Standard Job Description
Responsible for applying an interdisciplinary, collaborative approach to plan, design, develop, validate and verify Cyber solutions across the lifecycle. Conduct cyber risk assessment activities including threat modeling, vulnerability analysis and analysis of mitigation solutions. Coordinates and addresses Supply Chain risk management concerns. Develop, evaluate and analyze design constrains, trade-offs and detailed system and security design as they pertain to the Cyber domain. Coordinate with Cyber and system architects and developers to provide oversight in the development of solutions. Conduct cybersecurity test and evaluation of hardware and/or software designs to verify and validate compliance with defined specifications and requirements. Employs cyber security processes, methods, techniques and tools and assure their consistent application. Implements appropriate Assessment and Authorization activities as required by customers. *USE OF THIS CLASSIFICATION REQUIRES AUTHORIZATION FROM THE BUSINESS AREA CYBER DIRECTOR OR DELEGATE*
Basic Qualifications
- Acitve Secret Clearance
- IASAE Level II - IAW 8570 or higher certification (CASP+ CE, CISSP, CSSLP)
- Ability to travel as required (typically up to 20%)
Desired Skills
- B.S. degree in a technical discWine such as
Computer Science, Computer Engineering,
Electrical Engineering, Computer Security, or
Information Technology — or equivalent applied
experience - Experience utilizing Joint Special Access Program
(SAP) Implementation Guide (JSIG), Committee
on National Security Systems Instruction (CNSSI)
1253, and NIST sp 800-37 Risk Management
Framework (RMF) to design and harden
information systems commensurate with
customer needs - Ownership of, or ability to acquire and maintain,
a CAC Card is strongly desired - Experienced with ACAS software (Nessus and
Tenable. SC) - Ability to troubleshoot ACAS software (Nessus
and Tenable.SC) - Experienced with SCC SCAP tool to conduct
compliance assessment - Ability to troubleshoot SCC SCAP tool
- Have knowledge of Group Policy Management
- STIG experience
- Work alongside software team to find common
ground on STIGs - Experience analyzing, decomposing, and
allocating security controls into executable
security requirements at the system, sub-system
and component level - Experience with secure software development
concepts (e.g. static code analysis, dynamic code
analysis, STIG/SRG hardening, etc.) as applied to
high-level programming languages (C, C++,
Java) - Experience with engineering change processes
and/or configuration control processes
Extensive experience developing and maintaining
core security documentation artifacts for A&A
Packages including Security Control Traceability
Matrix (SCTM), System Security Plan (SSP)
and/or Information Assurance Standard
Operating Procedures (IA SOP), Plan of Action &
Milestones (POA&M), and Risk Assessment
Report (RAR) - Extensive knowledge of DoD Security Technical
Implementation Guides (STIGs) and Security
Requirements Guides (SRGs) - Background/knowledge working with information
systems/environments that utilize the Open
Mission Systems (OMS) standard and Universal
Command and Control Standards Initiative (UCI)
message set - Expertise/knowledge in both compliance testing
and penetration testing methodologies. - Experience with Real-Time Embedded Operating
Systems (e.g. GreenHills INEGRITY, LynxOS,
VxWorks, Yocto) - Experience with Agile project management tods
(JIRA, VersionOne, etc.) - Experience conducting technical trade studies
and assessments - Must be willing to mentor junior-level team
members - Experience with creating and presenting
technical information to senior-level executives
and customers - Demonstrated problem-solving and troubleshooting skills
- Proficient technical writing skills
- Strong analytical and organizational skills with
excellent communication skills (written and
verbal communications) and have the ability to
work in a dynamic work environment - Experience working in an aerospace design
environment with exposure to DOD customers
and their accrediting authorities.
Pay Information
Full-Time Salary Range: $120600.00 - $224000.00
At Lockheed Martin, we know mission success starts with taking care of our people. Our Total Rewards program is designed to attract top talent, support your well-being, and help you grow—both professionally and personally.
The salary range for this position is as listed on the requisition. Please note that the salary information listed is a general guideline only. Lockheed Martin considers factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience, education/ training, key skills as well as market(work location) and business considerations when extending an offer.
Benefits offered: Medical, Dental, Vision, Flexible work arrangements and schedules (e.g., 4x10), 401(k) match, Paid time off, Holidays, Parental Leave, EAP, Flexible Spending Accounts, Education Assistance, Life Insurance, Short-Term Disability, and Long-Term Disability.
- Annual short-term and/or long-term incentive compensation programs may be offered depending on the position. Payments under these annual programs are not guaranteed and can vary from year to year and are tied to a range of performance metrics.
- For (Washington state applicants only) Non-represented full-time employees: accrue at least 10 hours per month of Paid Time Off (PTO) to be used for incidental absences and other reasons; receive at least 90 hours for holidays. Represented full time employees accrue 6.67 hours of Vacation per month; accrue up to 52 hours of sick leave annually; receive at least 96 hours for holidays. PTO, Vacation, sick leave, and holiday hours are prorated based on start date during the calendar year.