybersecurity team functions.

 

Related Experience:

  • At least 5 years of experience in cyber IT technical writing/scheduling.  Proficient with Microsoft Office applications (Excel, Word, Project, etc.). Knowledge of standard agency policy practices writing style, and industry best practices. Experience managing a program support function for a major division of a government agency. Experience working with senior-level government officials to achieve contract goals.

EDUCATION:

Education Requirements:

  • Associate or Bachelor’s degree, in Cybersecurity, and/or Information Systems Management or equivalent experience.

Basic Qualification:

  • At least three (3) Years of experience working in a DOD cybersecurity environment.
  • Knowledge of standard DoD practices and style, and industry best practices.
  • Develop and maintain templates, communications, briefings, workshops, and other efforts required to successfully initiate the implementation of cybersecurity initiatives.
  • Demonstrated experience with the Authorization and Accreditation process and production of required documents and other materials.
  • Experience maintaining a document tracking system to provide required periodic reviews and updates in accordance with applicable policies and regulations.
  • Experience working with multiple document owners and contributors to ensure documents are reviewed and updated on schedule in a timely and efficient manner.
  • Liaise with internal and external partners at all levels, government, and private sector, to benefit the organization.

CERTIFICATION(s):

JOB DESCRIPTION:

Position Details:

We are hiring an Information Systems Security Engineering (ISSE) Lead to support our client DCSA in maintaining IT infrastructure, applications, and any new development projects ensuring the security of networks. Technical analysis, research, evaluation, and technical guidelines are to be performed to provide support. The workload will vary depending on the number of active development projects and other technical evaluations required.

  • Support all phases of an Information Systems Security Engineering Program (ISSE) with ISSE-certified personnel to support the requirements of the DoD A&A Process. The ISSE Program will use Information Assurance Technical Framework (IATF); DoD 5200.1-M; Common Criteria for IT Security Evaluation (International Organization for Standardization (ISO)/International Electrotechnical Commission (IEC) 15480; and DOD, federal, and DCSA Cyber Security Policies as guides.
  • Provide input to the DCSA A&A Process including Information Security planning, design, testing, and analysis.
  • Provide research and analysis of Commercial-Off-The-Shelf (COTS) and Government-Off-The-Shelf (GOTS) and IA-enabled products as part of the security architecture and ensure that the products are National Security Telecommunications and Information Systems Security Policy Number 11 (NSTISSP-11) compliant and validated via the NIAP Common Criteria Evaluation and Validation Scheme or NIST Federal Information Processing Standards (FIPS) Cryptographic Module Validation Program (CMVP.)
  • Support the development of long-range IT strategic plans.
  • Support and maintain the DCSA IT technical guidelines and framework.
  • Assess the quality and viability of existing solution architectures and design integrity.
  • Support the evaluation of technology products and develop trade studies when needed for potential addition of system functionality.
  • Provide support in designing IT system architecture and IT solutions.
  • Provide support in the development of executive orders and agency-wide policies.
  • Provide support in requirements definition and validation.
  • Analyze enterprise business models, IT solutions, trends, and emerging technologies.
  • Provide support in the planning and designing of availability, capacity, and service continuity.
  • Develop and provide IT COTS/GOTS product analysis and testing processes in accordance with applicable DoD Policies.

Information System Security Engineer (ISSE) Deliverables, at the discretion of the government, may include but are not limited to:

  • Service Acceptance Criteria and Service Level Requirements
  • Service Level Policies, Procedures, and Reports
  • Service Level Agreements and Operational Level Agreements
  • Availability Policy, Plans, Design Criteria, Risk -Analysis and Reports
  • Business and IT service continuity policy, strategy, plans, risks, business impact analysis, and reports
  • Technical Documents
  • Market Research Analysis and Results
  • Technical Guidelines and Framework
  • Technical and Product Evaluation Reports
  • Technical Studies
  • Cloud Design Diagram with security impacts (outlines systems to be deployed to a cloud infrastructure; outlines the ingress and egress points from the DCSA network to the cloud infrastructure, locations of the CND Suite, and method of connecting to the DoD information network (DoDIN))
  • Cloud Suitability Questionnaire Template-(will be used to score an application’s suitability for deployment to the cloud with security impacts. The template should baseline a score to be used to determine suitability based on qualifying factors).
  • Technical Documents as defined by the Government
  • Courses of Action
  • Proofs of Concept

CLEARANCE LEVEL:

Top Secret

LOCATION:

Quantico, VA, 2 Days Onsite

REQUIREMENTS:

  • At least 5 years of cybersecurity experience and knowledge of DoD, NIST, Cloud, DISA, and other applicable cybersecurity policies, procedures, and best practices.
  • Familiar with IT Design, Installation, and Integration with Cloud, FEDRAMP, and DoD Information Levels.

EDUCATION:

  • Associate or Bachelor’s Degree in Information Technology or Engineering.

CERTIFICATION(s):

  • Must Possess and Maintain DoD 8570.01-M/8140-M IASAE level III or DoD 8570.01-M/8140-M IAM III certification

JOB DESCRIPTION:

The Cybersecurity Engineer will be implementing, managing, and enhancing the ESS (Endpoint Security Solutions) suite to support a Department of Defense customer ( DCSA).


Responsibilities:

  • Experience with ESS (Endpoint Security Solutions) EndPoint Security (ENS), Data Loss Prevention (DLP), and Policy Auditor (PA).
  • Ensure endpoint compliance using ePolicy Orchestrator (ePO) for multiple enclaves.
  • Maintain Trellix ESS server including Microsoft Operating System and SQL Database, using Government supplied hardware and software.
  • Test, upgrade, and deploy Trellix software to the most recent software versions as they are approved and released by the DISA Patch Repository Program including testing as required.
  • Plan/Develop endpoint security solutions for customer requirements.
  • Continuously monitor the performance and integrity of the Trellix ESS server solutions.
  • Create, tune, and maintain security policies to protect customer assets including Antivirus, Data Loss Prevention, Host Based Intrusion Prevention, and firewall policies.
  • Establish and conduct scheduled STIG and patch compliance scans utilizing Trellix Policy Auditor and other government-supplied solutions.
  • Ability to develop dashboards, queries, and reports that automate Cyber Scorecards, Incident Investigations, and applicable DoD/Intelligence Community-defined reporting standards.
  • Microsoft SQL database maintenance and support for ePO as needed.
  • Possesses understanding and experience with common cybersecurity toolsets and processes including STIGs, IAVA Management and Implementation, and Operation Orders.
  • Ability to provide Joint Force Headquarters (JFHQ) – DODIN (OPORD)/Fragmentary Order (FRAGO) support.
  • Ability to document and present data to management for compliance and security posture.
  • General knowledge of endpoint operating systems, endpoint security, and networking.
  • Proficiency in using Microsoft products (e.g., PowerPoint, Word, Excel).

CLEARANCE LEVEL:

Active Secret or Top Secret Clearance is a MUST

LOCATION:

Hanover, MD 1 Day onsite 4 days offsite

REQUIREMENTS:

  • Trellix experience
  • Windows Server administration
  • Microsoft SQL experience (preferred)

EDUCATION:

  • Bachelor’s Degree in a technology-related field or 6-8 years of related experience

CERTIFICATION(s):

  • DISA Host-Based Security System (HBSS) 201 and 301
  • IAT II Baseline Certification (Security+)

JOB DESCRIPTION:

Duties Included:

  • Software management
  • Patch management
  • Vendor product engagement
  • Printer server management and Tier 3 support

 

Responsibilities:

  • The position will utilize SCCM/MECM and Big Fix for software packaging & deployment, will support user collection and software queries, and will maintain a software library with updated versions and licenses.
  • Remediates security vulnerabilities using Big Fix, SCCM, and manual installation.
  • Troubleshoots with hardware and software vendors for instruction and repair of systems and software.
  • Maintains print and scanning capabilities including updates.
  • Guides the Service Desk for escalated tasks and issues.  May act as a Special Project Lead to support Client Special projects such as configuration and training of Surface Hubs.
  • Conduct upgrades to communication devices to ensure they meet JMD compliance. Upgrade all security camera software. Utilize Beyond Trust Bomgar Remote Tool to help maintain server upgrades. Provides Service Desk support with any outages or issues.
  • Responsible for supporting Active Directory to create MECM/SCCM Security groups, and maintain permissions and user accounts.
  • Responsible for coordinating and implementing workstation patching and support efforts enterprise-wide. Research and evaluation of new enterprise patching technologies, processes, and upgrades to Windows workstations by identifying when established procedures are not working and there are gaps in processes and making recommendations for improvements. Test, create, and deploy applications, packages, and task sequences in SCCM/MECM. Test, and create user and device collections in SCCM/MECM. Create, test, and deploy Automatic Deployment Rules for Windows patching and security updates. Test integrated applications against DOJ standard image, software compatibility & utilities, and hardware in a production environment. Test patches and upgrades and resolve issues before company-wide implementation. Deploy Windows 10 security patches, feature updates, and 3rd party software updates and patches using SCCM/MECM and BigFix.
  • Design, implement, and support application delivery infrastructure using SCCM/MECM Software Center Provide management of group policy. Modify and manage Active Directory components for enterprise LAN/WAN users. Review and approve requests for new software, test new software, and monitor change requests in Remedy.
  • Provide guidance and leadership to tier 1 and 2 support teams. Create and update technical documentation to support systems, infrastructures, applications, and processes. Design and plan complex hardware deployments, software upgrades, and significant operational initiatives, including migrations of end-user workstations. Coordinate with Network Operations, Enterprise Operations, Project Management, Security, Asset Management, and Service Desk teams for problem support and resolution. Manage and execute various enterprise IT projects from requirements to implementation. Use PowerShell and CMD to automate software deployments with SCCM/MECM and BigFix. Serve as an administrator for the Bomgar remote tool. Resolve connection issues, creating software deployments using canned scripts, and managing server and client upgrades. Aid Sr. Engineers with various projects

CLEARANCE LEVEL:

Must be a US Citizen Must be able to attain Public Trust Level- 4

LOCATION:

DOJ; 1400 New York Ave NW; 7th Floor; Washington DC – Hybrid – 2 Days Onsite 3 Days Offsite

REQUIREMENTS:

EDUCATION:

  • BS a MUST (5- 7 Years of Experience)

CERTIFICATION(s):

JOB DESCRIPTION:

Position Details:

We are hiring an Information Systems Security Engineering (ISSE) Lead to support our client DCSA in maintaining IT infrastructure, applications, and any new development projects ensuring the security of networks. Technical analysis, research, evaluation, and technical guidelines are to be performed to provide support. The workload will vary depending on the number of active development projects and other technical evaluations required.

  • Support all phases of an Information Systems Security Engineering Program (ISSE) with ISSE-certified personnel to support the requirements of the DoD A&A Process. The ISSE Program will use the Information Assurance Technical Framework (IATF); DoD 5200.1-M; Common Criteria for IT Security Evaluation (International Organization for Standardization (ISO)/International Electrotechnical Commission (IEC) 15480; and DOD, federal, and DCSA Cyber Security Policies as guides.
  • Provide input to the DCSA A&A Process including Information Security planning, design, testing, and analysis.
  • Provide research and analysis of Commercial-Off-The-Shelf (COTS) and Government-Off-The-Shelf (GOTS) and IA-enabled products as part of the security architecture and ensure that the products are National Security Telecommunications and Information Systems Security Policy Number 11 (NSTISSP-11) compliant and validated via the NIAP Common Criteria Evaluation and Validation Scheme or NIST Federal Information Processing Standards (FIPS) Cryptographic Module Validation Program (CMVP.)
  • Support the development of long-range IT strategic plans.
  • Support and maintain the DCSA IT technical guidelines and framework.
  • Assess the quality and viability of existing solution architectures and design integrity.
  • Support the evaluation of technology products and develop trade studies when needed for potential addition of system functionality.
  • Provide support in designing IT system architecture and IT solutions.
  • Provide support in the development of executive orders and agency-wide policies.
  • Provide support in requirements definition and validation.
  • Analyze enterprise business models, IT solutions, trends, and emerging technologies.
  • Provide support in the planning and designing of availability, capacity, and service continuity.
  • Develop and provide IT COTS/GOTS product analysis and testing processes per applicable DoD Policies.

 

Responsibilities:

Information System Security Engineer (ISSE) Deliverables, at the discretion of the government, may include but are not limited to:

  • Service Acceptance Criteria and Service Level Requirements
  • Service Level Policies, Procedures, and Reports
  • Service Level Agreements and Operational Level Agreements
  • Availability Policy, Plans, Design Criteria, Risk -Analysis and Reports
  • Business and IT service continuity policy, strategy, plans, risks, business impact analysis, and reports
  • Technical Documents
  • Market Research Analysis and Results
  • Technical Guidelines and Framework
  • Technical and Product Evaluation Reports
  • Technical Studies
  • Cloud Design Diagram with security impacts (outlines systems to be deployed to a cloud infrastructure; outlines the ingress and egress points from the DCSA network to the cloud infrastructure, locations of the CND Suite, and method of connecting to the DoD information network (DoDIN))
  • Cloud Suitability Questionnaire Template-(will be used to score an application’s suitability for deployment to the cloud with security impacts. The template should baseline a score to be used to determine suitability based on qualifying factors).
  • Technical Documents as defined by the Government
  • Courses of Action
  • Proofs of Concept

CLEARANCE LEVEL:

Top Secret with eligibility to get SCI clearance

LOCATION:

Quantico, VA

REQUIREMENTS:

  • At least 5 years of cybersecurity experience and knowledge of DoD, NIST, Cloud, DISA, and other applicable cybersecurity policies, procedures, and best practices.
  • Familiar with IT Design, Installation, and Integration with Cloud, FEDRAMP, and DoD Information Levels.
  • Maintain DoD 8570.01-M/8140-M IASAE level III or DoD 8570.01-M/8140-M IAM III certification.

EDUCATION:

  • Associate or Bachelor’s Degree in Information Technology or Engineering.

CERTIFICATION(s):

  • Must possess a CISSP certification.

JOB DESCRIPTION:

Position Details:

  • ICS seeks a seasoned and enthusiastic technologist to drive solutions for impactful proposal responses across various IT service corporate capabilities.
  • Lead and support technical solutions and strategies to capture and retain new business opportunities.
  • Integrated into our in-house proposal response team to contribute with technical content, industry best practices, and architectural visions to address Fed/Civ or DoD Enterprise IT requirements.
  • Advanced level in transformative solutions, emerging technology, and platform integration, capable of writing proposal content on topics including cloud platform technologies, cloud “As a Service” offerings, and legacy infrastructure migration to the cloud.
  • Leveraging hands-on experience, the candidate will demonstrate expertise in IT program lifecycle processes and plans, including AI, Agile, DevOps, and DevSecOps. Excellent oral presentation skills, cross-functional team collaboration, and white paper development are highly recommended.

 

Responsibilities:

  • Led technical solution development to revolutionize federal agencies’ technology use, including implementing zero-trust architectures and modernizing legacy systems.
  • Provide technical and thought leadership throughout the opportunity lifecycle, from capture to proposal response.
  • Collaborate with proposal management, capture managers, technical and BD teams, and external stakeholders to develop winning proposals.

CLEARANCE LEVEL:

Open to H-1,GC and US citizens

LOCATION:

Chantilly, VA (1-day every 2 weeks Onsite)

REQUIREMENTS:

  • 8+ years of experience in the technical field focusing on IT modernization, cloud, enterprise architecture, system integration, automation platforms, and security.
  • Good understanding and background in supporting US Federal and DoD clients’ technical solutions.
  • Experience developing comprehensive and cohesive client-specific presentations, such as whitepapers and proposals.
  • Collaborative experience with senior-level stakeholders, providing technical thought leadership.
  • Ability to understand client requirements from solicitation documents and technical briefs.
  • In-depth knowledge of technology trends, emerging technologies, agile development, advanced cloud architectures, and zero trust models.
  • Strong writing skills to accurately respond to solicitation requirements.

EDUCATION:

N/A

CERTIFICATION(s):

N/A

JOB DESCRIPTION:

Our Business Development, Capture, and Proposals Unit’s mission is to support clients with managing and supporting the BD, capture, and proposal development lifecycle for their assigned proposals. Our services are focused on Federal Government information technology pursuits that may vary in size from small to large and may require a variety of solutions. Our team is responsible for administering proposal processes, ensuring configuration management, ensuring compliance, providing guidance and assistance to authors, administering proposal-related resources, preparing proposal-related reports, etc. Tasks managed include Requests for Proposal (RFP) Analysis, Kick-Off Meetings, Status Calls, Proposal Development, Proposal Writing, Color Reviews, Proposal Production, Knowledge Management, etc.

ESSENTIAL FUNCTIONS:

  • Manage, write, and review RFX responses, white papers, resumes, past performance citations, and other narratives related to proposal responses in collaboration with clients and Sunrays International team members.
  • Interpret RFP requirements for compliance mapping and proposal response outlining.
  • Develop and successfully implement proposal templates, outlines, compliance matrices, resource assignments, production checklists, and bid and proposal budgets.
  • Conduct desktop publishing on proposal response materials, ensuring formatting consistency and compliance across documents.
  • Develop and maintain the proposal schedule, and report on progress.
  • Research and organize solutions and content.
  • Collaborate with the Director of Proposal Operations, Proposal Coordinators, Capture Managers, Business Development Managers, Authors, Subject Matter Experts, Artists, Program Managers, Support Leads, etc.
  • Coordinate, prepare for, and participate in proposal meetings, reviews, and debriefs.
  • Ensure submissions are accurate, complete, and compliant with RFP requirements and editorial specifications, as well as corporate quality and branding standards.

CLEARANCE LEVEL:

Must be a US Citizen

LOCATION:

Chantilly, VA (1-day every 2 weeks Onsite)

REQUIREMENTS:

  • Knowledge of RFP life cycle management and federal procurement regulations (FAR/DFARS).
  • Proven ability to successfully communicate company proposal objectives and key characteristics to management and teammates, in writing and oral presentations.
  • Proven ability to work with/interview Subject Matter Experts to understand and write about complex technical and management approaches.
  • Excellent people skills – able to work with teams of varying sizes, technical abilities, and levels of authority with both internal corporate staff and teammates.
  • Advanced ability to manage the RFP/RFI process and the contributing team members (not direct reports).
  • Skilled in analyzing RFPs and preparing outlines, schedules, and proposal templates.
  • Thorough, detail-oriented, and organized, with excellent time management skills and ability to prioritize.
  • Excellent multi-tasking abilities – able to handle multiple projects simultaneously.
  • Strong analytical skills with solid administrative experience.
  • Ability to understand and verify compliance.
  • Skilled in proposal management, coordination, and production.
  • Skilled in desktop publishing and formatting.
  • Knowledgeable in Microsoft Office Suite including Word, Excel, PowerPoint, and other database applications
  • Disciplined and efficient, able to work rapidly without comprising quality
  • Able to work under pressure of deadlines

EDUCATION:

  • Bachelor’s or Master’s Degree in Business, English. Technical, or related academic fields are highly desired

CERTIFICATION(s):

N/A

JOB DESCRIPTION:

As an RMF (Risk Management Framework) Support Specialist you will be responsible for overseeing the implementation of RMF processes and ensuring compliance with DoDI 8510.01. You will collaborate with program teams and contract staff to align and integrate RMF processes effectively.

CLEARANCE LEVEL:

Active Secret Required and eligibility for TS required

LOCATION:

Quantico, VA

REQUIREMENTS:

  • At least five (5) Years- security experience
  • Follow and execute DoDI 8510.01, DCSA OCIO / CISO requirements for the Program Management Office, ISSM, and Information System Security Officers (ISSO) within the PEO.
  • Manage the associated processes for RMF, ensuring each AIS (Automated Information System) is implementing RMF processes and supporting the acquisition process.
  • Collaborate with PEO embedded contract staff for all programs to align, integrate, and support RMF processes.
  • Enforce Authorizing Official (AO)/CISO decisions for all hosted and interconnected systems.
  • Create, submit, and manage Plans of Action and Milestones (POA&Ms) for approval by AO/CISO.
  • Maintain and report on RMF processes using eMASS and related tools.
  • Proficiency in implementing RMF processes and compliance with DoDI 8510.01.

EDUCATION:

Associates or Bachelor’s Degree, in Cybersecurity, and/or Information Systems Management or equivalent experience

CERTIFICATION(s):

DD8140/DoD8570.01-MLevel II

JOB DESCRIPTION:

As a Cloud Security Analyst, you will play a crucial role in ensuring the security and compliance of the Programs under the Program Executive Office (PEO). You will be responsible for managing Risk Management Framework (RMF) support for Amazon Web Services (AWS) based cloud systems.

CLEARANCE LEVEL:

Active Secret Required and eligibility for TS required

LOCATION:

Hanover, MD (Fort Meade location) Hybrid (2 Days Onsite and 3 Days Offsite)

REQUIREMENTS:

EXPERIENCE:

  • At least three (3) Years of cloud security experience.
  • Proficiency in implementing RMF processes and compliance with DoDI 8510.01.
  • Follow and execute DoDI 8510.01, DCSA OCIO / CISO requirements for the Program Management Office, ISSM, and Information System Security Officers (ISSO) within the PEO.
  • Manage the associated processes for RMF, ensuring each AIS (Automated Information System) is implementing RMF processes and supporting the acquisition process.
  • Collaborate with PEO-embedded contract staff for all programs to align, integrate, and support RMF processes.
  • Enforce Authorizing Official (AO)/CISO decisions for all hosted and interconnected systems.
  • Create, submit, and manage Plans of Action and Milestones (POA&Ms) for approval by AO/CISO.
  • Maintain and report on RMF processes using eMASS and related tools.

EDUCATION:

 Associate or Bachelor’s Degree, in Cybersecurity, and/or Information Systems Management or equivalent experience 

CERTIFICATION(s):

DD8140/DoD8570.01-M IAM Level I

JOB DESCRIPTION:

As a Cloud Security Analyst, you will play a crucial role in ensuring the security and compliance of the Programs under the Program Executive Office (PEO). You will be responsible for managing Risk Management Framework (RMF) support for Amazon Web Services (AWS) based cloud systems.

CLEARANCE LEVEL:

Active Secret Required and eligibility for TS required

LOCATION:

Quantico, VA

REQUIREMENTS:

  • At least three (3) Years- Cloud security experience
  • Proficiency in implementing RMF processes and compliance with DoDI 8510.01.
  • Follow and execute DoDI 8510.01, DCSA OCIO / CISO requirements for the Program Management Office, ISSM, and Information System Security Officers (ISSO) within the PEO.
  • Manage the associated processes for RMF, ensuring each AIS (Automated Information System) is implementing RMF processes and supporting the acquisition process.
  • Collaborate with PEO-embedded contract staff for all programs to align, integrate, and support RMF processes.
  • Enforce Authorizing Official (AO)/CISO decisions for all hosted and interconnected systems.
  • Create, submit, and manage Plans of Action and Milestones (POA&Ms) for approval by AO/CISO.
  • Maintain and report on RMF processes using eMASS and related tools.

EDUCATION:

Associates or Bachelor’s Degree, in Cybersecurity, and/or Information Systems Management or equivalent experience

CERTIFICATION(s):

  • DD8140/DoD8570.01-M IAM Level I
  • More Senior Analysts will require DD8140/DoD8570.01-MLevel II

JOB DESCRIPTION:

DCSA is seeking Information Systems Security Engineering (ISSE) support to maintain IT infrastructure, applications, and any new development projects ensuring the security of networks. Technical analysis, research, evaluation, and technical guidelines are to be performed in order to provide support. The workload will vary depending on the number of active development projects and other technical evaluations required.

CLEARANCE LEVEL:

Active Top Secret or Secret clearance is a MUST

LOCATION:

Quantico, VA, 2 days Onsite 3 days offsite Remote Long-Term Post COVID

REQUIREMENTS:

At least 3-5 years of cybersecurity experience and knowledge of DoD, NIST, Cloud, DISA, and other applicable Cyber Security policies, procedures, and best practices

Support all phases of an Information Systems Security Engineering Program (ISSE) with ISSE-certified personnel to support the requirements of the DoD A&A Process. The ISSE Program will use Information Assurance Technical Framework (IATF); DoD 5200.1-M; Common Criteria for IT Security Evaluation (International Organization for Standardization (ISO)/International Electrotechnical Commission (IEC) 15480; and DOD, federal, and DSS Cyber Security Policies as guides.

Provide input to the DCSA A&A Process including Information Security planning, design, testing, and analysis.

Provide research and analysis of Commercial-Off-The-Shelf (COTS) and Government-Off-The-Shelf (GOTS) and IA- enabled products as part of the security architecture and ensure that the products are National Security Telecommunications and Information Systems Security Policy Number 11 (NSTISSP-11) compliant and validated via the NIAP Common Criteria Evaluation and Validation Scheme or NIST Federal Information Processing Standards (FIPS) Cryptographic Module Validation Program (CMVP.)

  • Support the development of long-range IT strategic plans.
  • Support and maintain the DSS IT technical guidelines and framework.
  • Assess the quality and viability of existing solution architectures and design integrity.
  • Support the evaluation of technology products and develop trade studies when needed for potential addition of system functionality.
  • Provide support in designing IT system architecture and IT solutions.
  • Provide support in the development of executive orders and agency-wide policies.
  • Provide support in requirements definition and validation.
  • Analyze enterprise business models, IT solutions, trends, and emerging technologies.
  • Provide support in the planning and designing of availability, capacity, and service continuity.
  • Develop and provide IT COTS/GOTS product analysis and testing processes in accordance with applicable DoD Policies.

Information System Security Engineer (ISSE) Deliverables, at the discretion of the government, may include but are not limited to:

  • Service Acceptance Criteria and Service Level Requirements
  • Service Level Policies, Procedures, and Reports
  • Service Level Agreements and Operational Level Agreements
  • Availability Policy, Plans, Design Criteria, Risk -Analysis and Reports
  • Business and IT service continuity policy, strategy, plans, risks, business impact analysis, and reports
  • Technical Documents
  • Market Research Analysis and Results
  • Technical Guidelines and Framework
  • Technical and Product Evaluation Reports
  • Technical Studies
  • Cloud Design Diagram with security impacts (outlines systems to be deployed to a cloud infrastructure; outlines the ingress and egress points from the DSS network to the cloud infrastructure, locations of the CND Suite, and method of connecting to the DoD information network (DoDIN))
  • Cloud Suitability Questionnaire Template-(will be used to score an application’s suitability for deployment to the cloud with security impacts. The template should baseline a score to be used to determine suitability based on qualifying factors).
  • Technical Documents as defined by the Government
  • Courses of Action
  • Proofs of Concept

EDUCATION:

  • Associate or Bachelor’s Degree in Information Technology or Engineering.
  • Familiar with IT Design, Installation, Integration with Cloud, FEDRAMP, and DoD Information Levels

CERTIFICATION(s):

  • Maintain DoD 8570.01-M/8140-M IASAE level III or DoD 8570.01-M/8140-M IAM III certification

JOB DESCRIPTION:

Cyber Defense Operations (CDO) support services include continuous monitoring, which encompasses data such as network and host vulnerability scanning, IDS, firewall, network sensor tuning, and net flow/packet capture (PCAP). Audit data is collected and retained to facilitate technical analysis related to misuse, penetration, or other incidents.

Engineer, administer, and coordinate all ForeScout and C2C-related objectives. Candidates will operate in a multi-enclave environment and collaborate with various sections within OCIO to ensure C2C milestones are achieved.

CLEARANCE LEVEL:

Active Top Secret with ability to obtain TS/SCI may be allowed

LOCATION:

DCSA Quantico, VA- Hybrid (2 Days Onsite a MUST)

REQUIREMENTS:

BASIC QUALIFICATIONS:

  • At least 3 Years- hands-on technical Cybersecurity Experience:
    • Proficient with Forescout, Comply-2-Connect.
  • Knowledge of computer network defense concepts, DISA Security Technical Information Guides, DoD A&A Process, NIST SP 800-53, NIST SP 800-61, CJCSM 6510.01 B, United States Cyber Command guidelines, and other applicable DoD Cybersecurity and Computer Network Defense policies, Cybersecurity and Computer Network Defense policies.
  • Be able to maintain TS/SCI clearance and access to required commercial and/or DoD systems including NIPRNet, SIPRNet, and JWICS.

Forescout Cybersecurity Defense Engineer specific:

  • Conduct Cyber Defense Operations supporting continuous monitoring with Forescout.
  • Knowledge of DISA C2C (Comply-to-Connect).
  • Daily Operation and Maintenance (O&M) of multiple Forescout CounterACT appliances across multiple enclaves.
  • Collaboration with DISA and Forescout regarding Patches, C2C Policies, and Updates.
  • Daily Health Checks of managed switches.
  • Knowledge of 802.1X implementation.
  • Proficient with Forescout Console and Fstool commands for troubleshooting.
  • Ability to collaborate with other teams such as Network Operations, Desktop Engineering, and Enterprise Operations for daily issues.
  • Familiar with creating Forescout Reports and creating informational dashboards.
  • Analysis of data aggregation and analysis tools, including Splunk, HBSS, Tanium, and FireEye.
  • Familiar with policy creation and segment control.
  • Assist with the implementation of countermeasures or mitigating controls.
  • Compliance control and reporting.

EDUCATION:

  • Associate or bachelor’s degree in information technology, Information Systems Management, Cybersecurity, or equivalent, or equivalent experience.

CERTIFICATION(s):

  • IAT Level II REQUIRED
  • Forescout FSCA (Forescout Certified Administrator) certification is required.

JOB DESCRIPTION:

The Technical Writer will support a project management organization managing a portfolio of IT projects for the federal government.

Maintain the knowledge base’s organization, ensuring information is documented using consistent design and language.
The writer will use and update existing methods to provide documentation, status reports, ad-hoc reports, meeting minutes, deliverables, and briefings.
The Candidate will work with internal and external teams to write and produce easy-to-understand, high-quality documentation that contributes to the acceptance of deliverables and products developed across the program.

Responsibilities:

Researching topics, writing documents, and editing their work for publication. Must work with technical teams to obtain an in-depth understanding of documentation requirements and the products to be produced. Develop and write easy-to-understand job aids and tutorials to help guide end-users on the processes performed across varying program functional areas. Write appropriate documentation for its intended audience and manage all work products related to project performance and program requirements. Develop processes and manage documentation related to project performance, program requirements, and meeting minutes. Identify which documentation options are appropriate for each project type. Maintain large document repositories. Coordinate and prioritize concurrent activities within a deadline-driven climate.

Skills:

Quickly grasp complex technical concepts and make them easily understandable in text and pictures. Produce high-quality documentation and meeting minutes appropriate for its intended audience. Ability to analyze existing content for reuse and leveraging of content to include in documentation of like deliverables. Excellent written skills in English, strong communication skills, and the ability to interact effectively with users and the IT community. Strong communication skills and the ability to interact effectively with Users and the IT community.

Excellent document management skills, able to manage input from a variety of team members while standardizing the language and format while maintaining positive version control. Maintain comments tracking matrices on all documents. Excellent analytical skills including the ability to think through all aspects of document production and generate schedules and assignments for writers. Ability to create and update content based on templates and existing documents.  Relevant experience should include producing management briefings, project status reports, and meeting minutes. Expert with Microsoft Office; especially Word, Outlook, and PowerPoint. Highly proficient in using Jira, Confluence, MS Teams, and MS SharePoint.

CLEARANCE LEVEL:

Must be a US Citizen

LOCATION:

DOJ; 1400 New York Ave NW; 7th Floor; Washington DC, Hybrid – 3 Days Onsite 2 Days Offsite

REQUIREMENTS:

  • US Citizenship a Must
  • 3 to 5 years of Technical Writing experience
  • Ability to accurately document processes in English with minimal errors
  • Understand and be well-versed in active language, subject-verb agreement, punctuation, and other foundational grammar rules
  • Must be able to work independently, achieve productivity goals, and manage one’s time
  • Attention to detail, striving for error-free work
  • Must be able to work on-site when needed
  • Understanding of ITIL
  • Help desk/service center technical writing of government standard operating procedure

EDUCATION:

  • BS/BA degree and 3 to 5 years experience

CERTIFICATION(s):

NIL

JOB DESCRIPTION:

DOD Intelligence Agency requires A&A Validator who will manage customer-required Risk Management Framework (RMF) efforts for DOD Intelligence Agency customers. The Validator will be responsible to work collaboratively with Information Technology (IT) Engineers and System Administrators to conduct Cyber Security (CS) analysis, mitigation, remediation, and monitoring to ensure compliance with applicable DoD and DOD Intelligence Agency policies, procedures, and regulations. The validator will assess and validate that the system has implemented the approved security control baseline.

You will work with Cyber Assurance (CA) team which conducts Risk Management Framework efforts supporting Enterprise level tasks (Tier II) in the roles of Cyber Analyst and Cyber Validators. In addition, the CA team conducts A&A validation and security testing devices before allowing the hardware to be added to the network. The CA team may be required to travel at least 10 times a year for annual security assessments and continuous monitoring efforts. Cybersecurity support includes systems that comprise the ESS, the Agency administrative networks- (Unclassified but sensitive Data Network (UDN), Classified Data Network (CDN), and JWICS enclaves), GIG waivered networks and all standalone systems (non-networked computers).

CLEARANCE LEVEL:

Must be US Citizen/Active Interim Top Secret or Active Top Secret is required

LOCATION:

Quantico, VA

REQUIREMENTS:

  • At least 3 Years- hands-on technical Cybersecurity validation experience
  • Supporting A&A validation, RMF assurance, POA&Ms, and eMASS submissions
  • Develop, update, and provide for Government review, all DoD and other federal agency-specific documentation specified in Government A&A Framework and DoDI 8510.01, as applicable.
  • Maintain all DOD Intelligence Agency & PM managed system records and documents supporting compliance with federal laws, directives, policies and procedures, and provide at all times complete access to the records. Store all A&A related documentation within a government A&A Repository.
  • Conduct A&A related security test and evaluations using government-mandated tools and test procedures.
  • Develop or contribute to A&A related POA&Ms and Risk Assessment Reports as directed by applicable policy and guidance.
  • Review and analyze data found in eMASS (or similar A&A Repository /continuous monitoring tool).
  • Generate reports identifying noncompliant systems.
  • Knowledge of Risk Management Framework (RMF), STIGs and eMASS or similar (e.g., Xacta or CSAM)
  • Knowledge of DISA Security Technical Information Guides, NIST SP 800-53, and other applicable DoD Cybersecurity policies
  • Possess strong writing skills; experience preparing enterprise-wide SOPs, reports for high level officials
  • Experience developing cybersecurity documentation, Plan of Actions & Milestones (POAM), enterprise mission assurance support service (eMASS) submissions, and system security engineering efforts

EDUCATION:

CERTIFICATION(s):

8570 IAM Level I (e.g., CAP, CND, Cloud+, GSLC, Security+, HCISPP)

OR

8570 IAM Level II (e.g., CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO, HCISPP)

JOB DESCRIPTION:

As an Information Systems Security Engineer II you will lead efforts to manage the Security Technical Implementation Guide (STIG) progress within the PEO program. You will work closely with program teams, system owners, system administrators, ISSOs, and the Enterprise CISO cyber team to ensure compliance with STIGs, evaluate weaknesses, and provide actionable recommendations.

CLEARANCE LEVEL:

Active Secret Required and eligibility for TS required

LOCATION:

7121 Standard Drive in Hanover, MD (Fort Meade)

REQUIREMENTS:

  • Three (3) Years- Cybersecurity experience
  • Manage and monitor the progress of Security Technical Implementation Guide (STIG) compliance within the PEO program.
  • Collaborate with program teams, system owners, system administrators, ISSOs, and the Enterprise CISO cyber team to ensure STIG compliance.
  • Utilize DoD/DCSA Cyber standards to evaluate system weaknesses and strengths, providing recommendations for improvement.
  • Identify problems and determine the accuracy and relevance of information to stakeholders and the DCSA CISO cyber team for action.
  • Report findings to stakeholders and assist system owners with Plans of Action and Milestones (POAMs) for remediation.
  • Ensure clear understanding and compliance with STIG requirements for all assets being reviewed.
  • Knowledge of DoD, NIST, Cloud, DISA, and other applicable Cybersecurity Policies, Procedures, and best practices

EDUCATION:

Associate or Bachelor’s Degree, in Cybersecurity, and/or Information Systems Management or equivalent experience

CERTIFICATION(s):

DD8140/DoD8570.01-M IASAE level I or DD8140/DoD8570.01-MIAM II or IAT II requirements at the time of onboarding.

JOB DESCRIPTION:

ICS Nett is hiring a SIEM Engineer- Linux/AWS to support onsite in Hanover MD. This position has been approved for hybrid support (2 days onsite/3 days remote).

CLEARANCE LEVEL:

– Minimum Secret and ability to obtain and maintain Top Security/SCI clearance

LOCATION:

Hanover/MD (1-2 Day Onsite)

REQUIREMENTS:

  • At least five (5) years of experience in information technology and security engineering.
  • Three (3) years of direct Elastic administration experience deployed on Linux.
  • Requires extensive knowledge of application or infrastructure systems architecture, typically with experience in multiple system technologies.
  • Design, document, build, secure, and maintain Elastic Stack solutions deployed in the Cloud.
  • Understanding of SIEM technology and proficiency in designing and building systems.
  • Implement and configure ingestion of new custom log data feeds.
  • Collaborate with Security Analysts to fine-tune data ingest, detections, and alarms.
  • Contributions to infrastructure, data pipeline, analytics dashboards, and other resources will be delivered to threat analysts for consumption.
  • Familiarity with EQL/KQL/Lucene searches to develop dashboards, visualizations, and alerts.
  • Create Standard Operating Procedures (SOPs) and perform index administration, maintenance, and optimization.
  • Ability to analyze security vulnerability reports and develop/implement a plan to mitigate critical vulnerabilities.
  • Recognizes and seizes opportunities to improve products, services, or approaches.
  • STIG compliance and vulnerability management.

ADDITIONAL DESIRED SKILLS

  • Linux server administration
  • DevSecOps experience
  • Cloud experience (AWS)

EDUCATION:

  • Bachelor’s degree in Information Security or related field and/or equivalent combination of experience.

CERTIFICATION(s):

  • DoD 8140/8570 IAT Level II/III certifications required
  • One or more certifications:
    • GIAC Certified Detection Analyst (GCDA)
    • CompTIA Cybersecurity Analyst (CySA+)
    • Elastic Certified Engineer
    • Elastic Certified Analyst
    • Elastic Certified Observability Engineer
    • Certified SOC Analyst (EC-CSA)

General Application form

Apply now

Position: