What are the responsibilities and job description for the Senior Cybersecurity Analyst position at Tyto Athene, LLC?
Tyto Athene is searching for a Senior Cybersecurity Analyst for an exciting opportunity supporting the United States Space Force (USSF) Military Satellite Communications (MILSATCOM) program. The Space and Systems Command (SSC) has the collective SF mission responsibility for the development, deployment, maintenance, and sustainment of AF space systems providing early missile warning capability, environmental sensing, precision navigation, guidance and timing, nuclear event detection, space launch capability, national and military satellite communications capabilities, launch range and network systems, advanced systems, and technology development programs.
This position ensures that the information security requirements necessary to protect the core mission and business process are adequately addressed in all aspects of the enterprise architecture, to include reference documentation and system architectures. The ideal candidate will function as a Subject Matter Expert (SME) on each system architecture and design, review technical documentation in support of analysis, system design, development testing, and deployment of security systems. You will provide information assurance assessment and recommendations concerning safeguarding of IS through risk analysis, vulnerability assessment, and compliance with NIST SP 800.53. You'll be expected to interact with military, Government civilians, and contractor staff at all levels to support the A&A efforts of each mission/system. You will provide input on assigned enclaves as relates to how proposed modifications, additions, and technology upgrades would impact the overall security posture of the system.
Responsibilities:
- Ensure that Cybersecurity requirements are effectively integrated into IS and components through purposeful security architecting, design, development, and configuration;
- Perform FISMA required risk assessment of policies, procedures, supplemental plans addressing network, facilities and system security, security awareness training, testing and evaluation of security controls, incident response plan, and continuity of operations plans;
- Evaluate requests for compliance and integration with all applicable cybersecurity policies, Notice to Airmen (NOTAMs), and Technical Change Orders (TCOs);
- Employ best practices when implementing security controls within an IS;
- Provide assessment and technical inputs to any system changes for all associated system enclaves;
- Create/maintain a Government owned Cyber Schedule that captures all mission cybersecurity activities and actions; the schedule needs to be capable of showing a high-level view of all project/activity milestones, accomplishments, and discrete tasks including Authorization and Assessment activities for RMF packages, cyber assessments, and O&M Mods or depot sustainment cases that improve the systems cybersecurity postures.
- Provide IS and compliance documentation to include but not limited to the following:
- Categorize ISs IAW Committee on National Security Systems Instruction (CNSSI) 1253
- Initiate the security plan, register system with DoD Information Technology Investment Portfolio System (ITIPS) and Enterprise Mission Assurance Support System (eMASS) and select security controls for all computer enclaves IAW National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53
- Identify common controls; develop monitoring strategy, and plan, review, and obtain approval IAW NIST SP 800-53 and CNSSI 1253
- Implement and document control solutions consistent with DoD cybersecurity architectures IAW NIST SP 800-160 and NIST SP 800-18
- Prepare the Plan of Action and Milestone (POA&M) and submit security authorization packages, to include all required artifacts to Authorizing Official (AO)
- Provide RMF training/education for program managers and integrated product team leads.
Required:
- Active TS/SCI clearance
- High School Diploma with 7 years’ experience in IT or cybersecurity experience performing IAT Level II functions (threat, attacks, vulnerabilities, identification and access management, architecture and design, and risk management); and/or IAM Level II functions (developing and implementing IA policies in coordination with IA inspections and reviews)
- Bachelor's degree counts for 4 years’ experience and a master’s degree counts for 6 years of experience
- IAM or IAT Level 2 Certification (Sec , CySA , CAP, CASP, CISM, CISSP or Associate)
Desired:
- Experience with Xacta
- Experience with ITIPS, eMASS, FISMA, and/or DISA IASE
- Bachelor’s or master’s Degree
- SCI Eligibility
Clearance:
- Active Top Secret clearance with SCI eligibility
Salary : $100,000 - $115,000