Cybersecurity ISSM (Senior)
Company: Torch Technologies, Inc.
Location: Dayton
Posted on: April 8, 2025
|
|
Job Description:
Job Description:
Submit your CV and any additional required information after you
have read this description by clicking on the application
button.
Torch Technologies is seeking a Cybersecurity Engineer (ISSM)
located within Kettering, OH (Dayton/WPAFB area) to support our
EPASS GB contract. As part of the AFLCMC/GB Business and Enterprise
Systems Directorate (BES), FLITES is a new system within the AF to
manage Item Master data. The FLITES will provide comprehensive Item
Catalog and Provisioning functions for the logistics business
systems and will replace the Item Management Control System (IMCS)
suite of legacy systems, at a minimum. FLITES will be the central
repository for the Item core business objects, providing
standardization of Item cataloging processes, structure,
attributes, propagation, and standardized views for all applicable
Item types.
ESSENTIAL DUTIES/POSITION DESCRIPTION:
This position requires a highly motivated individual with vast
Cybersecurity, Senior ISSM experience.
The successful candidate will provide the PMO/Capability
Development Manager (CDM) cybersecurity support per DoDI 8500.01.
Support includes assessing and continuously monitoring
cybersecurity risk ensuring that legacy and new capabilities adhere
to enterprise standards such as Risk Management Framework (RMF),
Cybersecurity Framework (CSF), and National Institute of Standards
and Technology (NIST) and per Authorization Official's Information
System's Continuous Monitoring (ISCM) strategy.
This position ensures the integration of cybersecurity into, and
throughout, the lifecycle of the IT, on behalf of the AO and in
accordance with DoDI 8510.01 for the following:
--- Completes and maintains required cybersecurity certification
IAW AFMAN 17-1303;
--- Ensures all AF IT cybersecurity-related documentation is
current and accessible to properly authorized individuals;
--- Supports the PM or ISO in maintaining current authorization to
operate, approval to connect (if required), and implementing
corrective actions identified in the plan of actions and
milestones;
--- Coordinates, with the PM and AO staffs, development of an ISCM
strategy and monitors any proposed or actual changes to the system
and its environment;
--- Continuously monitors the IT and environment for
security-relevant events;
--- Assesses proposed configuration changes for potential impact to
the cybersecurity posture;
--- Ensures cybersecurity-related events or configuration changes
that impact AF IT authorization or adversely impact the security
posture are formally reported to the AO and other affected parties,
such as IOs, stewards, and AOs of interconnected IT;
--- Ensures all ISSOs and privileged users receive necessary
technical training and obtain cybersecurity certification IAW AFMAN
17-1301, Computer Security (COMPUSEC), AFMAN 17-1303, and maintain
proper clearances IAW DoDI 8500.01; and,
--- Ensures the AF IT is acquired, documented, operated, used,
maintained, and disposed of properly IAW DoDI 5000.02 and DoDI
8510.01.
Job Requirements:
EDUCATION:
Master's or Doctorate Degree in a related field and 6 years of
experience in the respective technical/professional discipline
being performed.
OR, Bachelor's Degree in a related field and 10 years of experience
in the respective technical/professional discipline being
performed.
OR, 15 years of directly related experience with proper
certifications as described in the PWS labor category performance
requirements.
The ISSM has the knowledge, experience and recognized ability to be
considered highly skilled in their technical/professional field.
Possesses the ability to perform tasks independently and oversee
the efforts of junior and journeyman contractor personnel within
the technical/professional discipline. Demonstrates advanced
knowledge of their technical/professional discipline as well as
possess a comprehensive understanding and ability to apply
associated standards, procedures and practices in their area of
expertise (Program Office, Enterprise and Staff Level Support
interface).
All Cybersecurity professionals should possess experience providing
guidance on the following to include, but not limited to:
--- Access control.
--- Configuration management.
--- System and communications protection.
--- Contingency planning.
--- Incident handling.
--- System and information integrity.
--- Security and privacy training and awareness; and,
--- Software development activities, software and tools related to
Cybersecurity.
Experience performing cybersecurity duties as outlined in DoDI
8500.01, AFI 17-130, and AFI 17-1301 for assigned AF IT.
Experience validating, evaluating and analyzing finding results and
developer adjudications using automated testing tools, e.g.,
Fortify, Checkmarx, SonarQube, and AppScan.
Experience utilizing DoD tracking systems to input/document
cybersecurity deficiencies, vulnerabilities, and change requests in
the appropriate tracking system for each program, e.g., Jira, HP
ALM, and eMASS.
Experience with conducting information security continuous
monitoring (ISCM) by maintaining ongoing awareness of information
security, vulnerabilities, and threats to support organizational
risk management decisions IAW approved ISCM strategy.
CERTIFICATION REQUIREMENTS:
At a minimum, the successful candidate will meet the requirements
for and maintain a personnel certification associated with the DCWF
ISSM work role (722) at an advanced (senior) proficiency level as
outlined in DoDI 8510.01, AFMAN 17-1305 and AFI 17-101 for assigned
systems/applications:
--- ISACA CISM
--- United America Technologies CISSO
--- FITSI FITSP-M
--- GIAC GCIA
--- GIAC GCSA
--- GIAC GCIH
--- GIAC GSLC
--- GIAC GICSP
--- (ISC)2 CISSP-ISSMP
--- (ISC)2 CISSP
Additional Desired Certifications:
--- Certified SCRUM Master
--- Other Agile Certifications
OTHER QUALIFICATIONS:
Candidate must be a US Citizen
Candidate must possess and be able to maintain a T3/Secret
Clearance
The following skills are highly desirable but not required for this
position:
--- Working knowledge of the Agile Development methodology
--- Experience using any, or all, of the following tools
(Desired):
o CheckMarx
o SonarQube
o Jira
o Confluence
o Mavin
o Jenkins
o Bitbucket
U.S. Citizenship Required for this Position: Yes
Job Type: Full time
Security Clearance: Tier 3/Secret
Schedule: (M-F; 8-5)
Work Location: Kettering, OH office
Travel:
Keywords: Torch Technologies, Inc., Dayton , Cybersecurity ISSM (Senior), Other , Dayton, Ohio
Click
here to apply!
|