Cyber Security Architect

Jacksonville, FL, United States

By Light Professional IT Services LLC

By Light readies warfighters and federal agencies with technology and systems engineered to connect, protect, and prepare for every next.

View all jobs at By Light Professional IT Services LLC

Apply now Apply later

Company Overview

By Light Professional IT Services LLC readies warfighters and federal agencies with technology and systems engineered to connect, protect, and prepare individuals and teams for whatever comes next. Headquartered in McLean, VA, By Light supports defense, civilian, and commercial IT customers worldwide. 

 

Cole Engineering Services (CESI), a By Light company, is recognized as a premier provider of modeling and simulation (M&S) training solutions to the Federal Government and industry. Since 2004, CESI has been at the forefront of developing, maintaining, and integrating simulation-based training, serious gaming, technical services, training and other support in live, virtual, constructive, and gaming (LVCG) domains. 

 

This is a proposal position.

Position Overview

The Cybersecurity Architect will provide support at Marine Corps Base Camp Lejeune, NC. This position will assist in overseeing the security, operation, and administration of Industrial Control Systems (ICS) and Operational Technology (OT) solutions within the FRCS Cyber Operations Group. The ideal candidate will have a robust understanding of ICS/OT environments, Risk Management Framework (RMF) processes, and compliance with DoD, DoN, and USMC cybersecurity policies.

Responsibilities

  • Manage the ongoing operation, maintenance, and administration of ICS/OT systems, including Building Automation Systems (BAS), Water & Wastewater (W&WW) systems, HVSCADA, Metering, Lighting, and other systems as defined by CLNC PWD and the FRCS Cyber Operations Group
  • Conduct inspections and surveys of new and existing physical sites (buildings and locations) for ICS/OT Supervisory Controllers
  • Deliver survey findings to CLNC PWD to support the addition of new ICS/OT systems into the existing architecture
  • Assess and verify the installation and configuration of Supervisory Controllers to meet DoD, DoN, and USMC standards
  • Establish and maintain a model of properly installed ICS/OT Supervisory Controllers in a Testbed environment for reference and testing purposes
  • Configure Encrypt/Decrypt devices to establish secure connections to firewalls over MCEN using approved IPSec VPNs
  • Ensure new Supervisory Controllers connect securely via VPN and integrate successfully with the designated server
  • Monitor and update Encrypt/Decrypt devices to comply with operational and cybersecurity requirements
  • Design, deploy, and administer Nutanix Hyperconverged Virtual environments
  • Configure and maintain firewalls in alignment with RMF "Type" ATO/ATC requirements
  • Perform other duties as assigned

Required Experience/Qualifications

  • Strong understanding of DoD, DoN, and USMC cybersecurity policies
  • Excellent problem-solving and analytical skills
  • Effective communicator and team collaborator
  • Master’s Degree or 20 years C&A/A&A experience
  • Certified USMC Validator
  • Experience with USMC “Type” accreditations (ATO/ATC) for large architectures
  • Experienced with writing custom Cybersecurity policies for ICS/OT devices and systems
  • Expert in the USMC A&A process to include MCCAST 2.0, RMF, DFIA, and CNSSI 1253
  • CNSS 4011, 4012, 4015, 4016A (Required)
  • Experience creating/managing POAMs
  • Experience with DISA STIGs
  • Experience interpreting/implementing standards and policies in accordance with NIST 800-53/DoDI 8510.01
  • Experience with vulnerability/risk analysis
  • Experience conducting compliance assessments/validations as well as conceptualizing and implementing security systems and architectures
  • Expert in the creation and editing of White Papers, Briefs, Training Materials, and other documentation related to the technical solution developed at CLNC

Preferred Experience/Qualifications

  • ICS CERT Training (Desired): - Introduction to Control Systems Cybersecurity (101):
    • Intermediate Cybersecurity for Industrial Control Systems (201)
    • Intermediate Cybersecurity for Industrial Control Systems (202)
    • ICS Cybersecurity (301)
  • IAM Level 3 (CISSP Desired)

Special Requirements/Security Clearance

DoD Secret Clearance Required

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  9  0  0
Category: Architecture Jobs

Tags: Automation C CERT CISSP Clearance Clearance Required CNSS Compliance DISA DoD Firewalls IAM ICS Industrial NIST NIST 800-53 Risk analysis Risk management RMF Security Clearance STIGs VPN

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.