Cyber Security Engineer

B4Corp
Herndon VA
Temporary

Description :

Position Requires a Top Secret (TS / SCI) Clearance with a Polygraph.

Seeking Cyber Security Systems Engineers with a minimum of eleven (11) years’ experience. This opportunity is supporting the customer’s A&A projects which has several Branches within it.

The A&A projects are therefore at various levels within the customer organization depending upon which team is responsible for initial development and accreditation vs.

long term Operations and Maintenance support. Bachelor’s or Master’s Degree are preferred in one or more discipline but can be waived if previous direct ISSE support to this customer’s agency.

Specific skills include the following :

Possess multi-tasking skills, as well as be a good communicator / facilitator. Comfortable at all levels from developer to senior staff.

Knowledge of the complex network environments involving shared networks and multiple security enclaves.

Possess the ability to bridge the technical implementation (i.e. developer talk), into commonly understood security words.

Often this is a skillset and is not an actual language, but frequently translation or a basic understand needs to be conveyed by the ISSE when speaking with others or in writing the documentation in order to ensure it’s easy to understand.

Document the various security control implementations as well as gather the artifacts that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation for various Assessment and Authorization (A&A) efforts

Document and obtain a general understanding of the architecture being developed or that was developed for each project in order to write the Systems Security Plans (SSP) / CONOPS in the Xacta application.

Gather the information by working with various team members in order to write various additional A&A related documents such as Contingency Plan (CP), General User Guide (GUG), Privileged User Guide (PUG), Standard Operating Procedures (SOP’s), etc.

Support Accreditation and Authorization (A&A) reviews by ISSO / M, as well as the Security Controls Assessor (SCA)

Document the Plans of Actions and Milestones (POA&Ms) implementation responses or mitigations, as well as provide all required artifacts (i.

e. evidence gathering from the teams)

Coordinating with various contractor and staff personnel to obtain the A&A content, as well as working with various customer security organizations to navigate the customer’s A&A process in order to achieve Authority to Develop (ATD), Interim Authority to Operation (IATT), as well as Authority to Operate (ATO).

Keep track of where each of the various A&A projects are within the customer’s A&A process in order to know when it’s time to re-submit for accreditation or an accreditation extension.

Details :

Mandatory Requirements :

Previous ISSE experience directly supporting the customer.

Previous ISSO experience directly supporting the customer is also helpful.

Various security tools and reports such as Xacta, RoadRunner, Rapid 7, WebInspect, App Detective, and Splunk

Public, private and hybrid Cloud experience (AWS, Microsoft Azure, etc.)

Virtualization experience (VDI & VMWare)

Basic knowledge is helpful, but not required for the following general topics : Cloud security control implementation, PKI implementation, STIG compliance and vulnerability management, and Security Development and Operations (SecDevOps)

CISSP, or GSLC

AWS Certified Security Specialty

Basic Excel and Microsoft Office365

Optional Requirements :

30+ days ago
Related jobs
Promoted
Piper Companies
Reston, Virginia

Cybersecurity Engineer, Security Engineering, Data Security, DLP, CASB, SIEM, EDR, Firewalls, IDS/IPS, MDM, DevSecOps, Code Scanning, Cybersecurity Principles, Microsoft Cloud Security, Microsoft 365 Defender, Web Application Firewall, WAF, Networking Technologies, Vulnerability Management, SAST, DA...

Promoted
ManTech
Chantilly, Virginia

Performs engineering support and system administration of specialized cybersecurity applications and systems to include installation, configuration, maintenance, patching, and back-up/restore. Understanding of federal Cyber Security Guidance such as NIST SP 800-37 – Guide for Applying the Risk Manag...

Promoted
Northrop Grumman
Dulles, Virginia

Additionally, you coordinate multi-disciplinary activities across multiple overlapping threads and engineering specialties -- Ground Software Engineering, Cyber Software Security Assurance (C/SSA), Mission Software Integration, Systems Engineering, ISSM, ISSE, and ISSOs. Ensuring the multi-disciplin...

Promoted
SilverEdge
Chantilly, Virginia

Cyber Security Project Engineer. The Sponsor seeks assistance with performing technical project management that spans technical data analysis, information technology security research, data integration, software evaluation, and graphical visualization disciplines for multiple projects using the Spon...

Promoted
Cyber Defense Technologies
Chantilly, Virginia

Knowledgeable of best practices when implementing security controls including software engineering methodologies, security engineering methodologies, security engineering principles, and secure coding techniques. Cyber Defense Technologies (CDT) is seeking a highly skilled and motivated Information ...

Promoted
SilverEdge
Herndon, Virginia

We are actively seeking Cyber Security Systems Engineers with a minimum of sixteen (16) years' experience. Document the various security control implementations as well as gather the artifacts that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation for various Assessment ...

Promoted
Freddie Mac
McLean, Virginia
Remote

Do you have experience with Splunk? Our cyber security group has a great opportunity for someone to bring their passion, dedication, and expertise to support the event management team! You will be a part of the engineering efforts to craft, build and maintain new Splunk SaaS platform and expand log ...

BAE Systems
Herndon, Virginia

Network infrastructure engineering services are comprised of core infrastructure, voice and video engineering, field engineering, application management and development for networks, network analytics, firewalls, network access controls and bandwidth service delivery. We are actively seeking Cyber S...

McIntire Solutions
McLean, Virginia

Analyzes all relevant cyber security event data and other sources for attack indicators and potential security breaches. Ability to assess, plan, and enact security measures to help protect an organization from security breaches and attacks on its computer networks and systems. Demonstrates experien...

CGI
Fairfax, Virginia

The CGI Federal Offensive Security Group’s Application Security Engineering team supports a wide variety of enterprise DevSecOps processes within CGI Federal's full portfolio of Agile Release Trains. Conversant and knowledgeable on cybersecurity best practices, the practices themselves, where to fin...