EngineerJobs.io
← Back to all jobs

Job Description

The Information Systems Security Engineer (ISSE) role at CGI Group, Inc., based in Arlington, VA with hybrid work options, involves designing, implementing, and managing security solutions for information systems, ensuring alignment with security standards and conducting risk assessments. The position offers a salary range of USD 100,000 to 150,000 per year.

Responsibilities

  • Security architecture design: Develop and deploy security architectures for information systems, spanning hardware, software, and network layers.
  • Risk management: Identify and evaluate security risks, formulate mitigation strategies, and implement controls to remediate vulnerabilities.
  • Security compliance: Verify that systems adhere to applicable security policies, regulations, and standards, including NIST, RMF, and ICD 503.
  • Vulnerability management: Perform vulnerability scans, analyze findings, and propose remediation measures.
  • Security documentation: Create and maintain security documentation such as system security plans, security assessment reports, and risk management plans.
  • Collaboration and communication: Collaborate with system administrators, network engineers, software developers, and other stakeholders to integrate security into the system development lifecycle.
  • Continuous monitoring: Engage in continuous monitoring activities to sustain security posture and ensure ongoing compliance.
  • Incident response: Contribute to incident response efforts, investigating security incidents, analyzing malware, and conducting forensic analysis.

Requirements

  • Education and experience: Bachelor’s degree and 2 to 5 years of related experience.
  • Security clearance: Active TS/SCI clearance with polygraph.
  • Technical expertise: Solid understanding of security principles, technologies, and best practices.
  • RMF: Experience applying the Risk Management Framework to information systems.
  • Security architecture: Knowledge of secure system design principles and experience crafting secure architectures.
  • Security controls: Familiarity with a range of security controls and their implementation.
  • Vulnerability assessment: Experience using vulnerability scanning tools and methodologies.
  • Security documentation: Ability to create and maintain security documentation.
  • Communication: Excellent verbal and written communication skills to collaborate with diverse teams.
  • Problem solving: Strong analytical and problem-solving abilities to address complex security challenges.
  • Certifications: CISSP, CISM, CAP, or other recognized security certifications.

Technologies

  • RMF
  • NIST
  • ICD 503

Benefits

  • Competitive compensation
  • Comprehensive insurance options
  • Matching contributions through the 401(k) plan and the share purchase plan
  • Paid time off for vacation, holidays, and sick time
  • Paid parental leave
  • Learning opportunities and tuition assistance
  • Wellness and well-being programs

Similar Jobs