We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results

Security Controls Assessor (SCA) / (ISSM)

Modern Technology Solutions, Inc.
tuition reimbursement, 401(k), remote work
United States, Colorado, Colorado Springs
2424 Garden of the Gods Road (Show on map)
Jan 24, 2025
Overview

Modern Technology Solutions Inc. (MTSI) is seeking a Subject Matter Expert (SME) Security Controls Assessor (SCA) with Information System Security Manager (ISSM) experience to join our team in the Colorado Springs, CO area in support of U.S Space Force (USSF). You will be responsible for maintaining compliance with applicable security regulations and leading the Information Assurance program for various classified Information Systems (ISs) across USSF. This position requires an active Top-Secret clearance with SCI eligible.

Why is MTSI known as a Great Place to Work?

  • Interesting Work: Our co-workers support some of the most important and critical programs to our national defense and security.
  • Values: Our first core value is that employees come first. We challenge our co-workers to provide the highest level of support and service, and reward them with some of the best benefits in the industry.
  • 100% Employee Ownership: We have a stake in each other's success, and the success of our customers. It's also nice to know what's going on across the company; we have company wide town-hall meetings three times a year.
  • Great Benefits - Most Full-Time Staff Are Eligible for:
    • Starting PTO accrual of 20 days PTO/year + 10 holidays/year
    • Flexible schedules
    • 6% 401k match with immediate vesting
    • Semi-annual bonus eligibility (July and December)
    • Company funded Employee Stock Ownership Plan (ESOP) - a separate qualified retirement account
    • Up to $10,000 in annual tuition reimbursement
    • Other company funded benefits, like life and disability insurance
    • Optional zero deductible Blue Cross/Blue Shield health insurance plan
  • Track Record of Success: We have grown every year since our founding in 1993

Modern Technology Solutions, Inc. (MTSI) is a 100% employee-owned engineering services and solutions company that provides high-demand technical expertise in Digital Transformation, Modeling and Simulation, Rapid Capability Development, Test and Evaluation, Artificial Intelligence, Autonomy, Cybersecurity and Mission Assurance.

MTSI delivers capabilities to solve problems of global importance. Founded in 1993, MTSI today has employees at over 20 offices and field sites worldwide.

For more information about MTSI, please visit www.mtsi-va.com.


Responsibilities

As a Subject Matter Expert (SME) Security Controls Assessor (SCA) with Information System Security Manager (ISSM) experience you will be responsible for maintaining compliance with applicable security regulations and leading the Information Assurance program for various classified Information Systems (ISs) across USSF Colorado Springs, CO area in support of U.S Space Force (USSF). This position is located in Coloroda Springs, CO with limited remote work opportunity. The position requires an active Top-Secret clearance with SCI eligible. Travel of upto 40% may be required.

Your essential job functions will include but will not be limited to:

  • Performing oversight of the development, implementation, and evaluation of IS security program policy with special emphasis placed upon integration of existing Special Access Program (SAP) and Secure Compartmentalized Information (SCI) network infrastructures.
  • Performing assessments of ISs services based upon the Risk Management Framework (RMF) methodology in accordance with the Joint Special Access Program (SAP) Implementation Guide (JSIG).
  • Reviewing and analyzing Assessment & Authorization (A&A) packages for completeness, accuracy, and document effectiveness of controls, plans, and procedures implementation.
  • Advising the Information System Owner (ISO) and Program Security Officer (PSO) on any assessment and authorization issues.
  • Evaluating Authorization packages and making recommendations to the Subordinated, Delegated and/or Authorizing Official (DAO/AO).
  • Developing and executing a security and privacy assessment plan in accordance with National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53A requirements.
  • Advising the government concerning the impact levels for Confidentiality, Integrity, and Availability for the information on a system.
  • Ensuring completeness of security assessments and that results are documented and preparing the Security Assessment Report (SAR) for the authorization boundary.
  • Evaluating security assessment documentation and providing written recommendations for security authorization to the government.
  • Discussing the recommendation for authorization and submitting the security authorization package to the Subordinate, AO, and DAO.
  • Assessing proposed changes to authorization boundaries, the operating environment, and mission needs to determine the continuation to operate.
  • Assisting the government in compliance inspections and representing the customer on inspection teams.
  • Ensuring organizations are addressing cybersecurity during all phases of the System Development Life Cycle (SDLC) and they are conducting continuous monitoring.
  • Differentiating between the various types of Cross-Domain Solutions (CDS).
  • Assist with joint assessments of Cross-Domain Solutions with other DoD agencies.
  • Advising government program managers on security testing methodologies and processes.
  • Reviewing and assessing procedures for clearing, sanitizing, and destroying various types of hardware and media.
  • Reviewing and assessing test procedures for verification Assessment and Authorization (A&A) and RMF safeguards to meet DoD, Federal, and organizational cybersecurity requirements.
  • Ensuring corrective actions were taken for identified findings and vulnerabilities.
  • Developing and overseeing an effective cybersecurity program.
  • Evaluating host/network access control mechanisms (e.g., access control list).,
  • Ensuring organizations are addressing cybersecurity principles used to manage risks related to the use, processing, storage, and transmission of information or data.
  • Advising on system life cycle management principles, including software security and usability.
  • Monitoring and evaluating the effectiveness of the enterprise's cybersecurity safeguards to ensure they provide the intended level of protection.
  • Preparing and submitting an IATT/ATO package.
  • Preparing and delivering briefings on program and/or assessment status to high-level government and MTSI officials.

Qualifications

  • 14+ years' or more of related experience.
  • 5+ years' or more of experience in the role of ISSM.
  • 5+ years' or more of experience in SAP and SCI Information Systems (IS).
  • Able to demonstrate understanding of cybersecurity needs of systems at various stages of the system development life cycle.
  • Experience with A&A documentation and system authorization artifacts for SAP and SCI systems.
  • Knowledge of federal security requirements and mandates (e.g., RMF, Federal Information Processing Standards (FIPS), National Standards of Information Technology (NIST)).
  • Excellent oral and written communication skills.
  • Ability to work well independently or as a team member.

Qualifications Desired:

  • N/A.

Education Requirements:

  • Master's or bachelor's degree in computer science, software engineering, data science, software development or STEM related specialty and 7 years' related experience in the validation of security configuration of operating systems.

Certifications Requirements:

  • DoD 8140.03 "Cyberspace Workforce Qualification and Management Program".

Clearance Requirements:

  • Top Secret, SCI eligible.
  • SAP eligibility is HIGHLY desired. (Counterintelligence Polygraph may be required).
  • U.S. Citizenship is required for this position.

Location/Travel Requirements:

  • Place of work is Colorado Springs, CO area, remote work opportunity is limited.
  • May require travel up to 40% of time within the continental United States.

Compensation: The pay range for this position in Colorado is $170,000/year to $190,000/year; however, base pay offered may vary depending on established government contract rates, job-related knowledge, skills, and experience, and other factors. MTSI also offers a full range of medical, financial, and other benefits, dependent on the position offered. This information is provided per the Colorado Equal Pay Act. Base pay information is based on market location. Applicants should apply via MTSI's internal or external careers site.

For additional company information, please visit: www.mtsi-va.com

#LI-MH1

#Cybersecurity Engineer

#Information System Security Manager

#ISSM

#MTSIjobs

#MTSI

#LI-Onsite

Applied = 0

(web-6f6965f9bf-tv2z2)