BAE Systems
- *Job Description**
- *Join Our Team as a Deputy Cybersecurity manager**
- This candidate shall be located within 50 miles of Sterling, VA.
- \#Castle-Net
- *Required Education, Experience, & Skills**
- *Required Education, Experience, & Skills**
- Bachelor's degree in a relevant field (e.g., Computer Science, Information Assurance, Cybersecurity)
- Minimum 10 years of experience in cybersecurity, with 5 years in a leadership or management role
- Exhibits an exceptional degree of ingenuity, creativity, and resourcefulness
- Applies and/or develops highly advanced concepts, techniques, and standards
- Viewed as expert in the field outside of the corporation
- ITIL V4 Foundation Level Certification (or obtain within six months)
- Active Top Secret security clearance
- Certification in accordance with the DoD 8140 DCWF at the Advanced level (or obtain within six months)
- **Cybersecurity frameworks and tools, including:** RMF processes Zero trust principles (e.g., continuous authentication, micro-segmentation) SIEM platforms (e.g., Splunk, QRadar)
- **Vulnerability and incident management, including:** Vulnerability assessments using tools like Nessus or Tenable Incident response for breaches, including forensics and recovery
- Automation and workflow integration, including: Leveraging platforms like ServiceNow to automate security processes
- Familiarity with operating systems (e.g., Windows, Linux) and network security tools like firewalls, IDS/IPS, and antivirus
- Develop and implement cybersecurity strategies, aligning with organizational objectives and integrating frameworks like zero trust, RMF, and comply-to-connect policies
- Establish enterprise-wide security policies, including incident response plans, disaster recovery, and risk management processes
- Oversee budgeting for cybersecurity initiatives, including staffing for 24/7 SOC operations, procurement of tools, and automation investments
- Manage SOC teams, Tier 1 support, and cybersecurity staff, ensuring training, certifications, and operational readiness for 24/7 monitoring
- Direct response to high-severity incidents, coordinating with internal teams, law enforcement, and external agencies
- Foster a culture of security awareness, mentoring staff and promoting professional development to build a resilient team
- Ensure compliance with government standards such as NIST SP 800-37, FISMA, FedRAMP, and DoD directives
- Conduct enterprise-wide risk assessments, manage Plans of Action and Milestones (POA&Ms), and oversee Authorization to Operate (ATO) processes
- Lead audits, prepare reports for oversight bodies, and ensure continuous monitoring to maintain system accreditations
- Effective communication for reporting to senior leadership, training staff on security awareness, and collaborating with external entities during incidents
- Executive communication, translating complex technical risks into business terms for senior leadership
- Cross-functional collaboration, working with IT, legal, procurement, and external partners to integrate security into enterprise operations
- *Preferred Education, Experience, & Skills**
- *Preferred Education, Experience, & Skills**
- Master's degree in a relevant field (e.g., Computer Science, Information Assurance, Cybersecurity)
- Additional advanced insdustry recongized certifications
- Experience with emerging technologies like cloud security, endpoint protection, and encryption for classified systems
- Familiarity with industry-standard cybersecurity tools and technologies