OT R&D Cybersecurity Engineer
Indexed description
Personnel must periodically support meetings at HQ DLA (Fort Belvoir, VA) or other Washington, DC metropolitan area locations. Personnel must reside within 100 miles one-way and within a 2-hour commute of a dually-approved SIPRNet-accredited workspace within one of 7 DLA primary locations: DLA HQ in Fort Belvoir, Virginia; DLA Aviation in Richmond, Virginia; DLA Disposition Services in Battle Creek, Michigan; DLA Distribution in New Cumberland, Pennsylvania; DLA Land and Maritime in Columbus, Ohio; Huntsville, Alabama; and DLA Troop Support in Philadelphia, Pennsylvania.
The OT R&D Cybersecurity Engineer will play a crucial role in providing:
- Cybersecurity Web/App Vulnerability Management branch (ISSE support), R&D-focused
- R&D Information Assurance Engineering Support (JETS IDIQ Task Area 6 – Cybersecurity Engineering Support)
Impact: Supports DLA's Information Technology R&D program, including programs and projects under the Defense Industrial Base Manufacturing and Small Business Innovation Research initiatives, reducing the time, effort, and total cost of acquisition for R&D projects as they migrate toward production DoD systems.
Responsibilities Include, But Will Not Be Limited To
- Provide analysis of emerging DLA R&D Information Systems, R&D OT, and R&D IT Infrastructure to assess compliance with DLA, DoD, and Federal IA policy, in support of reducing time, effort, and cost for R&D-to-production transitions
- Review existing and draft/proposed policy and changes against system design documentation and identify areas of non-compliance on NIPRNet and SIPRNet
- Assist with or conduct Security Test and Evaluation and IA/cybersecurity assessment reviews
- Review proposed and draft DoD policies and assess impact on DLA Cloud, OT, IT, and IA/cybersecurity architecture
- Develop and document standards and guides for IA/cybersecurity solutions, including compliance, system security design, and assessments for R&D Cloud, R&D OT, and R&D IT
- Conduct and document Risk Assessments for R&D projects supporting unclassified and classified systems, identifying probability of occurrence, resulting impact, and mitigating safeguards
- Provide weekly status updates on all open assignments, tickets, and projects
- Maintain regular, dually-approved access to an authorized SIPRNet location as needed to compile and compose risk assessment data tied to R&D efforts
- Ten (10) years of relevant IT experience, plus five (5) years of relevant Operational Technology (OT) experience. Per Amendment 0001, this experience requirement applies identically to both the Cybersecurity Engineer and R&D Cybersecurity Engineer labor categories, and OT experience may run concurrently with IT experience.
- Skills Required:
- Analyzing emerging DLA R&D Information Systems, R&D OT, and R&D IT Infrastructure for compliance with DLA, DoD, and Federal Information Assurance policy
- Reviewing existing and draft/proposed policy against system design documentation to identify areas of non-compliance, on both NIPRNet and SIPRNet
- Assisting with or conducting Security Test and Evaluation and IA/cybersecurity assessment reviews
- Assessing the impact of proposed DoD policy changes on DLA Cloud, OT, IT, and IA/cybersecurity architecture
- Developing and documenting standards and guides for IA/cybersecurity solutions across R&D Cloud, R&D OT, and R&D IT
- Conducting and documenting Risk Assessments for R&D projects supporting unclassified and classified systems
- Familiarity with modern security solutions such as blockchain or related cryptographic research is relevant given current and anticipated R&D technology under this task
- Education Required: Not specified
- Education Preferred: Not specified
- Certifications Required:
- DoD 8570/8140 Baseline Certification: IAT Level III and IASAE Level III (IASAE III certification may be obtained within 6 months)
- WS Certified Security - Specialty (AWS CS Specialty)
- Microsoft Certified: Azure Security Engineer Associate (MC: Azure SEA), Exam AZ-500
- Microsoft Certified: Azure Solutions Architect Expert (MC: Azure SAE), Exam AZ-305
- GIAC Defensible Security Architecture (GDSA)
- GIAC Security Operations Manager (GSOM)
- CCNA — Cisco Certified Network Associate (Exam 200-301)
- CCNP (current, unified track)
- Red Hat Certified Engineer (RHCE)
- Assured Compliance Assessment Solution (ACAS)
- ISC2 CCSP — Certified Cloud Security Professional
- Computing Environment (CE) certification: Microsoft Certified Solutions Associate or Expert, Cisco Certified Network Administrator, Microsoft Azure Security Technologies, Amazon Certified Security, or a CE designated by the COR
- Certifications Preferred:
- Certifications or documented experience in modern security solutions (e.g., blockchain or related cryptographic research)
- US Citizenship and the ability to obtain and maintain an active Secret or higher clearance, per contract requirements.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search