Search jobs > Washington, DC > Senior security engineer

Senior Security Engineer (Compliance)

Versar
Washington, DC, US
Full-time

Position Summary

Versar, Inc., is seeking a Senior Security Engineer (Compliance) to support the Department of Homeland Security’s Enterprise Engineering Division (EED) within the Office of the Chief Information Officer (OCIO).

This candidate will be a member of a high functioning team supporting cybersecurity countermeasures to strengthen DHS enterprise and HQ networks, to include the overseeing and providing strategic and tactical direction with security compliance.

This candidate will work directly with team of network and security engineers, data center specialists, ISSOs, industry vendors, and DHS stakeholder groups that includes 20+ DHS Components.

This effort is responsible for providing support for the following Homeland Security Enterprise Network (HSEN) services along with Security Engineering Compliance to include :

  • Design and development of cyber security technology along with integration of new architectural features into existing infrastructures while maintaining the integrity and security of enterprise-wide cyber systems and networks.
  • Responsibility for DHS Security ATO and RMF compliance support ensuring systems are documented, security control implementation / documentation, self-inspection (STIG / vulnerability / compliance) auditing and issue remediation.
  • Strong working relationship with ISSOs and technical teams to ensure NIST Compliance and RMF ATO Security Authorization.

Additional Duties / Responsibilities

  • Provide DHS Security Authorization Support
  • Assist and support the SOC Security Authorization Process following National Institute of Standards and Technology (NIST) Special Publication (SP) -53 including, but not limited to, the following elements : Security PlanSecurity Risk AssessmentSecurity Controls AssessmentContinuity of Operations Plan (COOP)Development of POA&Ms
  • Provide assistance and support to the SOC System ISSO, to document that documents and maintains the SOC Security Authorization documentation in the Information Assurance Compliance System (IACS), conducts NIST SP -53A, Guide for Assessing the Security Controls in Federal Information Systems assessment, and tracks NOSC Cyber (SOC) POA&Ms.
  • Develop and document a comprehensive COOP which ensures that the Contractor maintains
  • Maintain appropriate NOSC Cyber infrastructure backups, and documents priorities and procedures for re-instantiating critical functions in the event of a failure.
  • Test the DHS NOSC Cyber COOP capabilities in conjunction with internal test procedures and the DHS Information Technology Disaster Recovery Plan.
  • Provide support to Government management by establishing POA&Ms and process for tracking the correction of internal self-assessment and external audit findings relating to security authorization of NOSC operations and activities.

Minimum Qualifications / Requirements

  • At least six years of professional experience in an IT Services environment, providing technical support with emphasis on security compliance for federal networks.
  • Prior experience with NIST FIPS Standards, Contingency Plans, Network Infrastructures, Security Impact Analysis, Privacy Impact security Assessments & Analyses, Standard Operating Procedures.
  • U.S. Federal government consulting experience preferred.
  • Must be resourceful in learning a very complex and dynamically changing network
  • Must be able to work independently in fast paced, dynamic environment.
  • Past experience within the Department of Homeland Security or other government agency is preferred.
  • U.S. citizenship required and eligibility for a DHS EoD is required to be considered for this position.

Education

BS degree in Information Systems, Computer Engineering, Computer Science, or Cyber Security, or equivalent experience

Certifications Desired

Security Certifications : CISSP, CCSP, CISM, GSLC, CISA, CASP, or equivalent

Software / Hardware Desired

  • IBM AppScan, HP WebInspect, Nexpose, Splunk, Nessus, HP Fortify, McAfee SECURE, McAfee Virus Scan, Enterprise, ArcSight Sourcefire, Nagios, Saint, Solarwinds, Remedy, Primavera, Xacta, CSAM
  • 30+ days ago
Related jobs
Promoted
QinetiQ
Washington, District of Columbia

QinetiQ US’s dedicated experts in defense, aerospace, security, and related fields all work together to explore new ways of protecting the American Warfighter, Security Forces, and Allies. FRLE is looking for a Sr Technical Security and Signals Countermeasures (TSSC) Engineer to conduct all technica...

Promoted
VirtualVocations
Washington, District of Columbia

A company is looking for a Senior Engineer, NERC O&P Compliance. ...

Promoted
Xometry
Washington, District of Columbia

We are looking for senior-level cybersecurity professionals with a strong background in one or more of DevSecOps, network security, and security architecture. Collaborate with development, operations, and security teams to integrate security into the CI/CD pipeline, ensuring that security is embedde...

Promoted
VirtualVocations
Washington, District of Columbia

A company is looking for a Senior Network Security Engineer to join their Infrastructure Services Team. ...

Promoted
New Light Technologies In
Washington, District of Columbia

The Senior Cloud Security Engineer will play a critical role in the Health Benefit Exchange Authority's (HBX) cybersecurity team. Senior Cloud Security Engineer. Interested candidates should submit a resume and cover letter outlining their qualifications and experience as it relates to the Senio...

Promoted
Capgemini Government Solutions
Washington, District of Columbia

Capgemini Government Solutions (CGS) LLC is seeking a highly motivated Senior Security Compliance Analyst/ISSO to join our team in the Washington, D. The Senior Security Compliance Analyst/ISSO is a multifaceted role that collaborates with other teams across the business. Design, implement and evalu...

Booz Allen Hamilton
Washington, District of Columbia

Are you looking for an opportunity to share your experience in Security engineering to safeguard our nation? As a systems security engineer, you can identify the technologies needed to assess vulnerabilities and recommend the best solution and security strategy. Knowledge of intelligence community s...

California Creative Solutions Inc.
Washington, District of Columbia

Work may encompass one or more specialty areas of cyber security, cyberspace, and cyber operations, including providing expert knowledge and insight into compliance, cyber hunt, incident response, risk and vulnerability assessment, and emerging cyber threats requirements; guiding technical support t...

Booz Allen Hamilton
Washington, District of Columbia

Application Security Engineer, Senior. Static Application Security Testing, Dynamic Application Security Testing, and IDE Plug-in environments. Experience with the Security Compass SD Elements security requirements tool. Knowledge of federal compliance standards, including NIST 800-53, FIPS, or FedR...

ST2 ManTech Advanced Systems Intl
Washington, District of Columbia

Network Security Computer Systems Engineer. Develops and provides training to junior Network Security Computer Systems Engineers. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance...