Information System Security Engineer
Job Description
MANTECH is seeking an Information System Security Engineer (ISSE) to define and implement cybersecurity requirements and network security measures for an IS and Network Environment on an onsite basis in Washington, DC.
Responsibilities
- Assess information protection needs for an IS and Network Environment; define security requirements aligned to applicable cybersecurity requirements
- Design security architectures for the IS and Network Environment; design and develop cybersecurity-enabled products for operational use
- Integrate and/or implement security capabilities with Cross Domain Solutions (CDS) for the IS and Network Environment
- Create security designs for new or existing network systems; ensure hardware, operating systems, and software applications address required cybersecurity controls
- Design, develop, and implement network security measures to support confidentiality, integrity, availability, authentication, and non-repudiation
- Develop and implement specific cybersecurity countermeasures for the IS and Network Environment
- Produce interface specifications for the IS and Network Environment
- Apply vulnerability mitigation approaches for the IS and Network Environment and recommend changes to network or network system components as needed
- Ensure network system designs support incorporation of FBI directed cybersecurity vulnerability solutions
Requirements
- Meets one of the following experience levels:
- High school diploma/GED and 14 years of experience
- Associate’s degree and 7 years of experience
- Bachelor’s degree and 5 years of experience
- Master’s degree and 3 years of experience
- Holds at least one certification:
- CISSP (or Associate)
- CompTIA Advanced Security Practitioner (CASP) CE
- Certified Secure Software Lifecycle Professional (CSSLP)
- CISSP- Information System Security Engineering Professional (ISSEP)
- CISSP- Information System Security Architecture Professional (ISSAP)
- Familiarity with security tools and operations, including Tenable Nessus and/or Security Center, IBM Guardium, HP WeblInspect, Network Mapper (NMAP), or similar applications
- Working knowledge of the NIST Risk Management Framework (RMF) and ATO processes
- Current/active Top Secret clearance with eligibility to obtain SCI prior to starting
- Willingness to undergo a polygraph
Technologies
- Cross Domain Solutions (CDS)
- Tenable Nessus
- Security Center
- IBM Guardium
- HP WeblInspect
- Network Mapper (NMAP)
- National Institute of Standards and Technology (NIST) Risk Management Framework (RMF)
- ATO processes
Preferred Qualifications
- Degree in Computer Science, Cybersecurity, or other cyber discipline
Physical Requirements
- Remain in a stationary position approximately 50% of the time
- Occasionally move about inside the office to access file cabinets and office machinery
- Constantly operate a computer and other office productivity machinery (calculator, copy machine, computer printer)
- Often position self to maintain computers in the lab, including under desks and in the server closet
- Frequently communicate with co-workers, management, and customers, which may include delivering presentations; must be able to exchange accurate information