Senior Cybersecurity SME
Wiesbaden, GE
Applications have closed
Redhorse
We’ve all been on your side of the table at some point in our careers, in uniform or government. That experience helps us understand your challenges in a…
About the OrganizationNow is a great time to join Redhorse Corporation. Redhorse specializes in developing and implementing creative strategies and solutions with private, state, and federal customers in the areas of cultural and environmental resources services, climate and energy change, information technology, and intelligence services. We are hiring creative, motivated, and talented people with a passion for doing what's right, what's smart, and what works.
About the RoleRedhorse is seeking a highly experienced Cybersecurity SME Senior to support the GISA program in Wiesbaden, Germany. This critical role ensures the security and compliance of sensitive information systems within the Department of Defense, directly impacting national security. You will lead a team of cybersecurity professionals, providing technical expertise and guidance while working closely with government clients to maintain Authorization to Operate (ATO). This is a challenging but highly rewarding opportunity to make a significant contribution to Redhorse’s mission of transforming how government uses data and technology.
About the RoleRedhorse is seeking a highly experienced Cybersecurity SME Senior to support the GISA program in Wiesbaden, Germany. This critical role ensures the security and compliance of sensitive information systems within the Department of Defense, directly impacting national security. You will lead a team of cybersecurity professionals, providing technical expertise and guidance while working closely with government clients to maintain Authorization to Operate (ATO). This is a challenging but highly rewarding opportunity to make a significant contribution to Redhorse’s mission of transforming how government uses data and technology.
Key Responsibilities
- Perform the duties of an Information System Security Officer (ISSO) as defined in AR 25-2, DA 25-2-14, and NIST SP 800-53 security controls.
- Actively manage the organization’s eMASS records, including validating security controls, assessing security scan results and STIGs, performing POA&M updates, tracking, and resolution, and leading continuous monitoring activities.
- Manage the day-to-day activities and professional development of Cybersecurity Analysts.
- Collaborate with the O-ISSM on all assessment and authorization activities to ensure information systems maintain an ATO on all applicable DoD/IC networks.
- Maintain up-to-date status on all assigned systems and communicate status to Government leads.
- Maintain complete records of communications, submit written status reports as required, perform peer-review as directed, and attend weekly meetings.
- Correspond with the Government customer and system administrators to communicate any unacceptable risks identified and correct deficient POA&M items to meet DoD and IC standards.
- Coordinate with the Security Control Assessor (SCA) to perform analysis of the overall risk level the system poses to enterprise networks and mission data.
- Create and maintain cybersecurity policies and standards.
- Ensure cybersecurity plans, controls, processes, standards, policies, and procedures align with cybersecurity standards.
- Provide guidance in the creation and maintenance of Standard Operating Procedures (SOPs), Tactics, Techniques, and Procedures (TTPs), and other similar documentation.
Required Experience/Clearance
- PhD in STEM with at least 8 years’ experience as a cybersecurity professional OR a Master’s degree in STEM with at least 10 years’ experience OR a Bachelor’s degree in STEM with at least 12 years’ experience as a cybersecurity professional.
- Active TS security clearance and eligible for SCI and NATO read-on prior to starting work.
- Meet the DoD requirements for a privileged user on a TS/SCI information system prior to starting work - DoD 8140 / 8570.01-m requirements.
- 15 years’ experience with the assessment and accreditation activities of national security systems (NSSs).
- 10 years’ experience validating system security controls.
- 10 years’ experience with vulnerability management.
- 10 years’ experience with DISA STIGs, DISA SRGs, and vendor-specific security guides.
- 8 years’ experience with RMF and eMASS.
- 5 years’ experience with POA&M tracking and resolution.
- 3 years’ experience performing the continuous monitoring of system security controls.
Desired Experience
- Experience with specific DoD/IC networks and systems.
- Experience leading larger teams (10+ members).
- Familiarity with Agile methodologies in a cybersecurity context.
- Experience with cloud security architectures (AWS, Azure, GCP).
- Experience with DevSecOps principles and practices.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Tags: Agile AWS Azure Clearance Cloud Compliance DevSecOps DISA DoD DoDD 8140 DoDD 8570 eMASS GCP Monitoring NATO NIST NIST 800-53 PhD POA&M RMF Security Clearance STEM STIGs TS/SCI TTPs Vulnerability management
Region:
Europe
Country:
Germany
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Product Security Engineer jobsInformation Security Specialist jobsSenior Security Analyst jobsSenior Cloud Security Engineer jobsSystems Engineer jobsSenior Cybersecurity Engineer jobsSystems Administrator jobsSenior Information Security Analyst jobsInformation Security Manager jobsCyber Security Specialist jobsSenior Network Security Engineer jobsIT Security Analyst jobsChief Information Security Officer jobsIT Security Engineer jobsSecurity Consultant jobsInformation System Security Officer (ISSO) jobsSecurity Specialist jobsInformation Systems Security Engineer jobsSenior Cyber Security Engineer jobsSenior Information Security Engineer jobsSenior Product Security Engineer jobsCyber Threat Intelligence Analyst jobsCyber Security Architect jobsSecurity Operations Analyst jobsCybersecurity Specialist jobs
SaaS jobsEncryption jobsEDR jobsJava jobsBash jobsThreat detection jobsTop Secret jobsSplunk jobsRMF jobsTerraform jobsIDS jobsSDLC jobsIPS jobsMalware jobsSOC 2 jobsSQL jobsFinance jobsForensics jobsDocker jobsCompTIA jobsActive Directory jobsGIAC jobsIntrusion detection jobsDoDD 8570 jobsITIL jobs
VPN jobsOWASP jobsIT infrastructure jobsCRISC jobsTCP/IP jobsHIPAA jobsAnsible jobsOSCP jobsBanking jobsClearance Required jobsData Analytics jobsMITRE ATT&CK jobsCCSP jobsNIST 800-53 jobsZero Trust jobsIndustrial jobsDNS jobsUNIX jobsEndpoint security jobsSAP jobsCISO jobsPolygraph jobsSOAR jobsJira jobsSOX jobs