logo

View all jobs

Information Systems Security Engineer II w/ 8 years experience

Annapolis Junction, MD · Information Technology
REQUIRED SKILLS/ABILITIES:
  • TO BE CONSIDERED FOR THIS POSITION YOU MUST HAVE AN ACTIVE TS/SCI W/ FULL SCOPE POLYGRAPH SECURITY CLEARANCE (U.S. CITIZENSHIP REQUIRED)  
Responsibilities include, but are not limited to:
•Develop and maintain documentation required for C&A;
•Update and maintain SSP documentation;
•Fill roles of Information Systems Security Officer (ISSO);
•Manage all security relevant changes to the mission systems, assuring SSP documentation is up-to-date and ATO status is maintained
 
Basic Qualifications:
•Shall have three (3) years of direct experience with an ic or signals activity.
•Shall have eight (8) years experience integrating information assurance disciplines into the system design, development, integration, and implementation.
•Shall have two (2) years experience identifying Information Protection needs and define System Security Requirements; designing System Security Architecture; developing detailed Security Designs (including system security certifications and project evaluations).
•Shall have four (4) years experience developing security plans for employing enterprise-wide security architecture.
•Shall have four (4) years experience assessing and auditing network penetration testing antivirus planning assistance, risk analysis and incident response.
•Shall have four (4) years experience applying security risk assessment methodology to system development, including threat model development, vulnerability assessments, and resulting security risk analysis.
•Shall have three (3) years experience enforcing the design and implementation of trusted relationships among external agency systems and architectures.
•Shall have two (2) years experience in the implementation of cross domain solutions e.g. an information assurance solution that provides the ability to manually and/or automatically access and/or transfer between two or more differing security domains.
•Shall have two (2) years experience developing systems that process information with different classifications and categories that simultaneously permits access by users with different security clearances and denies access to users who lack authorization.
•Shall have two (2) years experience in network security certifications.
•Shall have two (2) years experience in system certifications.
•Shall have five (5) years experience applying of Federal Information Security regulations, publications, and policy.
•Shall have at least one Information Security related certification (Security+, CISSP, CISM).
•Shall have a Bachelor’s degree in a related field (e.g. Business Management, Computer Science, Electrical Engineering, Information Management, Program Management etc), or two (2) years of additional relevant experience above all experience requirements listed, in lieu of a Bachelor’s degree.
•Experience w/NESSUS in a complex network environment as well as Security Center version 5.X
•Strong Linux skills
•Strong understanding of vulnerability assessment and penetration testing
•Experience tailoring Scan Policy NESSUS/Security Center
•Experience with both compliance and vulnerability scanning
•Knowledge of cloud computing platforms
•Scripting and coding experience a plus
 
Preferred Qualifications:
•SPLUNK
•XACTA 360
 
 
Powered by