Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
AI
Amyx, Inc.
Risk Management Support Task Lead
Career Insights for Cyber Security Manager / Administrator
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Illinois data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Manager or Administrator monitors, controls, and maintains systems that protect the security of large databases, including databases with customer information and patient files. Manages and administers the examination of client computer systems, identification of weak points in security, development and implementation of new systems, and monitoring and response to security issues.
$125,681 / year median in Illinois
+5% projected growth
Job Description
Overview Amyx is seeking Risk Management Support Task lead to oversee and manage all Risk Management Framework (RMF) requirements supporting the US Transportation Command (TRANSCOM) Senior Information Security Officer (SISO) contract at Scott Air Force Base, IL. As the RMF Lead, you will lead a team of Security Engineers to meet
SISO RMF
support requirements. As Task Lead, you will be responsible for overall direction and management of the team, and will be responsible for managing on-site deliverables, coordinating with the Government functional lead for method of delivery and Government requirements. Responsibilities Provide Risk Management support forUSTRANSCOM
in implementing and conducting operations for all phases of the DoD Risk Management Program (DoDI 8510) andNIST 800-37
Perform cyber security operations, which include: Information Systems Security Engineering (ISSE) services, Risk assessment development and support, Authorization support, Security configuration and vulnerability management support, Software assurance support, Security testing and auditing of security controls Conduct risk assessments to determine the risk posed by the integration of new systems or capabilities into theUSTRANSCOM
environment. As required, obtain supporting data from other DoD/Federal organizations, vendors, or Internet research to support RMF requirements. Conduct risk assessments in accordance with the principles of NIST SP 800-30, Guide for Conducting Risk Assessments, and the principles ofNIST SP 800-160
Vol I and Vol II, and security best practices. Maintain current documentation on ISSE processes and procedures and provide direct support for generation and delivery of all required contract deliverables. Implements security measures in accordance with applicable ICDs, NISP, NIST, and guiding government regulations and local facility procedures. Conducts ongoing vulnerability testing of the information system to verify security features and operating controls are functional, effective and meet government standards. Interact with internal and external customers or government security officials to perform security duties, address routine information security matters with employees regarding issues. Must have the ability to communicate accurate informationQualifications Required:
- Approved DoW 8140 degree and/or industry certification deemed relevant to the work role code.
- Minimum of 10 years of related experience
- Secret security clearance
- Comprehensive understanding and experience with DoD RMF tool eMASS
- Understanding of network and host-based security devices and their role in moving packets securely from source to destination.
- Understanding of security requirements, testing, assessment and validation procedures, and best practices applicable to physical, virtual, and cloud (Infrastructure as a Service [IaaS], Platform as a Service [PaaS], Software as a Service [SaaS]) based environments.
- Knowledge of information security technologies (e.g., cryptography, biometrics, forensic analysis, vulnerability assessment, Security Information and Event Management [SIEM]).
- Understanding of Federal and DoD computer security policies, (e.g.,STIGs/SRGs, HIPAA, FISMA and Digital Millennium Act)
- Thorough understanding of NIST Special Publications (SP), and commercial best practices.
- Thorough understanding of DoD policies applicable to implementation of the DoD RMF.
- Working knowledge of
ISO 27001, 27002.
- Excellent written and verbal communication skills, demonstrating the ability to present material to senior DoD and non-DoD officials.
- Able to communicate effectively with senior leaders and customers to clearly present technical approaches and findings.
Desired:
- BA/BS degree from an accredited university
- Demonstrated knowledge and understanding of the
USTRANSCOM
mission- Experience with PPSM is desired
- Knowledge of applicable DoD, JFHQ DoDIN, USCYBERCOM, and