Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visitperaton.comto learn how we’re keeping people around the world safe and secure.
Responsibilities
Peraton seeks aLead Cybersecurity Reviewerto conduct DODIN cybersecurity reviews on site at CONUS, OCONUS, and DoW mission partner locations. Lead a team to execute the following tasks.Location:Fort Meade, MD and/or Chamberburg, PA.Tasks include:Conduct at least 8 mission sets per yearConduct assessments of systems and networks within the network environment or enclave and identifies where those systems/networks deviate from acceptable configurations, enclave policy, or local policyAssist in developing EXSUMs/ Briefings/ReportsDevelop and maintain cybersecurity vulnerability review, inspection, and audit SOPs, TTPs, checklists, and guidesSupport on-the-job training and certify new Reviewers via the reviewer certification processPerform technical Security Readiness Reviews (SRR)Prepare audit reports that identify technical and procedural findings and provide recommended remediation strategies/solutions
Qualifications
Required:Minimum12 years with BS/BA; 10 years with MS/MA; 7 years with Ph.D. Will consider 14 years with AS/AA, HS with 16 years of experience.Must be able to formulate and apply optimizing methods to develop and interpret information that assists in decision making and policy formulation.Must have experience in collecting, analyzing, and assessing data in order to provide formal feedback. Specifically, able to analyze organization's cyber defense policies and configurations and evaluate compliance with regulations and organizational directives (i.e., analysis of mitigations).Senior reviewers must have at least 2 years of direct experienceMust be cross-certified in multiple non-traditional IT areas such asSRR course and knowledge of:Windows / ESS,Linux,ACAS,Mobility, andCloud AWSCybersecurity ContractsCross Domain Solution (CDS)Cloud (Cloud Services, Software as a Service (SaaS)Platform as a Service (PaaS)Infrastructure as a Service (IaaS)Control Systems (CS) / Operational Technology (OT) / Industrial Control Systems / Supervisory Control and Data Acquisition (SCADA) (e.g., Rockwell Automation, OMRON, SIEMENS, and GE)Platform Information Technology (PIT) (as defined in DoDI 8500.01, “Cybersecurity”)Experience in measuring effectiveness of defense-in-depth architecture against known vulnerabilities and risk indicatorsExperience with maintaining deployable cyber defense audit toolkit (e.g., specialized cyber defense software and hardware) to support cyber defense audit missions.Must have knowledge of applicable cyber defense policies, regulations, and compliance documents specifically related to cyber defense auditingTravel is expected to worldwide locations. Travel will be conducted in accordance with the Task Order guidelines.Current DOD 8140/8570IATLevel II certificationCurrent DOD 8140/8570IAMLevel II certificationActive TS clearance with ability to obtain/maintain SCI clearanceU.S. Citizenship requiredPreferred:Current DOD 8140/8570 CSSP-Auditor certificationCurrent DOD 8140/8570 IAM Level III certification