Cybersecurity Lead / SME

22nd Century Technologies, Inc. (TSCTI)

Washington, DC

JOB DETAILS
JOB TYPE
Full-time, Employee
SKILLS
Best Practices, Computer Network Defense (CND), Database Administration, Defense Information Systems Agency (DISA), FISMA - Federal Information Security Management Act, Firewalls, Incident Response, Information/Data Security (InfoSec), Internet Security, Network Security, Regulations, Risk Management Framework (RMF), Security Compliance, Security Information and Event Management (SIEM), Team Lead/Manager, U.S. National Institute of Standards and Technology (NIST), United States Department of Defense (DoD)
QUALIFICATIONS
  • BA/BS in a technical discipline with at least 10 years of relevant experience. 
  • Cybersecurity Service Providers (CSSP) Manager 
  • Excellent written and verbal communication skills, with a keen attention to detail. 
  • Ability to work collaboratively in a team environment and build positive relationships with subject matter experts and stakeholders. 
  • Demonstrated ability to work in a fast-paced, deadline-driven environment. 
RESPONSIBILITIES
  • Deliver a Cybersecurity Status Report that addresses areas such as scanning and patching, Plan of Action and Milestones (POA&M), ongoing certification and accreditation (C&A) activities, and reported incidents/mitigations.
  • Deliver Cybersecurity Executive Briefings that address the status of NDU’s Cybersecurity posture and provide an executive-level overview of the topics outlined within the Cybersecurity Status Report.
  • 2.3.1.7. Cybersecurity Tool Management: ePolicy Orchestrator (ePO), CMRS ESS, ACAS Security Center, SIEM
  • Accreditation Management; Auditing Support; Access Control and Identity Management (IdM) Services; Certification and Accreditation
  • Responsible for network security, patching services and scanning services
  • Software Assurance: management and support of software used over the network, verifying that software is free of vulnerabilities—either intentionally designed into it or maliciously or accidentally inserted into it during or after development.
  • Cloud Security: Provide for the development, implementation, maintenance, and management of NDU’s Cloud Security.
  • Provides daily supervision and direction to the Cyber team.  
LOCATION
Washington, DC
POSTED
Today

Job Summary: 

  • We are seeking a Cybersecurity Lead to lead a team in delivering cybersecurity activities and functions that direct the security, operations, engineering, and defense of NEIS infrastructure, consistent with regulations, policies, memorandums, and directives to reduce attack surface, improve cyber detection/response, and evolve the overall cybersecurity posture against emerging threats.

Responsibilities: 

  • Lead a team in implementing, operating, and maintaining a Layer 7 inspection at the firewalls IAW DISA "Zero Trust" guidance, OMB M-22-09, Continuous Monitoring program IAW NIST SP 800-137, and a SIEM capability IAW OMB M-21-31.
  • Responsible for maintenance of cybersecurity for the NDU enterprise network in accordance with Federal Information Security Management Act (FISMA); National Institute of Standards and Technology (NIST); other Federal, DoD, Chairman of the Joint Chiefs of Staff (CJCS) requirements; and industry best practices.
  • Cyber Network Defense (CND): Responsible for monitoring, analyzing, and responding to data and information security needs of NDU. The Contractor will operate in a digital or networked environment with tasks or responsibilities that fall outside simple tool usage. Alerts that have been identified to be critical shall be addressed 24x7x365.
  • Cyber Incident Response: Provide for the immediate response and resolution of any reported incidents.
  • Develop Cyber Incident After Action Reports after each incident.
  • Continuous Integrated Security Support: Provide continuous integrated support for the day-to-day security compliance activities supporting NDU’s Continuous Monitoring program.
  • Provide continuous integrated support for the day-to-day security compliance activities supporting NDU’s Continuous Monitoring program.
  • Account Artifact Management and Tracking. Maintain Cyber database for all NDU Enterprise authorized users.
  • Cyber and Accreditation Risk Management Framework (RMF) Support.

About the Company

2

22nd Century Technologies, Inc. (TSCTI)

22nd Century Technologies, Inc. (TSCTI) is one of the fastest-growing IT services integrators and workforce solutions providers in the United States. Founded in 1997, TSCTI is a Certified National Minority Business Enterprise (MBE) with a workforce of over 6,000 professionals, including more than 600 cybersecurity subject matter experts (SMEs), supporting clients across all 50 U.S. states, Canada, and Mexico.

Headquartered in Princeton, New Jersey, and McLean, Virginia, TSCTI operates through 14 offices nationwide. Our commitment to quality, security, and operational excellence is reflected in our adherence to industry-leading standards and certified mature processes, including CMMI Level 3 for Development and Services, ISO 20000, ISO 27001, and ISO 9001.

With a strong focus on the public sector, TSCTI currently supports 14 of the 15 Federal Executive Departments, 37 additional federal agencies, all 50 state governments, more than 115 local government agencies, and 37 school districts. Over the past three years, we have significantly expanded our commercial footprint and now serve more than 80 Fortune 500 and commercial clients.

Recognized by Forbes as one of the “Best Companies to Work For,” 22nd Century Technologies consistently exceeds client expectations through a customer-centric approach, delivering exceptional talent and innovative solutions while fostering a culture that motivates, values, and empowers its employees.

COMPANY SIZE
501 - 1000
HEADQUARTERS
McLean, VA, US
FOUNDED
1997