remote
Cybersecurity Systems Engineer - General Dynamics Mission Systems
Security Engineer
Lead Navy information system security through the full ATO lifecycle, creating and maintaining SSPs, SAPs, SARs, RARs, POA&Ms, and continuous monitoring plans while ensuring compliance with NIST standards.
About the role
Key Responsibilities
- Lead multiple Navy information systems through the complete Authorization to Operate (ATO) lifecycle, including Categorize, Select, Implement, Assess, Authorize, and Monitor phases.
- Build, maintain, and update authorization package artifacts such as System Security Plans (SSPs), Security Assessment Plans (SAPs), Security Assessment Reports (SARs), Risk Assessment Reports (RARs), Plan of Actions and Milestones (POA&Ms), and architectural diagrams.
- Develop and refine authorization boundary diagrams that clearly delineate system scope, data flows, interconnections, and external interfaces.
- Assess and validate system security controls against NIST SP 800-53 and other relevant frameworks, ensuring compliance and identifying gaps.
- Design and implement continuous monitoring strategies, including automated tools and manual processes, to sustain ongoing compliance and detect emerging threats.
Requirements
- Bachelor’s degree in Engineering, Computer Science, or a related field with at least 1 year of relevant experience, or a Master’s degree.
- Strong understanding of NIST cybersecurity frameworks and ATO processes.
- Experience creating and managing SSPs, SAPs, SARs, RARs, and POA&Ms.
- Proficiency in developing system architecture and security boundary diagrams.
- Excellent analytical, communication, and documentation skills.