A logo

Information Security Engineer

ASRC Federal Holding CompanyRedstone Arsenal, AL

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.1

Reclaim your time by letting our AI handle the grunt work of job searching.

We continuously scan millions of openings to find your top matches.

pay-wall

Overview

Schedule
Full-time
Career level
Senior-level
Remote
On-site
Benefits
Career Development

Job Description

ASRC Federal is looking for an experienced IA Policy and Compliance Certified Professional - Intermediate to support their work with the U.S. Army Contracting Command (ACC) Chief Information Officer (CIO) G6 at Redstone Arsenal, AL. The IA Professional serves as a subject matter expert (SME) and technical leader within the ACC Headquarters (HQ) Cybersecurity Division (CSD). This position is responsible for the development, implementation, and maintenance of cybersecurity policies, standards, and procedures, ensuring compliance with applicable Department of Defense (DoD), Army, and ACC regulations.The IA Professional will work with a team of personnel, providing guidance and oversight in all aspects of Risk Management Framework (RMF) activities, cybersecurity assessments, and incident response. This role requires a deep understanding of cybersecurity principles, a strong analytical ability, and excellent communication skills to effectively convey complex information to both technical and non-technical audiences.KEY RESPONSIBILITIES

Establish, maintain, and retain the Command Cybersecurity Standard Operating Procedures (SOPs) and Tactics, Techniques, and Procedures (TTPs).Develop and maintain an ACC CIO/G6 Cybersecurity portal for dissemination of key products and documentation.

Execute the Risk Management Framework (RMF) lifecycle for multiple systems. Work with the other IA Professionals to maintain current Authority to Operate (ATO) status for these systems and provide RMF guidance and support to other ACC locations with similar systems.

Ensure all Military, Government, and Contractor IT/Cybersecurity personnel maintain records of training and certifications in the approved repository. Administer and maintain the repository, tracking requirements and notifying users of deficiencies.Provide support for monthly briefings and reports to Senior Level Government Representatives on cybersecurity status and performance metrics (e.g., Cyber Scorecard). Report all deficiencies to the Government on a weekly basis.Provide plans, strategies, and analysis to support the ACC CIO/G6 Cybersecurity Official with strategic program development. Utilize assessment tools to determine current cybersecurity posture, identify risks, and develop actionable strategies. Align cybersecurity priorities with Army and ACC strategic plans.Identify, investigate, research, analyze, and report on Cyber-related capabilities and technologies to meet current and emerging command needs. Assess and report on technology solutions for potential integration into the DoDIN or command enclaves.Conduct research to increase Cyber awareness and protection. Assess the feasibility of emerging ideas and participate in service, joint, and interagency events. Identify emerging Cyber trends and prepare vision documents and strategic studies.Complete, track, and report completion of Cybersecurity taskers to the responsible HQ ACC Division Chief.Provide plans, strategies, and analysis to support implementation of privacy standards (AR 340-21) and strategic development of Privacy training and policies. Support the ACC CIO/G6 Privacy Official with program support, incident handling, and reporting.Attend and participate in Cyber-related working groups, meetings, and briefings as directed by the Government and maintain the Cyber Division calendar.

REQUIRED QUALIFICATIONS

Minimum of 3 years of experience in cybersecurity, RMF implementation, and compliance.Proficient in:

DoD and Army cybersecurity regulations and policies.

The Risk Management Framework (RMF) process.

Strong analytical and problem-solving skills.

Proficiency in using cybersecurity tools and technologies (eMASS).

Strong written and verbal communication skills, including the ability to prepare and deliver briefings to senior leadership.

CLEARANCE LEVEL

SECRET Clearance

EDUCATION REQUIRMENTS

Bachelor's degree in information technology, Cybersecurity, Data Science, Information Systems, or Computer Science

CERTIFICATION

One of the following required: CISM, CISSO, FITSP-M, GCIA, GCSA, GCIH, GSLC, GICSP, CISSP-ISSMP, or CISSP

WORK ENVIRONMENT AND PHYSICAL DEMANDS:

This role is 100% on-site at Redstone Arsenal, AL.

Automate your job search with Sonara.

Submit 10x as many applications with less effort than one manual application.

pay-wall

FAQs About Information Security Engineer Jobs at ASRC Federal Holding Company

What is the work location for this position at ASRC Federal Holding Company?
This job at ASRC Federal Holding Company is located in Redstone Arsenal, AL, according to the details provided by the employer. Some roles may also include multiple work locations depending on the requirement.
What pay range can candidates expect for this role at ASRC Federal Holding Company?
Employer has not shared pay details for this role.
What employment applies to this position at ASRC Federal Holding Company?
ASRC Federal Holding Company lists this role as a Full-time position.
What experience level is required for this role at ASRC Federal Holding Company?
ASRC Federal Holding Company is looking for a candidate with "Senior-level" experience level.
What benefits are offered by ASRC Federal Holding Company for this role?
ASRC Federal Holding Company offers Career Development for this position. Actual benefits may vary depending on the employer's policies and employment terms.
What is the process to apply for this position at ASRC Federal Holding Company?
You can apply for this role at ASRC Federal Holding Company either through Sonara's automated application system, which helps you submit applications 10X faster with minimal effort, or by applying manually using the direct link on the job page.