Information Assurance Security Engineer
Job Description
The Information Assurance Security Engineer will provide expert technical support for an intelligence customer, covering information security policy and Certification and Accreditation activities, system assessment, and operational support for NCE network security infrastructure. This onsite role in Springfield, VA includes TS/SCI clearance requirements and ongoing work aligned to security governance and risk management processes.
Location and Clearance
- Location: Springfield, VA (onsite)
- Additional location: Arnold, MO
- Clearance level: Top Secret/SCI
- Travel required: None
- Public trust: None
Compensation
Salary range: USD 144,500 - 195,500 per year
Req#: RQ227759
Requisition type: Regular
Role Summary
This position supports Information Security functions including security policy and ATO support, Certification & Accreditation coordination, and advising and assessing security systems for an intelligence customer. The engineer also supports incident response activities, access approval and audit log review, and Operations & Sustainment for NCE network security infrastructure and related sustainment tasks.
Key Responsibilities
- Provide expert technical services across Information Security, including drafting information security policy drafts.
- Write and review Memorandum of Agreements and coordinate and manage Certification and Accreditation activities.
- Advise and assess system design and architecture, including defining, designing, and evaluating information security systems.
- Support multi-agency information sharing and integration security.
- Maintain affiliations with high-level personnel at multiple agencies and organizations involved in Information Security.
- Perform incident response, system access approval, and audit log review, including Configuration Control Board participation and daily consultations on security issues.
- Report, document, and investigate security incidents and assist with development and implementation of corrective measures.
- Represent the Information System Security Manager to ensure compliance with IS security procedures.
- Support operations, maintenance, and disposal of information system materials in accordance with security directives, policies, practices, and Systems Security Plans.
- Generate and implement required security training to support user security awareness prior to system access.
- Initiate protective and corrective measures when incidents or vulnerabilities are discovered.
- Ensure IA hardware and software compliance with security configuration guides and enforce IA policies and procedures as defined by A&A documentation.
- Perform Operations & Sustainment (O&S) for NCE network security infrastructure, including firewalls, web gateways, mail gateways, IDS, load balancers, performance monitoring tools, and management systems.
- Conduct maintenance and advanced configuration of security equipment to address emerging cyber threats.
- Perform forensic traffic and log analysis to isolate issues or respond to analyst alerts, and respond to escalated troubleshooting requests.
- Maintain and administer network infrastructure standards, documentation, and fault tolerance, and present monitoring and test results as required.
- Support integration testing as required and participate in special projects as required.
- Review Plan of Action and Milestones (POA&Ms), conduct technical decomposition categorization, remediation, and lien resolution.
- Execute remediation processes to address vulnerability findings via ACAS security scans.
- Install, harden, deploy, document, and troubleshoot network perimeter security technologies.
- Use scripting ability on Unix and/or RHEL OS.
Required Skills and Qualifications
- Citizenship: US Citizenship Required
- Clearance: Top Secret/SCI
- Experience: 8+ years of related experience in data security administration (years of experience listing indicates 10+ years, which may vary based on technical training, certification(s), or degree)
- Education: Bachelor’s Degree in Computer Science or a related technical discipline, or equivalent combination of education, professional training, or work experience
- Knowledge and experience with ICD 503, and familiarity with Cloud Infrastructure and AWS-based solutions.
- Must possess IAM II certification to start in accordance with DOD 8570.1M.
- Understand how the customer’s RMF process works and how systems security requirements will be met.
- Certifications: CISSP certification or equivalent (CAP, GSLC, CISM)
- System administration experience; network engineering experience; system design and development experience.
- Proficiency in network routing/VLAN technology.
- Experience using security tools including ACAS, HBSS, Carbon Black, Tanium, RedSeal, and EMET.
- Basic understanding of Windows Enterprise AD architecture and VMWare virtualization.
- Experienced with complex Microsoft macros and PowerShell scripts.
- Ability to work on multiple tasks/projects in a dynamic, fast-paced, team-oriented environment.
Technologies and Tools
- ICD 503, AWS, DOD 8570.1M, RMF
- ACAS, HBSS, Carbon Black, Tanium, RedSeal, EMET
- Unix, RHEL, PowerShell
- Windows Enterprise AD, VMWare
- Firewalls, web gateways, mail gateways, IDS, load balancers, performance monitoring tools, management systems
- Network routing/VLAN technology
Benefits
- Growth: AI-powered career tool that identifies career steps and learning opportunities
- Support: Internal mobility team focused on helping you achieve career goals
- Rewards: Comprehensive benefits and wellness packages, 401K with company match, and competitive pay with paid time off
- Community: Award-winning culture of innovation and a military-friendly workplace
Identity Verification for Virtual Interviews
- You are expected to be on camera during virtual interviews.
- The company reserves the right to take your picture to verify identity and prevent fraud.
- You authorize collection, processing, and use of biometric data for identity verification and security purposes.
Category
Cyber and IT Risk Management