Senior Cybersecurity SME
Wiesbaden, GE
Applications have closed
Redhorse
Weâve all been on your side of the table at some point in our careers, in uniform or government. That experience helps us understand your challenges in aâŠ
About the OrganizationNow is a great time to join Redhorse Corporation. Redhorse specializes in developing and implementing creative strategies and solutions with private, state, and federal customers in the areas of cultural and environmental resources services, climate and energy change, information technology, and intelligence services. We are hiring creative, motivated, and talented people with a passion for doing what's right, what's smart, and what works.
About the RoleRedhorse is seeking a highly experienced Cybersecurity SME Senior to support the GISA program in Wiesbaden, Germany. This critical role ensures the security and compliance of sensitive information systems within the Department of Defense, directly impacting national security. You will lead a team of cybersecurity professionals, providing technical expertise and guidance while working closely with government clients to maintain Authorization to Operate (ATO). This is a challenging but highly rewarding opportunity to make a significant contribution to Redhorseâs mission of transforming how government uses data and technology.
About the RoleRedhorse is seeking a highly experienced Cybersecurity SME Senior to support the GISA program in Wiesbaden, Germany. This critical role ensures the security and compliance of sensitive information systems within the Department of Defense, directly impacting national security. You will lead a team of cybersecurity professionals, providing technical expertise and guidance while working closely with government clients to maintain Authorization to Operate (ATO). This is a challenging but highly rewarding opportunity to make a significant contribution to Redhorseâs mission of transforming how government uses data and technology.
Key Responsibilities
- Perform the duties of an Information System Security Officer (ISSO) as defined in AR 25-2, DA 25-2-14, and NIST SP 800-53 security controls.
- Actively manage the organizationâs eMASS records, including validating security controls, assessing security scan results and STIGs, performing POA&M updates, tracking, and resolution, and leading continuous monitoring activities.
- Manage the day-to-day activities and professional development of Cybersecurity Analysts.
- Collaborate with the O-ISSM on all assessment and authorization activities to ensure information systems maintain an ATO on all applicable DoD/IC networks.
- Maintain up-to-date status on all assigned systems and communicate status to Government leads.
- Maintain complete records of communications, submit written status reports as required, perform peer-review as directed, and attend weekly meetings.
- Correspond with the Government customer and system administrators to communicate any unacceptable risks identified and correct deficient POA&M items to meet DoD and IC standards.
- Coordinate with the Security Control Assessor (SCA) to perform analysis of the overall risk level the system poses to enterprise networks and mission data.
- Create and maintain cybersecurity policies and standards.
- Ensure cybersecurity plans, controls, processes, standards, policies, and procedures align with cybersecurity standards.
- Provide guidance in the creation and maintenance of Standard Operating Procedures (SOPs), Tactics, Techniques, and Procedures (TTPs), and other similar documentation.
Required Experience/Clearance
- PhD in STEM with at least 8 yearsâ experience as a cybersecurity professional OR a Masterâs degree in STEM with at least 10 yearsâ experience OR a Bachelorâs degree in STEM with at least 12 yearsâ experience as a cybersecurity professional.
- Active TS security clearance and eligible for SCI and NATO read-on prior to starting work.
- Meet the DoD requirements for a privileged user on a TS/SCI information system prior to starting work - DoD 8140 / 8570.01-m requirements.
- 15 yearsâ experience with the assessment and accreditation activities of national security systems (NSSs).
- 10 yearsâ experience validating system security controls.
- 10 yearsâ experience with vulnerability management.
- 10 yearsâ experience with DISA STIGs, DISA SRGs, and vendor-specific security guides.
- 8 yearsâ experience with RMF and eMASS.
- 5 yearsâ experience with POA&M tracking and resolution.
- 3 yearsâ experience performing the continuous monitoring of system security controls.
Desired Experience
- Experience with specific DoD/IC networks and systems.
- Experience leading larger teams (10+ members).
- Familiarity with Agile methodologies in a cybersecurity context.
- Experience with cloud security architectures (AWS, Azure, GCP).
- Experience with DevSecOps principles and practices.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index đ°
Job stats:
0
0
0
Tags: Agile AWS Azure Clearance Cloud Compliance DevSecOps DISA DoD DoDD 8140 DoDD 8570 eMASS GCP Monitoring NATO NIST NIST 800-53 PhD POA&M RMF Security Clearance STEM STIGs TS/SCI TTPs Vulnerability management
Region:
Europe
Country:
Germany
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information System Security Officer jobsIT Security Analyst jobsSecurity Operations Engineer jobsSenior Cybersecurity Engineer jobsSenior Cloud Security Engineer jobsSenior Security Analyst jobsSenior Information Security Analyst jobsCyber Security Specialist jobsInformation Security Manager jobsSenior Product Security Engineer jobsSenior Network Security Engineer jobsSecurity Consultant jobsSenior Information Security Engineer jobsInformation System Security Officer (ISSO) jobsChief Information Security Officer jobsInformation Systems Security Engineer jobsSecurity Specialist jobsSenior Cyber Security Engineer jobsIT Security Engineer jobsCyber Threat Intelligence Analyst jobsSecurity Operations Analyst jobsSenior Software Engineer jobsSenior IT Auditor jobsCybersecurity Specialist jobsNetwork Engineer jobs
Bash jobsCEH jobsTS/SCI jobsEncryption jobsEDR jobsSDLC jobsSplunk jobsThreat detection jobsMalware jobsRMF jobsTerraform jobsFinance jobsIDS jobsSQL jobsTop Secret jobsCompTIA jobsForensics jobsITIL jobsIPS jobsSOC 2 jobsOWASP jobsActive Directory jobsDocker jobsClearance Required jobsGIAC jobs
CRISC jobsIntrusion detection jobsTCP/IP jobsOSCP jobsAnsible jobsHIPAA jobsVPN jobsMITRE ATT&CK jobsDoDD 8570 jobsZero Trust jobsData Analytics jobsJavaScript jobsSOAR jobsCCSP jobsSOX jobsBanking jobsIT infrastructure jobsJira jobsUNIX jobsDNS jobsIndustrial jobsNIST 800-53 jobsKPIs jobsCISO jobsMachine Learning jobs