Jobs
>
Sterling Heights

    Sr. Information Systems Security Engineer - Sterling, United States - Illuminate Mission Solutions

    Default job background
    Description
    Overview

    The Information Systems Security Officer (ISSO) manages all aspects of an organization's information security system, for classified and unclassified systems, including researching, testing, training and implementing programs designed to safeguard sensitive information from any possible breaches. The ISSO drives Authority to Operate (ATO) and/or Authority to Proceed (ATP) efforts and makes independent recommendations to the customer during the process. ISSOs understand and execute the Risk Management Framework process. The ISSO conduct risk analyses and writes documents including Plan of Action and Milestones, System Security Plans, System Specific Policies and Procedures, Configuration Management Plans, Contingency Plans and Test Results, Business Impact Analyses, and Security Impact Analyses.

    Responsibilities

    As an information systems security engineer (ISSE), you will support the customer in safeguarding networks against unauthorized modification, destruction, or disclosure. Activities include but are not limited to:
    • Conducting risk analysis on products reviewing CVEs, plugins, CWEs etc;
    • Understanding how to explain and remediate the technical security controls;
    • Facilitating Technical Insertions (the introduction of any new and/or improved hardware or software capabilities into an established operational system) for new products;
    • Reviewing change requests for security impacts and technical documentation from a security perspective;
    • Participates in Agile Planning Events to provide technical input.
    • Providing technical input into trade studies for tools;
    • Providing technical expertise in implementation of technical security controls in government cloud environments (cloud security experience is highly desired);
    • Researching, evaluating, testing, recommending, communicating, and implementing new security software or devices;
    • Implementing, enforcing, communicating internet, network, or other information security policies or security plans for data, internet, software applications, hardware, telecommunications, and computer installations;
    • Managing all aspects of an organization's information security system, including researching, testing, training and implementing programs designed to safeguard sensitive information from any possible breaches.
    Qualifications

    Required Education, Experience, & Skills
    • Bachelor's Degree with 7 years related experience including cloud security OR 10 total years of experience in Information Assurance, and IT Security including cloud security
    • Obtain and maintaining an IAT Level III baseline certification within (90) days of hire
    Required Clearance: Secret

    Specific to cloud environment vulnerability management:
    • Technical expertise in system security vulnerabilities and remediation techniques, network, and web-related protocols (e.g., TCP/IP, UDP, IPSEC, HTTP, etc.)
    • Technical expertise in security engineering, system and network security, authentication and security protocols, cryptography, and application security
    • Experience with vulnerability scanning and testing tools such as: Burp suite, Rapid7 InsightVM, Tenable Nessus, Web Inspect, Net Sparker, DB Protect, App Detective, Prisma Cloud, Core Impact, Code DX and similar.
    • Experience analyzing vulnerabilities, establish cause and impact, and identify the corrective action needed to eliminate and prevent the event from happening in the future.
    • Experienced in vulnerability validation, Pre-Production, remediation, testing for false positives and vulnerability research skills.
    • Experience using at least one scripting language (e.g.: Perl, Python, PowerShell)
    • Experience with system administration in Windows and/or Linux.
    • Experience testing and operating Amazon Web Services, Azure, and/or Google
    The ISSE supports the Information systems security officer (ISSO) in managing all aspects of an organization's information security system, including researching, testing, training and implementing programs designed to safeguard sensitive information from any possible breaches. The ISSE will support the ISSO in the following activities (including but not limited to):
    • Conducting risk analyses from vulnerability, compliance scans, pen testing results, or other audit activity; writes including but not limited to Plan of Action and Milestones, System Security Plans, Security Control Traceability Matrices, Configuration Management Plans, Contingency Plans and Test Results, Business Impact Analyses, and Security Impact Analyses;
    • Submitting monthly scan data in support of FISMA scorecard compliance requirements;
    • Responding to data calls, scan requests and weekly and monthly reporting requirements.
    Preferred Education, Experience, & Skills
    Desired Certifications: CISSP, CCSP, AWS-SEC, MCASEA

    Equal employment opportunity employer:
    All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. Illuminate is committed to providing veteran employment opportunities to our service men and women.

  • CACI International Inc

    Security Engineer

    1 week ago


    CACI International Inc Sterling, United States

    CACI is seeking a Cyber Security Engineer to support our Makalu contract. If you are interested and passionate about working as part of a modern, fast-paced agile software development team, then this opportunity is for you · On team Makalu, cyber security engineers are an integra ...

  • CACI International

    Security Engineer

    3 days ago


    CACI International Sterling, United States

    CACI is seeking a Cyber Security Engineer to support our Makalu contract. If you are interested and passionate about working as part of a modern, fast-paced agile software development team, then this opportunity is for you · On team Makalu, cyber security engineers are an integra ...

  • Kyrus Tech

    Security Engineer

    1 week ago


    Kyrus Tech Sterling, United States

    Job Type: Full-time · Location: Sterling, VA or Denver, CO. · Clearance Requirements: Must be a U.S. citizen; S or TS clearance required · Years of Experience: 3-7 years · Working with Kyrus · Kyrus is committed to solving our customer's hardest problems with eagerness, effe ...


  • Dedrone Sterling, United States

    IT Security Engineer · Location: · Sterling, VA or Phoenix, AZ (USA) · Introduction: · At Dedrone we are building the world's leading airspace security solutions to protect people, property and information from the threat of drones and enable the good drones to fly. Our AI-dr ...

  • CACI International

    Security Engineer

    5 days ago


    CACI International Sterling, United States

    CACI is seeking a Cyber Security Engineer to support our Makalu contract. If you are interested and passionate about working as part of a modern, fast-paced agile software development team, then this opportunity is for you · On team Makalu, cyber security engineers are an integr ...


  • Bowman Williams Sterling, United States

    IT Security Engineer (MSP) · IT Security Engineer (MSP) · Are you a talented and driven IT Security Engineer (MSP) with a passion for safeguarding digital infrastructure? We have an exciting opportunity for a IT Security Engineer (MSP) to join our team at a client site in Sterli ...

  • Kyrus Tech

    Security Engineer

    5 days ago


    Kyrus Tech Sterling, United States

    Job Type: · Full-time · Location: · Sterling, VA or Denver, CO. · Clearance Requirements: · Must be a U.S. citizen; S or TS clearance required · Years of Experience: · 3-7 years · Working with Kyrus · Kyrus is committed to solving our customer's hardest problems with eag ...

  • Cloud Analytics Technologies LLC

    Security Engineer

    5 days ago


    Cloud Analytics Technologies LLC Sterling, United States

    Work Authorization: · US Citizen, Green Card, H-1B, GC-EAD, OPT-EAD, L2-EAD, TN Visa · Local Candidates Preferred. Non-local candidates must be willing to pay for your own interview travel expenses and relocation costs · **Candidates submitted over the max. bill rate will be au ...


  • CACi Sterling, United States

    Cleared Security Engineer Job Category: Engineering Time Type: Full time Minimum Clearance Required to Start: TS/SCI with Polygraph Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Local Anticipated Posting End: 11/24/2024 CACI is seeking a Cyber Se ...


  • Leidos Sterling, United States

    Description · We are seeking a Cyber Security Engineer (SME). This role is responsible for protecting the customer's information systems and networks from potential cyber-attacks. The Cyber Security Engineer must display an excellent understanding of technology and utilization o ...


  • Leidos Sterling, United States

    We are seeking a Cyber Security Engineer (SME). This role is responsible for protecting the customer's information systems and networks from potential cyber-attacks. The Cyber Security Engineer must display an excellent understanding of technology and utilization of Firewalls (Se ...


  • CACi Sterling, United States

    Cleared Security EngineerJob Category: EngineeringTime Type: Full timeMinimum Clearance Required to Start: TS/SCI with PolygraphEmployee Type: RegularPercentage of Travel Required: Up to 10%Type of Travel: LocalAnticipated Posting End: 11/24/2024 CACI is seeking a Cyber Security ...


  • REI Systems Sterling, United States

    Overview: · REI Systems mission is to deliver innovative technology solutions for Federal Clients. The foundation of our success is an unwavering determination to surpass our clients expectations. We offer this same commitment to our employees by providing professional developme ...


  • Avid Technology Professionals Sterling, United States

    The Sr Cyber Security Engineer designs, develops, documents, analyzes, tests, integrates, debugs, conducts research and/or discovers and analyzes security flaws or vulnerabilities in software, networks, systems, and applications. The Sr Cyber Security Engineer ensures system secu ...


  • REI Systems Sterling, United States

    Overview · REI Systems' mission is to deliver innovative technology solutions for Federal Clients. The foundation of our success is an unwavering determination to surpass our client's expectations. We offer this same commitment to our employees by providing professional developme ...


  • Nodel Sterling, United States

    Network Security Tools EngineerLocation: Dulles, VAMust have Public Trust Security ClearanceNode is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and operate a network operations environment, inclu ...


  • BCMC, LLC Sterling, United States

    We are supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats. The Network Security Too ...


  • Waltonen Sterling Heights, United States

    Waltonen Engineering is actively seeking a Software Cyber Security Engineer to join our team · This role collaborates with a team of OS/BSP and Embedded Software problem solvers to test and evaluate systems for operating within internal and external Tactical Network Domains. Per ...


  • Nodel Sterling, United States

    Network Security Tools Engineer · Location: Dulles, VA · Must have Public Trust Security Clearance · Node is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and operate a network operations environm ...


  • Argo Cyber Systems Sterling, United States

    Network Security Tools Engineer · Argo Cyber is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address ...