Jobs
>
Simi Valley

    Information Systems Security Engineer - Simi Valley, United States - Kina'ole Foundation

    Default job background
    Description
    Job Description

    Job Description

    GPSI Guam is a Professional Technical Services Company, headquartered in Hagatna, Guam.

    We are a SBC Native 8(a) and HUBZone certified, Small Disadvantaged Business providing Program/Project management, administration, management, technical support, general contracting, logistics, commodities, and training resources.

    GPSI is a wholly-owned subsidiary of the Kina'ole Foundation, a 501(c)(3) non-profit established to benefit Native Hawaiian communities.

    GPSI offers a competitive salary and comprehensive benefits package that includes:

    Health insurance
    Dental insurance
    Life insurance
    Professional training reimbursement
    401K
    Disability insurance


    Duties and Responsibilities:


    Work with the Regional Information Systems Security Manager (ISSM), with Information Systems Security Officers (ISSOs), and other J6 CIO staff in the creation, completion, and maintenance of various security related documents such as the Assess and Authorization packages (previously Certification and Accreditation).

    Perform vulnerability scans on all systems and network devices to ensure all Information Assurance Vulnerability Alerts and Bulletins (IAVA/B) and Computer Task Orders (CTOs), Task Orders (TASKORDS) and other security related tasking is applied as required by current Government directives.

    Perform all account and data functions ensuring proper clearances for users; maintain information ownership responsibilities for each information system to include accountability, access approvals, and special handling requirements; maintain user agreements; SIPRNet network account information; and user validation forms.

    Monitoring and maintenance of user training certificates (Cyber Awareness and Cybersecurity Workforce training requirements).

    Ensure physical space requirements for Restricted Access Areas (RAA), Controlled Access Areas (CAA), and Open Storage Secret spaces meet the mandated classification requirements.

    Complete annual Physical Security STIGs for all spaces with ONE-NET
    computers under JRM's purview.

    Develop and implement Configuration Management (CM) control policies and practices for authorizing the use of software and hardware. Monitor changes to system software, hardware, ensure security is not adversely impacted. Update appropriate documentation and upload into eMASS.

    Oversee, monitor, coordinate, and conduct System Security evaluations, audits, and reviews; coordinate and direct Command Information Assurance Vulnerability Management (IAVM) and Computer Task Order (CTO) Programs.

    Inspect and certify physical space requirements for Restricted Access Areas (RAA) and Controlled Access Areas (CAA) ensuring the mandated classification requirements are met.

    Provide protection requirements against intruders, vandals, accidents, and environmental dangers (i.e., fire, water, etc.).

    Develop and maintain Command IT security policies; provide Public Key Infrastructure (PKI) and Common Access Card (CAC) support; monitor existing and new Department of Defense (DoD), Department of Navy (DON), Defense Information Systems Agency (DISA), and other agency IT and Security policies to stay current.

    Provide Information Security (INFOSEC) training management; Physical Security support; Vulnerability Remediation Asset Manager (VRAM) management; Assured Compliance Assessment Solution scanning and support; Host Base Systems Security (HBSS) management and
    support; creation, modification, and maintenance of Assessment and Authorization packages via eMass.
    Provide Security Compliance and Risk Mitigation Support to the Information Systems Security Manager (ISSM)/Information Systems Security Officer (ISSO).

    Conduct Risk Management Framework (RMF) steps 1-4 assessment and implementation based on the collection, analysis, and reporting of data in accordance with the appropriate security technology and Government policy methods.

    Analyze assessments and implement an overall risk-based decision to effectively certify security controls and countermeasures, and the overall security posture of systems and programs, networks and infrastructures throughout IT engineering lifecycles.

    Security compliance and risk mitigation support may include the following:

    Security Policies
    Management Support
    Security Integration into the Systems/Software Development Life Cycle (SDLC)
    Security Personnel
    Security Infrastructure and Tools
    Threat and Vulnerability Management
    Configuration Management
    Access Control
    Audits and Assessments
    Business Continuity
    Incident handling
    Training and Awareness

    Provide support for JRM systems cybersecurity assessment and analysis, generating scorecards, inventories, develop POA&Ms, and other artifacts as required by the ISSM/ISSO or authorized representative
    Perform ACAS, STIG and SRG compliance, Discovery scans, and other scans on systems when authorized and directed to. Investigate rogue devices on the network. Update appropriate Hardware List and diagrams in eMASS based on scan results.

    Develop and maintain logs tracking facility systems status, POA&M execution, POCs, and other pertinent information related to securing the systems tracked.

    Provide support services for enclaves and systems to achieve an Authorization to Operate (ATO) and an Authorization to Connect (ATC) and maintain an appropriate IA posture.

    Maintain JRM systems' accreditation status through implementation of RMF Step 6 Continuous Monitoring phase. This includes maintenance and updates of the system's POA&M, performing quarterly STIG verification, performing updates as needed to the system's

    Hardware/Software/Firmware

    list,

    Ports/Protocols/Services

    list, and Network Diagram, and updating/re-testing IA controls in eMASS.

    The contractor must have experience in utilizing Enterprise Mission Assurance Support Service (eMASS), VRAM, or similar systems repositories for IA purposes.

    The contractor must also have experience in assessing and mitigating technical security and operational risks to organization enclaves and technologies.

    Overseeing the development and maintenance of a system's cybersecurity solutions.

    Identifying system type (IS, PIT, IT product, IT service) and any special considerations including multi-service/agency, joint, cross domain, Privacy Impact Information (PII), Protected Health Information (PHI), tactical, space, etc., to support RMF Step 1 System categorization.

    Identifying mission criticality.
    Identifying the security control baseline set and any applicable overlays and tailoring.
    Assisting with development, maintenance, and tracking of the Security Plan.
    Leading the security control implementation and testing efforts.
    Initiating the RAR.
    Assisting with any security testing required as part of A&A or annual reviews.
    Assisting in the mitigation and closure of open vulnerabilities under the system's change control process.

    Overseeing cybersecurity testing to assess security controls; recording security control compliance status during the continuous monitoring phase of the lifecycle.


    Qualifications:

    Minimum Baseline Certifications:
    CompTIA Advanced Security Practitioner

    Minimum Operating System Certification:
    Microsoft OS or VMware

    GPSI is an equal opportunity employer and value diversity at our company.

    We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

    Job Posted by ApplicantPro

    #J-18808-Ljbffr

  • Harbinger Partners

    Security Engineer

    1 week ago


    Harbinger Partners North Oaks, United States

    Job Title: Security Engineer Division: Minnesota Role Alignment: Systems Engineer Status: Open | | Security Engineer The Security Engineer will focus on the security aspects in the design of systems that need to be able to deal robustly with possible sources of disruption, rangin ...

  • Anchor Loans LP

    Security Engineer

    1 week ago


    Anchor Loans LP Thousand Oaks, United States

    Job Description · Job DescriptionSalary: · About the Company · Anchor Loans is one of several operating companies owned by Pretium Partners (+$50B AUM Financial Services Entity) and is working diligently to expand and grow its lending footprint. Diversity matters to our organiza ...


  • Resource Informatics Group Simi Valley, United States

    We are looking for a SR. Cyber Security Engineer with Aerospace experience. Specifically, NIST OR DFARS OR CMMC compliance · framework experience. · Role: SR. Cyber Security Engineer with Aerospace experience · Duration: 6 -12 months · Location: Simi Valley, CA- hybrid - 2 da ...

  • Harbinger Partners

    Security Engineer

    1 week ago


    Harbinger Partners North Oaks, United States Regular, Full time

    · Job Title: · Security Engineer · Division: · Minnesota · Role Alignment: · Systems Engineer · Status: · Open · | · | · Security Engineer · The Security Engineer will focus on the security aspects in the design of systems that need to be able to deal robustly with possible sour ...

  • AeroVironment

    Program Manager Iii

    2 weeks ago


    AeroVironment Simi Valley, United States

    Worker Type · Regular · **Job Description**: · Summary · The Program Manager (PM) III is responsible for the execution of company programs including cost, schedule, and technical performance. The PM oversees program life-cycle and manages all activities necessary to meet business ...


  • AeroVironment Simi Valley, United States

    Worker Type · Regular · **Job Description**: · Summary · The Material Control Specialist III performs the administrative and physical tasks involved in the shipping, receiving, storing, distributing and order fulfillment of materials, supplies and equipment. The primary responsib ...


  • AeroVironment Simi Valley, United States

    Worker Type · Regular · **Job Description**: · Summary- This is an on-site position in Simi Valley, CA- Position Responsibilities:- Utilizes ticketing system to communicate, document, schedule and prioritize issues for internal and off-site employees · - Escalates advanced issues ...


  • WM Simi Valley, United States

    As an EEO/Affirmative Action Employer, all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, age, national origin, disability, or veteran status. · **PLEASE NOTE** · **What is the valu ...


  • Parker Hannifin Corporation Simi Valley, United States

    **Position Summary** · **ABOUT PARKER HANNIFIN AEROSPACE GROUP**: · - At Parker Aerospace, we develop technologies and innovative solutions that enable reliable, efficient, and increasingly sustainable flight for the lifecycle of the aircraft, including aftermarket support. Our p ...


  • Horizon Ventures Pleasant Valley, United States

    Job Description: · We are currently seeking a qualified individual to join our team at Pleasant Valley. As a member of our team, you will be responsible for evaluating and testing the functional safety (hardware and software) of (programmable) electronic machine systems and proc ...


  • BlueWave Solutions Piedra Gorda, United States

    Job Description: Evaluation and testing of the functional safety (programmable) electronic systems of machines (hardware and user software) as well as process plants in the chemical and process industries within large German chemical and industrial parks. After a thorough trainin ...


  • The Cheesecake Factory Agoura Hills, United States

    Position Overview:Eligible for a hybrid work schedule split between home & office. · You may know us for our huge menu of delicious for being recognized by Fortune Magazine as one of the "100 Best Companies to Work For" ten years in a row What you may not know is we are a compa ...


  • Brandes Associates Camarillo, United States

    BAI, a Defense contractor, is seeking a qualified candidates to serve as a Software Cybersecurity Subject Matter Expert (SME) for a U.S. Navy program to work onsite at Point Mugu Naval Air Station in Camarillo, CA. · Opportunities for career advancement, excellent benefits and st ...


  • Hexis International Beverly Hills, United States

    Company Description · Hexis International is a global organization committed to making a positive impact and creating change in the world. We believe that every moment has the potential to change lives and shape the future. · Role Description · This is a volunteer Information Sec ...


  • Software Technology Inc Santa Clarita, United States

    Job Description · Job Description · Key Responsibilities · Partner with various stake holder groups, including · Product/Engineering, · Legal, HR, and IT to promote and build a culture of security and implement controls accordingly · Work with Information Security and Informa ...


  • Spotter Culver City, United States

    Spotter,namedone of TIME100's Most Influential Companies this year,empowers top YouTube creators to accelerate their business and unleash their full creative potential by giving them access to the capital, knowledge, and community they need to succeed at scale. As the top provide ...


  • Calculatrice West Hollywood, United States

    Are you currently working from a Security Operations Center on behalf of several customers and you would like to discover the reverse side of the show? · Dear · Security Engineer , this job offer is for you · Mission · Vulnerability management: Maintaining a high level of serve ...


  • Criterion Management Services, LLC Oxnard, United States

    Job Description · Job DescriptionCMS is seeking qualified candidates to serve as a Software Cybersecurity Subject Matter Expert (SME) for a U.S. Navy program to work onsite at Point Mugu Naval Air Station in Camarillo, CA. · Opportunities for career advancement, excellent benefit ...


  • DAIKIN COMFORT TECHNOLOGIES MFG LP Los Angeles, United States

    Job Description · Job DescriptionResponsibilities may include: · Working alongside the Venstar Engineering team · Maintaining and working on different IoT devices · Developing different software products using extensive knowledge and skills with AWS · Perform additional projec ...


  • Tailored Management Woodland Hills, United States

    Join the world's leading music company Our client owns and operates a broad array of businesses engaged in recorded music, music publishing, merchandising, and audiovisual content in more than 60 countries. · Position Details: · Job Title: Senior Application Security Engineer ...