Demo

Cybersecurity Engineer

SMS Data Products Group, Inc.
Virginia, VA Full Time
POSTED ON 1/20/2025
AVAILABLE BEFORE 4/19/2025

SMS Data Products Group, Inc.

SMS' Cloud and Platform Engineering team provides the expertise, partnership, and integrity to make cloud work for you. SMS is seeking an experienced Cybersecurity Risk Assessor to provide independent verification and validation (IV&V) and deliver recommendations to the Defense Threat Reduction Agency (DTRA) Security Control Assessor (SCA). In this role, the candidate will conduct security control validation and assessment based on NIST SP 800-53, CNSSI-1253 and the DoD Risk Management Framework (RMF) process.

Qualifications, skills, and all relevant experience needed for this role can be found in the full description below.

As a dynamic systems integrator, SMS offers proven solutions in engineering, operations, cybersecurity, and digital transformation. With expertise in modernizing and optimizing legacy infrastructure and systems, ensuring operational efficiency, and designing, implementing, and managing secure environments, SMS supports business and mission goals with proficiency, quality, and integrity.

Responsibilities

  • Act as an independent and impartial assessor to determine and certify aggregate cybersecurity risk for recommendation to the SCA.
  • Conduct security control validation and assessment of technical security features of a system or network to address known threats and vulnerabilities.
  • Validate and assess security controls in accordance with NIST SP 800-53, CNSSI-1253 and with the DoD Risk Management Framework (RMF) process.
  • Conduct required vulnerability analysis to support mitigation and residual risk determination.
  • Ensure traceability of all vulnerabilities from raw assessment results to the POA&M.
  • Support updates of the RAR and POA&M based on the assessment results.
  • Advise the AODR, AO, CISO of all DoD RMF matters related to associated systems based on the evaluation of associated security controls and artifacts.
  • Identify, communicate, and deliver concise, coherent narratives on key controls and technical details of nuanced issues.
  • Convey findings, recommendations, and ideas on complex IT systems to functional leaders and executives.

Qualifications

  • 8 years of professional experience in a related field
  • Experience in helping federal agencies manage risks associated with operating an on-premise and cloud-based information system while using RMF
  • Possess in-depth knowledge of all NIST and CNSSI publications related to RMF and security controls for national security systems (NSS) and non-NSS systems.
  • Possess working knowledge of DoD Risk Management Framework (RMF), DoD IA guidance and policies, and NIST 800 series standards.
  • Possess in-depth knowledge and hands-on experience with eMASS software supporting the RMF process.
  • Possess working knowledge of ACAS Security Center to include report generation and evaluation of vulnerability and discovery scans.
  • Possess working knowledge of STIG Viewer to validate STIG checklists and SCAP scans.
  • Ability to work effectively within a team environment as well as independently.
  • Strong verbal and written communication skills.
  • Active DoD Top-Secret clearance required.
  • DOD IAM Level II Required CAP, CASP CE.
  • Preferred Requirements

  • Bachelor’s Degree (BS)
  • IAM Level III preferred – CISM, CISSP, GSLC, CCISO
  • SMS is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

    J-18808-Ljbffr

    If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a Cybersecurity Engineer?

    Sign up to receive alerts about other jobs on the Cybersecurity Engineer career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $125,027 - $157,872
    Income Estimation: 
    $149,432 - $188,965
    Income Estimation: 
    $125,027 - $157,872
    Income Estimation: 
    $149,432 - $188,965
    Income Estimation: 
    $149,432 - $188,965
    Income Estimation: 
    $179,455 - $227,077
    Income Estimation: 
    $163,631 - $209,073
    Income Estimation: 
    $192,911 - $256,346
    Income Estimation: 
    $99,793 - $130,112
    Income Estimation: 
    $125,027 - $157,872
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at SMS Data Products Group, Inc.

    SMS Data Products Group, Inc.
    Hired Organization Address Montgomery, AL Other
    Overview SMS is seeking a dynamic, motivated individual to serve as an Enterprise Tools Analyst for the 26 Network Opera...
    SMS Data Products Group, Inc.
    Hired Organization Address Montgomery, AL Full Time
    Overview : SMS is seeking a Windows OS Tier1 System Administration to support the AF 26 NOS at Gunter Annex. The Tier 1 ...
    SMS Data Products Group, Inc.
    Hired Organization Address Virginia, VA Full Time
    SMS Data Products Group, Inc. SMS' Cloud and Platform Engineering team provides the expertise, partnership, and integrit...
    SMS Data Products Group, Inc.
    Hired Organization Address Montgomery, AL Full Time
    Sr. SolarWinds System Administrator Job Locations US-AL-Montgomery Job ID 2024-4862 # of Openings 1 Clearance Requiremen...

    Not the job you're looking for? Here are some other Cybersecurity Engineer jobs in the Virginia, VA area that may be a better fit.

    Cybersecurity Engineer

    Naval Supply Systems Command, Virginia, VA

    Cybersecurity Engineer

    QBE LLC, Virginia, VA

    AI Assistant is available now!

    Feel free to start your new journey!