Technology & Security Manager
AECOM
**Company Description**
**Work with Us. Change the World.**
At AECOM, we're delivering a better world. Whether improving your commute, keeping the lights on, providing access to clean water, or transforming skylines, our work helps people and communities thrive. We are the world's trusted infrastructure consulting firm, partnering with clients to solve the world’s most complex challenges and build legacies for future generations.
There has never been a better time to be at AECOM. With accelerating infrastructure investment worldwide, our services are in great demand. We invite you to bring your bold ideas and big dreams and become part of a global team of over 50,000 planners, designers, engineers, scientists, digital innovators, program and construction managers and other professionals delivering projects that create a positive and tangible impact around the world.
We're one global team driven by our common purpose to deliver a better world. Join us.
**Job Description**
**AECOM** is seeking a **Technology & Security Manager** to be based out of our **Arlington, VA** office. The candidate will possess a level of expertise necessary to advise others on relevant Federal, DOD, and civil guidance for infrastructure protection and IT/OT security.
+ Serves as a subject matter expert security engineering specialist across a broad range of customer projects and government programs.
+ Working with limited direction and supervision, the candidate will plan and perform detailed security engineering projects with a focus on provided scope and budget.
+ Assists management in meeting budgetary/cost constraints, deadlines, goals and objectives for the primary area of assignment or project assigned. Serves as a technical consultant and primary point of contact worldwide for his/her area of expertise. It is critical that the candidate be organized, independent, and able to support multiple projects at once to meet fast timelines. Other specific responsibilities include:
+ Plans and directs ICS/SCADA system inventories following guidance including, but not limited to Unified Facilities Criteria (UFC) 4-010-06, Cybersecurity of Facility-Related Control Systems.
+ Assist in the development and verification of documentation necessary to complete the DoD RMF assessment and authorization process as required
+ Work in a team environment alongside other cybersecurity engineers and Risk Management Framework (RMF) analysts.
+ Perform all other position related duties as assigned or requested.
+ Development of security engineering studies, e.g., studies designed to identify deficiencies related to design & construction standards aligned with performance-based compliances & testing.
**Qualifications**
**Minimum Requirements**
+ Bachelor's Degree in Information Technology or related field +8 years of related experience or demonstrated equivalency of experience and/or education.
+ Certified Information Systems Security Professional (CISSP).
+ As a condition of employment, ability to maintain DoD clearance level of TS/SCI.
+ Required to travel to CONUS and OCONUS Government and Commercial facilities to support the development and implementation of the DoD Risk Management Framework (RMF) process.
+ U.S. Citizenship required, due to the nature of the work.
**Preferred Experience:**
+ Master's degree in Information Technology or related field.
+ 10+ years of relevant experience in the information technology industry, federal and defense agencies, and or government contractor experience with physical and IT security.
+ 10+ years of experience working with industry and government agencies on the design of ICS platforms and integrated ICS systems.
+ Demonstrated experience with architectural and engineering firms, construction related projects, and a proven ability to work effectively within a project team environment
+ Proficient in IT and industrial control protocols including TCP/IP, SCADA, and building automation controls
+ Comprehensive SME knowledge of security criteria & compliances; Specifically;
+ The DoD Minimum Antiterrorism Standards for Buildings (Current Version)
+ Unified Facilities Criteria (UFC) Security Engineering Series
+ In-depth understanding of UFC 4-010-06 and the five-step process for Facility Related Control System Cybersecurity
+ UFGS Division 25 specifications
+ DoD Instruction 8510.01
+ ISC Risk Management Processes for Federal Facilities & supporting Appendices, and other federal and DoD compliances.
+ Experience with scoping and criteria documents.
+ Experience working on government and/commercial projects implementing cybersecurity requirements in a variety of industrial control systems (e.g., building management, electronic security, fire alarm/mass notification, electrical distribution, power management, etc.).
+ Ability to interpret drawings both mechanical and electrical.
+ Ability to train others with lesser skills.
+ Awareness of NIST Special Publication 800-82, Guide to Industrial Control Systems (ICS) Security and UFC 4-010-06 Unified Facilities Criteria (UFC) Cybersecurity of Facility
+ Awareness of DoD Risk Management Framework (RMF) process.
+ Possession of excellent customer service and organization skills.
+ Possession of excellent oral and written communication skills.
+ Exceptional technical writing skills are critical.
**Additional Information**
+ This position does not offer relocation assistance.
+ Sponsorship for US Employment Authorization is not available now or in the future for this position.
Offered compensation will be based on location and individual qualifications. The expected range is $150,000.00 - $180,000.00.
**About AECOM**
AECOM is proud to offer comprehensive benefits to meet the diverse needs of our employees. Depending on your employment status, AECOM benefits may include medical, dental, vision, life, AD&D, disability benefits, paid time off, leaves of absences, voluntary benefits, perks, flexible work options, well-being resources, employee assistance program, business travel insurance, service recognition awards, retirement savings plan, and employee stock purchase plan.
AECOM is the global infrastructure leader, committed to delivering a better world. As a trusted professional services firm powered by deep technical abilities, we solve our clients’ complex challenges in water, environment, energy, transportation and buildings. Our teams partner with public- and private-sector clients to create innovative, sustainable and resilient solutions throughout the project lifecycle – from advisory, planning, design and engineering to program and construction management. AECOM is a Fortune 500 firm that had revenue of $16.1 billion in fiscal year 2024. Learn more at aecom.com.
**What makes AECOM a great place to work**
You will be part of a global team that champions your growth and career ambitions. Work on groundbreaking projects - both in your local community and on a global scale - that are transforming our industry and shaping the future. With cutting-edge technology and a network of experts, you’ll have the resources to make a real impact. Our award-winning training and development programs are designed to expand your technical expertise and leadership skills, helping you build the career you’ve always envisioned. Here, you’ll find a welcoming workplace built on respect, collaboration and community—where you have the freedom to grow in a world of opportunity.
As an Equal Opportunity Employer, we believe in your potential and are here to help you achieve it. All your information will be kept confidential according to EEO guidelines.
**ReqID:** J10132039
**Business Line:** B&P - Buildings & Places
**Business Group:** DCS
**Strategic Business Unit:** East
**Career Area:** Consulting Services
**Work Location Model:** Remote
**Legal Entity:** AECOM Technical Services Inc
Por favor confirme su dirección de correo electrónico: Send Email