-
Cyber Security Analyst II
- Mission Support and Test Services (Las Vegas, NV)
-
Job Description
Mission Support and Test Services, LLC (MSTS) manages and operates the Nevada National Security Site (NNSS) for the U.S. National Nuclear Security Administration (NNSA). Our MISSION is to help ensure the security of the United States and its allies by providing high-hazard experimentation and incident response capabilities through operations, engineering, education, field, and integration services and by acting as environmental stewards to the Site’s Cold War legacy. Our VISION is to be the user site of choice for large-scale, high-hazard, national security experimentation, with premier facilities and capabilities below ground, on the ground, and in the air. (See NNSS.gov for our unique capabilities.) Our 2,750+ professional, craft, and support employees are called upon to innovate, collaborate, and deliver on some of the more difficult nuclear security challenges facing the world today.
+ MSTS offers our full-time employees highly competitive salaries and benefits packages including medical, dental, and vision; both a pension and a 401k; paid time off and 96 hours of paid holidays; relocation (if located more than 75 miles from work location); tuition assistance and reimbursement; and more.
+ MSTS is a limited liability company consisting of Honeywell International Inc. (Honeywell), Jacobs Engineering Group Inc. (Jacobs), and HII Nuclear Inc.
Responsiblities
MSTS is seeking a candidate for the role of Policy and Governance Cyber Security Analyst II for the Global Mission Communications Programs (GMCP), Emergency Communications Network (ECN) Cybersecurity Department. The ECN provides global communications on behalf of DOE/NNSA using mobile technology, to include satellites and additional services such as video-teleconferencing.
Key Responsibilities
+ Serve as a Cyber Security Analyst for the Emergency Communications and Services Division (ECSD), Emergency Communications Network (ECN) Cyber Security Department located at the Remote Sensing Laboratory, Nellis (RSLN) on Nellis Air Force Base in Nevada.
+ Perform work of limited scope and basic complexity, taking direction from more senior staff.
+ Assist in researching, compiling, and analyzing technical data by applying knowledge of technical principles, theories, standards, practices, and procedures.
+ Assist the ISSM and ISSOs with the execution of their assigned duties.
+ Assist with data calls, FISMA reporting, compliance scanning and reporting, continuous monitoring and compiling reports for auditors.
+ Assist with the coordination, management, and reporting of Plan of Action and Milestones and Corrective Action Plans.
+ Performs Security Test and Evaluations of information systems in support of a security plan.
+ Writes basic information system security plans (ISSPs) for unclassified systems.
+ Completes assessment and authorization of information systems on unclassified and classified systems and networks, assists with the completion and mitigation of security testing and evaluations results.
+ Participate in incident response teams to detect, respond to, contain and remediate cyber threats.
+ Support forensic/incident response activities and may monitor intrusion detection/prevention systems (IDS/IPS), security incident and event management (SIEM) tools, endpoint security tools, email gateways, firewalls, and network infrastructure.
+ Review current Cyber Security threat and assists the Threat Evaluation Team with mitigating vulnerabilities identified.
+ Identify, report, and assist in the remediation of Cyber Security threats and vulnerabilities.
+ Participates in the discussions on the architecting of networks and systems with a security focus, ensuring systems are developed in accordance with federal law, customer requirements, assessment and authorization requirements, and industry best practices.
+ Reviews purchase requests for technology items and provides input to senior level Cyber Security staff regarding the risk associated with purchases.
+ Collaborates with other outside Cyber Security interests such as Counterintelligence, other DOE sites, US-CERT, and law enforcement.
+ Conducts a variety of Cyber Security policy compliance tasks such as discovering unauthorized devices, conducting site surveys for non-compliance, and ensuring network access requirements are met.
+ Reviews security configuration reports for compliance with approved enterprise or ECN baselines or hardening guides.
+ Assists with attaining authorizations to connect expansion ECN nodes.
+ Reviews engineering change requests and provide security considerations and conditions for cyber approval.
+ Duties will include the development, implementation and management of the Cyber Security Program (CSP) and the development and implementation of the Risk Management Framework (RMF) as it applies to ensuring the confidentiality, integrity, availability and privacy of all categories of data in all forms throughout the data life cycle. As a cyber security point of contact for the Policy and Governance team, the Cybersecurity Analyst must have a working knowledge of system functions, cyber security policies, cyber security protection measures, familiarity with DOE, NNSA, Federal and DoD regulations pertaining to cyber security, the formal authorization process and day-to-day operations to include data calls and other short suspense requirements and deliverables.
+ Contribute in a team environment to evaluate new technologies, provide technical troubleshooting support, and provide recommendations for the direction of future LAN/WAN client server environments. Travel as part of an installation or restoration team when directed and participate as a deployed member of the National Emergency Response Groups when required. Promotes project management best practices and continuous improvement. Accept individual responsibility and accountability for environment, safety, health, and quality processes within personal control, personal safety, and the safety of co-workers.
+ Contribute to an overall productive and respectful work environment by providing excellent customer service and working in a positive, collegial manner at all times. Maintains cooperative and respectful working relationships with Cyber Security Staff, other divisions, and other customers.
+ Support national emergency response groups’ emergency response drills, exercises, and real-world events through on-call availability and travel via commercial and military aircraft when required.
Qualifications
+ Bachelor’s degree or equivalent in a computer-related field and at least 2 years of experience in a related field.
+ Demonstrates an understanding of principles, theories, standards, practices, protocols, and procedures used in Cyber Security.
+ Knowledge of network-based services and client/server applications, familiarity with intrusion detection systems, familiarity with network architecture and security infrastructure placement.
+ Ability to use network scanning and vulnerability tools and interpret the results.
+ Ability to review and validate remediation efforts of vulnerability scan results.
+ Knowledge of Cyber Security vulnerabilities, mitigation strategies, network architecture, and how to apply security controls.
+ Knowledge of configuration compliance standards, how to check and remediate non-compliant settings.
+ Understanding of encryption technologies, identity and authentication technologies.
+ Ability to maintain strict confidentiality.
+ Ability to communicate effectively in English, both verbally and in writing, sufficient to communicate with co-workers, customers, testify, write clear and concise reports, gather information, and collect information.
+ Ability to use multiple electronic devices including standard office machines, cellular phones, and security appliances.
+ Ability to articulate highly technical processes and information to a non-technical audience.
+ Ability to meet the physical requirements necessary to safely and effectively perform all assigned duties.
+ Knowledge of the Emergency Communications Network (ECN), RSL mission is desired.
+ Preferred qualifications:
• GIAC Security Essentials (GSEC)
• GIAC Critical Controls Certification (GCCC)
• GIAC Certified Windows Security Administrator (GCWN)
• Certified Information Security Manager (CISM)
• Systems Security Certified Practitioner (SSCP)
+ The primary work location will be based at the Remote Sensing Laboratory at Nellis Air Force Base, Las Vegas, NV (RSL-N).
+ Work schedule for this position will either be 4/10’s, 9/80, or 5/8’s (per management discretion). Must be willing to perform on-call duty and ensure availability to work non-standard hours.
+ Personnel may be requested by leadership to work in excess of 40 hours per week due to projects, activities, and emergences; critical operational demands may occasionally require off-shift work.
+ Pre-placement physical examination, which includes a drug screen, is required. MSTS maintains a substance abuse policy that includes random drug testing.
+ Must possess a valid driver’s license.
MSTS is required by DOE directive to conduct a pre-employment drug test and background review that includes checks of personal references, credit, law enforcement records, and employment/education verifications. Applicants offered employment with MSTS are also subject to a federal background investigation to meet the requirements for access to classified information or matter if the duties of the position require a DOE security clearance. Substance abuse or illegal drug use, falsification of information, criminal activity, serious misconduct or other indicators of untrustworthiness can cause a clearance to be denied or terminated by DOE, resulting in the inability to perform the duties assigned and subsequent termination of employment. In addition, Applicants for employment must be able to obtain and maintain a DOE Q-level security clearance, which requires U.S. citizenship, at least 18 years of age. Reference DOE Order 472.2 (https://www.directives.doe.gov/directives-documents/400-series/0472.2-BOrder-chg1-pgchg) , “Personnel Security”. If you hold more than one citizenship (i.e., of the U.S. and another country), your ability to obtain a security clearance may be impacted.
**Department of Energy Q Clearance** (position will be cleared to this level). Reviews and tests for the absence of any illegal drug as defined in 10 CFR Part 707.4 (http://www.ecfr.gov/cgi-bin/text-idx?SID=14b1c770db022992d237769fbe9fc519&mc=true&node=se10.4.707\_14&rgn=div8) , “Workplace Substance Abuse Programs at DOE Sites,” will be conducted. Applicant selected will be subject to a Federal background investigation, required to participate in subsequent reinvestigations, and must meet the eligibility requirements for access to classified matter. Successful completion of a counterintelligence evaluation, which may include a counterintelligence-scope polygraph examination, may also be required. Reference 10 CFR Part 709 (http://www.ecfr.gov/cgi-bin/text-idx?tpl=/ecfrbrowse/Title10/10cfr709\_main\_02.tpl) , “Counterintelligence Evaluation Program.”
MSTS is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, national origin, disability, veteran status or other characteristics protected by law. MSTS is a background screening, drug-free workplace.
Annual salary range for this position is: $75,108.80 - $112,673.60.
Starting salary is determined based on the position market value, the individual candidate education and experience and internal equity.
-
Recent Jobs
-
Cyber Security Analyst II
- Mission Support and Test Services (Las Vegas, NV)
-
Senior Lead Software Engineer- AI Platform engineer
- JPMorgan Chase (Seattle, WA)
-
Applications Engineer
- Allied Universal (Sunnyvale, CA)
-
Administrative Care Technician Progressive Care
- HCA Healthcare (Kansas City, MO)