About this role
<p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Requisition Id 16575 </span></p><p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><strong>Overview:</strong></span></p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">The Field Intelligence Operations Division (FIOD) is seeking a Cybersecurity Specialist to provide day-to-day support for Sensitive Compartmented Information (SCI) and Special Access Program (SAP) systems. Qualified applicants have Information Systems Security Officer (ISSO) experience to support FIOD Operations for classified operations across a wide-breadth of information environments. The ISSO supports the Information Systems Security Manager (ISSM) in the certification and accreditation of systems/networks and implementation of cyber security requirements and procedures across the National Security Sciences Directorate at Oak Ridge National Laboratory. This role ensures compliance with DOE and sponsor (e.g. DoW) security policies and procedures as outlined in System Security Plans (SSPs), with a focus on system operations, maintenance, and disposal.</span></p> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">As part of our team, you will be joining a vibrant group of professionals eager to provide premier customer service to ensure people and information technology remain secure. The team is collaborative and strives to ensure security practices and procedures are understood, implemented, and enforced.</span></p> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><strong>Major Duties/Responsibilities: </strong></span></p> <ul> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Oversee compliance with DOE and DoW cybersecurity policies and SSPs across multiple facilities.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Conduct routine self-inspections, audits, and incident investigations, ensuring timely resolution and remediation.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Manage continuous monitoring activities, system recovery processes, and contingency planning.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Administer access controls, evaluate user accounts annually, and support ISSM in enforcing cybersecurity policy.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Create, review, and maintain SSPs using Xacta, and support certification and accreditation activities.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Perform and lead system certification testing, periodic and functional security testing, and annual self-inspections.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Monitor system audit logs, execute authorized data transfers, and manage classified media in accordance with policy.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Communicate effectively with stakeholders, document best practices, and deliver user training on security procedures.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Uphold high ethical standards and maintain a commitment to ES&H protocols</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Deliver ORNL’s mission by aligning behaviors, priorities, and interactions with our core values of Impact, Integrity, Teamwork, Safety, and Service. Promote equal opportunity by fostering a respectful workplace – in how we treat one another, work together, and measure success. </span></li> </ul> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><strong>Basic Qualifications:</strong></span></p> <ul> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">BS / BA degree in information technology or technical equivalent and a minimum of eight years of experience in cyber security and the C&A process. Additional years of experience may be considered in lieu of a degree.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Current TS clearance with SCI eligibility</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Previous experience supporting SCI environments</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Security + or equivalent DoD Directive 8570 / 8140 Information Assurance Management Level I - III certification</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Working knowledge of:</span> <ul> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Risk Management Framework (RMF) process & requirements.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">NIST and CNSSI requirements</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Intelligence Community Directive 503 (ICD-503)</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Joint Special Access Program (SAP) Implementation Guide (JSIG)</span></li> </ul> </li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Excellent written and oral communication skills</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Demonstrated organizational skills</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Must be organized, self-motivated, and be able to work with minimal guidance</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Excellent written and verbal communication skills with an ability to interface with numerous cognizant security agencies, customers, and senior managers</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Previous experience in developing, testing, and collecting artifacts for RMF packages and BoEs of multiple systems</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Experience in authorized data transfers across multiple systems and different classifications</span></li> </ul> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><strong>Preferred Qualifications:</strong></span></p> <ul> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Eligibility for access to Special Access Program Information</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">CISSP, SEC+, or other relevant certifications</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Relevant ISSO / ISSE experience within the DoW or Intelligence Community.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Experience with DoW/IC cybersecurity practices for on-premises and cloud native Kubernetes-based processing system.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Knowledge of the Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs) and configuration standards.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Working knowledge of Industry Standard tools for purposes of audit reduction, vulnerability scanning, and malware analysis is preferred. Relevant tools include but are not limited to: Splunk, Tenable Nessus, Host Based Security System (HBSS) components, Security Content Automation Protocol (SCAP) Checker, and STIG viewer.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Experience with Security Directives, Policies, Publications, and Regulations.</span></li> </ul> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><strong>S</strong><strong>pecial Requirements:</strong></span></p> <ul> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Visa sponsorship is not available for this position.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Work may involve various physical requirements and working conditions.</span></li> <li style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">This position requires the ability to obtain and maintain a Secret Compartmented Information (SCI) clearance from the Department of Energy. As such, this position is a Workplace Substance Abuse (WSAP) testing designated position. WSAP positions require passing a pre-placement drug test and participation in an ongoing random drug testing program. In addition, due to the SCI, you may also be subject to random polygraph testing. </span></li> </ul> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black"><strong>Benefits at ORNL: </strong></span></p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">ORNL offers competitive pay and benefits programs to attract and retain dedicated people! The laboratory offers many employee benefits, including medical and retirement plans and flexible work hours, to help you and your family live happy and healthy. Employee amenities such as on-site fitness, banking, and cafeteria facilities are also provided for convenience.</span></p> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">Other benefits include the following: Prescription Drug Plan, Dental Plan, Vision Plan, 401(k) Retirement Plan, Contributory Pension Plan, Life Insurance, Disability Benefits, Generous Vacation and Holidays, Parental Leave, Legal Insurance with Identity Theft Protection, Employee Assistance Plan, Flexible Spending Accounts, Health Savings Accounts, Wellness Programs, Educational Assistance, Relocation Assistance, and Employee Discounts.</span></p> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">If you have difficulty using the online application system or need an accommodation to apply due to a disability, please email: <a style="color:black" href="mailto:[email protected]">[email protected]</a>.</span></p><p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">This position will remain open for a minimum of 5 days after which it will close when a qualified candidate is identified and/or hired.</span></p> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">We accept Word (.doc, .docx), Adobe (unsecured .pdf), Rich Text Format (.rtf), and HTML (.htm, .html) up to 5MB in size. Resumes from third party vendors will not be accepted; these resumes will be deleted and the candidates submitted will not be considered for employment.</span></p> <p> </p> <p><span style="font-family:arial, helvetica, sans-serif;font-size:10.0pt;color:black">ORNL is an equal opportunity employer. All qualified applicants, including individuals with disabilities and protected veterans, are encouraged to apply. UT-Battelle is an E-Verify employer.</span></p>