Cyber Security Engineer - ACAS; Hybrid Seaside, CA
Listed on 2026-06-03
-
IT/Tech
Cybersecurity
Cyber Security Engineer – ACAS (Hybrid)
ASRC Federal Net Centric Technology is seeking a Cyber Security Engineer – ACAS (HYBRID) to support one of our federal government clients. The successful candidate MUST possess an active Secret Security Clearance and will be part of a Governance and Compliance team of professionals ensuring proper maintenance of the Assured Compliance Assessment Solution (ACAS) suite of applications and vulnerability management in support of RMF activities.
The position is hybrid, requiring onsite presence 3-days a week at our customer location in Seaside, California or Alexandria, Virginia.
- ACAS Management:
Assist in the design, development, and implementation strategy for ACAS to meet security objectives for cloud infrastructure and enterprise network environments. - Vulnerability Management:
Lead configuration and optimization of ACAS policies, write scripting (Bash, Python), and perform root‑cause analysis to resolve issues. - Develop vulnerability policies, custom alerts, scan policies, and ticketing workflows.
- Cross‑reference weekly IAVM compliance reports with ACAS scan results to identify and remediate vulnerabilities.
- Support cybersecurity reviews and audits to ensure systems meet DoD 8140 and 8570 compliance standards.
- Governance and Compliance:
Support ISSO/ISSM/SO activity to ensure proper documentation for Authority to Operate (ATO) and Continuous Monitoring are maintained and updated. - Detection and Response:
Participate in cross‑functional activities to assess operational impact of enterprise systems as identified in U.S. Cyber Command (USCC) and Joint Force Headquarters (JFHQ) directives. - Reporting and Documentation:
Assist in the generation and maintenance of cybersecurity RMF artifacts such as System Security Plans,
POA&M, and security CONOPS
. - Continuous Process Improvement:
Regularly review and update vulnerability management processes and procedures (SOP) based on lessons learned from routine and event‑oriented incidents in accordance with DoD regulations, directives, and industry best practices.
- Active Secret Clearance and a Bachelor's degree in Information Technology, Cybersecurity, or related field.
- Active DoD 8570 IAT Level II certification or greater, and at least one of the following in good standing: CCNA Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP, CASP+CE, CCNP Security, CISA, CISSP (Associate), GCED, GCIH, or CCSP.
- 6+ years of relevant IT or Cybersecurity experience, including 4+ years managing the ACAS suite throughout its lifecycle—deployment, configuration, integration into enterprise networks, continuous monitoring, maintenance, and optimization.
- DISA ACAS certified.
- Strong knowledge of Linux and Windows operating systems, with proficiency in Bash and Python scripting for automation and ACAS tool customization.
- Experience in vulnerability management, interpreting and remediating ACAS scan results, managing IAVM reporting, analyzing system vulnerabilities, and ensuring full lifecycle security solutions using ACAS.
- Proven ability to generate security artifacts (POA&M, CONOPS, security plans), implement end‑to‑end ACAS solutions, and collaborate effectively in team environments to address evolving cybersecurity threats.
- Deep understanding of DoD IT systems configuration and extensive hands‑on experience with ACAS tools to ensure security and compliance of cloud infrastructure and enterprise environments.
- Familiarity with tools such as ESS, Microsoft Defender, Splunk, Tanium, and Burp Suite and how they complement one another in supporting cybersecurity services.
_$ – $_ depending on experience, seniority, geographic location, and other factors permitted by law.
Benefits & Perks- Purpose‑Driven Careers: Certified Great Place to Work, Military Times’ Best for Vets Employer, ’s Top 25 Veteran Employer.
- Comprehensive Benefits: Insurance coverage for medical, dental, vision, life, and disability; paid leave and 11 paid holidays annually.
- Retirement Savings: 401(k) plan with company match and immediate vesting.
- Incentives: Employee referral bonuses.
- Learning and Development: Post‑90 days professional development program, including funding for degrees, certifications, and conferences.
- Centers of Excellence: Access to communities of practice and growth opportunities.
Job Family:
Information Technology
Job Function:
Information Security
Pay Type:
Salary
Education Level: Bachelor’s Degree
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).