EngineerJobs.io
← Back to all jobs

Job Description

The Industrial Control System (ICS) Cybersecurity Engineer will serve as an Information System Security Officer (ISSO) for KAFB owned and operated control systems in Albuquerque, New Mexico (onsite). The role provides technical leadership for cybersecurity and Risk Management Framework (RMF) activities while supporting the design, installation, commissioning, maintenance, and upgrades/modifications of control systems.

Responsibilities

  • Support implementation and maintenance of cyber security requirements within control networks.
  • Provide technical guidance for standardizing control systems and operational technology network architecture across the enterprise.
  • Specify control systems, instrumentation, and supporting equipment, and assist with procurement.
  • Provide RMF support to obtain and maintain Authority to Operate (ATO) approvals for multiple networks.
  • Create and maintain documentation and RMF artifacts in Enterprise Mission Assurance Support Services (eMASS).
  • Perform software assurance and risk assessments for the development of multiple software packages.
  • Conduct and review vulnerability and compliance scans for information system hardware and software; provide guidance for remediation of identified security flaws and configuration issues.
  • Review and monitor audit records for information systems.
  • Develop and maintain Standard Operating Procedures (SOP) and Work Instructions in accordance with Department of Defense and United States Air Force policies and procedures.
  • Oversee communications with Program Management, Information System Security Manager (ISSM), and On-Site Representative (OSR).
  • Direct remediation actions on security controls based on security assessment report findings and recommendations, working with Security Control Accessor (SCA) to remediate controls for compliance.
  • Administer mitigation for all identified POA&M weaknesses and ensure timely closure according to the mitigation plan.
  • Reduce or eliminate identified weaknesses, then coordinate the security authorization package with SCA for assessment.
  • Support configuration management processes, ensuring proposed changes are analyzed, tested, and approved before implementation.
  • Develop and test contingency plans and disaster recovery plans.
  • Create and manage Plans of Action and Milestones (POA&M) for identified weaknesses and vulnerabilities.
  • Oversee access control requirements, including privileged users, and ensure personnel receive required cybersecurity training.

Required Qualifications

  • At least three years of experience working in cybersecurity or a related field such as information technology or control systems management.
  • Prefer experience in a military environment, with familiarity with US Air Force cybersecurity guidance, rules, and regulations.
  • Bachelor’s degree or military-equivalent training in mechanical or electrical engineering, cybersecurity, information technology, or a closely related field.
  • Have or be able to obtain within six months a DoD 8570 (or 8140) IAT Level II certification.
  • Working knowledge of computer security architectures and implementation of security controls.
  • Ability to work independently with minimal supervision.
  • Excellent verbal and written communication skills.
  • Ability to pass a drug screen.
  • Must be a US citizen and currently possess or be able to obtain/maintain a US government-issued security clearance.
  • Proficiency with Microsoft Office 365 and Adobe Acrobat Pro.
  • Must maintain a valid US driver’s license.
  • Ability to perform repetitive physical tasks involving lifting at least 50 lbs.
  • Commitment to providing for and maintaining a safe working environment.

Technologies

  • Enterprise Mission Assurance Support Services (eMASS)
  • Risk Management Framework (RMF)
  • DoD 8570
  • DoD 8140
  • Microsoft Office 365
  • Adobe Acrobat Pro
  • BACnet
  • Host Based Security System (HBSS)
  • Niagara Workbench
  • Sustainment Management System (SMS) BUILDER
  • BUILDER Remote Entry Database (BRED)
  • Energy Management Control Systems (EMCS)
  • Fire Alarm Reporting Systems (FARS)
  • Utility Monitoring Control Systems (UMCS)

Benefits

  • Health care
  • Dental
  • Vision
  • Life insurance
  • 401(k)
  • Education assistance
  • Paid time off including PTO
  • Holidays
  • Any other paid leave required by law

Desired Qualifications

  • Experience in a military environment, including familiarity with US Air Force cybersecurity guidance, rules, and regulations.
  • Expertise in advanced process control (APC), distributed control systems (DCS), programmable logic controllers (PLC), and supervisory control and data acquisition (SCADA).
  • Working knowledge of RMF package creation and maintenance.
  • Experience with eMASS for managing RMF Assessment and Authorization (A&A) activities.
  • Knowledge of Energy Management Control Systems (EMCS), Fire Alarm Reporting Systems (FARS), Utility Monitoring Control Systems (UMCS) utilizing BACnet protocols.
  • Familiarity with DoD RMF and eMASS Essentials.
  • Knowledge of Host Based Security System (HBSS).
  • Knowledge of Niagara Workbench software.
  • Familiarity or experience performing facility assessments and Real Property Inventory Equipment (RPIE) condition assessments using Sustainment Management System (SMS) BUILDER and BUILDER Remote Entry Database (BRED).
  • Experience working with data from geospatial databases.
  • Knowledge of construction management software, project closeout procedures, preventive maintenance, and construction and repair terminology and processes.

Similar Jobs