ASRC Federal Holding Company logo

Senior Cyber Security Engineer

ASRC Federal Holding Company

  • Ashburn, VA
  • 3 days ago

    Highlights

    Summary: The Cybersecurity Engineer / Information System Security Engineer (ISSE) will support cybersecurity engineering, security validation, vulnerability scan readiness, and ATO evidence activities for Unattended Ground Sensor (UGS) and operational technology systems. The position will support security reviews for UGS devices and supporting infrastructure, including embedded systems, sensors, cameras, receivers, base stations, network-connected devices, and related management platforms.

    Numbers & Facts

    LocationAshburn, VA
    IndustryAerospace and Defense
    Company Size5,000 to 9,999 employees
    Year Founded2003
    Websitehttp://www.asrcfederal.com

    Description

    ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work

    Cybersecurity Engineer / ISSE - Operational Technology

    Work location: Onsite (Ashburn, VA)

    Clearance: Public Trust (successful completion of government background investigation)

    Summary:

    The Cybersecurity Engineer / Information System Security Engineer (ISSE) will support cybersecurity engineering, security validation, vulnerability scan readiness, and ATO evidence activities for Unattended Ground Sensor (UGS) and operational technology systems. This role supports OIT-OpsTech lab validation efforts while also contributing to broader CBP cybersecurity, CSD coordination, and field-alignment activities.

    The position will support security reviews for UGS devices and supporting infrastructure, including embedded systems, sensors, cameras, receivers, base stations, network-connected devices, and related management platforms. The Cybersecurity Engineer / ISSE will collaborate stakeholders to help ensure security considerations are incorporated into lab validation, documentation, and future field-alignment planning.

    Responsibilities:

    As a key member of the OIT-OpsTech support team, the Cybersecurity Engineer / ISSE will support secure validation and documentation of operational technologies before broader field alignment or production-like implementation.

    • Support cybersecurity engineering and ISSE activities for UGS and operational technology systems, with emphasis on lab validation, security readiness, and documentation.
    • Support CSD VAT/Nessus scan readiness, including asset identification, scan scope, credential availability, scan limitations, vendor constraints, and device impact considerations.
    • Support CSD SOC/Splunk readiness, including identification of available telemetry, log sources, logging limitations, monitoring requirements, and security-relevant events.
    • Support firmware/software update validation, security update review, vendor release note review, checksum/hash validation, and security impact tracking.
    • Document vulnerabilities, findings, limitations, remediation actions, compensating controls, and retest results in support of lab validation and ATO-related evidence.
    • Provide security input to lab test plans, validation packages, acceptance recommendations, and Phase 2 handoff materials.
    • Support configuration and change management by assessing whether proposed changes affect validated baselines, security posture, scanning requirements, monitoring, or field-alignment readiness.
    • Coordinate with stakeholders to support secure integration and validation of UGS technologies.
    • Support security-related documentation, including scan readiness checklists, security considerations, vulnerability tracking, and ATO evidence inputs.
    • Provide security guidance to lab team members and support security audits, assessments, and evidence requests as needed.
    • Support lab incident/security event handling by documenting security events, assessing validation impact, preserving evidence, and coordinating with appropriate stakeholders.

    Qualifications:

    • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field; equivalent experience may be considered.
    • Minimum of 5-7 years of experience in cybersecurity, security engineering, ISSE, vulnerability management, or security assessment roles.
    • Experience supporting RMF, ATO, POA&M, security control evidence, vulnerability remediation, or continuous monitoring activities.
    • Experience with vulnerability scanning tools such as Tenable Nessus or equivalent.
    • Familiarity with SIEM/logging platforms such as Splunk and ability to identify useful telemetry/log sources.
    • Experience assessing or supporting network-connected devices, embedded systems, operational technology, IoT, cameras, sensors, or field technology environments.
    • Understanding of security hardening, firmware/software update validation, configuration baselines, change control, and risk documentation.
    • Ability to document technical findings, limitations, test results, and security recommendations clearly for technical and program stakeholders.
    • Ability to coordinate across cybersecurity, engineering, network, test, vendor, and program teams.
    • Strong analytical, troubleshooting, and communication skills.
    • Experience with DHS/CBP environments, NIST, FISMA, RMF, or federal cybersecurity requirements preferred.

    Certifications:

    • CompTIA Security+ or equivalent baseline cybersecurity certification required or strongly preferred.
    • CISSP, CISM, CISA, CASP+, CySA+, or equivalent preferred.
    • Tenable/Nessus, Splunk, vulnerability management, incident response, or continuous monitoring certifications are beneficial.
    • Operational technology, IoT security, or industrial/field technology security training is a plus.

    We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

    EEO Statement

    ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.

    Benefits

    Military Leave, On Site Cafeteria, Parking, Prescription Drug Coverage, Professional Development, 401K, Employee Referral Program, Flexible Spending Accounts, Employee Events, Tuition Reimbursement, Work From Home, Life Insurance, Merchandise Discounts

    About Company

    ASRC Federal comprises a family of companies that provide mission-critical services to federal government agencies dedicated to defense, civil and intelligence support. Our customer-focused service delivery model and emphasis on operational excellence are foundational elements infused in all our companies. The reliability and quality of day-in, day-out service delivery from our family of companies ensure our customers that we keep our sights on their mission-critical priorities.

    Similar Jobs

    See more jobs