Applied Research Solutions Logo

Applied Research Solutions

Cybersecurity Principal

Posted Yesterday
Be an Early Applicant
In-Office
Bedford, MA
170K-185K Annually
Expert/Leader
In-Office
Bedford, MA
170K-185K Annually
Expert/Leader
The Principal Cybersecurity Engineer is responsible for developing security plans, conducting risk assessments, managing security updates, and ensuring compliance with DoD cybersecurity policies.
The summary above was generated by AI

Applied Research Solutions has an exciting opportunity for a Principal Cybersecurity Engineer to support the C3C / Kessel Run (KR) Division, which is within the USAF C3BM Directorate.

This is a full-time position located at Hanscom AFB, Bedford, MA.

Why Work with us?

Applied Research Solutions (ARS) is respected as a world-class provider of technically integrated solutions as we deliver premier talent and technology across our focused markets for unparalleled, continuous mission support. Awarded a Best Places to Work nominee since 2020, ARS recognizes that without our career- driven, loyal professionals, we would not be able to deliver state-of-the-art results for our mission partners. We firmly believe that prioritizing our employees is of the upmost importance. We provide a culture where our employees are challenged to meet their career goals and aspirations, while still obtaining a work/life balance. ARS employees are motivated through our industry competitive benefits package, our awards and recognition program, and personalized attention from ARS Senior Managers. 

Responsibilities

Duties include, but not limited to: 

  • Assist with development of System Security Management Plans, Program Protection Plans, Security Risk Analyses, OPSEC Plans, Computer Certification and Accreditation, Security Vulnerability and Countermeasures Analyses, Security Concepts of Operations, and other system security engineering-related documents identified in MIL-STD 1785, DoDI 5000.02, Operation of the Adaptive Acquisition Framework, and DoDI 8510.01
  • Support the system/application Authorization and Accreditation (A&A) effort to include assessing and guiding the quality and completeness of A&A activities, tasks and resulting artifacts mandated by governing DoD and Air Force policies (i.e., Risk Management Framework (RMF)
  • Update, monitor, and manage information in systems for the program office
  • Process and manage system user account requests and process tools
  • Process and manage system port/protocol and access control list requirements
  • Process and   manage system Public Key (PKI) identification and authorization requirements
  • Manage the distribution, implementation, remediation, and tracking of system security updates and configurations as required by the DoD
  • Recommend policies  and procedures  to ensure  information systems  reliability and accessibility to prevent and defend against unauthorized access to systems, networks, and data
  • Conduct risk and vulnerability assessments of planned and installed information systems to identify vulnerabilities, risk, and protection needs
  • Promote awareness of security issues among management and ensuring sound security principles are reflected in organizations’ vision and goals
  • Conduct systems security evaluations, audits and reviews
  • Recommend systems security contingency plans and disaster recovery procedures
  • Recommend and implementing programs to ensure that systems, network, and data users are aware of, understand, and adhere to systems security policies and procedures
  • Participate in network and systems design to ensure implementation of appropriate systems security policies
  • Recommend initial, or updates to, software and configurations to new or existing system security mechanisms
  • Obtain waivers to mandated security mechanisms/policies which would be detrimental to system performance and impact the system’s mission
  • Facilitate the gathering, analysis and preservation of evidence used in the prosecution of computer
  • Provide leadership assistance in the analysis of the design, development, integration, implementation and testing of cybersecurity requirement
  • Develop risk-based strategies to address identified gaps
  • Review, analyze, and assess implementations of cybersecurity (i.e.  RMF security controls) throughout the open systems architecture and associated services, derived requirements specifications, design documents & design implementation
  • Collaborate with stakeholders (Government and commercial) to ensure the system is approved by all Authorizing Officials via the RMF A&A process
  • Provide technical advice in the area of systems security across all systems and supports
  • Develop recommendations for the Government regarding how well designs satisfy current requirements and business goals
  • Maintain databases that reflect receipt, storage, inventory, and disposition of classified information to include data entry, updates, and generation of reports
  • Support Government program office in audits of Government classified holdings to ensure proper accountability
  • Maintain databases of classified visits and clearance levels
  • Perform inspection, inventory, logging, storage, documentation, transmittal and internal distribution of classified information received
  • Evaluate Contractor classified data submittals for compliance with the appropriate System Security Classification Guide (SSCG)
  • Provide security inspection and protection to areas where classified information is being stored, and develop and establish security procedures and policies IAW DOD, USAF, AFMC, and local directives
  • Develop training and provide security awareness and other security education programs 
  • Review and verify personnel qualifications for access to special access programs  
  • Develop, implement and maintain a communications security program
  • Assess program disclosure issues and provide FMS case management support
  • Assist and advise FMS program office management and leadership in interfacing with FMS customers and all USG organizations, including but not limited to SAF/IA, Air Force Security Assistance Center (AFSAC), Air Force Security Assistance Training (AFSAT) squadron, Defense Finance and Accounting Services (DFAS)
  • Support execution of all aspects of acquisition program security throughout a program’s lifecycle
  • Assist with development of sound security practices and policies regarding acquisition, physical, personnel and documentation security
  • Update security classification guides 
  • Prepare acquisition security related sections of acquisition program documentation
  • Review Contractor deliverables to ensure compliance with CDRLs
  • Plan and implement security-related surveys, assessments, and studies
  • Evaluate program security information and hardware throughout the program life cycle, to include studies, analyses, plans, procedures, production, test plans/results, transportation, technology, and storage of end items
  • Provide security support to source selections
  • Other duties as assigned

Qualifications

Citizenship: Must be a US citizen

Minimum Required Qualifications

Clearance: Must have a be able to maintain a Secret Level Clearance

Preferred Qualifications

Education: BS/BA Degree

Years of Experience: 15 years of experience in the respective technical/professional discipline being performed, 10 of which must be in the DoD

  • Risk Management Framework (RMF), with emphasis on taking projects from Step 1 to Step 5
  • Vulnerability Management, Tenable Nessus (ACAS-DoD version of Nessus)
  • STIGs
  • Experience with Cross Domain Solutions and USAF CDS-E
  • Cloud Service Models
  • Supply Chain Security
  • NIAP
  • DoD Policies for Procedures for Cybersecurity
  • Network Security
  • Endpoint
  • DoD Impact Levels
  • NSA Type 1 encryption
  • Working with a CSSP - 16th AF

The annual salary range: $170k - $185k. Salary is dependent upon the role and associated responsibilities, candidate's experience, and qualifications to include education/training, and key skills.

      All positions at Applied Research Solutions are subject to background investigations. Employment is contingent upon successful completion of a background investigation including criminal history and identity check.

      This contractor and subcontractor shall abide by the requirements of 41 CFR 60-741.5(a). This regulation prohibits discrimination against qualified individuals on the basis of disability and requires affirmative action by covered prime contractors and subcontractors to employ and advance in employment qualified individuals with disabilities.

      This contractor and subcontractor shall abide by the requirements of 41 CFR 60-300.5(a). This regulation prohibits discrimination against qualified protected veterans and requires affirmative action by covered contractors and subcontractors to employ and advance in employment qualified protected veterans.


      Qualifications Education Required Bachelors or better. Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
      This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

      Top Skills

      Cross Domain Solutions
      Niap
      Nsa Type 1 Encryption
      Risk Management Framework
      Security Technical Implementation Guides (Stigs)
      Tenable Nessus
      Usaf Cloud Service Models

      Applied Research Solutions Boston, Massachusetts, USA Office

      Boston, MA, United States

      Similar Jobs

      2 Days Ago
      In-Office
      Hanscom Air Force Base, MA, USA
      160K-180K Annually
      Expert/Leader
      160K-180K Annually
      Expert/Leader
      Aerospace
      The Principal Cybersecurity Engineer will develop security plans, conduct assessments, manage security updates, and ensure compliance with cybersecurity policies while supporting the Air Force's communications and command systems.
      Top Skills: Cissp CertificationRisk Management Framework (Rmf)StigsTenable NessusVulnerability Management
      An Hour Ago
      In-Office or Remote
      25 Locations
      Blockchain • Fintech • Payments • Financial Services • Cryptocurrency • Web3
      Circle (NYSE: CRCL) is one of the world's leading internet financial platform companies, building the foundation of a more open, global economy through digital assets, payment applications, and programmable blockchain infrastructure. Circle's platform includes the world's largest regulated stablecoin network anchored by USDC, Circle Payments Network for global money movement, and Arc, an enterprise-grade blockchain designed to become the Economic...
      An Hour Ago
      In-Office or Remote
      Boston, MA, USA
      Blockchain • Fintech • Payments • Financial Services • Cryptocurrency • Web3
      Circle (NYSE: CRCL) is one of the world's leading internet financial platform companies, building the foundation of a more open, global economy through digital assets, payment applications, and programmable blockchain infrastructure. Circle's platform includes the world's largest regulated stablecoin network anchored by USDC, Circle Payments Network for global money movement, and Arc, an enterprise-grade blockchain designed to become the Economic...

      What you need to know about the Boston Tech Scene

      Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

      Key Facts About Boston Tech

      • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
      • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
      • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
      • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
      • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
      • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

      Sign up now Access later

      Create Free Account

      Please log in or sign up to report this job.

      Create Free Account