Cyber Security SME - Wharton, United States - SMS Data Products Group

    SMS Data Products Group
    SMS Data Products Group Wharton, United States

    1 month ago

    Default job background
    Description

    Overview


    SMS is seeking a Security Control Assessor-Validator (SCA-V). In this role, the Candidate shall provide senior cybersecurity assessment, audit and verification expertise, technical advice, develop and review cyber security policy and threat models and make recommendations to expand and improve cybersecurity posture efforts.

    As a dynamic systems integrator, SMS offers proven solutions in engineering, operations, cybersecurity, and digital transformation. With expertise in modernizing and optimizing legacy infrastructure and systems, ensuring operational efficiency, and designing, implementing, and managing secure environments, SMS supports business and mission goals with proficiency, quality, and integrity.

    SMS has been serving the advanced information technology needs of the federal government since 1976, delivering talented teams and innovative, cost-effective solutions and services to support our customers' missions for more than 40 years. SMS is headquartered in McLean, Virginia, with offices and on-site operations at customer locations throughout the United States. For additional information on SMS, visit

    Submit your resume today

    Responsibilities


    The Candidate shall have knowledge of and have proven performance with the following:

    • Candidate will provide cybersecurity assessment services in varying information system domains including, but not limited to: Chemical, Biological, Radiological, Nuclear and Explosives (CBRNE); Conventional Weapon Systems; Remote Weapon Systems; Precision Control Units; Smart Munitions; Embedded systems; Military Automation Systems; Military Web and database Applications; Mobile Applications; Information Systems and Infrastructure Support; and Enterprise Information Systems.
    • Must have knowledge and expertise in various cybersecurity disciplines, including Access Control, Audit and Accountability, Awareness and Training, Configuration Management, Contingency Management, Contingency Planning, Identification and Authentication, Maintenance, Media Protection, Program Management, Security Assessment and Authorization, System and Communication Protection, System and Information Integrity, and System and Services Acquisition.
    • Provide cybersecurity assessment activities to include project planning and management, cost estimation, test plans, assessment in-briefs and out-briefs, onsite assessment support, conduct vulnerability scanning and manual system configuration testing, document review, assessment of Common Control Identifiers (CCI's) within eMASS, assessment of Security Technical Implementation Guides (STIG) compliance, completion of Security Control Assessor - Validator (SCAV) artifacts such as Security Assessment Report (SAR), Risk Assessment Workbook (RAW), Recommendation Memo, and provide Plan of Action and Milestone (POA&M) support.
    • Candidate will plan, establish and maintain a technical data repository and documentation configuration management services for all supported systems.
    • Obtain and maintain SIPRNET access.
    • Other duties as assigned.

    Qualifications


    Minimum Requirements

    • 5 or more years professional experience in a related field
    • Knowledge of required GCSS-Army Property Book Module training, skills, and experience (within past 3- years) in order to accomplish the work required.
    • General knowledge of the Army Enterprise Systems Integration Program (AESIP) Decision Support Tool, FMSweb, and DLA-EDOC.
    • Knowledge of Army property accountability regulatory and policy and requirements.
    • Knowledge of Army property accountability processes for receipt, storage, issue, transfer and turn-in of organization and installation supplies and equipment.
    • Active Secret Clearance (or higher) required at the time of hire (U.S. CITIZENS ONLY)

    Preferred Requirements

    • Bachelor's degree in a technical field (e.g. Cybersecurity, Computer Science, Cloud, or other IT degree)
    • Additional cybersecurity certifications (GIAC, CISA, etc.)
    • Cloud certification (AWS, Microsoft, Google, etc.)

    SMS is an Equal Opportunity Employer.