Job DetailsLevel: ExperiencedJob Location: Beshenich Muir Associates LLC BMA Corporate Office - Huntsville, AL 35805Position Type: Full TimeEducation Level: Not SpecifiedTravel Percentage: Occasionally Job Shift: DayJob Category: Professional ServicesBMA is seeking a Cybersecurity Engineer to support the DLA JETS Cybersecurity Technology Support program. This is a fully remote position and contingent on contract award.
Job Summary
BMA is seeking a Cybersecurity Engineer (CE) to support our DLA Cybersecurity Technology Support contract. The CE provides specialized cybersecurity (CS) engineering support to the DLA J61 Cybersecurity Technology Group to assist with the integration, sustainment, and operational support of enterprise CS technologies. The CE applies information assurance (IA) and cybersecurity engineering principles to analyze security requirements, resolve technology and workflow issues, and support the planning, design, development, testing, demonstration, and integration of CS systems across the enterprise. The CE supports a broad portfolio of CS platforms, with particular emphasis on Web Application Firewall (WAF) technologies and related enterprise cybersecurity tools. This role supports the implementation, configuration, maintenance, and continuous improvement of systems used to protect DLA information systems, applications, and infrastructure in accordance with DoD and DLA cybersecurity requirements. The CE works closely with DLA cybersecurity personnel, system administrators, network engineers, tool owners, and mission stakeholders to ensure cybersecurity technologies are properly engineered, maintained, tested, documented, and aligned with operational and compliance requirements. Key Responsibilities:
CS Engineering Support
Provide security engineering support for the planning, design, development, testing, demonstration, and integration of cybersecurity technologies supporting the DLA Cybersecurity Technology Group.
Analyze IA and cybersecurity requirements and apply systematic engineering approaches to resolve technical and operational issues.
Support integration of cybersecurity tools, applications, appliances, sensors, and platform-related hardware and software across the enterprise.
Evaluate system workflows, technical configurations, and operational processes to improve efficiency, reliability, and security.
WAF Engineering and Sustainment
Support the sustainment and operational engineering of F5 BIG-IP Application Security Manager and related WAF technologies protecting DLA websites and web applications.
Work with DLA website stakeholders to gather requirements and develop, configure, test, deploy, and maintain WAF policies.
Support patching, upgrades, preventive maintenance, bug fixes, firmware updates, and maintenance releases for WAF environments.
Assist in tuning and optimizing WAF functionality to improve security effectiveness and reduce operational risk.
IA and Security Compliance
Analyze existing and emerging DLA information systems and IT infrastructure to assess compliance with DoD and Federal IA policy.
Review system design documentation, proposed policies, and draft changes to identify areas of non-compliance and recommend remediation actions.
Support Security Test and Evaluation, IA assessments, and technical reviews to validate compliance with cybersecurity requirements.
Develop and document implementation standards, security engineering guides, and supporting procedures for cybersecurity tools and environments.
Platform Integration and Technical Support
Support operational integration and sustainment of cybersecurity platforms used by DLA, including technologies related to WAF, GRC workflow, SIEM/ELM, IDS/IPS, vulnerability management, insider threat, UBA, and comply-to-connect capabilities.
Assist with troubleshooting, maintenance, configuration changes, and technical analysis of cybersecurity toolsets and associated infrastructure.
Support test environments and production deployments to ensure systems are stable, secure, and operationally effective.
Provide technical recommendations for product enhancements, lifecycle management, and implementation improvements.
Documentation, Testing, and Reporting
Prepare implementation documentation, system test results, SOPs, technical reports, and engineering recommendations.
Support development of training materials, technical briefings, and user guidance for cybersecurity tools and engineering processes.
Document deficiencies, corrective actions, system changes, and engineering recommendations.
Support reporting.
Clearance Requirements
There is a Secret Security clearance requirement for this position.
Required Skills & Certifications
Current DoD 8670.01/8140 IAM Level III certification that includes one or more of the following: ISACA CISM, ISC2 Certified Information Systems Security Professional (CISSP), GIAC/SANS GIAC Security Leadership Certification (GSLC), or EC-Council Certified Chief Information Security Officer (CCISO).
DoD 8570/8140 CND-IS.
Computing Environment Certification: F5 Certified Technology Specialist – ASM.
7+ years of relevant information technology experience supporting cybersecurity, information assurance, systems engineering, or related enterprise IT functions.
Demonstrated experience applying engineering and analytical methods to resolve information assurance and cybersecurity technology issues.
Experience supporting the planning, design, integration, testing, and sustainment of enterprise cybersecurity technologies.
Experience with F5 BIG-IP ASM in enterprise environments.
Experience supporting DoD or DLA cybersecurity operations.
Experience with enterprise security tool integration and sustainment.
Experience working in structured change management and maintenance environments.
Experience with WAF sustainment.
Experience with information assurance engineering.
Experience with cybersecurity technology integration.
Experience with system maintenance and testing.
Experience with implementation documentation and SOP development.
Experience with platform hardening, tuning, and lifecycle support.
Familiarity with information assurance compliance, technical security controls, and cybersecurity support within a DoD or federal environment.
Strong analytical, troubleshooting, documentation, and technical communication skills.
Desired Skills & Certifications
Experience supporting DoD or DLA program offices.
Experience supporting DoD or DLA environments.
Familiarity with DLA-specific cybersecurity governance frameworks.
Familiarity with enterprise cybersecurity risk analysis and mitigation evaluation.
Familiarity with network security architecture and vulnerability assessment.
Familiarity with technical documentation and cybersecurity reporting.
Current Project Management Professional (PMP) certification.
Current Risk Management Professional certification such as one or more of the following: PMP-RMP, ISACA Certified in Risk and Information Systems Control (CRISC), ISACA Certified Information Systems Auditor (CISA), ISACA Certified Information Security Manager (CISM), ISC2 Certified in Governance, Risk and Compliance (CGRC), or Risk and Insurance Management Society (RIMS) Certified Risk Management Professional (RIMS-CRMP).
Other Duties
Able to travel within a week's notice.
This job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee for this job.
Duties, responsibilities, and activities may change at any time with or without notice.
Overview
BMA is an employee-owned small business headquartered in Huntsville, AL that provides superior customer service by empowering all levels of our staff to make timely decisions to produce high-quality results. BMA fosters an environment of passion, precision, and dedication in order to fulfill our commitments to our partners, government, and country.
Benefits
We believe that our employees well-being is paramount to our success so our benefits package has been crafted with that in mind. We offer multiple healthcare coverage options to include low deductible, high deductible, and plans eligible for our Health Savings Account (HSA) option. Along with medical coverage, employees have dental, vision, accident & illness, short- and long-term disability all available to them. BMA proudly maintains a 401(k) plan with an industry leading 6% match that can include profit sharing based on company performance. Lastly, being an employee-owned company means that BMA offers a 100% Employee Stock Ownership Plan (ESOP), providing eligible employees the opportunity to earn stock in BMA, subject to plan eligibility and vesting requirements.
AAP & EEO Statement
Beshenich Muir & Associates, LLC (BMA) is an Equal opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regards to race, color, religion, religious creed, gender, sexual orientation, gender identity, gender expression, transgender, pregnancy, marital status, national origin, ancestry, citizenship status, age, disability, protected Veteran Status, genetics or any other characteristics protected by applicable Federal, State, or Local Law.
Qualifications