HBSS (Host-Based Security System) Administrator
Trace Systems Inc. · Tampa, FL · 3 days ago
On-siteInformation TechnologyFull-time
Location: MacDill AFB, Florida
This position supports the Joint Communications Support Element (JCSE). The candidate will serve as the primary technical authority for protecting, monitoring, and administering endpoint security solutions.
Responsibilities
- Perform system administration of HBSS servers, including ePolicy Orchestrator upgrades and client product patches.
- Deploy and sustain the full capabilities of HBSS to all enterprise-wide managed systems including, but not limited to, agent deployments, policy enforcement, reporting and compliance.
- Maintain HBSS compliance with DISA, US Cyber Command, and Combatant Command operations orders (OPORDs), Fragmentary orders (FRAGOs), Change Tasking Orders (CTOs), and other DoD configuration compliance requirements.
- Provide guidance in all aspects of HBSS support to include account setups, port enabling, deploying and loading agents, policies, and modules.
- Monitor and ensure Security Technical Implementation Guide (STIG) compliance, security and performance.
- Perform vulnerability scans and troubleshoot/fix issues detected by the scans. Review scan results and provide recommendations to systems administrators and the Information Assurance team.
- Support Information Assurance personnel to ensure security architecture, design, and implementation is in accordance with DoD Regulations and other governing documents.
- Perform vulnerability and risk analysis of computer systems and applications during all phases of the system development life cycle.
- Provide technical support to the IA personnel to develop and maintain command IA processes and procedures regarding computer network defense in-depth protection for the enterprise.
- Perform and support updates to and maintenance of the POA&Ms for the enterprise.
- Support development of RMF Security Plans.
- Document changes to systems and all required checklists for use within the configuration baseline.
- Implement and integrate IA defense postures to command communications systems and architectures when coordinated or immediately upon being directed to secure reported cyber threats from the appropriate level of authority.
- Analyze technical/integration requirements and develop effective technical solutions for review and consideration, then integrate into the network and systems infrastructure.
- Analyze server and workstation applications to identify initial HIPS policy, test policy in available test environment, and deploy HIPS with associated standard policy.
- Provide product-specific knowledge to support unique server and UNIX/LINUX/Windows system requirements.
- Support Customer lead operations team effort with policy refinement to allow necessary application execution while fine tuning and tightening security rules as recommended through best commercial business practices.
- Provide recommendations for policy refinement and best business practices to operation teams for consideration.
- Engage in hands-on lab testing and development for problem resolution, new product reporting, or technical functionality.
- Review application of STIGs and DOD configuration guidance in images for completeness and correctness.
Requirements
- Active, in-scope US Government issued Top Secret clearance
- US Citizenship is required
- Trellix Certification
- Experience with ePO, HIPS, and VSE
- Experience with both Windows and Linux environments
- IAT Level II certification
Qualifications
- Bachelors Degree in IT or related field, and 3 years in with HBSS experience; 7 years IA experience with 3 years HBSS experience in lieu of degree
- Microsoft Azure Cloud certifications (desired)
- Windows server certifications (desired)
- Microsoft Defender for Endpoint (MDE) (desired)