Cybersecurity Operations Lead

Cwsc
Scott AFB, IL

Who this role is best for

A natural match if you have DoD cybersecurity operations experience and lead-level capabilities in RMF and incident response.

Best fit for

  • Candidates with lead-level experience in DoD RMF and incident response workflows
    — “Direct RMF documentation and Authorization to Operate (ATO) sustainment
  • Individuals who have achieved and sustained ATO for Army systems
    — “Experience achieving/sustaining ATO under RMF for Army systems
  • Professionals with advanced certifications in cybersecurity defense and management
    — “Advanced certification such as CISSP, GCIH, or CASP+

Things to consider

  • Must have Secret clearance prior to starting the role
    — “Security Clearance: - Secret clearance
  • Requires residential qualification for elevated system access at the start of employment
    — “Residentially Qualified at the start of work for elevated access to any system, network, or enclave

How to stand out

  • Demonstrate leadership in vulnerability scanning and POA&M management using Tenable/ACAS
    — “Oversee weekly vulnerability scanning and POA&M management using Tenable/ACAS
  • Showcase administrative and leadership skills with government-furnished security tools
    — “Administer Government-furnished security tools (Trellix ePO/HBSS, Cisco ISE, Palo Alto NGFW/Panorama, Splunk/SIEM, Symantec ProxySG)
  • Emphasize your ability to lead full incident response lifecycle management
    — “Lead incident response — identify, contain, eradicate, recover
Pace · Fast PacedCollaboration · HighAutonomy · MediumDecision Impact · CompanyLevel · Lead

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • Successfully managed RMF documentation and ATO sustainment
  • Led effective incident response
Typical background
6+ years of cybersecurity operations experience in a DoD environmentFull DoDM 8140.03 foundational qualification

Skills & requirements

Required

RMF Documentation And ATO SustainmentVulnerability ManagementIncident ResponseSecurity Tool Administration

Preferred

Advanced Certifications (cissp, Gcih, Casp+)

Stack & domain

RMFVulnerability ManagementSecurity Tool AdministrationIncident ResponseTenable/acasStig/scapTrellix Epo/hbssCisco ISEPalo Alto Ngfw/panoramaSplunk/siemSymantec ProxysgLeadershipCommunicationProblem-solvingCysa+GCIACEHCisspGCIHCasp+CybersecurityDod Environment

About the role

Original posting from Cwsc via Lever

Leads all Cybersecurity Operations (CSO) under U.S. Army Transportation Command (ARTRANS) C4ISR and distribution operations, directing RMF, vulnerability management, security tool administration, and incident response across in-scope Army networks (NIPR/SIPR).

Key Tasks & Responsibilities:

Direct RMF documentation and Authorization to Operate (ATO) sustainment; submit RMF packages via eMASS and RMF Strategy

Oversee weekly vulnerability scanning and POA&M management using Tenable/ACAS; STIG/SCAP compliance reporting

Administer Government-furnished security tools (Trellix ePO/HBSS, Cisco ISE, Palo Alto NGFW/Panorama, Splunk/SIEM, Symantec ProxySG)

Lead incident response — identify, contain, eradicate, recover; report incidents; deliver Cybersecurity Scorecard data and quarantine reports

Education & Experience:

6+ years of cybersecurity operations experience in a DoD environment (RMF, vulnerability management, incident response)

Full DoDM 8140.03 foundational qualification prior to start. Residentially Qualified at the start of work for elevated access to any system, network, or enclave

Experience achieving/sustaining ATO under RMF for Army systems; familiarity with USTCI 6600.01

Certifications:

DCWF Work Role 621 - Cyber Defense Analyst, Intermediate proficiency. Common qualifying certifications: CySA+, GCIA, CEH

Advanced certification such as CISSP, GCIH, or CASP+

Security Clearance:

  • Secret clearance

Compensation:

The offered rate will be based on the selected candidate’s knowledge, skills, abilities and/or experience and in consideration of internal parity. The posted range is appropriate for a typical candidate meeting, at a minimum, all the core requirements of the position.

Computer World Services is an affirmative action and equal employment opportunity employer. Current employees and/or qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, disability, protected veteran status, genetic information or any other characteristic protected by local, state, or federal laws, rules, or regulations.

Computer World Services is committed to the full inclusion of all qualified individuals. As part of this commitment, Computer World Services will ensure that individuals with disabilities (IWD) are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact Human Resources at hr@cwsc.com.

Source: Cwsc careers (Lever)

Similar roles