Cybersecurity Lead Manager

ASRC FederalAlexandria, VA
Onsite

About The Position

ASRC Federal is hiring a Cybersecurity Lead Manager (SIEM & Enterprise Operations Focus) to support the Department of Defense Education Activity (DoDEA) Enterprise Cybersecurity Support Services contract. This position is located onsite in Alexandria, VA. Position Summary The Cybersecurity Lead Manager will provide program management, technical leadership, and cybersecurity onsite (Alexandria, Virgina) oversight in support of the Department of Defense Education Activity (DoDEA) Enterprise Cybersecurity Support Services contract. This individual serves as the primary interface with Government leadership, responsible for ensuring successful execution of all Performance Work Statement (PWS) objectives, including: Risk Management Framework (RMF) Assessment & Authorization (A&A)Cybersecurity Engineering and OperationsVulnerability ManagementApplication Security and Incident ResponseTechnical Documentation and Reporting The Cybersecurity Lead Manager will ensure delivery of secure, compliant, and mission-aligned cybersecurity services across DoDEA’s global enterprise environment.

Requirements

  • U.S. Citizenship
  • Active SECRET clearance
  • Bachelor’s degree and 5-7 years of experience, in a related field, or equivalent combination of education and experience.
  • Project Management Professional (PMP) certification
  • Certified Information Systems Security Professional (CISSP)
  • Cisco Certified Network Professional (CCNP) (or equivalent)
  • Must meet DoD ADP Level II / IAT Level II or higher requirements.
  • Must comply with all DoD cybersecurity policies and training requirements
  • Demonstrated experience supporting DoDEA or similar DoD cybersecurity environments
  • Proven experience leading enterprise cybersecurity programs
  • Strong background in: RMF / A&A processesCybersecurity engineering and operationsSIEM and security monitoringIncident response and vulnerability management
  • SIEM platforms (e.g., Splunk, Sentinel, or equivalent)
  • Log management, correlation rules, and alerting
  • Network security tools (IDS/IPS, firewalls, HBSS)
  • Cloud security (AWS, Azure)
  • Vulnerability scanning tools (ACAS, SCAP)
  • eMASS and RMF documentation processes

Responsibilities

  • Program Management & Contract Execution
  • RMF & A&A Oversight (Objective 1)
  • Cybersecurity Engineering & Operations (Objective 2)
  • Vulnerability Management (Objective 3)
  • Incident Response & Application Security (Objective 4)
  • Technical Writing & Documentation (Objective 5)
  • Leadership & Team Oversight
  • Serve as the primary point of contact (POC) for the Government COR and stakeholders.
  • Develop, maintain, and execute the Program Management Plan (PMP), including: Risk-adjusted schedulesStaffing and resource planningCommunications management
  • Lead weekly status reporting, monthly reporting, and program review briefings.
  • Ensure all deliverables meet PWS requirements, timelines, and Acceptable Quality Levels (AQLs).
  • Manage contractor personnel, including performance oversight and task prioritization.
  • Oversee execution of RMF Assessment & Authorization (A&A) activities.
  • Ensure completion and quality of: System Security Plans (SSPs)Security Assessment Plans (SAPs)Security Assessment Reports (SARs)Plans of Action & Milestones (POA&Ms)
  • Provide guidance on continuous monitoring strategies and near real-time risk management.
  • Ensure proper use of eMASS for documentation and tracking.
  • Provide leadership for enterprise cybersecurity architecture and operations.
  • Oversee implementation and sustainment of: IDS/IPS, HBSS, firewalls, VPNs, and endpoint securityCloud security architecture (AWS, Azure, etc.)
  • Lead advanced analysis of logs, network traffic, and system artifacts during incidents.
  • Oversee Security Information and Event Management (SIEM) capabilities, including: Development of detection use cases, alerts, and correlation rulesIntegration of threat intelligence and indicators of compromise (IOCs)Optimization of monitoring policies across SIEM, EDR, IDS, and cloud systems
  • Ensure effective log aggregation, normalization, and monitoring across enterprise systems.
  • Drive improvements to real-time monitoring and alerting capabilities supporting CSOC operations.
  • Oversee enterprise vulnerability assessment and remediation programs.
  • Ensure compliance with: IAVM / IAVA requirementsDISA STIGs and SCAP tools
  • Provide leadership on threat tracking, risk prioritization, and remediation strategies.
  • Support development of dashboards and reporting for DoDEA leadership.
  • Lead Tier 3 incident response support and forensic investigations.
  • Oversee: Security testing (penetration testing, SRR, code scanning)DevSecOps security integration
  • Ensure rapid detection, analysis, and containment of cybersecurity incidents.
  • Oversee development of: Policies, SOPs, IT directives, and technical documentationService catalogs and SLAs
  • Ensure all documentation is accurate, compliant, and aligned with DoDEA standards.
  • Provide leadership and direction to: SIEM engineersISSOsCybersecurity engineersTechnical writers
  • Ensure personnel meet DoD 8140 / IAT Level II/III certification requirements.
  • Mentor team members and drive continuous improvement.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service