Brief Overview of Position :
Strategic Operational Solutions (STOPSO) is seeking candidates for a Cybersecurity SME role who will provide expertise to the overall program requirements. The supported organization is located offsite at contractor site in Ashburn, VA.
STOPSO is ISO 9001, ISO 20000-1, ISO 27001 certified and CMMI-SVC Level 2 appraised IT Services and Solutions company. We look for talented people to join our Team to develop and deliver solutions. Our environment is cutting-edge and highly rewarding, our team members are constantly learning and sharing their knowledge with our customers and each other. Our employees receive recognition for the solutions they provide to our customers and the value they bring to our company. Consider joining us today to make a difference.
Requirements and Primary Responsibilities :
- A minimum of a bachelor's degree in cybersecurity, computer science, information security, information systems, or other field related to work under this requirement
- A minimum of seven (7) years (or as specifically required in the TOR) of experience in cybersecurity program design, management, and / or operations in the DoD environment, including RMF (Risk Management Framework), accreditation, ATO processes, and security architecture
- Possess one (or more) of the following certifications : ISC2 Certified Information Systems Security Professional (CISSP), ISACA Certified Information Security Manager (CISM), or DoD 8570 / 8140 IAM Level III or IAT Level III certification (such as CASP+ CE, CCISO, CISSP-ISSMP)
- Possess a minimum of an active DoD Secret security clearance at the time of proposal submission
Desired Qualifications :
A minimum of five (5) years of experience leading initiatives in cybersecurity operations, security engineering, and security monitoring within DevSecOps environments, including implementation of continuous monitoring and integration of security into CI / CD pipelinesExperience with DoD security tools / technology stack, including ACAS, HBSS, SPLUNK, and practical application of NIST, FISMA, and DoD cloud security best practices across AWS and hybrid environmentsDemonstrated experience supporting and achieving Authority to Operate (ATO) on DoD networks for complex, multi-tenant cloud or enterprise environmentsExperience developing, authoring, and maintaining cybersecurity documentation and standard operating procedures in accordance with DoD and NIST 800-53 / 800-171, and conducting security training and awareness for program staff