ACAS Operator with Security Clearance Job at TEKsystems c/o Allegis Group, Montgomery, AL

THJmMW1pKytFTzJjdnVlNmswNlVaQ0xZVGc9PQ==
  • TEKsystems c/o Allegis Group
  • Montgomery, AL

Job Description

ACAS System Operator Position Description
The AFINC II contract supporting the 26th Network Operations Squadron (26NOS) is searching for qualified candidates for a position of Junior or Mid-Level ACAS Systems Operator I or II (depends upon experience). Seeking an individual for vulnerability assessment analysis and administration role with cybersecurity oriented principles to protect and defend information systems and networks. If you are seeking a challenging place to work, please review the list of responsibilities and qualifications. If you don’t meet all of the qualifications, a candidate may still be considered depending on your level of experience.
Duties & Responsibilities: • Operates the security and compliance baseline configuration, inventory, and best practices for the vulnerability management solution (VMS) deployed across multiple unclassified and classified network locations supporting the implementation for Tenable products within Assured Compliance Assessment Solution (ACAS) including .SC (SecurityCenter™) and Nessus® scanners; Also 2.0 Architecture Components: Nessus Networking Monitor (NNM), Nessus Manager and Nessus Agents use cases • Conducts assessments of threats and vulnerabilities; determines deviations from acceptable configurations, enterprise or local policy • Ability to assess the level of risk, develop or recommend meaningful insights about the context of an organization threat environment to improve its risk management posture; measure effectiveness of systems/networks/endpoints that deviate from acceptable configurations, enclave or local policy • Work in concert with other Tenable operators, integrator and IA personnel responsible for operating and maintaining the ACAS program in multiple enclaves • Candidate will coordinate system activities such as deploying, configuring, monitoring, tuning, upgrading, and troubleshooting Tenable components spanning local, remote and complex environments • Must have experience setting up and executing Tenable Nessus scans, review scan data, assess reports and trends through SC interface; determine whether a completed scan provide valid results, and ensure reports/dashboards meet customer needs and expectations • Record configurations, conduct assessments and submit suggestions to scan schedule(s), scanners scan zones, repository management, chart Credentials > Assets > Scans > Reports > Dashboards • Ability to analyze and document Department Information Systems Agency (DISA) Security Technical Implementation Guidelines (STIGs) applicable to each Non-classified or Secret Internet Protocol (IP) Router Network (NIPRNet, SIPRNet) environment for all ACAS implementations • Responsible for acquiring, configuring and ensuring external deliverables: DISA/Continuous Monitoring and Risk Scoring (CMRS), importing vulnerability and security audit plug-ins, DoD Patch Repository Defense Asset Distribution System (DADS), build/maintain vulnerability and audit repositories • Assist mapping scan zones, scanners, subnets to include leveraging enterprise network application tools such as Forescout, SolarWinds Orion, McAfee Endpoint Security Solutions (ESS) and/or Microsoft Endpoint Configuration Manager (MECM) • Continuously assesses current ACAS implementations for scans, assets, analysis and permissions • Assist with validation and sustainment of documentation such as System Security Plans, Network Address Declaration (NAD), security groups/roles/permissions and/or zones/credentials/scans • Document steps required to design/engineer ACAS systems for each network to include IP address, Fully Qualified Domain Name (FQDN), DNS entries, Role Based Access Controls (RBAC), service accounts, certifications, licenses and physical/virtual location of each component • Create network diagrams of the designs with Microsoft Visio (include specialty requirements) • Implement/create report dashboard designs, automated custom email report notifications, report repositories for each environment that are specific to the following audiences: Leadership & Executives; Cybersecurity Staff; System Administrators; Application Maintainers • Ensures networks receive periodic updates from AFCYBER-released software patches, updates, and upgrades via Time Compliance Technical Orders (TCTO), Time Compliance Network Orders (TCNO), Maintenance Tasking Order (MTO) and Notices to Airman (NOTAMs) • Responsible to assist/troubleshoot schedule scans are covering 100% of intended targets ensuring timely and accurate scanning and reporting per PMO, IA and DoD policies and orders. • Maintain the Nessus scanners connectivity with the associated Tenable.sc (formerly SecurityCenter) • Provide cyber security staff scanning capability and system administration continuity • Maintain effective communications with other external and internal teams essential to ACAS operations • Create/maintain/implement custom security policies in line with DISA ACAS best practice guidance • Assist AF Cyber personnel with the DISA Information Assurance Vulnerability Management (IAVM) programs, cybersecurity toolsets, and Operation Order (OPORD)/Fragmentary Order (FRAGO) support • Perform systems analysis, design review, integration of complex system applications • Ensures external networks receive cybersecurity inventory reporting for compliance data via ACAS to DISA CMRS and DoD Enterprise Logging Ingest and Cyber Situational Awareness Refinery (ELICSAR) Big Data Platform (BDP) and update Plan of Actions, Milestones (POAMs) documentation • Participate in all phases of the Vulnerability Management (VM) life cycle with emphasis on the scan, patch, rescan, mitigation factors and reporting phases • Assist in the installation/maintenance of configuration files, custom security policies, plug-ins, signatures, certificates, DISA STIGs and checklist configuration audits and other such files necessary to add vulnerability discovery capabilities into the ACAS system • Rack and provision government furnished equipment (GFE) servers when applicable • Candidate will report to the 26th NOS Information Assurance (IA) team leadership
Qualifications/Requirements: • Candidate should have 1 to 3 years of years of hands-on experience in: ◦ ACAS and/or Tenable.sc (SecurityCenter) or Tenable Nessus products ◦ Familiarity using ACAS or Tenable .SC/Nessus best practices ◦ Linux-based (RHEL) or Windows operating systems support with experience in mid-to-large enterprise data center environment; familiarity with network patch/update management ◦ Experience with virtualized environments (VMware vSphere, ESXi) • Demonstrate advanced diagnostics, analytical, troubleshooting skills • System hardening experience strongly preferred • Any scripting experience: Bash, Perl, PowerShell, Python, Nessus Attack Scripting Language (NASL) • Disaster Recovery - knowledge in risk reduction, hot/warm site DR architecture • Knowledge of data communications, local-area networking (LAN), wide-area networking (WAN), VoIP, routers, switches, and firewalls ◦ Advanced networking concepts, VLAN, trunking and port channel ◦ Thorough understanding of Internet Protocol (IP) routing, switching, and OSI model
Competencies: • Possess refined critical thinking skills, should be a motivated self-starter, and multi-task capable • Good communication and interpersonal skills; Ability to follow policies and procedures • Ability to communicate in a clear speaking voice as well as the ability to respond clearly to questions • Aptitude to address negative situations and resolve them in a positive manner • Approach work tasks as diplomatic, adaptive to a dynamic environment, dependable and reliable
Education/Certification(s): • Technical degree, Associates or, Bachelor’s degree in Computer Science/Information Systems, Science/Engineering/Math or 2-4 years’ relevant experience in Information Technology preferably within system or application administration is acceptable • Requires a DoD 8570.01-M Information Assurance Technical (IAT) Level II certification: ◦ CompTIA Security+ CE (Continuing Education) ◦ CompTIA Cybersecurity Analyst (CySA+) CE (Continuing Education) ◦ (ISC)² Systems Security Certified Practitioner (SSCP) ◦ GIAC Global Industrial Cyber Security Professional (GICSP) ◦ GIAC Security Essentials Certification (GSEC) ◦ (ISC)² Systems Security Certified Practitioner (SSCP) • Requires at least one or more DoDM 8140.03 Computing Environment/Operating System (CE/OS) Defense Cyberspace Workforce Certification (DCWF) requirement(s) (or acquire within 120 days): ◦ DISA ACAS Operator and Supervisor Course (current; expires every 3 years) ◦ Preferred: Tenable.sc Specialist Certification; Tenable.sc Expert Certification ◦ Recommended: Tenable.sc Introduction and/or Tenable Nessus Fundamentals • Prefer one or more of the following CE/OS based technical certifications: ◦ CompTIA Linux+ CE or Red Hat Certified System Administrator (RHCSA) or Linux Foundation Certified System Administrator (LFCS) ◦ Microsoft based certification (current): ▪ Microsoft Certified: Security, Compliance, and Identity Fundamentals ▪ Microsoft Certified: Security Operations Analyst Associate ▪ Microsoft Certified: Identity and Access Administrator Associate ◦ Microsoft based certification (retired, will be considered): Microsoft Technology Associate (MTA) or Microsoft Certified Solutions Associate (MCSA) or Microsoft Certified Technology Specialist (MCTS) or Microsoft Certified Solutions Expert (MCSE) • Preferred technical certifications: ◦ ITIL certification a plus ◦ Splunk Core Certified User or Splunk Core Certified Power User
Clearance: 
Active DoD Secret required or ability to complete investigation process for interim with potential to upgrade to Top Secret clearance preferred

Job Tags

Contract work, Interim role, Local area, Remote work,

Similar Jobs

Lot Management

Day Porter - Janitorial (Part-Time) Job at Lot Management

 ...Job Type Part-time Description DAY PORTER - Part-Time/1st Shift About the Job: Part-Time Day Porter | Morning Shift Property Address : 3202 Governor Dr., San Diego, CA 92122 Schedule: Monday - Saturday, 6:00 am - 10:00 am ( 24 hours per... 

Krauth Electric

Electric Motor Mechanic Job at Krauth Electric

Electric Motor MechanicKrauth ElectricLouisville, KYApply Do you have mechanical experience, but want to get your hands-on something different that will expand your knowledge and growth opportunities? Why not try electric motor repair? Krauth Electric Company is... 

Mercy

Patient Care Technician-PCT (Non-Exempt) Job at Mercy

 ...Mercy - 3050 E River Bluff Blvd [Nursing Assistant / Health Aide] As a Patient Care Technician at Mercy, you'll: Be responsible to perform procedures and patient care under the supervision of a Registered Nurse; Provide support services (cleaning, stocking, ordering);... 

ICSI.

Technical SEO Product Manager - 10622 Job at ICSI.

 ...Job Description Job Description Position: Technical SEO Product Manager Position Type: W2 Contract - No Benefits Position Location: Fort Worth, TX Description: We are seeking an experienced Technical SEO Product Manager for a critical short-term engagement... 

On The Cheap Inc.

Kabuya Pamela Bowens-Saffo: From the Heights MDC’s Padrón Campus Art Gallery, Building 3, Room [...] Job at On The Cheap Inc.

 ...HeightsSunday, March 09, 2025 , 12:00am -11:59pmFrom the Heights marks South Florida native Kabuya Pamela Bowens-Saffos first solo art exhibition in Miami. Featuring works from as early as 1977 to present day, this exhibition celebrates the artists practice as a...