Security Specialist

Full Time
San Antonio, TX 78205
Posted
Job description

Security Specialist


Primary Location: Lackland AFB – San Antonio, TX

Must be a U.S Citizen

Security Clearance: Active Top-Secret w/SCI Eligibility

This position is contingent on contract Award


Job Summary

Obsidian is seeking an experienced and motivated Security Specialist to join our Lackland AFB team. The Security Specialist ensures that the stakeholder security requirements necessary to protect the organization’s mission and business processes are adequately addressed in all aspects of enterprise architecture including reference models, segment and solution architectures, and the resulting systems supporting those missions and business processes.


Specific Responsibilities

  • Conduct semi-annual self-inspections, updating inspections, checklists and reporting inspection results to leadership.
  • Perform information security operations including TEMPEST inspections and personnel training, operations security and industrial security management.
  • Maintain security continuity and provide security reviews of test plans, test reports, appraisals, award nominations, test documentation, attend quarterly security meetings, secure facility visitation logs and other documentation as required
  • Process proxy badge requests for physical entrance to the facility, visit requests for personnel, visits to outside agencies and visitations from other organizations (including Foreign Nationals for approval) and requests for equipment usage within the secure facilities.
  • Conduct annual audit of entry credential and proxy badges.
  • In-process and train new personnel on security policies and practices.
  • Provide Document Destruction System (DDS) management to ensure unneeded documentation is destroyed properly.
  • Process compelling need letters to allow disclosure of secure materials on a need-to-know basis, process strict security requests for the introduction or removal of vendor-owned equipment, requests for courier cards and one-time courier authorization letters.
  • Provide thorough sanitization, serial number validation, and documentation of identified equipment for Defense Reutilization and Marketing Office (DRMO).
  • Maintain passwords and combinations of secure storage equipment and end of day SF Form 701s (security check forms).
  • Perform security reviews, identify gaps in security architecture, and develop a security risk management plan.
  • Provide input on security requirements to be included in statements of work and other appropriate procurement documents.
  • Analyze candidate architectures, allocate security services, and select security mechanisms.
  • Develop a system security context, a preliminary system security Concept of Operations (CONOPS) and define baseline system security requirements in accordance with applicable cybersecurity requirements.
  • Evaluate security architectures and designs to determine the adequacy of security design and architecture proposed or provided in response to requirements contained in acquisition documents.
  • Determine the protection needs (i.e., security controls) for the information system(s) and network(s) and document appropriately.
  • Assess and design security management functions as related to cyberspace.


Qualifications

  • 8+ years of experience
  • Bachelor’s Degree or equivalent experience.
  • IAT II; C&A RMF certification. Security +
  • Knowledge of Security Assessment and Authorization process, industry-standard and organizationally accepted analysis principles and methods.
  • Knowledge of multi-level security systems and cross domain solutions, Personally Identifiable Information (PII) data security standards.
  • Knowledge of organization's evaluation, validation criteria and demilitarized zones.
  • Knowledge of network design processes, to include understanding of security objectives, operational objectives, and trade-offs.
  • Knowledge of access authentication methods.
  • Skill in designing countermeasures to identified security risks.
  • Skill in designing the integration of hardware and software solutions.
  • Skill in determining how a security system should work (including its resilience and dependability capabilities) and how changes in conditions, operations, or the environment will affect these outcomes.
  • Skill in designing multi-level security/cross domain solutions.
  • Skill in using Public-Key Infrastructure (PKI) encryption and digital signature capabilities into applications (e.g., S/MIME email, SSL traffic).
  • Skill in applying security models (e.g., Bell-LaPadula model, Biba integrity model, Clark-Wilson integrity model).
  • Skill in translating operational requirements into protection needs (i.e., security controls).
  • Skill to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Skill to identify cybersecurity and privacy issues that stem from connections with internal and external customers and partner organizations.
  • Ability to apply the methods, standards, and approaches for describing, analyzing, and documenting an organization's enterprise information technology (IT) architecture (e.g., Open Group Architecture Framework [TOGAF], Department of Defense Architecture Framework [DoDAF], Federal Enterprise Architecture Framework [FEAF]).
  • Ability to communicate effectively when writing, conduct vulnerability scans and recognize vulnerabilities in security systems.
  • Ability to apply secure system design tools, methods and techniques.
  • Ability to serve as the primary liaison between the enterprise architect and the systems security engineer and coordinates with system owners, common control providers, and system security officers on the allocation of security controls as system-specific, hybrid, or common controls.
  • Ability, in close coordination with system security officers, advise authorizing officials, chief information officers, senior information security officers, and the senior accountable official for risk management/risk executive (function), on a range of security-related issues (e.g. establishing system boundaries; assessing the severity of weaknesses and deficiencies in the system; plans of action and milestones; risk mitigation approaches; security alerts; and potential adverse effects of identified vulnerabilities).


Physical Requirements and Work Environment

  • Normal Office environment


Travel

  • Up to 10%


Company Description

Obsidian Solutions Group LLC (OSG) is a fast-growing professional services firm based in Fredericksburg, VA. We create value for our customers by delivering technology-enabled & mission-oriented technical solutions that solve complex problems, protecting people, information, and assets. Our core capabilities are in providing Enterprise IT, Intelligence Analysis, Production & Development and Knowledge-Based Professional Services Solutions that enable the customer’s mission. Obsidian Solutions Group LLC is a certified 8(a), service-disabled, veteran-owned small business.

A career at Obsidian Solutions Group means you are able to put your expertise, credentials, and talents to great use working with customers in the DOD and Intelligence Community, while enjoying the excitement of working in a fast-growing organization committed to making a difference for our customers and in our community. Contribute independently and collaboratively alongside our amazing team of doers and thinkers. Obsidian Solutions Group is small enough to offer a family atmosphere yet large enough to deliver a highly competitive compensation package. We hire and retain the best in the industry, offering exceptional benefits that protect the well-being of our employees, their spouses and domestic partners, and their families.

Our corporate philosophy is centered on hiring and retaining employees with the requisite skills, professional experience, personal commitment, and ethical standards necessary to foster a culture of operational excellence necessary to surpass our customer’s expectations.


Disclaimer

The above information on this description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities, and qualifications required of employees assigned to this job.

Obsidian Solutions Group is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, parental status, protected veteran status, and any other non-merit factor, or any other characteristic protected by law.

colinoncars.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, colinoncars.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, colinoncars.com is the ideal place to find your next job.

Intrested in this job?

Related Jobs

All Related Listed jobs