Cybersecurity-Information Assurance Security Specialist

OUR COMPANY REVOLVES AROUND MISSION-DRIVEN ENGINEERING:

At Nesla Consulting LLC, we strive to solve our customer’s hardest problems. Our highly focused customer-centric approach is crucial to our customer’s success; and ultimately ours. We aim to be a breath of fresh air: to be the most innovative organization in the Government contracting space. Sounds cliche? No worries, the proof is in the pudding! To get there, we need exceptionally talented, bright, and driven people. Join us if you’d like to be a part of our journey. Right here, right now, this is your chance to make history and put a ding in the universe.

Nesla Consulting LLC is hiring a Information Assurance Security Specialist to join our team a supporting United States Special Operations Command (USSOCOM). This position will perform assessment and authorization coordination. The ideal candidate will advise and assist the customer with Risk Management Framework (RMF) and develop a Plan of Action and Milestones for resolving network deficiencies in accordance with DODI 8510.01. The duties of this position also includes assessing network compliance against controls listed in DODI 8500.2 and creating A&A packages. The end goal is to ensure the integrity of customer systems by identifying and mitigating potential shortcomings and vulnerabilities.

Department: Cyber Security
Project Location(s): Homestead, FL

General duties include:

  • Analyze, evaluate, and build an accreditation roadmap for new SIE networks and systems.
  • Develop and maintain supporting documentation for new networks, systems, and technologies as they are introduced into the SIE.
  • Develop and review the A&A of SIE networks, systems, services, devices, hardware, and software using the DoD & IC RMF to obtain an Authority to Operate (ATO), Interim Authority to Test (IATT), or Authority to Connect (ATC).
  • Provide DoD & IC RMF subject matter expertise to USSOCOM, its Component Commands, TSOCs, deployed forces and their delegates, including other Contractors, and assist with the development and execution of the RMF program at USSOCOM, its Component Commands, TSOCs, and deployed forces.
  • Maintain, track, and validate DISN and DIA connection approval packages, including those from USSOCOM, its Component Commands, TSOCs, and other subordinate organizations.
  • Perform risk and vulnerability assessments of IT and IS for accreditation; prepare risk assessment reports for submission to the Security Controls Assessor/Certification Authority (SCA/CA) and Authorizing Official/Designated Accrediting Authority (AO/DAA) in accordance with DoD, DIA, USCYBERCOM, USSOCOM, Component Command, TSOC, and deployed forces’ policies, procedures, and regulations.
  • Assist USSOCOM, its Component Commands, TSOCs and deployed forces with the enforcement of A&A, as well as DoD, DIA, USSOCOM, Component Command, TSOC, and deployed forces’ connection standards for networks and systems.
  • Track and maintain A&A databases, web sites and tools to ensure that networks, systems and devices are properly documented and managed from a security perspective.
  • Ensure timely notifications are made to responsible individuals and organizations in order to prevent lapses in accreditations (e.g., 30, 60, and 90 day notices).
  • Coordinate with USCYBERCOM, DoD, DIA, NSA, DISA, and subordinate organizations to support the resolution of issues with security, A&A, connection approvals, and waiver requests.
  • Perform network security authorization, as well as the application and execution of policy, including project management support services.
  • Additionally, the Information Assurance Security Specialist should be able to perform security evaluations and vulnerability assessments using the DOD Assured Compliance Assessment Solution (ACAS), Nessus vulnerability scanning tool.
  • The Information Assurance Security Specialist will liaison with network and system administrators to correct identified deficiencies. The Information Assurance Security Specialist will also scan (or review scans) for new systems and applications being introduced into the SOF environment, identify issues, and draft certification letters for the government.
  • The contractor will liaison with the Site Integration Facility (SIF) to ensure systems and application meet the standards in the DISA Security Technical Implementation Guides (STIG).

Requirements:

  • Active Top Secret clearance required.
  • Bachelor’s Degree in computer or systems science discipline and eight (8) years of progressive, relevant experience or equivalent combination of education and experience.
  • Experience with the US Combatant Commands (USCENTCOM/USSOCOM) is desired.
  • DOD Information Assurance Technical (IAT) Level 3 or IA Manager (IAM) Level 3 certification required.
  • Working knowledge of the Defense Information Assurance Certification and Accreditation Process (DIACAP) and Risk Management Framework (RMF).
  • Knowledge of the Telos Xacta or eMASS system is desired.
  • Must have excellent communications skill (written and oral) and interpersonal skills.
  • Knowledge and experience with DOD IA processes and policies (e.g., CJCSM 6510.01, Incident Response and other IA policies).

Benefits:

  • Medical/dental plans w/FSA & HSA options
  • Vision Plan
  • Short-Term Disability Insurance
  • Long-Term Disability Insurance
  • 401k
  • 2 weeks PTO
  • 10 Paid Federal Holidays
  • Workers Compensation
  • Commuter Benefits