Specialist, Cyber Intelligence
L3Harris Technologies · Tulsa, OK · 1 wk ago
On-siteInformation TechnologyFull-time
L3Harris Technologies is an agile global aerospace and defense technology innovator, delivering end-to-end solutions that meet customers’ mission-critical needs. The company provides advanced defense and commercial technologies across space, air, land, sea, and cyber domains. L3Harris has approximately $18 billion in annual revenue and 47,000 employees, with customers in more than 100 countries.
About the role
Performs ISSO duties under the guidance of the Information System Security Manager (ISSM) on assigned government-authorized systems. Knowledgeable in information technology and security.
Responsibilities
- Author and maintain documentation supporting the Assessment & Authorization (A&A) of assigned systems in accordance with the Risk Management Framework (RMF) under the DAAG (Formerly DAAPM) and NISPOM.
- Perform security control assessments as part of the systems’ Continuous Monitoring Plan.
- Oversee configuration management of assigned systems.
- Work with IT organization to develop device and system hardening guides following DISA and NIST guidelines.
- Audit systems to ensure security posture integrity.
- Conduct periodic hardware/software inventory assessments.
- Identify system security controls shortcomings and develop POA&Ms.
- Remediate control deficiencies.
- Conduct, document, and report annual self-assessments.
- Maintain operational information security posture for a system, program, or enclave.
- Investigate security incidents such as data spills, data integrity, and malicious events.
- Author and deliver security education training to a range of audience levels.
- Coordinate with the Information System Security Manager (ISSM) and Facility Security Officer (FSO) on system security compliance.
- Complete DISA Security Technical Implementation Guidelines (STIG) checklists and DISA Security Content Automation Protocol (SCAP).
- Review audit log data utilizing security tools (Log360, Splunk, VSFramework).
- Conduct and manage risk assessments in compliance with NISPOM/DAAPM/DAAG, RMF, JSIG, and NIST 800-series (e.g., 800-53, 800-171) standards.
- Assist FSO and Security Associates to help protect the integrity of legacy closed room and open storage secured areas.
- Contribute to Risk Management Framework (RMF) activities and related system lifecycle documentation (e.g., CONOPS, SOPs, training materials).
- Perform ISSO responsibilities as needed.
- Oversee cyber compliance efforts through self-inspections, customer audits, and system tests to ensure authorized operation.
- Ensure security requirements are addressed in acquisitions, procurements, and outsourcing efforts.
- Perform vulnerability, compliance, and network mapping scans on information systems and work with system administrators to address vulnerabilities (ACAS, Nessus).
- Assist COMSEC Managers with the incorporation of NSA Type 1 devices.
- Understand Windows Server infrastructure, ensuring seamless integration and operation with Linux systems.
- Ensure compliance with internal policies and regulatory standards.
Requirements
One of the following with an active Secret Clearance:
- Bachelor’s Degree and minimum 4 years of prior relevant experience.
- Graduate Degree and a minimum of 2 years of prior related experience.
- In lieu of a degree, minimum of 8 years of prior related experience.
Skills
- Active CompTIA Security+ or obtain 8410 Intermediate (formerly IAT Level II 8570) equivalent within 6 months of hire.
- Previous experience as an ISSO (or equivalent position) overseeing cybersecurity on classified and/or unclassified systems under NISPOM, NIST 800-53, and/or NIST 800-171.
- Experience in creating, conducting, or overseeing internal security assessments.
- Understanding of DAAG (Formerly DAAPM) and various NIST/DoD policies and procedures.
- Experience with Linux-based operating systems.
- Experience in security databases and sites including SIMS and eMASS.
Schedule
9/80 (employees work 9 out of every 14 days—totaling 80 hours worked—and have every other Friday off).