Information Assurance Security Engineer
Accreditation
Certification And Accreditation
Cloud Platforms
Data Security
Dod 8570.1m
Endpoint Security
Facilities Management
Identity and Access Management
Information Security
InfoSec
Management
Risk Management
Security
Security Clearance
Security Compliance
Security Control Assessment
Security Operations
Security Standards
Security Testing
Solution Architecture
Job Description
Information Assurance Security Engineer role supporting an intelligence customer with security policy, ATO/RMF support, C&A coordination, incident response, and NCE network security operations in Springfield, VA.
Responsibilities
- Deliver expert technical services across Information Security including security policy development, ATO support, and security system assessments
- Draft information security policy materials
- Write and review Memorandum of Agreements and coordinate/manage Certification and Accreditation activities
- Advise and assess system design and architecture, and define/design/evaluate information security systems
- Support multi-agency information sharing and integration security
- Maintain affiliations with high-level personnel at multiple agencies and organizations involved in information security
- Perform incident response, system access approvals, and audit log review
- Participate in Configuration Control Board activities and provide daily consultations on security issues
- Report, document, and investigate security incidents; assist with corrective measures development and implementation
- Represent the Information System Security Manager to ensure compliance with information security procedures
- Support operations, maintenance, and disposal of information system materials in alignment with security directives, policies, practices, and System Security Plans
- Generate and implement security training and user security awareness prior to system access
- Initiate protective and corrective actions upon discovery of incidents or vulnerabilities
- Ensure IA hardware and software compliance with security configuration guides
- Implement and enforce IA policies and procedures defined in A&A documentation
- Ensure users understand their IA responsibilities
- Conduct Operations & Sustainment (O&S) for the NCE network security infrastructure (firewalls, web gateways, mail gateways, IDS, load balancers, performance monitoring tools, management systems, etc.)
- Maintain and/or perform advanced configuration of equipment to protect the network from emerging cyber threats
- Perform forensic traffic and log analysis to isolate issues and/or respond to analyst alerts
- Respond to escalated troubleshooting requests
- Maintain and administer network infrastructure standards, documentation, and fault tolerance
- Present required monitoring/test results and reports
- Perform and/or support integration testing as required
- Support special projects as required
- Review Plan of Action and Milestones (POA&Ms) and perform technical decomposition categorization, remediation, and lien resolution
- Execute remediation for vulnerability findings using ACAS security scans
- Install, harden, deploy, document, and troubleshoot network perimeter security technologies
- Use scripting capabilities on Unix and/or RHEL OS
Requirements
- Top Secret/SCI clearance
- US Citizenship required
- Knowledge and experience with ICD 503 and familiarity with Cloud Infrastructure/AWS-based solutions
- Must possess IAM II certification to start per DoD 8570.1M
- Understand the customer RMF process and how systems security requirements are met
- Ability to support multiple projects/tasks in a dynamic, fast-paced, team-oriented environment
- 8+ years of related experience in data security administration (years may vary based on technical training, certification(s), or degree)
- Bachelor’s Degree in Computer Science or related technical discipline, or equivalent combination of education, professional training, or work experience
- CISSP certification or equivalent (CAP, GSLC, CISM)
- System administration experience
- Network engineering experience
- System design and development experience
- Proficiency in network routing/vlan technology
- Experience using security tools: ACAS, HBSS, Carbon Black, Tanium, RedSeal, EMET
- Basic understanding of Windows Enterprise AD architecture and VMWare Virtualization
- Experience with complex Microsoft macros and PowerShell scripts
Technologies
- ICD 503
- AWS
- DoD 8570.1M
- RMF
- ACAS, HBSS, Carbon Black, Tanium, RedSeal, EMET
- Unix, RHEL
- PowerShell
- Windows Enterprise AD
- VMWare
- Firewalls, web gateways, mail gateways, IDS, load balancers
- Performance monitoring tools, management systems
- Network routing/vlan technology
Benefits
- Growth: AI-powered career tool to identify career steps and learning opportunities
- Support: internal mobility team to help achieve career goals
- Rewards: comprehensive benefits and wellness packages, 401K with company match, competitive pay, and paid time off
- Community: award-winning culture of innovation and a military-friendly workplace
Compensation
- USD 144,500 - 195,500 per year
Location
- Springfield, Virginia (onsite workplace)
- Arnold, MO
Additional Information
- REQ#: RQ227759
- Requisition type: Regular
- Travel required: None
- Category: Cyber and IT Risk Management
- Public Trust: None
- Clearance level: Top Secret/SCI
- Years of experience: 10+ years of related experience (may vary based on technical training, certification(s), or degree)
Identity Verification Process
- You are expected to be on camera during virtual interviews.
- Company may take your picture to verify your identity and prevent fraud.
- You authorize collection, processing, and use of biometric data for identity verification and security purposes.