SonicJobs Logo
Left arrow iconBack to search

Information Assurance II (Vulnerability Assessment/ACAS Security Manager)

DLS Engineering
Posted a month ago, valid for 19 days
Location

Montgomery, AL, US

Salary

$75,000 - $78,000 per year

Contract type

Full Time

Health Insurance
Paid Time Off
Life Insurance
Disability Insurance

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • DLS Engineering is hiring an Information Assurance III (Vulnerability Assessment/ACAS Security Manager) for a full-time position at Gunter Annex in Montgomery, Alabama.
  • The role requires 5+ years of experience with security tools like NESSUS and ACAS, along with IAT-II certification and an active Secret clearance.
  • Key responsibilities include measuring defense effectiveness, analyzing vulnerabilities, managing network hardware access, and conducting vulnerability scans.
  • The position offers a competitive salary alongside a comprehensive benefits package, including health, vision, dental, and a 401k program with company match.
  • Candidates must pass a government background check prior to employment.

Position overview:

DLS Engineering is seeking a Information Assurance II (Vulnerability Assessment/ACAS Security Manager) professional for a full-time position in support of the Air Force Intranet Control (AFINC) program at Gunter Annex in Montgomery, Alabama. This is an on-site position.


As part of AFINC, the mission of the 26th Network Operations Squadron (26 NOS) is to provide mission assurance to the warfighter through the operation, management, and defense of the Department of Defense Information Network (DODIN). In the execution of its mission, the 26 NOS maintains network infrastructure, to include routers, switches, proxies, firewalls, servers, workstations, printers, Storage Area Networks (SAN) and test labs, to provide maneuverability and defense of both classified and unclassified networks.


A day in the life:

  • Measures effectiveness of defense‐in‐ depth architecture against known vulnerabilities using available tools within organization to find them.
  • Analyze, prioritize, and mitigate vulnerabilities to lower or eliminate risk.Ā 
  • Create reports to effectively communicate to governmentĀ  problems and proposed solutions.Ā 
  • Actively manage (inventory, track, and request corrective action) all hardware devices on network that only authorized devices is given access and unauthorized and unmanaged devices are found and prevented from gaining access.Ā 
  • Conduct/review/validate vulnerability scans. Perform vulnerability scans to include analysis of results, identification of false positives, exceptions, and subsequent POA&MsĀ  and/or MFRs creation, monitoring and reporting to include POA&M status and contributions to Monthly and Quarterly reports.Ā 
  • Collects and reviews data gathered from a variety of tools (including intrusion detection system alerts, firewall, network traffic logs, and host system logs) to analyze events for possible attacks that occur within the environment. The environments can be computing, network, or enclave.
  • Validates, investigates, and analyzes all response activities related to cyber incidents. These tasks include, but are not limited to: creating and maintaining incident tracking information; planning, coordinating, and directing recovery activities; andĀ  incident tracking information; and incidents analysis tasks, including examining all available information and supporting evidence of artifacts related to an incident or event.

When I read the below it sounds like me:

  • 3+ years of experience in utilizing security relevant tools to include: NESSUS, ACAS, DISA STIGs,Ā  Audit Tools, Forescout, ESS, Performs assessments of system and network and identifies where the system/network deviate from acceptable configurations, DoW policy, or local policy/guidelines
  • IAT-II certification (required)
  • Active Secret clearance (required)

Other information:

  • We offer a competitive salary and a 401k program with company match.
  • We offer a comprehensive benefits package including health, vision, dental, life, and disability insurance.
  • We offer a generous paid time off package
  • If accommodation is needed with the application and / or the interview process for applicants with disabilities, please contact Human Resources at 757-494-5151.
  • DLS is an E-Verify company.
  • DLS is an equal employment opportunity employer. Qualified applicants will receive consideration without regard to age, race, religion, sex (pregnancy, sexual orientation, gender identity), national origin, or disability. We encourage all qualified applicants to apply. If you believe you have been discriminated against, please contact Barbara Ellison. You also have the right to file a charge of discrimination with the equal employment opportunity commission.
  • Must be able pass a government background check, whichĀ will be completed before employment.



Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.