PURPOSE AND SCOPE:
Provide technical services required to maintain, operate, and support unclassified and classified and standalone/closed communication systems. Provide technical services required to maintain, operate, and support unclassified and classified and standalone/closed communication systems. This position is in support of the Air Force Contract Augmentation Program (AFCAP) and is located at Ascension Island Auxiliary Airfield (AAAF).
ESSENTIAL RESPONSIBILITIES:
- Participate in the Cybersecurity Program (formerly known as the Information Assurance (IA) Program) and perform General Cybersecurity Support Activities and Communication Management for the successful operation of Communication and Air Force IT assets IAW technical orders and other applicable directives to include Time Compliance Technical Orders (TCTO), Time Compliance Network Orders (TCNO), Maintenance Tasking Orders (MTO), Cyber Control Orders and Cyber Tasking Orders (CTO).
- Establish a Cybersecurity Training Plan including:
- General familiarization with current Certification and Accreditation process. Familiarization with current cybersecurity applicable Department of Defense Air Force, and local Ascension Island range instructions, policies, procedures, and POCs.
- Ensure that specific system training addressing system capabilities, limitations, and mitigating factors utilized by the system to include access controls, system monitoring, resource protection, and specific system threats takes place.
- Ensure all communication systems are Security Technical Implementation Guide (STIG) compliant.
- Ensure compliance with the Federal Information Security Modernization Act of 2014 (FISMA) and provide reports as directed by the Government.
- Support the resolution of Negligent Discharge of Classified Information (formerly known as Classified Message Incident) IAW TASKORD 2017-030-003D and follow-on documentation.
- Support IA Audit or Inspector General inspections activities as directed by the Government, as well as any Government investigation of suspected wrongful use of U.S. Government computer assets.
- Implement Notice to Airmen (NOTAM) and Standard Desktop Configuration (SDC) actions within specified implementation timelines.
- Monitor and take necessary action on trouble reports, AFCERT Compliance Messages, Information Assurance Vulnerability Alerts (IAVA), emerging threats, or other actions directed by the Government to secure the network. (CDRL A011).
- Immediately report any actions which result in or upon discovery of an unauthorized system access, denial of service, loss of data, loss of system or data integrity, or disclosure of sensitive information.
- Forward compliance messages to the applicable agency directing the action.
- Prepare a list of actions taken to correct deficiencies, system vulnerabilities, possible compromises or procedural deviations of information processed in an Automated Information System (AIS).
- Ensure personnel with elevated (administrative) privileges accessing Department of Defense information systems have and maintain the proper and current information assurance certification to perform cybersecurity functions IAW Department of Defense 8500.01 and AFMAN 17-1303.
- Ensure classified and unclassified network Risk Management Framework (RMF) packages and cyber security service requirements for AAAF are fulfilled in order for the Government Customer to obtain approval from the Authorization for Configuration Change (ACC) Authorizing Official.
- Ensure personnel performing Cybersecurity or IA functions shall have proper certifications and provide documentation to the Government upon request
- Ensure all additions and upgrades to software beyond what is included in the Government provided SDC have a current certification memo and be presented to the Wing Cybersecurity Office for evaluation and approval before the software is added.
- Determine and document if anomalies that occur during the update process are caused by the update itself or are unrelated.
- Analyze unique configurations of user systems affected by updates to determine impacts prior to implementation.
- Install, operate, and maintain network operating systems and services (software patching, server virtualization, file storage, web, and print to authorized Operational Wing and tenant users), and provide anomaly resolution and restoral to the Government as required.
- Implement updates to Government systems on the network while de-conflicting updates with on-going user operations and minimizing risk of disrupting service and notify Government of any implementation delays or issues.
- Report any actions which result in unauthorized system access, denial of service, loss of data, loss of system or data integrity, or disclosure of sensitive information immediately upon discovery to the appointed Cybersecurity Liaison IAW AFI 17-130.
- Report all security incidents immediately upon discovery in writing and verbally (via approved classified Communication platform).
OTHER RESPONSIBILITIES:
Safety - Amentum enforces a safety culture whereby all employees have the responsibility for continuously developing and maintaining a safe work environment. As appropriate, each employee is responsible for completing all training requirements and fulfilling all self-aid/buddy aid responsibilities, participating in emergency response tasks, and serving on safety committees and teams.
Quality - Quality is the foundation for the management of our business and the keystone to our goal of customer satisfaction. It is our policy to consistently provide services that meet customer expectations. Accordingly, each employee must conform to the Amentum Quality Policy and carry out job activities in compliance with applicable Amentum Quality System documents and customer contracts. Each employee must read and understand his/her Quality Management and Customer Satisfaction responsibilities.
Procedure Compliance - Each employee must read, understand, and implement the general and specific operational, safety, quality and environmental requirements of all plans, procedures and policies pertaining to job.