Information Systems Security Engineer
Job Description
Join a mission-focused team supporting the National Military Command Center (NMCC) with cybersecurity and security engineering services. This onsite role in Arlington, VA combines hands-on system security engineering with ongoing improvements to vulnerability management and compliance tooling across Windows and Red Hat Linux environments.
What you’ll do
The Information Systems Security Engineer provides support to the NMCC customer by performing and reviewing technical security assessments, identifying vulnerabilities and non-compliance with established cybersecurity standards and regulations, and recommending mitigation strategies. The role also covers administration, patching, and operational support for HBSS and ACAS environments and related security tooling.
- Design, implement, and maintain complex IT systems, including computing infrastructure, networking rules for cybersecurity, and troubleshooting of network and technical issues.
- Lead technical solution development from customer requirement refinement through design, build, testing, and deployment.
- Document and communicate technical solutions and analysis results that lead to recommended courses of action.
- Build, deploy, and patch HBSS Windows and ACAS Red Hat Linux 7.9 and 8 servers.
- Build, maintain, and patch ePO, Security Center, and Nessus servers.
- Provide Security Center accounts for Vulnerability Managers to scan devices within ACAS.
- Review ACAS scan results and support remediation for identified vulnerability findings.
- Support licensing processes for HBSS ePO and Tenable Security Centers, including obtaining required licenses.
- Support procurement of HBSS and ACAS kickstart ISOs from DISA.
- Build virtual servers and deploy and patch applicable McAfee modules through ePO, including configuring McAfee policies.
- Implement STIG requirements for HBSS Windows operating systems, McAfee policies, and ACAS RHEL servers.
- Run SCAP scans on Windows and RHEL servers.
- Update Red Hat 7.9 and 8 RPMs as released and establish local YUM repositories to patch offline ACAS servers.
- Deploy rogue sensors on applicable subnets and identify rogue subnets and endpoints.
- Troubleshoot Security Center and Nessus scanner issues.
- Adhere to company policies, procedures, and safety regulations, and perform other duties as assigned.
What you bring
- Bachelor’s degree in computer science, information technology, or a related field, plus five or more years of systems engineering experience.
- Alternative option: Master’s degree and three years of related experience may substitute for the bachelor’s and experience requirement.
- In lieu of a degree, 12 years of intensive and progressive experience demonstrating required proficiency may be considered.
- Five or more years of systems engineering experience, including design and architecture.
- Ability to identify security risks across information system network structures, including operating systems, hardware, and data-transfer protocols.
- Current and maintainable DoD Top Secret/SCI security clearance, as required for the position.
- Ability to maintain access to the government worksite.
- Valid state driver’s license and safe driving record in accordance with company policy.
- Current CompTIA Security+ certification.
Core technologies you’ll work with
- HBSS, ACAS, Red Hat Linux 7.9, Red Hat Linux 8
- ePO, Security Center, Nessus, Tenable Security Center
- McAfee, STIG, SCAP
- DISA kickstart ISOs, RPM, YUM
- CompTIA Security+
Compensation and benefits
$139,000 - $153,000 per year.
- Medical, Dental, and Vision coverage
- TRICARE Supplemental
- Critical Illness insurance
- Company-Paid Life and Short-Term Disability insurance
- Optional Long-Term Disability
- Paid Leave
- 401(k) Retirement Plan
- Identity Theft Protection
- Employee Discounts
- Wellness Seminars
Work environment
- Primarily onsite in an office or secure information technology environment at the NMCC, with ad-hoc telework as authorized.
- May require extended periods of sitting and screen time for systems engineering, cybersecurity, system administration, and technical analysis.
- Must operate standard office and computer equipment and support mission requirements, including adjusted work schedules when necessary.
- Must maintain compliance with all government security, cybersecurity, and worksite access requirements.
Pre-employment and accommodations
- Pre-employment screening may include a criminal background check, motor vehicle record review, and 5-panel drug screening in accordance with company policy and applicable laws.
- Reasonable accommodation: if you have a disability or medical condition and need accommodation at any stage of the hiring process, notify the designated recruiter.