Security Engineer / IT Help Desk Technician
Job Description
Support the National Digital Exploitation & OSINT Center (NDOC) as a junior Security Engineer and IT Help Desk Technician on an onsite team in Bethesda, MD.
Responsibilities
- Apply system security engineering expertise across areas including system security design, engineering life cycle, information domain and cross-domain solutions
- Support security engineering activities tied to cryptography, identification, authentication, authorization, system integration, risk management, intrusion detection, contingency planning, incident handling
- Contribute to configuration control, change management, auditing, and certification and accreditation processes
- Coordinate with systems architects and project managers to plan and implement system enhancements and upgrades to meet security requirements based on STIG and NIST 800-53
- Provide technical support, troubleshooting, and complex problem resolution on escalated security enhancement issues within the infrastructure
- Identify security requirements and objectives, ensure they are implemented, and help support automatic monitoring and reporting for compliance with NMEC2 RMF and directives as detailed by the NMEC2 ISSM
- Ensure applicable security requirements are met according to existing and evolving IA reference security documents
- Submit written input to ISSMs when a security-relevant change is required for existing systems or contractors
- Support systems security requirements analysis for security compliance and relay findings through ISSMs to engineering or operations groups where design, operations, or performance may be impacted
- At Government direction, assist ISSMs to enhance and deploy security services architecture
- Participate in customer Technical Exchange Meetings (TEMs) to gather requirements; support Security TEMs related to systems security and system accreditation as required
- Maintain currency on security documentation (body of evidence) for accreditation in support of ATO, aligned to NIST 800-53 controls
- Collaborate on IA activities with NMEC2, the ISSMS, and Cyber Security Program Offices to incorporate NMEC2 RMF goals and objectives
- Support ATO within the NMEC and with NMEC IT customers by verifying security measures are taken, maintained, reported on, and updated as required
- Provide input to IA (via assigned ISSM(s)) assisting ISSMs in editing JAVA and POA&M documentation when expected measures have not been implemented
- Help ensure mission objectives are met in accordance with applicable security policies and directives
- Collaborate with NMEC2 ISSM and Operations & Maintenance to ensure compliance with ICD-503 and other NMEC2 ISSM-designated directives
- Support firewall and controlled interface security architecture design/enhancement using requirements provided by NMEC2 ISSM and appropriate security organizations
- Support identification, implementation, automated management, automated monitoring, and automated reporting for security hardening, patching, and virus-checking
- Implement procedural protective measures by automating repeatable processes and reporting to maintain compliance toward ATO
- Serve as first point of contact for customer queries and incidents via walkup, phone, email, or chat
- Manage and administer accounts including account creation, password resets, troubleshooting, and termination/deletion
- Document and track requests and incidents in the customer-approved ITSM solution
- Document troubleshooting and triage steps, escalate to Tier 2/3 teams when appropriate
- Provide telephone support professionally to maintain excellent customer relationships
- Log and assign all tickets to the correct team
- Proactively monitor incidents for trends and potential Problem Records, and highlight findings to the Service Desk Manager
- Update Service Desk documentation for new processes and procedures; produce customer-facing and internal knowledge base documentation as required
- Participate in Continual Service Improvement activities to share experience and support service enhancements
Requirements
- Minimum 2 years of relevant experience
- Bachelor’s degree
- Customer service skills: patient, empathetic, able to communicate technical information clearly
- Experience creating and managing domain accounts within Active Directory
- Familiarity supporting virtual desktops running Microsoft Windows
- Experience troubleshooting common Active Directory account issues and errors
- Experience troubleshooting software and hardware issues for end-user devices including workstations, printers, and scanners
- Experience troubleshooting application performance and latency problems related to security requirements (front, middle, and back end)
- Working experience with Windows Server 2016/2019, Active Directory, IIS, DNS, DHCP, Exchange, DFS
- Experience implementing security controls on common network services such as file, email, and Active Directory across multiple geographically dispersed sites
- Experience with networking technologies and security assessment, including STIGs
- Experience implementing and supporting enterprise system security and malware monitoring and prevention tools such as Splunk, McAfee HBSS, and ACAS
- Networking and systems troubleshooting experience with TCP/IP, Internet security, and encryption (data at rest, data in transit)
- Time management skills and ability to work independently while prioritizing based on customer and mission impact
- Ability to use an ITSM tool to document, track, and resolve incidents and requests
- Ability to triage, classify incidents, and prioritize workload
- Strong oral and written communication skills
- Experience establishing goals and plans aligned to project objectives
- Track record working effectively in a team and supporting peers
- Thorough knowledge of MS Office, the Internet, and internal applications for routine and moderately complex tasks
- Ability to produce clear documents and diagrams capturing networking and operational procedures and LAN/WAN topology using MS Visio, MS Project, MS Excel, and MS Word
- Must meet DoD 8570.11-IAT Level II certification requirements: currently Security+ CE, CCNA-Security, GSEC, or SSCP plus an appropriate computing environment (CE) certification
Required Clearance / Citizenship
- Active TS/SCI clearance with Polygraph required OR active TS/SCI and willingness to obtain Poly
- US citizenship required
Compensation
- USD 57,850 - 104,575 per year
Onsite Location
- Bethesda, MD (onsite)
Technologies
- Active Directory, Microsoft Windows, Windows Server 2016/2019, IIS, DNS, DHCP, Exchange, DFS
- Splunk, McAfee HBSS, ACAS
- TCP/IP, STIGs, NIST 800-53, NMEC2 RMF, NIST 800-53 controls, NMEC2 ISSM
- IT Service Management (ITSM) solution
- MS Office, MS Visio, MS Project, MS Excel, MS Word
- JAVA, POA&M
Preferred Qualifications
- CISSP or CASP Certification
- Experience in Help Desk Support (end-user technical support, hardware and software troubleshooting, IT problem resolution)
- Technical proficiency with computer hardware, software applications, operating systems, and network configurations
- ITSM tools proficiency for documenting, tracking, and resolving incidents and service requests
- Experience with tools such as ServiceNow or Jira Service Desk
- Background in hardware setup, deployment, and maintenance (workstations, printers, scanners, servers, phones)
- Experience with operating system/application patch management methodologies
- Experience operating and maintaining Linux-based systems
- Experience with OS and application deployment utilizing SCCM/MECM
- Certification relating to MCSE or MCSA (Microsoft) a plus
- Experience troubleshooting network storage connectivity from an end-user perspective
- Experience working in an Agile environment
- Familiarity with Hyper Converged Infrastructure (HCI) concepts and solutions
- Familiarity with virtual servers and technologies
- Experience troubleshooting within a secure environment
- Experience with backup and restore procedures