Find Jobs
Find Jobs Near You – Available Work in Your Location
A&AS
Job Description
TITLE A&AS
- Cybersecurity Specialist
REQ NUMBER
CYB-26-00002 REQUISITIONCATEGORY
ACTIVEFULL-TIME/PART-TIME
- unspecified
LOCATION
Fort Belvoir, VADESCRIPTION
Pay Rate:
The annual base salary range for this position $135,000- 180,000.
Position Location:
Fort Belvoir, VA Telework/Work-from-Home Authorized:
Yes- When Authorized/Hybrid About the
Role:
This position will function as a cybersecurity specialist and subject matter expert (SME) providing Advisory & Assistance Services (A&AS) support for the Defense Threat Reduction Agency (DTRA), Cooperative Threat Reduction (CTR) Directorate. DTRA provides crosscutting solutions to enable the Department of Defense, the United States Government, and international partners to deter strategic attacks against the United States and its allies; to prevent, reduce, and counter WMD and emerging threats; and to prevail against WMD-armed adversaries in crises and conflicts. In coordination with appropriate military organizations, other government agencies, and global partners, the CTR Program works cooperatively with partner governments to reduce the threat to the U.S. and its allies from WMD and related materials, technologies, and expertise, including associated delivery systems and infrastructure. The A&AS Cybersecurity Specialist position will be a critical component of the integrated team approach to tackling the challenges associated with this mission. This position will be one of several cybersecurity SMEs working on a dedicated cybersecurity team supporting the CTR mission. As a member of theA&AS CTR
cybersecurity team, you will have the opportunity to contribute to and shape the way CTR engage with DTRA's foreign partners in addressing cybersecurity threats. This role will be involved in a broad range of Information and Communications Technology (ICT), Operational Technology (OT), Cyber Physical Systems (CPS), and cybersecurity support and advisory services for CTR and the countries it supports. The ideal candidate will have a diverse skillset, with expertise in areas including cyber intelligence analysis, cyber technical evaluations, and cyber acquisition support. DUTIES- Evaluation of IT and cybersecurity posture of countries around the globe, utilizing the varied national, international, and country specific standards (ISO 27000 series, ISO/IEC 15408 Series, IEC, 62443 Series, NIST SP 800 Series, RMF, and others).
- Research and analysis of cybersecurity policies, legislation, capabilities, and practices in supported nations.
- Development of cybersecurity acquisitions documents such as Statements of Work (SOWs), Performance Work Statements (PWS), and Statements of Objectives (SOO).
- Review(s) of project proposals.
- Cybersecurity requirements review & development.
- Training program reviews.
- Support Program Managers with quality control (cost/schedule/scope, budget, deliverables, expenditures, and other needs).
IT/OT/CPS
system and infrastructure construction design reviews.- Cybersecurity assessment report & mitigation plan reviews.
- Participation in cybersecurity working groups and strategy development meetings.
- Facilitating cybersecurity knowledge transfer to non-cybersecurity-SME personnel.
- Support cybersecurity components of management cycle activities such as Program Management Reviews (PMRs), Annual Reports to Congress, Annual Spend Plans, and metrics reviews as required.
- Other duties as assigned.
Experience Requirements:
REQUIRED SKILLS AND QUALIFICATIONS
- Must be eligible to obtain and maintain a DoD Security Clearance (SECRET), with US Citizenship required. Dual citizenship may disqualify candidates from meeting this requirement.
- 5+ years of related work experience.
- Bachelor's degree in computer science or a technology related field.
- Experience reviewing IT security and compliance documentation.
- Experience performing risk assessments and analyzing risk.
- Familiarity with vulnerability tools and management processes.
- Skill in conducting security design reviews and recognizing cybersecurity vulnerabilities.
- Working knowledge of application development and security.
- Understanding of cloud architecture and security concepts.
- Strong analytical and writing skills.
- Excellent teamwork, organizational, communication, and collaboration skills.
- Must be able to travel internationally.
- Demonstrated proficiency with Microsoft Office tool suites.
- Ability to work collaboratively and independently.
- Strong attention to detail, communication, critical thinking, and problem-solving skills.
DESIRED SKILLS AND QUALIFICATIONS
CISSP, CCSP, CISA, CISM, IFBA PC
in Cyberbiosecurity, or similar certification(s).- 5+ years, or more, of experience with IT Security frameworks (ISO, FedRAMP, NIST, etc.).
- Previous experience as an
ISSE/ISSO.
- Knowledge of Information Security Audit and/or IT Risk Management functions.
- Experience supporting the formal testing required by government/industry accrediting authorities and preparing System Security Plans.
- Experience with application security or development experience.
- Operating system and network security management
- Experience in the Life Sciences, Biotechnology, or other related field.
- Experience with web-based and cloud-native architectures.
- Experience with cloud deployment models and cloud security.
- Experience managing security incident response and after-action remediation.
- Experience conducting open-source intelligence (OSINT) research and analysis.
- Experience with offensive network security techniques (i.e. penetration testing).
- One (1) or more professional certifications in biorisk management, physical security, chemical security, nuclear security, or similar certification in another related field.
Other Required Skills & Abilities:
- Must be able to effectively communicate with customer and fulfill all duties and responsibilities as listed in the contract.
- Must be proficient in Microsoft Office suite including, but not limited to: Word, PowerPoint, Excel, and Outlook.
- Perform other duties, as assigned
Education Requirements:
- Bachelor's degree in computer science or a technology related field.
Security Clearance Requirements:
Secret Clearance Must be able to obtain aSecret Clearance US Citizenship Requirements:
This position supports a U.S. Government Contract whose terms require Sawdey Solution Services to staff it only with U.S. Citizens. Benefits atSawdey Solution Services:
At Sawdey Solution Services, we offer an extensive benefits package. Our employee-focused benefits for full-time employees include:Vibrant Company Culture:
Become an integral part of our positive, encouraging, and uplifting team culture; we are all on this mission together!Healthy Work-Life Balance:
We place a strong emphasis on work-life balance; we don't just 'talk the talk' in terms of work-life balance, we 'walk the walk'! We not only support, but highly encourage, prioritizing your health and well-being.Competitive Compensation Package:
Competitive rates with comprehensive medical, dental, and vision benefits for you, your spouse, and your dependents. o Health Saving Account (HSA) with employer contributions. o Dependent-care Flexible Spending Account (FSA). o Competitive Paid Time Off (PTO) and Federal Holiday Observance. o Immediately vested 401 (k) with employer matching. o Employee Assistance Program (EAP). o Employee Referral program with compensated referrals! o Additional benefits offered.Grow With Us:
We offer a paid Training and Tuition reimbursement program to help you advance and excel in your career. We prioritize internal promotions and success. Sawdey Solution Services firmly believes in our employees and advocates an environment to promote from within, which serves to boost morale while keeping high performers engaged and challenged. We also place the utmost importance on team building and collaboration in a remote environment. To promote these beliefs, you will also find additional benefits and programs that will enrich your career here atSawdey Solution Services:
- Wellness Challenges.
- Focus on internal career advancement and growth.
ABOUT THE ORGANIZATION
Sawdey Solution Services, anISO 9001
certified andCMMI-SVC
v2 Level 3 appraised corporation, has built a nationwide and global footprint as a leading government contracting organization. Specializing in cybersecurity, systems engineering, and operational support, Sawdey invites you to be a part of a team that's at the forefront of securing our nation. Operating successfully since 2001, we are a Woman Owned/Service-Disabled Veteran Owned Business. We provide our clients with premier professional services and technology solutions in an employee-centric environment. We are extremely proud of the culture we have created. Why Choose Us?Mission-Critical Work:
We play a vital role in ensuring the security of our nation's digital infrastructure.Professional Growth:
Embrace the opportunity to take on diverse and dynamic roles that challenge and inspire you.Collaborative Culture:
You are joining a unified team where your unique contributions are valued and celebrated.Who We're Looking For:
Hardworking Individuals:
If you're someone who takes initiative, loves a challenge, and is committed to excellence, you'll feel right at home here.Talented Professionals:
Whether you're an expert in your field or a rising star, we recognize your potential and support your effort toward success.Diverse Perspectives:
Our strength lies in our diversity. We believe that a diverse team fosters creativity, innovation, and achievement.EOE STATEMENT
We are a Disabled-Veterans-41 CFR 60 1.4, Equal Opportunity Employer. Devoted to creating a diverse and friendly workplace, we do not discriminate against any employee or applicant because of race, age, sex, color, physical or mental disability, religion, sexual orientation, gender identity, marital status, national origin, or veteran status. Our goals and beliefs are that diverse backgrounds and experiences empower and enable us to offer our customers an unmatched level of service. People of color, women, LGBTQIA+, veterans, and persons with disabilities are encouraged to apply!Benefits
- Paid Time Off (PTO)
- Financial Aid/Assistance
- Professional Development
- 401(k) Plans
Career Insights for Vulnerability Analyst / Penetration Tester
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on national data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Vulnerability Analyst or Penetration Tester probes for and exploits security vulnerabilities in web-based applications, networks and systems. Penetration Tests are designed to achieve a specific, attacker-simulated goal and should be requested by customers who are already at their desired security posture. A typical goal could be to access the contents of the prized customer database on the internal network, or to modify a record in an HR system. Vulnerability Assessments are designed to yield a prioritized list of vulnerabilities and are generally for clients who already understand they are not where they want to be in terms of security. The customer already knows they have issues and simply need help identifying and prioritizing them.
$121,440 / year median in the U.S.
+4% projected growth