CybersecurityJobs.io
← Back to all jobs

Job Description

The Information Systems Security Engineer/Analyst will support security engineering, analysis, and compliance work for FAA systems and applications across the system development life cycle. Noblis is hiring for multiple levels, with responsibilities spanning security planning, risk management, certification and authorization support, and the documentation and implementation of security controls.

This role is remote and provides hands-on involvement in security assessments, vulnerability testing, and ongoing operational security posture activities, alongside program and technical teams.

Role Summary

  • Provide security engineering, analysis, and compliance support for FAA systems and applications throughout the system development life cycle
  • Focus on security planning, risk management, certification and authorization, security documentation, and implementation and assessment of security controls

Responsibilities

  • Deliver information systems security analysis, design support, and implementation assistance
  • Conduct system engineering studies and security assessments
  • Identify security risks, vulnerabilities, and threats, and propose mitigation strategies
  • Perform preliminary vulnerability testing early in the system development life cycle
  • Analyze the security impacts of system changes and modifications
  • Support Certification and Authorization (C&A) activities and documentation
  • Implement and sustain FAA Information Systems Security Program (ISSP) controls
  • Develop and maintain System Security Plans (SSP), Security Impact Analyses, and POA&M documentation
  • Ensure compliance with FAA directives, federal regulations, and NIST standards, including NIST 800-53
  • Support processing of Security Certification and Authorization Process (SCAP) requirements
  • Apply security subject matter expertise across domains including access control systems; network and telecommunications security; application and systems development security; cryptography; security architectures and models; and operations security
  • Support security testing, validation, and acceptance activities
  • Review and develop security-related documentation for audits and assessments, including test procedures, standards, and evaluation documentation
  • Provide technical security support during factory acceptance tests and system testing
  • Support business continuity and disaster recovery planning and exercises, including disaster recovery planning and test event execution
  • Maintain the operational security posture of systems, programs, and designated assets
  • Serve as a security advisor to program management and technical teams

Required Qualifications

  • Experience in information systems security, cybersecurity, or security engineering
  • Knowledge of federal and FAA security requirements and standards
  • Familiarity with NIST security frameworks (for example, NIST 800-53)
  • Experience developing and maintaining security documentation such as SSP, POA&M, and risk assessments
  • Ability to analyze system vulnerabilities and recommend security controls
  • Strong written and verbal communication skills
  • Ability to work collaboratively with engineering, operations, and program teams
  • Education: Bachelor’s degree in any engineering field
  • Junior-level: Minimum 2 years’ experience with a Bachelor’s degree (Master’s may substitute for Bachelor’s with 3 years’ experience; PhD may substitute for Bachelor’s with 7 years’ experience)
  • Mid-level: Minimum 10 years’ experience with a Bachelor’s degree (Master’s may substitute for Bachelor’s with 3 years’ experience; PhD may substitute for Bachelor’s with 7 years’ experience)
  • Senior-level: Minimum 15 years’ experience with a Bachelor’s degree (Master’s may substitute for Bachelor’s with 3 years’ experience; PhD may substitute for Bachelor’s with 7 years’ experience)

Technologies

  • NIST 800-53
  • NIST security frameworks
  • Security Certification and Authorization Process (SCAP)
  • System Security Plans (SSP)
  • POA&M

Benefits

  • Health, life, disability, financial, and retirement benefits
  • Paid leave
  • Professional development
  • Tuition assistance
  • Work-life programs
  • Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in benefit programs

Desired Qualifications

  • Experience supporting FAA, NAS, or other federal systems
  • Knowledge of system development life cycle (SDLC) security integration
  • Experience supporting audits, security assessments, and test activities
  • Relevant security certifications (as required by program or contract)

Location: Remote (remote)

Compensation: USD 71,010 - 240,350 per year

Minimum Experience: 2 years

Education: Bachelor’s degree in any engineering field

Similar Jobs