Lead Information Systems Security Engineer

Galaxy Technology Hires LLC
Clifton, NJ, United States
Full-time

Lead Information Systems Security Engineer

Clifton, NJ *Relocation Assistance Provided*

The Company

Our client is one of the largest, successful aerospace, defense and technology innovators in the world. They operate in over 100 countries and provide strategic solutions to the US, in order to protect and defend our freedoms worldwide, with advancing space access, supporting national security, civil service, and transportation safety.

Their employees are passionate about their customers and their mission, as they enjoy working with cutting edge technologies and advancements that are positively impacting our society.

The Job

Our client is seeking a Lead Information Systems Security Engineer with a specialty in DOD Anti-Tamper verification. The ideal candidate will be well-versed in AT technologies and work well with integrated engineering teams.

Functions

  • Expected to contribute to all System Security Engineering activities pertaining to CDRLs, trade studies, security requirements analysis, secure architecture development, management & compliance with security controls, design review milestones (SRR, SDR, PDR, CDR) and security test / verification activities.
  • Ensure RMF Information Security requirements and Program Protection requirements are addressed in all phases of the System Development Lifecycle (SDLC).
  • Perform functional analysis, timeline analysis, detailed trade studies, requirements derivation and allocation, and interface definition studies to translate customer Information Security requirements to engineering specifications.
  • Responsible for developing security overlays, data flow diagrams, internal requirements, CONOPs and interface control documents from customer / product requirements.
  • Identify security risks, threats and vulnerabilities to existing systems, applications and new technology initiatives.
  • Serve as a Subject Matter Expert in the area of Product Security
  • Expected to lead multiple Product Security Programs
  • Enhance and Improve processes and procedures to improve technical efficiency.

Qualifications

  • Active SECRET Clearance required
  • Education :
  • Bachelor’s Degree and minimum 9 years of prior relevant experience.
  • Graduate Degree and a minimum of 7 years of prior related experience.
  • In lieu of a degree, minimum of 13 years of prior related experience.

Preferred Skills

  • Experience writing and managing RMF body of evidence documents (e.g., Program Protection Implementation Plan, AT Plan, System Security Plan (SSP), Security Compliance Traceability Matrix (SCTM), Key Management Plan (KMP), Risk Assessment Report (RAR), Continuous Monitoring (ConMon) Plan, Plans of Action and Milestones (POA&M), and Security Assessment Plans and Procedures (SAPP).
  • Knowledge of programming languages including C / C++, Assembly, Python languages is desired.
  • Experience implementing real-time embedded security-oriented solutions on Department of Defense (DoD) systems
  • Experience designing, implementing, and evaluating in Anti-Tamper Solutions
  • Experience interfacing with other Engineering Disciplines
  • Experience in Software Assurance (SWA), Supply Chain Risk Management (SCRM) is preferred.
  • Experience with commercial-off-the-shelf products
  • DoD 8570.01-M IASAE Level 1 certification (e.g. CISSP).
  • Experience with administration and securing Linux (RHEL / CentOS), VXWorks, Wind River Linux
  • Experience identifying common threats to information systems and how compromise system integrity.
  • Experience in system testing and evaluation methods and RMF assessment methodology & process.
  • Experience with DOORS requirement management software
  • Experience in Model-Based Systems Engineering (MBSE)
  • Active Collateral TS or TS / SCI Clearance is highly desirable

Security Clearance

Please be aware this position requires a DoD Secret security clearance. Security clearances may only be granted to U.S. citizens.

In addition, applicants who accept a conditional offer of employment may be subject to government security investigation(s) and must meet eligibility requirements for access to classified information.

30+ days ago
Related jobs
Promoted
VirtualVocations
Elizabeth, New Jersey

A company is looking for a Senior Information Systems Security Officer to provide systems security support and IT project management for a federal client. ...

Harris Geospatial Solutions
Clifton, New Jersey

Applies current Systems Security Engineering methods, practices, and technologies to the architecture, design, development, evaluation, and integration of systems and networks to maintain system security. Strong understanding of engineering processes, concepts, and information security systems engin...

Promoted
VirtualVocations
Elizabeth, New Jersey

A company is looking for an Information Security Engineer II (Remote). AWS, Azure)Bachelor's degree in Information Security, Computer Science, or relevant work experience. ...

Prudential Financial
NJ, US

As a Lead, Infrastructure Security Engineer on Security Service Data Protection team, you will partner with product owners, designers, engineers, and delivery professionals to improve Prudential’s capabilities for our Cyber Defenders. Work with your Tech Lead, Product Owner, and the rest of the team...

Promoted
VirtualVocations
Elizabeth, New Jersey

A company is looking for a Senior Information Security Platform Engineer to define, deliver, and support enterprise security tools and architecture. ...

CVS Health
Work from home, NJ, US
Remote

Information Security Risk Metrics Lead will drive efforts to build a comprehensive and sustainable Information Security risk metrics and reporting program. Drive adoption of key risk metrics and reporting across Information Security to inform senior leaders, key stakeholders, and risk management. Pa...

JPMorgan Chase Bank, N.A.
Jersey City, New Jersey

Creates secure and high-quality production code at scale with appropriate systems, delegates project work to more junior team members in actionable and independent scopes, and reviews code written by others * Works with stakeholders and business leaders to understand security needs and rec...

LHH
Secaucus, New Jersey

Information Security Engineer - GRC. Lead the identification, assessment, and prioritization of cybersecurity risks, recommending and implementing appropriate mitigation strategies and action plans. Conduct or oversee regular security audits and assessments to evaluate the effectiveness of cybersecu...

JPMorgan Chase & Co.
Jersey City, New Jersey

As a Lead Security Engineer at JPMorgan Chase within Cybersecurity and Technology Controls, you serve as a senior member of a team that works to deliver software solutions that satisfy pre-defined functional and user requirements with the added dimension of preventing misuse, circumvention, and mali...

WebMD Health Corp
Newark, New Jersey

JOB SUMMARYThe Security Operations Team Lead is responsible for leading a team that empowers Healthwise teams with tools and resources they need to ensure the confidentiality, integrity, and availability of Healthwise information and operational systems. Leads effort to assess, evaluate, and make re...