Jr. Cyber Security Engineer
Job Description
Support DoD software application development with cybersecurity engineering activities, security testing, and compliance-focused assessments.
Responsibilities
- Define cybersecurity requirements for software applications to align with program requirements and objectives.
- Recommend security engineering practices across the system development lifecycle.
- Assess cybersecurity requirement compliance using manual and automated software analysis tools and methods.
- Present assessment findings to the customer as necessary.
- Conduct adversarial assessments on network-enabled and web applications to identify weaknesses, gaps, and vulnerabilities.
- Develop mitigation and countermeasures to reduce or eliminate software-level threats.
- Interface with the software development team to ensure software security engineering principles are applied throughout the system development lifecycle.
Requirements
- Bachelor’s Degree in Computer Science, Engineering, Cybersecurity, IT or related field required; professional and/or military experience may be substituted in lieu of degree.
- Must meet IAT Level II requirements under DoD 8140 baseline certifications.
- IAT Level II certification is required immediately upon hire.
- Maintain current certification status through continuing education as specified by the certification authority.
- Experience in software engineering, development, and/or systems engineering across all phases of the system development lifecycle.
- Systems administration skills, including Linux, security settings, services, and system hardening using STIGs and security policies.
- Any shell scripting or Python experience is a plus.
- Ability to perform system troubleshooting, recovery, and advisory in response to unexpected adverse configuration changes.
- Knowledge of threat assessment and solutions to mitigate or eliminate threats.
- Experience using offensive security tools and adversarial techniques and methods.
- Experience implementing software application solutions to comply with NIST SP 800-53 security controls.
- Skills in formal technical documentation, including compliance and vulnerability reporting and similar deliverables.
- Understanding of Risk and Compliance Frameworks.
Special Requirements / Security Clearance
- U.S. citizenship required for this government contract position.
- Must have a current SECRET security clearance.
- Must have the ability to attain TOP SECRET/SCI clearance.
- Security clearance requirements will be specified in the Government’s Task Order.
Technologies
- Linux
- STIGs
- Shell scripting
- Python
- NIST SP 800-53
- IAT Level II
- DoD 8140
- Risk Management Framework (RMF)
Benefits
- Medical, Dental & Vision Coverage
- Wellness Program
- 401(k) Matching
- Disability (Short Term & Long Term)
- Employee Assistance Program
- Life Insurance
- Education & Training
- Generous Leave Policy (11 Federal Holidays, PTO, Military Leave, Bereavement and Jury Duty)
Preferred Experience / Qualifications
- Understanding of DoD acquisition processes and relevant cyber security processes, including the Risk Management Framework (RMF).
- Security+ certification.