Huntington Ingalls Industries-posted 15 days ago
Full-time • Mid Level
Onsite • Hanscom Air Force Base, MA
5,001-10,000 employees
Transportation Equipment Manufacturing

HII is seeking a talented and motivated Cybersecurity Assessment and Authorization (A&A) Specialist to join our dynamic team supporting the Air Force Cloud and DevSecOps environment. As a vital member of our Security Control Assessor (SCA) team, you will play a critical role in ensuring the security and compliance of cutting-edge IT systems that directly empower the Air Force warfighter. This is an exciting opportunity to be at the forefront of cybersecurity innovation and contribute to the defense of our nation.

  • Cloud Security: This role will serve as the senior cloud security practitioner in the group. A wide variety of experiences in DevSecOps, cloud engineering, or cloud compliance is necessary. Ability to apply both DoD best practices such as the Cloud Security Requirements Guide and Secure Cloud Computing Architecture is critical. Ability to provide analysis of cloud architecture based on these policies is critical.
  • Assessment: Conduct independent cybersecurity assessments of assigned programs, adhering to the Risk Management Framework (RMF) and Air Force policies. Perform technical testing and validation of cybersecurity posture, based on government and industry best practices, and the implementation of cybersecurity controls. Identify vulnerabilities and recommend remediation strategies to strengthen overall security posture.
  • Authorization: Document assessment findings in a comprehensive Security Assessment Report (SAR). Analyze vulnerability and threat information to identify and enumerate risks. Develop and deliver concise risk reports and briefings to the Authorizing Official and program leadership, ensuring stakeholders understand potential impacts and recommended mitigations. Collaborate with stakeholders to develop and implement effective risk mitigation plans
  • Provide guidance and support to clients on cybersecurity best practices for their cloud environments. Knowledge of CIS Cloud Security Benchmarks is important for ensuring proper cloud configuration hardening. Ability to use console, parse json, and work towards automating compliance checks is ideal.
  • Utilize industry-leading security tools to identify and mitigate vulnerabilities. Proficiency in cloud native security tools such as AWS Security Hub, Guard Duty, Microsoft Defender or Sentinel
  • Collaborate effectively with system owners, developers, and stakeholders. Build strong working relationships to ensure security is integrated throughout the system development lifecycle.
  • Communicate technical information clearly and concisely to diverse audiences. Prepare and deliver executive-level briefings and reports to senior management, effectively communicating complex technical topics.
  • Produce high-quality technical documentation. Develop clear, understandable, and actionable reports on diverse technical security and policy issues.
  • Experience with one or more cloud providers such as AWS, Microsoft Azure, GCP, or OCI is essential; familiarity with government cloud environments (e.g., Cloud One or CloudWorks) is a plus
  • Strong understanding of information security principles: access control, authentication, system hardening, vulnerability management, and data protection.
  • Practical IT experience across a range of environments and technologies such as Windows and Linux operating systems, containerized platforms, cloud services, and DevSecOps practice.
  • A Secret clearance is required.
  • Must have a DoD 8140 / 8570 compliance certification
  • AWS Certified Security Specialist, AWS Certified Solution Architect, Azure Security Engineer, or similar
  • best-in-class medical, dental and vision plan choices
  • wellness resources
  • employee assistance programs
  • Savings Plan Options (401(k))
  • financial planning tools
  • life insurance
  • employee discounts
  • paid holidays and paid time off
  • tuition reimbursement
  • early childhood and post-secondary education scholarships
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service