ASRC Federal Holding Company logo

Senior Information Security Engineer - DOWIN Ops

ASRC Federal Holding Company

  • Seaside, CA
  • 7 days ago
    Want to know if you’re a fit?
    Upload your resume and let our AI show you.

    Skills

    • Administrative Policiesunmatched
    • Analysis Skillsunmatched
    • Best Practicesunmatched
    • CCNA - Cisco Certified Network Associateunmatched
    • CCNP - Cisco Certified Network Professionalunmatched
    • CCSP - Cisco Certified Security Professionalunmatched
    • CISA - Certified Information Systems Auditorunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Code of Federal Regulationsunmatched
    • Communication Skillsunmatched
    • CompTIA Security+unmatched
    • Computer Hackingunmatched
    • Computer Network Defense (CND)unmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Continuous Improvementunmatched
    • Corrective Actionunmatched
    • Customer Support/Serviceunmatched
    • DCDC (Data Center Design Consultant)unmatched
    • Data Collectionunmatched
    • Defense Information Systems Agency (DISA)unmatched
    • Detail Orientedunmatched
    • DoD Directive 8140unmatched
    • DoD Directive 8570unmatched
    • GCFA - GIAC Certified Forensic Analystunmatched
    • GCIH - GIAC Certified Incident Handlerunmatched
    • GSEC - GIAC Security Essentials Certificationunmatched
    • IAT - Information Assurance Technicalunmatched
    • IR (Infrared)unmatched
    • Incident Managementunmatched
    • Incident Responseunmatched
    • Information Technology/Systems Auditunmatched
    • Information/Data Security (InfoSec)unmatched
    • Internet Securityunmatched
    • Leadershipunmatched
    • Microsoft Product Familyunmatched
    • Network Administration/Managementunmatched
    • Operational Auditunmatched
    • Process Improvementunmatched
    • Product Lifecycleunmatched
    • Progress Reportsunmatched
    • Regulationsunmatched
    • Risk Managementunmatched
    • SNAPunmatched
    • SSCP - Systems Security Certified Practitionerunmatched
    • Secret Clearanceunmatched
    • Security Attacksunmatched
    • Splunkunmatched
    • Standard Operating Procedures (SOP)unmatched
    • Status Reportsunmatched
    • Time Managementunmatched
    • Top Secret Clearanceunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • United States Citizenunmatched
    • United States Department of Defense (DoD)unmatched

    Description

    *

    ASRC Federal NetCentric Technology seeks a Cybersecurity Operations Analyst to join one of our Cybersecurity Support Services contracts to support cybersecurity governance and compliance across critical networks, services, and systems. This is an onsite position located in Seaside, California or Alexandria, Virginia (Mark Center). This role is essential for containing, responding to, and eradicating malicious activity while advising leadership on administrative policies, internal controls, and security procedures. The successful candidate will lead high-priority investigations and post-incident analysis to drive continuous improvements in response capabilities and preventive measures. Additionally, this position involves coordinating with section leaders to resolve complex technical challenges and preparing comprehensive progress reports for program leadership and DOW stakeholders to ensure full alignment with enterprise risk management and information systems audit functions. Must be on-site 5 days a week at either Work locations which is Seaside, California or Alexandria, Virginia.

    Key Responsibilities:

    • Lead response activities for USCYBERCOM and DCDC directives, managing the lifecycle of Situational Awareness Reports (SAR) and ensuring all assets remain compliant with OPORDs, TASKORDs, IAVM notifications, and STIG requirements by published deadlines.
    • Conduct deep-dive forensic investigations into cybersecurity events (data loss, unauthorized access, network exploits) to determine nature and scope; identify corrective actions for containment, eradication, and recovery.
    • Perform thorough post-incident reviews to derive lessons learned, identify security gaps, and implement preventive measures to strengthen the program's long-term defense posture.
    • Provide expert guidance on cybersecurity directives and risk management policies; review POA&Ms for technical clarity and sound judgment to ensure acceptable remediation timeframes for security controls.
    • Oversee enterprise-wide monitoring and logging across network infrastructure and endpoints to ensure the rapid detection and response to cyber incidents.
    • Maintain and evolve IR SOPs in strict accordance with CJCSM 6510.01B, NIST SP 800-61R2, and DOW regulations to ensure procedural alignment with industry best practices.
    • Translate technical findings into regular status reports for program leadership, DOW officials, and USCYBERCOM /DCDC repositories, detailing incident impact, effectiveness of response strategies, and lessons learned.
    • Drive the evolution of incident response capabilities by identifying weaknesses, recommending advanced technologies, and implementing enhanced processes to stay ahead of evolving cyber threats.
    • Support DOW CIO data collection by reviewing PPSM, CAP, SNAP, and GIAP requests against DISA guidelines; cross-train team members on emerging defense techniques and provide after-hours investigative support for critical incidents.

    Required Skills:

    • Knowledge of Incident Response Handling Procedures (NIST SP 800-61)

    • Familiarity with cyber adversary tactics and frameworks (such as ATT&CK and D3FEND)

    • Knowledge of one or more of the following cybersecurity tools:

    • Trellix/ESS

    • Tanium

    • Microsoft Defender Endpoint

    • BeyondTrust

    • Splunk

    • Great communication skills and attention to detail.

    Required Qualifications:

    • Bachelor's degree in computer science or related field
    • U.S. Citizenship and an active Secret Clearance (required) with the ability to obtain and maintain a Top-Secret Clearance.
    • Active DoD 8570 IAT Level II certification or greater, including at least one of the following certifications in good standing: CCNA Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP, CASP+CE, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, or CCSP.
    • Active DoD 8570 CSSP Incident Responder certification a plus, including at least one of the following certifications in good standing: CEH, CFR, CCNA Cyber Ops, CHFI, CySA+, GCFA, GCIH, SCYBER, or PenTest+
    • 7+ years in Information Technology or Information Security with 5+ years performing Cybersecurity Operations and Incident Response
    • Required to work onsite daily at our DoD customer office location in Alexandria, VA

    Numbers & Facts

    LocationSeaside, CA
    IndustryAerospace and Defense
    Company Size5,000 to 9,999 employees
    Year Founded2003
    Websitehttp://www.asrcfederal.com

    Benefits

    Military Leave, On Site Cafeteria, Parking, Prescription Drug Coverage, Professional Development, 401K, Employee Referral Program, Flexible Spending Accounts, Employee Events, Tuition Reimbursement, Work From Home, Life Insurance, Merchandise Discounts

    About Company

    ASRC Federal comprises a family of companies that provide mission-critical services to federal government agencies dedicated to defense, civil and intelligence support. Our customer-focused service delivery model and emphasis on operational excellence are foundational elements infused in all our companies. The reliability and quality of day-in, day-out service delivery from our family of companies ensure our customers that we keep our sights on their mission-critical priorities.

    Similar Jobs