Odyssey Systems Consulting Group is hiring: Cybersecurity SME in Bedford
Odyssey Systems Consulting Group, Bedford, MA, United States, 01730
Overview
Cybersecurity SME (Principal) supporting the Air Force Life Cycle Management Center/PEO Electronic Systems Directorate (AFLCMC/HB) within the HBU Force Protection Division at Hanscom AFB. Responsibilities include ensuring all system and application deliverables comply with DoD and Air Force cybersecurity policies, RMF for DoD IT, DISA STIG requirements, PKI/PK, and certifications for cybersecurity workforce compliance.
Location: Onsite, Hanscom AFB, Bedford, MA. Job locations include US-MA-Bedford with Hanscom AFB as the primary site.
Position Summary
Odyssey Systems has an exciting opportunity for a Cybersecurity SME (Principal) supporting AFLCMC/HB within the HBU Force Protection Division. The role provides cybersecurity support to ensure compliance with applicable DoD and Air Force cybersecurity policies across the acquisition lifecycle, guiding RMF activities, managing cyber risks, securing systems, and providing acquisition security support to deliver secure, mission-ready capabilities to the warfighter.
Responsibilities
- In advisory and assistance services (A&AS), provide expert-level cybersecurity support to DoD programs by assisting government leadership with decision-making, planning, and execution throughout the acquisition lifecycle.
- Apply technical and professional expertise to ensure compliance with DoD and Air Force cybersecurity policies and regulations; contribute to mission success and secure capabilities.
- Ensure all systems, applications, and deliverables comply with DoD cybersecurity policies, RMF accreditation requirements, and DISA STIG application security standards.
- Develop security documentation (System Security Plan, Program Protection Plan, Security Risk Analyses, OPSEC Plans, Security CONOPS).
- Assess and guide RMF A&A activities and artifacts for DoD and Air Force compliance.
- Update, monitor, and manage program cybersecurity data, system user accounts, PKI access, ports/protocols, and security configurations.
- Recommend cybersecurity policies, procedures, and security controls to prevent unauthorized access and ensure system integrity, confidentiality, and availability.
- Conduct risk and vulnerability assessments, system security evaluations, contingency planning, and disaster recovery procedures.
- Promote cybersecurity awareness and ensure security principles are applied throughout program planning and execution.
- Provide leadership in analyzing and testing cybersecurity requirements across system design, development, integration, and implementation.
- Develop risk-based mitigation strategies and assess security controls implementation in open systems architecture designs.
- Support acquisition security tasks, including source selection security, review of Contractor deliverables, security surveys, and updates to security classification guides.
- Provide classified information protection, including inventory management, access control verification, security education, FMS case management support, and compliance with System Security Classification Guides (SSCG).
- Maintain security databases for classified materials, conduct audits of holdings, and support security awareness training.
- Support development and implementation of communications security programs, acquisition security policies, and operational security practices.
- Collaborate with Authorizing Officials and stakeholders to ensure system approval through the RMF A&A process.
- Prepare and review acquisition program documentation for cybersecurity compliance.
- Conduct security assessments, evaluations, and hardware reviews throughout the program lifecycle.
Qualifications
Citizenship: Must be a US citizen
Clearance: Active Secret Clearance
Education: Bachelor’s Degree in a related field and 25 years of experience, with 15 years in the DoD; or 30 years of directly related experience with proper certifications, with 20 years in the DoD.
Preferred Qualifications
- Master’s or Doctorate Degree in a related field with at least 20 years of experience, including 12 years in the DoD
- Understanding of DoD cloud infrastructure cybersecurity
- Familiarity with Agile, CI/CD, DevSecOps, and DevOps methods
- Strong written and verbal communication skills on highly technical cybersecurity topics
Technical Skills
- Cybersecurity policy compliance (DoDI 8500.01, 8510.01, 8520.02)
- RMF A&A process implementation and accreditation artifact development
- Risk and vulnerability assessments, mitigation strategies, and contingency planning
- DISA STIG application security scanning and remediation
- Classified information protection, security classification guide development, and FMS case management support
Interpersonal Skills
- Ability to collaborate with Authorizing Officials, stakeholders, and system developers
- Strong communication and briefing skills for technical cybersecurity documentation
- Ability to provide leadership and guidance on security policy implementation across multiple systems
Additional Information
Location: Onsite, Hanscom AFB, Bedford, MA
Travel: Travel may be required for cybersecurity assessments or incident response
#LI-DD1
Company Overview
Odyssey Systems is a world-class technical, engineering, and integration company serving the warfighting ecosystem with airborne integration, ISR, C2, and warfighter readiness capabilities. Odyssey focuses on delivering engineering excellence and responsible contract execution, fostering a workplace built on employee care. Odyssey supports OdysseyCares, a philanthropic program for giving back through donations, an employer match, and volunteering events.
Please note: Final compensation will be determined by factors including contract wage rates, work experience, skills, location, education, and certifications.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities