What are the responsibilities and job description for the Information Assurance Security Specialist II position at EISCANDIDATEPORTAL?
Eagle Integrated Services, LLC is hiring for a Information Assurance Security Specialist II to support our ongoing mission for Joint Base San Antonio.
The IA/Security Specialist may provide risk assessments and reviews for software and hardware to be deployed on the JBSA sites. Contractor installed or provisioned network infrastructure components (e.g., switches, routers, etc.) shall be standardized to the existing MTF network infrastructure where possible and shall be listed on the DoD Information Network (DODIN) Approved Products List (APL) (https://aplits.disa.mil). Operating systems and firmware shall be the most current Government approved version approved for infrastructure components, workstations, and servers.
The IA Specialist shall promptly report any suspected or confirmed security breaches or policy violations to the agency’s IA Manager (IAM). DISA maintains the DoDIN APL process as outlined in DODI 8100.04 on behalf of the DoD. This process provides a single, consolidated list of products that have met cybersecurity and interoperation certification requirements. Threat monitoring is executed at the enterprise level.
The IA Specialist shall address security incidents and remediate vulnerabilities that are within the DHA address IP space that belong to neighboring networks. Incidents are reported/discovered from both in-house and outside DOD activities including Joint Task Force- Global Network Operations (JTF-GNO)/Global Network Solution Center (GNSC). Reported incidences that must be addressed average 3-4 per week but with the increase in monitoring capabilities, that number will increase.
The Information Assurance/Security Specialists shall support the management and security for the JBSA Sites and supported networks as follows:
Perform a Basic Cyber Assessment, using the NIST SP 800-171 DoD Assessment Scoring Template, and enter the results electronically in Supplier Performance Risk System (SPRS) for each covered Contractor information system that is relevant to an offer, contract, task order, or delivery order
Analyze and improve system security practices
Assist the system owner and ISSO in various aspects of designing, developing, and writing certification and accreditation (C&A) documentation packages, including support of the ATO and its systems and/or environment, including but not limited to POA&M and other artifacts.
Follow National Institute of Standards and Technology (NIST) and/or RMF standards in performance of job functions
Administer the Government Mission Assurance Category (MAC) Three (MAC3) and Government MAC Two (MAC2); Sensitive but Unclassified office automation environment security features, including but not limited to, access control, malicious code protection, vulnerability and patch management, audit logs and records management, attack sensing and warning for all supporting network, computing, and information components
Administer and support DOD, MHS, and DHA IA security compliance reviews including ad-hoc, annual, and quarterly scans, security information requests and certification and accreditation activities
Administer and support security reviews of all new or modified systems, devices, and configurations to ensure a consistent security posture
Administer all security related documentation including System Security Authorization Agreements (SSAA), recording mitigation strategies, waivers, approvals, ports and protocol registration, and user rights tracking
Assist in the detailed investigation and documentation of security incidents as required
Support the Government’s directive to maintain and sustain all aspects of CAC login and PKI technology and/or other Government authorized or required two factor identification protocol or system
Maintain application approval databases and user rights forms
Utilize Government scanning tools, such as Retina, AppDetective, and Assured Compliance Assessment Solution (ACAS) and or Government provided security protocols, including forensics analysis and Intrusion Prevention System
The IA Security Specialist will ensure systems will be Information Assurance and Security Compliant with all current configurations in accordance with DHA RMF accredited baselines.
The candidate shall promptly report any suspected or confirmed security breaches or policy violations to the agency’s IA Manager (IAM). DISA maintains the DoDIN APL process as outlined in DODI 8100.04 on behalf of the DoD. This process provides a single, consolidated list of products that have met cybersecurity and interoperation certification requirements. Threat monitoring is executed at the enterprise level.
The candidate will be required support the following ISSO responsibilities:
Assist Information Systems Security Manager (ISSM) in meeting their duties and responsibilities
Implement and enforce all DoD IS and PIT system cybersecurity policies and procedures, as defined by cybersecurity-related documentation
Ensure that all users have the requisite security clearances and access authorization, and are aware of their cybersecurity responsibilities for DoD IS and PIT systems under their purview before being granted access to those systems
Coordinate with the ISSM to initiate protective or corrective measures when a cybersecurity incident or vulnerability is discovered and ensure that a process is in place for authorized users to report all cybersecurity-related events and potential threats and vulnerabilities to the ISSO
Ensure that all DoD IS cybersecurity-related documentation is current and accessible to properly authorized individuals
Qualifications:
This position is pending a background check for Secret Clearance)/ Tier 3 in support of your primary duty assignment onsite.
Certification requirements to meet IAT III, IAM III. Education requirements are a Bachelor’s degree or equivalent experience.
Eagle Integrated Services, LLC (EIS) offers a competitive benefits package to include paid holidays, paid time off including sick and vacation leave, medical, dental and vision insurance, flexible spending accounts, short and long term disability, company paid life insurance, 401(k) with a company match and discretionary profit sharing and tuition reimbursement.
EIS is an Equal Opportunity Employer. Employment decisions are made without regard to any protected category. Hiring preference will be given to BBNC shareholders, their spouses and descendants and Alaska Natives in accordance with Public Law 93-638.
Salary : $90,000 - $130,000