Summary
What you’ll impact
The Cyber A&A Engineer supports the program by analyzing ACAS/SCC/ConfigOS scans and controls to maintain continuous system authorization. The role involves collaborating with stakeholders to assess vulnerabilities, generate POA&M responses, conduct risk analyses, and manage system packages in eMASS/Xacta.
Responsibilities
What you'll do
- Support the C2BMC program.
- Utilize Assessment & Authorization (A&A) background to analyze ACAS/SCC/ConfigOS scans and controls for continuous system Authorization.
- The successful candidate will be expected to work in collaboration with C2BMC & external stake holders to assess system vulnerabilities, account management, generate engineering responses for system POA&Ms, and conduct risk analysis for Risk Acceptance Requests (RARs).
- Assist in the creation and maintenance of system packages in eMASS/Xacta.
Requirements
What you’ll bring
- Bachelor’s Degree with a minimum of 5 years of experience, or Master’s Degree with a minimum of 3 years of experience
- Active Top Secret Clearance required to start
- Active IAT Level II Certification (Security+ or equivalent) required to start
- Solid Cybersecurity engineering skills with working knowledge of Cyber technologies, DoDI 8500.2 and Risk Management Framework (RMF) 800-53
- Excellent technical document preparation and verbal communication
- Thorough understanding of ACAS/SCC outputs
- Hands-on experience reviewing scan data, STIGs and RMF controls
- Experience with eMASS and the accreditation of Cross Domain Solutions (CDS)