- Standard Job Description
- Responsible for applying an interdisciplinary, collaborative approach to plan, design, develop, validate and verify Cyber solutions across the lifecycle.
Conduct cyber risk assessment activities including threat modeling, vulnerability analysis and analysis of mitigation solutions. Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber domain. Coordinate with Cyber and system architects and developers to provide oversight in the development of solutions. Conduct cybersecurity test and evaluation of hardware and/or software designs to verify and validate compliance with defined specifications and requirements. Employs cyber security processes, methods, techniques and tools and assure their consistent application. Implements appropriate Assessment and Authorization activities as required by customers.
USE OF THIS CLASSIFICATION REQUIRES AUTHORIZATION FROM THE BUSINESS AREA CYBER DIRECTOR OR DELEGATE
- Basic Qualifications
- + Acitve Secret Clearance + IASAE Level
II - IAW
8570 or higher certification (CASP+ CE, CISSP, CSSLP) + Ability to travel as required (typically up to 20%)
S. degree in a technical discWine such asComputer Science, Computer Engineering,Electrical Engineering, Computer Security, orInformation Technology — or equivalent appliedexperience + Experience utilizing Joint Special Access Program(SAP) Implementation Guide (JSIG), Committeeon National Security Systems Instruction (CNSSI)1253, and NIST sp 800-37 Risk ManagementFramework (RMF) to design and hardeninformation systems commensurate withcustomer needs + Ownership of, or ability to acquire and maintain,a CAC Card is strongly desired + Experienced with ACAS software (Nessus andTenable. SC) + Ability to troubleshoot ACAS software (Nessusand Tenable.
SC) + Experienced with
SCC SCAP
tool to conductcompliance assessment + Ability to troubleshoot
SCC SCAP
tool + Have knowledge of Group Policy Management + STIG experience + Work alongside software team to find commonground on STIGs + Experience analyzing, decomposing, andallocating security controls into executablesecurity requirements at the system, sub-systemand component level + Experience with secure software developmentconcepts (e.g. static code analysis, dynamic codeanalysis, STIG/SRG hardening, etc.) as applied tohigh-level programming languages (C, C++,Java) + Experience with engineering change processesand/or configuration control processesExtensive experience developing and maintainingcore security documentation artifacts for A&APackages including Security Control TraceabilityMatrix (SCTM), System Security Plan (SSP)and/or Information Assurance StandardOperating Procedures (IA SOP), Plan of Action &Milestones (POA&M), and Risk AssessmentReport (RAR) + Extensive knowledge of DoD Security TechnicalImplementation Guides (STIGs) and SecurityRequirements Guides (SRGs) + Background/knowledge working with informationsystems/environments that utilize the OpenMission Systems (OMS) standard and UniversalCommand and Control Standards Initiative (UCI)message set + Expertise/knowledge in both compliance testingand penetration testing methodologies. + Experience with Real-Time Embedded OperatingSystems (e.g. GreenHills INEGRITY, LynxOS,VxWorks, Yocto) + Experience with Agile project management tods(JIRA, VersionOne, etc.) + Experience conducting technical trade studiesand assessments + Must be willing to mentor junior-level teammembers + Experience with creating and presentingtechnical information to senior-level executivesand customers + Demonstrated problem-solving and troubleshooting skills + Proficient technical writing skills + Strong analytical and organizational skills withexcellent communication skills (written andverbal communications) and have the ability towork in a dynamic work environment + Experience working in an aerospace designenvironment with exposure to DOD customersand their accrediting authorities.
•
Full-Time Salary Range:
$120600.00 - $224000.00 At Lockheed Martin, we know mission success starts with taking care of our people. Our Total Rewards program is designed to attract top talent, support your well-being, and help you grow—both professionally and personally. The salary range for this position is as listed on the requisition. Please note that the salary information listed is a general guideline only. Lockheed Martin considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/ training, key skills as well as market(work location) and business considerations when extending an offer.
- Benefits offered:
- Medical, Dental, Vision, Flexible work arrangements and schedules (e.
g., 4x10), 401(k) match, Paid time off, Holidays, Parental Leave, EAP, Flexible Spending Accounts, Education Assistance, Life Insurance, Short-Term Disability, and Long-Term Disability. + Annual short-term and/or long-term incentive compensation programs may be offered depending on the position. Payments under these annual programs are not guaranteed and can vary from year to year and are tied to a range of performance metrics. + For (Washington state applicants only) Non-represented full-time employees: accrue at least 10 hours per month of Paid Time Off (PTO) to be used for incidental absences and other reasons; receive at least 90 hours for holidays. Represented full time employees accrue 6.67 hours of Vacation per month; accrue up to 52 hours of sick leave annually; receive at least 96 hours for holidays. PTO, Vacation, sick leave, and holiday hours are prorated based on start date during the calendar year.
Lockheed Martin is an equal opportunity employer. Qualified candidates will be considered without regard to legally protected characteristics.