Information Assurance II (Vulnerability Assessment Analyst - ACAS Security Manager)
Maxwell AFB Gunter, AL
Full Time Mid-level / Intermediate Clearance required USD 86K - 160K * est.
Sumaria Systems LLC
Sumaria delivers leading technical, engineering, software, professional & enterprise networking solutions to U.S. Government AgenciesJob Description: Information Networks are critical to modern warfare. This position plays a critical role in our nation’s defense through the operation, management and defense of the Air Force portion of the Department of Defense Information Network. In this role, you will maintain network infrastructure, to include routers, switches, proxies, firewalls, servers, workstations, printers, Storage Area Networks (SAN) and test labs, to provide maneuverability and defense of both classified and unclassified networks. This is expected to include, but not necessarily be limited to, the following activities:
- Measure effectiveness of defense indepth architecture against known vulnerabilities using available tools within organization to find them. Analyze, prioritize, and mitigate vulnerabilities to lower or eliminate risk.
- Perform/review/validate vulnerability scans to include analysis of results, identification of false positives, exceptions, and subsequent POA&Ms and/or MFRs creation, monitoring and reporting to include POA&M status and contributions to Monthly and Quarterly reports.
- Collects and reviews data gathered from a variety of tools (including intrusion detection system alerts, firewall, network traffic logs, and host system logs) to analyze events for possible attacks that occur within computing, network, or enclave environments.
- Validates, investigates, and analyzes all response activities related to cyber incidents. These tasks include but are not limited to: creating and maintaining incident tracking information; planning, coordinating, and directing recovery activities; and incident tracking information; and incidents analysis tasks, including examining all available information and supporting evidence of artifacts related to an incident or event.
- Performs assessments of systems and networks within the network environment or enclave and identify where those systems and/or networks deviate from acceptable configurations, enclave policy, or local policy.
- Create reports to effectively communicate to government problems and proposed solutions.
- Actively manage (inventory, track, and request corrective action) all hardware devices on network that only authorized devices are given access and unauthorized and unmanaged devices are found and prevented from gaining access.
- Actively manage (inventory, track, and correct) all software on the network so that only authorized software is installed and can execute, and that unauthorized and unmanaged software is found and prevented from installation or execution.
- Submit tickets to appropriate teams for corrective actions.
- Other cybersecurity related tasks, as assigned.
Required Skills/Education:
Education: High School Diploma or GED.
Certification Requirements: DoDD 8140 IAT-II; DISA ACAS Supervisor and Operator Course and DISA Forescout Comply to Connect (C2C) Certified Administrator Training (FSCA) AND Security + or CEH.
Years of Experience: 3+ years of experience in utilizing security relevant tools to include: NESSUS, ACAS, DISA STIGs, Audit Tools, Forescout, ESS, Performs assessments of system and network and identifies where the system/network deviate from acceptable configurations, DoD policy, or local policy/guidelines.
Travel: Yes (less than 10%)
Security Clearance Required: Secret
Position Type: Full Time
Work Location: Hybrid – Maxwell AFB, Gunter Annex, AL
Expected hourly range: $33.65 to $38.45
Agency submissions are not being accepted at this time.
For more information on Sumaria Systems, please visit our website at www.sumaria.com.
Sumaria is an equal opportunity employer and considers qualified applicants for employment without regard to race, color, creed, religion, national origin, sex, sexual orientation, gender identity and expression, age, disability, or protected veteran status.
Sumaria is a Full Lifecycle Engineering, Technical Services and Professional Solutions company in support of the Warfighter, supporting modernization, high end services and next generation capabilities in contested domains. Sumaria has been a trusted partner to U. S. Department of Defense for more than 40 years, providing Lifecycle Systems Engineering, Advisory & Analysis/SETA, C5ISR and Enterprise Information Technology solutions. With expertise to lead, insight to deliver and commitment to succeed; we staff each mission with a carefully selected team of seasoned professionals. We're Headquartered in Peabody, MA, and have regional offices across the nation.
Sumaria Systems only provides engineering services to the federal government and does not provide professional engineering or surveying services to the public within the meaning of Ohio Revised Code Section 4733.16.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: ACAS CEH Clearance Clearance Required DISA DoD DoDD 8140 Firewalls Intrusion detection Monitoring Nessus POA&M Security Clearance STIGs Vulnerabilities Vulnerability scans
Perks/benefits: Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.