System Cybersecurity Engineer

Odyssey Systems Consulting Group, Ltd.

Colorado Springs, Colorado

JOB DETAILS
JOB TYPE
Full-time
SKILLS
Air Force, Analysis Skills, Applications Security, Business Operations, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Computing, CompTIA Security+, Computer Network Defense (CND), Computer Security, Continuous Deployment/Delivery, Continuous Improvement, Continuous Integration, Cryptography, Customer Support/Service, Cyberspace, Defense Information Systems Agency (DISA), Documentation, Ecosystems, Funding, GSLC - GIAC Security Leadership Certificate, Hypervisors, IAM - Information Assurance Management, Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Leadership, Life Insurance, Maintain Compliance, Military Operations, National Security Agency (NSA), Policy Implementation, Process Improvement, Project/Program Management, Publications, Requirements Management, Risk, Risk Analysis, Risk Management, Risk Management Framework (RMF), Sales Pipeline, Secure Coding, Security Analysis, Security Clearance, Software Administration, Software Development, Software Engineering, Software Testing, Software Validation, Supply Chain Management, System Integration (SI), System Readiness Review (SRR), Systems Analysis, Systems Engineering, Team Lead/Manager, Telemetry, Test Design, Testing, Top Secret Clearance, Traceability, U.S. National Institute of Standards and Technology (NIST), United States Citizen, United States Department of Defense (DoD), Validation Plan, Virtualization, Vision Plan, Willing to Travel
LOCATION
Colorado Springs, Colorado
POSTED
10 days ago
Position Summary:

Odyssey Systems has an exciting new opportunity for a System Cybersecurity Engineer to support SW&SS Directorate program offices at Peterson SFB, CO. This is a full-time position at Peterson SFB with some telework time approved at the discretion of the customer. 

Responsibilities:

Duties include, but not limited to: 

 

  • Labor provided to deliver cybersecurity services are certified in accordance with DoDI 8140.03 and AFMAN 17-1303 standards. 
  • DoDM 8140.03 and AFMAN 17-1303 standards. 
  • Ensure that all system deliverables comply with latest applicable version of NIST SP 800-53, Risk Management Framework as incorporated and directed in DoW and Air Force/Space Force cybersecurity policy, specifically DoDI 8500.01, Cybersecurity, DoDI 8510.01, Risk Management Framework (RMF) for DoD Information Technology, and AFI 17-101, Risk Management Framework (RMF) For Air Force Information Technology (IT).
  • Ensure that cybersecurity policy is implemented correctly on covered systems to both obtain and maintain Interim Authorities to Test (IATTs) and Authority to Operate (ATOs).
  • Direct the discovery, monitorization, and elimination or mitigation of both known and unknown vulnerabilities that could compromise the confidentiality, integrity, or availability of the information being processed, stored, or transmitted by covered systems and maintain eMASS Programs of Action and Milestones (POA&M) for same, to include DISA STIGs and the DoD IAVA/IAVM process.
  • Conduct Cybersecurity Risk Management for additions/changes to all systems via the Security Impact Assessment (SIA) process.
  • Develop a focused approach in the continual improvement of processes and producers to manage the RMF packages in Enterprise Mission Assurance Support Service (eMASS), Xacta and SGN/CORE.
  • Integrate Systems Security Engineering (SSE) into the DoW acquisition lifecycle, providing inputs on requirements, evaluating prime contractor deliverables (CDRLs), and serving as the primary cybersecurity SME during major program technical reviews (e.g., System Requirements Review [SRR], Preliminary Design Review [PDR], Critical Design Review [CDR]).
  • Oversee and validate contractor secure software development practices, ensuring the proper execution of automated security scanning (e.g., Static/Dynamic Application Security Testing [SAST/DAST], Software Composition Analysis [SCA]) within DevSecOps pipelines, and manage program Supply Chain Risk Management (SCRM) efforts.
  • Design Test & Evaluation (T&E) Requirements for RMF Control identification, to include building implementation plans and validation plans, overseeing broader Cybersecurity Test and Evaluation (T&E) strategies (e.g., Test & Evaluation Master Plan [TEMP] inputs, cooperative/adversarial assessments), in accordance with DoDM 5000.103, Cyber Developmental Test and Evaluation, and DoDI 5000.89, Test and Evaluation, assist with the entry and review of entered information to the Information Technology Investment Portfolio Suite (ITIPS), assist with the preparation and review of Federal Information Security Modernization Act documentation.
  • Advise on the secure design and integration of continuous monitoring architectures, and Zero Trust models, to include ensuring systems can securely interface and share required telemetry with enterprise Defensive Cyberspace Operations (DCO) and Cybersecurity Service Providers (CSSP).
  • Perform the full range of cyber security and information security processes, procedures, and functions, to include reviewing data, maintaining/implementing and compliance notification of required IAVAs, NOTAMs and cybersecurity posture for systems. This includes leading cybersecurity working groups to coordinate efforts across engineering, software, and test stakeholders.
  • Advise division leadership on architecture mitigations to limit risk posture within the systems and represent the risk posture in briefings and slides to DoD Chief Information Officer, Headquarters USSF and USSTRATCOM; utilize National Institute of Standards and Technology (NIST) 800 series special publications in the development of new system artifacts to ensure compliance.
Qualifications:

Minimum Qualifications:

Citizenship:  Must be a US Citizen

Clearance:  Must have and be able to maintain a Top-Secret Security Clearance

Certification:  DoD IAM Level I (CAP, CND, Cloud+, GSLC, Security+ CE, CISSP)

Education: High School Diploma

Years of Experience: 10 years’ directly related experience with proper certifications as described in the functionally aligned job description, 5 of which must be in the DoD; OR,

  • BA/BS degree and 5 - 8 years of experience in the respective technical/professional discipline being performed, 3 of which must be in the DoD; OR,
  • MA/MS degree and 2 - 3 years of experience in the respective technical/ professional discipline being performed, 2 of which must be in the DoD 

Additional Experience:

  • Demonstrated experience building, managing, and successfully navigating Enterprise Mission Assurance Support Service (eMASS) packages through the complete Risk Management Framework (RMF) lifecycle to achieve Interim Authorities to Test (IATT) and Authorities to Operate (ATO).
  • Demonstrated experience in software engineering, secure coding practices, and the direct administration or engineering of DevSecOps Continuous Integration/Continuous Deployment (CI/CD) pipelines.
  • Experience securing and evaluating virtualization technologies, container orchestration platforms (e.g., Kubernetes), and hypervisors.
  • Experience engineering or assessing systems designed to meet Zero Trust Architecture (NIST SP 800-207) principles.
  • Familiarity with crypto-agile architectures and evolving NSA cryptographic modernization standards (CNSA 2.0).
  • Familiarity with Model-Based Systems Engineering (MBSE) tools (e.g., Cameo, DOORS) for requirements traceability.
  • Experience navigating the Mission-Based Cyber Risk Assessment (MBCRA) process to translate threat intelligence into actionable engineering requirements.
  • Familiarity with securing Department of Defense Cloud Computing Security Requirements Guide (CC SRG) across various impact levels.
  • Possesses the advanced knowledge, experience and recognized ability to be considered an expert in their technical/professional field.
  • Possess the ability to perform tasks and oversee the efforts of junior and mid-level personnel within the technical/professional discipline.
  • Demonstrate advanced knowledge of their technical/professional discipline as well as possess a comprehensive understanding and ability to apply associated standards, procedures and practices in their area of expertise.

 

Preferred Experience:

Certification:  DoD IAM Level II/III (CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO,)

Education:  BA/BS degree

Years of Preferred Experience:  10 years of experience in the respective technical/professional discipline being performed, 5 years of which must be in the DoD

 

Additional Information:,

Location:  Peterson SFB, CO

Hybrid: Some telework is allowed, subject to change per the customers’ discretion 

Travel Requirement:  25%

 

#LI-JC1

 

Company Overview:

Odyssey is a world-class technical, engineering, and integration company serving the warfighting ecosystem with airborne integration, ISR, C2, and warfighter readiness capabilities. Odyssey meets the military’s operational needs by integrating layered defense systems from equipment, technology, and services to data, information, and business operations. We streamline defense acquisition and sustainment, engineering the technical battlefield with domain-specific proficiency to ensure lethality. Odyssey is dedicated to excellent contract execution, peak organizational performance, and fostering a workplace built on employee care.

 

Odyssey is proud to live out our core values of commitment, ambition, and respect in our work and communities through OdysseyCares, a philanthropic group focused on giving back through direct donations, an employer match program, and volunteering events.

 

Please note: Final compensation for this position will be determined by various factors such as the Federal Government contract labor categories and contract wage rates, relevant work experience, specific skills and competencies, geographic location, education, and certifications.

 

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities

Please Note::

Final compensation for this position will be determined by various factors such as the Federal Government contract labor categories and contract wage rates, relevant work experience, specific skills and competencies, geographic location, education, and certifications.

 

This position is filled through continuous recruitment and will remain open until a sufficient pool of applications has been received.

Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, Tricare supplement, short-term disability, long-term disability, 401(k) match, flexible spending accounts, health savings accounts, employee assistance program, learning and development benefit, paid time off, and holidays.

Odyssey Benefits

About the Company

O

Odyssey Systems Consulting Group, Ltd.

Established in 1997, Odyssey Systems Consulting Group, Ltd. is a leading provider of management, analytical, and technical support services for government and private-sector customers. Odyssey delivers innovative solutions in response to complex and challenging customer requirements.

Our portfolio of successful projects demonstrates our ability to efficiently plan, staff, and manage efforts of all scopes and sizes. Our employees provide tailored functional expertise in technology, engineering, and management principles. We offer vast experience in acquisition strategy development and document generation; source selection support; cost, schedule, and performance management; systems engineering and analysis; risk management; cost/benefit and earned value analysis; computer-based training development; communication planning and operations; and lifecycle sustainment and product support. Odyssey also offers research and acquisition support services to the DoD medical domain, leading DoD medical mission support through several prime services contracts.

A six-time Inc. 5000 honoree, Odyssey has earned recognition on the 2019 Inc. 5000 as one of the most successful companies in America. In Inc.’s annual guide to the 5,000 fastest-growing privately held companies in the U.S., we were ranked #162 in the Government Services category, delivering a wide range of services to DoD customers and beyond.

COMPANY SIZE
1,000 to 1,499 employees
INDUSTRY
Aerospace and Defense
EMPLOYEE BENEFITS
Paid Sick Days, Parking, Professional Development, 401K, Employee Referral Program, Flexible Spending Accounts, Employee Events, Retirement / Pension Plans, Tuition Reimbursement, Life Insurance, Military Leave, On Site Cafeteria
FOUNDED
1997
WEBSITE
http://www.odysseyconsult.com