TS/SCI Security Clearance Required
Minimum Year of Experience: 11
Degree: Bachelor’s Degree
Description
A Security Engineer to join an exciting program in Springfield, Virginia. The individual will be responsible for providing systems security support for the protection of information system assets.
Responsibilities include:
- Support secure cross-domain data transfers
- Support malicious code detection capabilities
- Provide ongoing security oversight of assigned systems
- Manage documentation of security plans and procedures for all assigned systems in adherence to USG information technology security policies and instructions
- Support system monitoring and maintenance activities as required
- Support the investigation of security needs and recommend, plan, test and monitor information security improvements
- Provide system sanitization and destruction oversight
- Support Assessment and Authorization (A&A) / Risk Management Framework (RMF) for new and existing systems
- Coordinate requirements and deployment of capabilities working with system operations
- Interact professionally with senior-level executives and work on a team or independently, prioritizing and accomplishing assigned tasks in a fast-paced environment with deadlines
- Execute and complete rapid turn-around and short-suspense tasks
Qualifications
Required:
- Bachelor’s Degree with 5+ years experience in IT Security field
- Experience with the Risk Management Framework (RMF) to include the following skills:
- Policy interpretation and development,
- Interpretation of Controls and Requirements with the ability to communicate this to system developers, sustainment teams and customer staff
- Experience executing and editing System Security Test Plans (STPs) to accurately and thoroughly assess and document control satisfaction
- Ability to work well with and communicate effectively with others in a team environment
- Ability to work independently to achieve successful project completion with little oversight
Experience with:
- ACAS (Nessus)
- HBSS (Data Loss Prevention - DLP)
- STIGS/SRGs/Vendor Best Practices
- Operating Systems: Windows, Linux
- System Auditing Experience
- General Networking Knowledge
- Knowledge and understanding of Identity and Access Management
- Cloud Experience
Desired:
- DevOps/DevSecOps
- Containerization Technologies and related security aspects
- Application Security
- Databases
- ELK (ElasticSearch, LogStash, Kibana)
- Cross-Domain experience (technical and procedural experience)
- Experience/Exposure to new system security management technologies (Zero Trust, End Point Security, etc.)
- Incident Handling Experience
- Process/CONOPs development and refinement
- Identification and development of system security metrics