ISSE
Program Overview
About The Role
Currently seeking an Information Systems Security Engineers (ISSE) to support an Intel Community (IC) customer in the Herndon, Virginia area.
ISSE responsibilities for conducting information system security engineering activities for new or existing system(s) may include:
- Defines information security requirements and their integration into information systems and its technology component through purposeful security design.
- Develops and implements security designs ensure that the hardware, operating systems and software applications adequately address cyber security requirements and Security Controls Traceability Matrix (SCTM).
- Identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations and recommend mitigation strategies.
- Implement, validate Security Technical Implementation Guide (STIG) requirements and/or perform SRG assessments for all development and implementation projects.
- Develop, customize, and configure Splunk applications and dashboards.
- Develop Security Test Procedure (STP) , conducts self-assessments to verify compliance with required configuration guidance and support A&A testing and validation of security designs.
- Conducting risk analysis reviewing ACAS, CVEs, plugins, CWEs, research, collaborating with System Administrators to mitigate identified vulnerabilities and/or author Plans of Actions and Milestones (PO&AM) as needed.
- Execution of continuous monitoring efforts responds to data calls, scan requests, and various weekly and monthly security metrics reporting requirements.
- Validate control implementations provide enforcement of the required data access and network flow restrictions align with the continuous monitoring strategy.
- Participates in Agile Planning Events to provide technical input.
- Support government activities and report to appropriate IC and DoD authorities (i.e., USCYBERCOM, IC-SCC)
- Support security authorization activities in compliance with the customer Information System Certification and Accreditation Process following the NIST Risk Management Framework (RMF), CNSSI No 1243 and other prescribed business processes for security engineering.
- Assist architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of Agency security policy and enterprise solutions.
- Apply system security engineering expertise in one or more of the following to: system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; risk management; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control); and security testing.
#SpaceIntel
Qualifications
Minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD
Required Qualifications:
- Bachelor's degree in a relevant technical (STEM) field with 8+ years of relevant experience; Master's degree in a relevant technical (STEM) field with 6+ years of relevant experience; or 4+ additional years of experience in lieu of a degree.
- TS/SCI with polygraph clearance adjudication or ability to obtain SCI and pass a poly
- Certified Information Systems Security Professional (CISSP) Certification is required
- One (1) year of experience with IC Community
- Proven experience in scripting languages, Linux/RedHat, Windows Server and/or Networking Appliances
- Proven experience with DISA Security Technical Implementation Guide (STIG) implementation and Security Content Automation Protocol (SCAP) tool usage
- Proven experience performing Systems Security tasks including: Security Information and Event Monitoring (Splunk); Endpoint security (HBSS); Compliance and vulnerability scanning (ACAS / Nessus)
- Demonstrated experience with creating and validating evidence for NIST security controls.
Desired Qualifications:
- Skilled in implementing mitigation strategies and how to resolve problems, and to re-test/ re-evaluate systems
- Demonstrated experience with DISA Security Technical Implementation Guide (STIG) implementation and Security Content Automation Protocol (SCAP) tool usage
- Possess a working knowledge of administrating servers, system and application security threats and vulnerabilities
- Experience extending existing applications in areas such as security, monitoring, task automation, continuous integration, deployment, and performance optimization
- Demonstrate writing of your own project in scripting/programming (use of Shell scripting, Python, Javascript, Powershell) in a Linux or Windows environment to support the various Cyber Security tools and applications required
- Provide guidance on vulnerability and malware remediation.
- Experience analyzing vulnerabilities, establishing cause and impact, and identifying the corrective action needed to eliminate and prevent the event from happening in the future.
Peraton offers enhanced benefits to employees working on this critical National Security program, which include heavily subsidized employee benefits coverage for you and your dependents, 25 days of PTO accrued annually up to a generous PTO cap and eligible to participate in an attractive bonus plan
SCA / Union / Intern Rate or Range
Details
Target Salary Range: $112,000 - $179,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Recommended Jobs
Standup Forklift Driver
DSV - Global transport and logistics In 1976, ten independent hauliers joined forces and founded DSV in Denmark. Since then, DSV has evolved to become the world's 3rd largest supplier of global so…
Data Scientist TS/SCI
We are seeking a Data Scientist to support a national security customer in Springfield, VA. This individual will play a key role on the Data & AI consulting team, contributing to data visualization,…
In Home Sales Consultant
Job Description Job Description Realistically make $1,500 to $2,500 per week (or more) as a Kitchen Sales Designer. There is NO COLD CALLING, no canvassing, no prospecting of any kind. You jus…
Audio/Visual Production Manager
Summary This position is a part-time position responsible for supporting the virtual and in-person worship life of Blacksburg United Methodist Church (BUMC) Church Street campus with high qualit…
Catering Lead Receiver - James Madison University
Job Description The Warehouse Lead Worker is responsible for receiving and processing incoming stock/product, preparing and completing orders for delivery or pickup, and performing inventory and q…
CDL A Owner Operator OTR
EARN 90% OF LOAD GROSS + START FROM HOME! Owner Operators – Reefer & Dry Van OTR Opportunities SGS Express Inc. is a trusted leader in temperature-controlled freight with a strong reputation …
Skilled Trades - Newport News, VA
Job Description Job Description Salary: Skilled Trade Careers Want to work in Newport News, VA? Are you a skilled craftsman looking for an honest days work? Have you worked on water…
Maintenance Mechanic
Job Description Job Description HUTCO, INC. Position: Maintenance Mechanic Job Location: Norfolk, VA Hutco Branch: Portsmouth Shift: ALL (0600 – 1445 to start, possible night sh…
DevSecOps Engineer (N)
100% ONSITE Who We Are : Founded in 2007, SimIS Inc. is an innovative information technology solution Veteran Owned Small Business (VOSB) that models future environments, requirements, and capabil…
Quality Improvement Facilitator - Quality Programs
How You’ll Help Transform Healthcare: The Quality Improvement Facilitator leads (facilitates) significant organizational change initiatives intended to improve clinical quality, patient safety …