ASRC Federal

Lead Information Assurance Security Specialist

ASRC Federal  •  $160k - $188k/yr  •  Fort Meade, MD (Onsite)  •  21 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™

ASRC Federal is seeking a Lead Information Assurance Security Specialist.

This is a contingent position supporting ASRC Federal’s pursuit of the Defense Information Systems Agency Joint Planning and Execution Services and Joint Capabilities Requirements Manager Sustainment Services program.

JPES/JCRM supports mission-critical Global Force Management planning, execution coordination, operational data management, and interoperability for globally distributed Department of Defense users and command organizations. The program encompasses Agile software sustainment and enhancement, secure cloud and platform operations, system integration, testing and release management, cybersecurity compliance, and operational mission support.

The technical environment includes classified SIPR and Azure IL6 enclaves, Kubernetes, Red Hat Enterprise Linux, Java/Spring, React, PostgreSQL EDB, transitional Oracle integration, REST APIs, ELK observability, and DevSecOps pipelines integrated with DISA’s C2FS/C2SF environment. The work requires close collaboration with DISA program, engineering, product, security, and operational-user stakeholders.

This is a full-time position located onsite at Fort Meade, Maryland. The position requires U.S. citizenship, an active Secret security clearance, and less than 10% travel. Employment is contingent upon contract award and Government approval of key personnel.

Job Description:

The Lead Information Assurance Security Specialist will serve as the senior cybersecurity and mission-assurance authority for the DISA JPES/JCRM program. The position will lead implementation and sustainment of the Risk Management Framework across classified, containerized, cloud-hosted, and multi-enclave environments.

The Lead IA Specialist will maintain the program’s security posture, direct RMF and eMASS activities, support ATO sustainment, manage vulnerability and POA&M remediation, and ensure security requirements are integrated into Agile development and DevSecOps delivery. The position will work closely with application, platform, database, integration, and Government cybersecurity personnel to implement security by design without disrupting operational delivery.

Primary Responsibilities:

  • Lead RMF lifecycle activities and maintain required artifacts in eMASS.
  • Support initial and ongoing ATO authorization and continuous-monitoring activities.
  • Implement, assess, and validate STIGs for RHEL, Kubernetes, Tomcat, PostgreSQL, and web-application components.
  • Direct ACAS/Nessus vulnerability scanning and analysis.
  • Coordinate application-security testing using tools such as Fortify or equivalent SAST/DAST capabilities.
  • Manage POA&M development, remediation, closure evidence, and risk-acceptance coordination.
  • Translate cybersecurity findings into prioritized Agile backlog and sprint-remediation activities.
  • Support security architecture for REST APIs, data exchange, DevSecOps pipelines, and external DoD interfaces.
  • Coordinate IAVM compliance, patching, configuration validation, audit support, and security-control evidence.
  • Advise technical teams on secure implementation patterns for Azure IL6, Kubernetes, databases, and multi-enclave deployments.
  • Provide security status, risks, metrics, and recommendations to program and Government leadership.

Minimum Qualifications

  • Bachelor’s degree in engineering, cybersecurity, computer science, information technology, or a related discipline; four additional years of experience may be accepted in lieu of a degree.
  • At least 10 years of Information Assurance, RMF, or cybersecurity experience in DoD environments.
  • Direct experience with RMF, eMASS, ATO sustainment, STIG validation, vulnerability management, and POA&M remediation.
  • Experience securing containerized applications and Kubernetes environments.
  • Experience integrating cybersecurity controls and scanning into DevSecOps delivery.
  • Experience with Azure IL6, SIPR, or comparable classified DoD-hosted environments.
  • Security+ or other applicable DoD 8140 qualification required.
  • CISSP preferred.
  • Active Secret clearance required at time of hire.

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

EEO Statement

ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.

ASRC Federal

About ASRC Federal

ASRC Federal’s employees provide solutions for more than 30 U.S. federal defense and civilian agencies. We deliver leading-edge technology and deep expertise to a wide range of critical national missions -- from space exploration to cyber defense to public health. Our work helps secure an enduring future for over 14,000 Iñupiat shareholders from Alaska’s North Slope.

Our people bring innovation to every mission -- like assembling the Orion spacecraft that will take astronauts back to the Moon, pioneering cloud computing and cybersecurity for federal agencies, ensuring safer air travel and helping maintain U.S. military bases so our heroes can focus on protecting the nation. We have expertise in IT modernization, software applications and analytics, engineering solutions, critical infrastructure and base operations, professional services and supply chain management and logistics.

ASRC Federal is a certified Great Place to Work™, Military Times’ ‘Best for Vets’ and received the VETS Indexes 5-Star Employer Rating. Please visit www.asrcfederal.com/careers to learn more about your next great career opportunity!

Industry
IT & Software
Company Size
1,001-5,000 employees
Headquarters
Reston, VA
Year Founded
2003
Social Media