Information System Security Engineer
Job Description
MANTECH is seeking an Information System Security Engineer (ISSE) to help identify, design, and implement cybersecurity requirements for an IS and Network Environment. This role focuses on translating applicable security needs into architectures, security measures, and implementable designs, while supporting mission outcomes in a networked environment.
The position is based in Washington, DC and is onsite. The work requires a current/active Top Secret clearance with SCI eligibility, along with willingness to complete a polygraph.
Responsibilities
- Identify information protection needs for an IS and Network Environment, and define IS and network security requirements in line with applicable cybersecurity requirements.
- Design security architectures for use within the IS and Network Environment, including cybersecurity-enabled products that support those environments.
- Integrate and/or implement security with Cross Domain Solutions (CDS) for use within an IS and Network Environment.
- Develop and implement security designs for new or existing network system(s), ensuring hardware, operating systems, and software applications address cybersecurity requirements.
- Design, develop, and implement network security measures to provide confidentiality, integrity, availability, authentication, and non-repudiation, including cybersecurity countermeasures for the IS and Network Environment.
- Develop interface specifications for the IS and Network Environment.
- Develop approaches to mitigate IS and Network Environment vulnerabilities and recommend changes to network or network system components as needed.
- Ensure that network system(s) designs support incorporation of FBI directed cybersecurity vulnerability solutions.
Requirements
- Experience level requirement (must meet one): High school diploma/GED and 14 years, Associate’s degree and 7 years, Bachelor’s degree and five years, or Master’s degree and 3 years.
- Hold at least one of the following certifications: CISSP (or Associate), CompTIA Advanced Security Practitioner (CASP) CE, CSSLP, CISSP-ISSEP, or CISSP-ISSAP.
- Familiarity with security tools and usage, including Tenable Nessus and/or Security Center, IBM Guardium, HP WeblInspect, Network Mapper (NMAP), or similar applications.
- Working knowledge of NIST Risk Management Framework (RMF) and ATO processes.
- Must have a current/active Top Secret security clearance with eligibility to obtain SCI prior to starting.
- Selected candidate must be willing to undergo a Polygraph.
Technologies
- Cross Domain Solutions (CDS)
- Tenable Nessus
- Security Center
- IBM Guardium
- HP WeblInspect
- Network Mapper (NMAP)
- NIST Risk Management Framework (RMF)
- ATO processes
Preferred Qualifications
- Degree in Computer Science, Cybersecurity, or other cyber discipline.
Physical Requirements
- Must be able to remain in a stationary position 50%.
- Needs to occasionally move about inside the office to access file cabinets, office machinery, and related materials.
- Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine, and computer printer.
- Often positions self to maintain computers in the lab, including under desks and in the server closet.
- Frequently communicates with co-workers, management, and customers, which may involve delivering presentations; must be able to exchange accurate information in these situations.