Amyx is seeking a Cyber Security Analyst Level 2 located in McClellan, CA . This position supports the DMEA information systems division at the Defense Microelectronics Activity (DMEA) . Responsibilities The Cyber Security Specialist Level 2 will guide efforts certifying the customer information systems are compliant with NIST standards and guidelines. The systems include Unclassified Computing Environment (DUCE), Test and Development Network (TDnet), SIPRNet Computing System (DSCS), Research and Development Network (DRDN), multiple unclassified enclaves, and all Unclassified stand-alone computers. Primary responsibility is to maintain assigned customer IT Systems RMF authorizations accurately and on schedule, while sustaining, maintaining or generating customer vulnerability management, asset management, and risk management tools and processes. Daily responsibilities include: Participating in risk assessment during the Certification and Accreditation (C&A) process. Designing, developing, implementing, and integrating information assurance architectures, systems, or system components for use within data center, network, and enclave environments. Continuously maintaining a comprehensive list of STIGs applicable to client information systems based on RMF control selection, system owner/administrator interviews and detailed analysis of Host Based Security System (HBSS) data (where available), ACAS scans, and reports. Participating in information systems risk assessments and designing security countermeasures to mitigate identified risks. Verifying architecture and design of DoD information systems (ISs) are functional and secure. As necessary, design and develop IA or IA enabled products, interface specifications, and engineer approaches to secure the environment. Assessing threats to the environment; and providing input on the adequacy of security designs and architectures. Reporting to senior IA architect, IA manager, or AO for general IA operations, with additional reporting to senior management regarding network operational requirements. Providing technical research, analysis and reports interpreting client’s vulnerabilities, while delivering technical expertise for risk management decisions and documentation requirements for DoD ISs. Analyzing trends, emerging technologies, and threats for potential impact on the security architect and posture. Developing POA&Ms and Risk Management Framework (RMF) Control artifacts as required. Collecting and addressing Information Assurance Vulnerability Management (IAVM) of Information Assurance Vulnerability Alerts (IAVA) through guidance set forth by USCYBERCOM, DISA, NIST, NSA and client for Vulnerability and Penetration Testing. Must have the ability to communicate accurate information Supported Technologies: ACAS HBSS Microsoft Office Products Cisco Network Equipment Windows Servers 2012/2016 Windows Desktop Red Hat Enterprise Linux, eMASS (Future) EiQ SecureVue operator Must have the ability to communicate accurate information
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level
Number of Employees
501-1,000 employees