OT Cybersecurity Engineer
Indexed description
Personnel must periodically support meetings at HQ DLA (Fort Belvoir, VA) or other Washington, DC metropolitan area locations. Personnel must reside within 100 miles one-way and within a 2-hour commute of a dually-approved SIPRNet-accredited workspace within one of 7 DLA primary locations: DLA HQ in Fort Belvoir, Virginia; DLA Aviation in Richmond, Virginia; DLA Disposition Services in Battle Creek, Michigan; DLA Distribution in New Cumberland, Pennsylvania; DLA Land and Maritime in Columbus, Ohio; Huntsville, Alabama; and DLA Troop Support in Philadelphia, Pennsylvania.
The OT Cybersecurity Engineer will play a crucial role in providing:
- Cybersecurity Web/App Vulnerability Management branch (Information System Security Engineer (ISSE) support)
- Information Assurance Engineering Support (JETS IDIQ Task Area 6 – Cybersecurity Engineering Support)
Impact: This role directly supports the two objectives of the task order, improving the cybersecurity posture of all DLA activities and enforcing compliance with OMB, DoD, DLA, NIST, and other applicable cybersecurity policy across DLA IT, Cloud, and OT technologies, spanning both unclassified (NIPRNet) and classified (SIPRNet) systems.
Responsibilities Include, But Will Not Be Limited To
- Provide analysis of existing and emerging DLA Information Systems, OT, and IT Infrastructure to assess compliance with DLA, DoD, and Federal IA policy, order, task, or regulation
- Review existing and draft/proposed policy and changes against system design documentation and identify areas of non-compliance on NIPRNet and SIPRNet
- Assist with or conduct Security Test and Evaluation and IA/cybersecurity assessment reviews
- Review proposed and draft DoD policies and assess impact on DLA Cloud, OT, IT, and IA/cybersecurity architecture
- Develop and document standards and guides for IA/cybersecurity solutions, including compliance, system security design, and assessments for Cloud, OT, and IT
- Conduct and document Risk Assessments identifying risks, probability of occurrence, resulting impact, and mitigating safeguards for unclassified and classified systems, providing decision recommendations
- Handle COMSEC material in accordance with DoD/DLA policy where required, including annual COMSEC training
- Provide weekly status updates on all open assignments, tickets, and projects
- Maintain regular, dually-approved access to an authorized SIPRNet location to compile and compose risk assessment and Operational Risk Assessment (ORA) data, ensuring proper marking, storage, and transmission of classified-level data compilations
- Support Deliverables: Implementation Documentation; IA/Cybersecurity Assessment Reports; Risk Assessments, ISSE Designs and Reports; Risk Assessment/ISSE Decision Recommendations; Standard Operating Procedures; Weekly Status Updates; and related Task Order/Operational Risk Assessment working documents
- Ten (10) years of relevant IT experience, plus five (5) years of relevant Operational Technology (OT) experience. Per Amendment 0001, the OT experience may run concurrently with the IT experience rather than being additive.
- Skills Required:
- Analyzing existing and emerging DLA information systems, OT, and IT infrastructure for compliance with DLA, DoD, and Federal Information Assurance policy
- Reviewing existing and draft/proposed policy against system design documentation to identify areas of non-compliance, on both NIPRNet and SIPRNet
- Assisting with or conducting Security Test and Evaluation and IA/cybersecurity assessment reviews
- Assessing the impact of proposed DoD policy changes on DLA Cloud, OT, IT, and IA/cybersecurity architecture
- Developing and documenting standards and guides for IA/cybersecurity solutions across Cloud, OT, and IT
- Conducting and documenting Risk Assessments, sourcing real-time vulnerability and intelligence information through open-source and classified resources, for unclassified and classified systems
- Familiarity with modern security solutions such as blockchain or related cryptographic research is relevant given current and anticipated technology under this task
- Ability to handle COMSEC material in accordance with DoD/DLA procedures, including completion of annual COMSEC training, if required
- Education Required: Not specified
- Education Preferred: Not specified
- Certifications Required:
- DoD 8570/8140 Baseline Certification: IAT Level III and IASAE Level III (IASAE III certification may be obtained within 6 months)
- WS Certified Security - Specialty (AWS CS Specialty)
- Microsoft Certified: Azure Security Engineer Associate (MC: Azure SEA), Exam AZ-500
- Microsoft Certified: Azure Solutions Architect Expert (MC: Azure SAE), Exam AZ-305
- GIAC Defensible Security Architecture (GDSA)
- GIAC Security Operations Manager (GSOM)
- CCNA — Cisco Certified Network Associate (Exam 200-301)
- CCNP (current, unified track)
- Red Hat Certified Engineer (RHCE)
- Assured Compliance Assessment Solution (ACAS)
- ISC2 CCSP — Certified Cloud Security Professional
- Computing Environment (CE) certification: Microsoft Certified Solutions Associate or Expert, Cisco Certified Network Administrator, Microsoft Azure Security Technologies, Amazon Certified Security, or a CE designated by the COR
- Certifications Preferred:
- Certifications or documented experience in modern security solutions (e.g., blockchain or related cryptographic research)
- US Citizenship and the ability to obtain and maintain an active Secret or higher clearance, per contract requirements.
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search