top of page
mixed-team-of-software-engineers-brainstorming-ide-2022-01-18-15-36-06-utc-min.jpg
JOB DETAILS

HBSS/ENS Administrator

Position Details

LOCATION: Annapolis Junction, MD | Monday thru Friday

Position requires an active TS/SCI with polygraph level clearance. US citizenship is required.


We are seeking a skilled Senior HBSS/ENS Administrator in Annapolis Junction, MD to join the Carson Solutions (CS) team supporting DOD-IC. The program provides enterprise-wide IT support to enable Information Management & Technology Directorate (ITD) to consolidate, modernize, and continuously innovate the delivery of IT services and mission capabilities to internal and external mission partners operating in CONUS and OCONUS locations. The candidate will be responsible for ensuring the security and integrity of IT systems by running their Endpoint Security with experience in TRELLIX and Microsoft Defender. Administrators will also be responsible in applying Security Technical Implementation Guides (STIGs), managing system patches, and overseeing vulnerability management processes.


This role supports federal clients in maintaining compliance with the (DOD-IC) and other federal cybersecurity standards. The ideal candidate will be responsible for identifying points of vulnerability, non-compliance with established Information Assurance (IA) guidelines and regulations and recommend mitigation strategies, along with assisting users as needed in a classified computing environment. The selected candidate must be able to work independently as well as with a team of IT analysts, administrators, and engineers. The position requires excellent communications skills, both verbal and written. The candidate must be able to work in a high-energy environment and adapt to shifting priorities.


DUTIES AND RESPONSIBILITIES

This role will provide continuous upkeep, monitoring, analysis, and response to Information System, network and security events using Endpoint Security tools such as TRELLIX and Microsoft Defender.


STIG Application and Compliance: Implement and maintain Security Technical Implementation Guides (STIGs) on Endpoint Security Tools. Conduct regular STIG compliance checks using tools like SCAP Compliance Checker and STIG Viewer. Document STIG configurations and remediation actions to ensure audit readiness.


Patching and System Updates: Manage and deploy operating systems and application patches in accordance with federal patch management policies. Coordinate patch schedules to minimize operational impact while meeting compliance deadlines.

Verify patch deployment success and troubleshoot any issues arising from updates.


System Hardening: Harden systems by applying best practices and federal security guidelines to reduce attack surfaces. Maintain configuration baselines and ensure systems adhere to DoD and NIST standards.


Incident Response Support: Participates in internal/external security audits/inspections; performs risk assessments and Continuous Monitoring. Assist in identifying and responding to security incidents related to vulnerabilities or misconfigurations. Document incidents and contribute to after-action reports for continuous improvement.


Collaboration and Reporting: Work closely with system administrators, engineering staff, and compliance teams to ensure cohesive security operations. Prepare detailed reports and briefings for federal clients on STIG compliance, patching status, and vulnerability management efforts. Develop, implement and enforce Information Security Policies and Procedures.


Tool Utilization: TRELLIX and Microsoft Defender.


EXPERIENCE

  • Understanding of the Risk Management Framework (RMF), NIST, ICD, and CNSS standards.

  • Familiarity with network technologies (LAN & WAN) and best practices within a classified environment to include crypto and key management

  • STIG compliance, SCC and STIG Viewer experience, and ACAS expertise.

  • Advanced knowledge with Microsoft Windows, Linux, and system virtualization in a secure network environment.

  • Must be able to work in a constantly changing regulatory environment with short-, mid-, and long-term timelines for remediating any non-compliance

  • Must be able to work well within a team environment and able to adapt quickly to change

  • Good writing and verbal presentation skills


REQUIREMENTS

  • BS bachelor’s degree with 12+ years of Information Assurance experience. Specific experience, education and training may be considered in lieu of degree.

  • Active HBSS 301 Certification


    Mandatory Certifications:

    Security+ or CISSP or equivalent


    Preferred Skills:

    • Ansible Automation Platform and/or Microsoft Endpoint Configuration Manager experience

    • Linux certification (RHCSA, CompTIA Linux, LCFS/LCFE, etc.)


Salary:

The likely salary range is up to $165K. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.


GWGES-01

bottom of page