Security Engineer – TS/SCI Required

Full Job Description

Mojave Task Order 31

We are in need of a Security Engineer to join an exciting program in Springfield, Virginia. The individual will be responsible for providing systems security support for the protection of information system assets.

Responsibilities include:

  • Support secure cross-domain data transfers
  • Support malicious code detection capabilities
  • Provide ongoing security oversight of assigned systems
  • Manage documentation of security plans and procedures for all assigned systems in adherence to USG information technology security policies and instructions
  • Support system monitoring and maintenance activities as required
  • Support the investigation of security needs and recommend, plan, test and monitor information security improvements
  • Provide system sanitization and destruction oversight
  • Support Assessment and Authorization (A&A) / Risk Management Framework (RMF) for new and existing systems
  • Coordinate requirements and deployment of capabilities working with system operations
  • Interact professionally with senior-level executives and work on a team or independently, prioritizing and accomplishing assigned tasks in a fast-paced environment with deadlines
  • Execute and complete rapid turn-around and short-suspense tasks

Qualifications

Required:

  • Bachelor’s Degree with 5+ years experience in IT Security field
  • Experience with the Risk Management Framework (RMF) to include the following skills:
    • Policy interpretation and development,
    • Interpretation of Controls and Requirements with the ability to communicate this to system developers, sustainment teams and customer staff
    • Experience executing and editing System Security Test Plans (STPs) to accurately and thoroughly assess and document control satisfaction
  • Ability to work well with and communicate effectively with others in a team environment
  • Ability to work independently to achieve successful project completion with little oversight


Experience with:

  • ACAS (Nessus)
  • HBSS (Data Loss Prevention – DLP)
  • STIGS/SRGs/Vendor Best Practices
  • Operating Systems: Windows, Linux
  • System Auditing Experience
  • General Networking Knowledge
  • Knowledge and understanding of Identity and Access Management
  • Cloud Experience

Desired:

  • DevOps/DevSecOps
  • Containerization Technologies and related security aspects
  • Application Security
  • Databases
  • ELK (ElasticSearch, LogStash, Kibana)
  • Cross-Domain experience (technical and procedural experience)
  • Experience/Exposure to new system security management technologies (Zero Trust, End Point Security, etc.)
  • Incident Handling Experience
  • Process/CONOPs development and refinement
  • Identification and development of system security metrics

More Information

Apply for this job

Leave your thoughts

Share this job