Principal Systems Security Engineer (Cyber) - P4
Job Description
This onsite role in Massachusetts centers on leading Systems Security Engineering activities to define requirements, design security solutions, ensure RMF/NIST control compliance, and support bids and proposals.
Responsibilities
- Collaborate with customers to establish SSE requirements, select solutions, evaluate tradeoffs, estimate costs, plan implementation, assess system impacts, and measure effectiveness.
- Prepare plans and estimates, execute tasks, monitor project progress, report status, and identify and mitigate risks.
- Verify adherence to NIST Risk Management Framework controls across programs.
- Advise program management on SSE architecture and related issues.
- Contribute to the development of bids and proposals.
- Define security development and testing efforts for implementing security controls across networking devices, databases, operating systems, and hardware and software components.
- Integrate cybersecurity development activities throughout the program lifecycle.
- Create high level system requirements and translate them into subsystem level requirements and implementation concepts.
- Ensure compliance with DoD technology release and export licensing policies.
Requirements
- Bachelor's Degree in Science, Technology, Engineering or Mathematics (STEM) and eight years of relevant experience typically required.
- Active and transferable U.S. government issued Secret security clearance required before start; U.S. citizenship is required for eligibility.
- Experience in System Security Engineering and/or Cybersecurity Engineering.
- Experience with NIST RMF.
Technologies
- Splunk
- Bash scripting
- Python scripting
- NIST RMF
Benefits
- Medical insurance
- Dental insurance
- Vision insurance
- Life insurance
- Short-term disability
- Long-term disability
- 401(k) match
- Flexible spending accounts
- Flexible work schedules
- Employee assistance program
- Employee Scholar Program
- Parental leave
- Paid time off
- Holidays
- Relocation assistance
Compensation
Salary: USD 107,500 - 204,500 per year
Qualifications We Prefer
- Managerial or leadership experience
- Familiarity with information security toolsets including anti-virus, Vulnerability Assessment, HIDS/NIDS, host-based or endpoint security solutions, MFA, SIEM, and centralized auditing tools; Splunk familiarity preferred
- Linux Bash scripting or Python scripting experience
- Security systems engineering spanning hardware, software, operating systems, and applications in standalone and LAN/WAN configurations
- DoD 8570.01-M IAT Level II compliant certifications (eg, Security+, CISSP, or equivalent)
- Security features and vulnerability analysis of various operating systems as defined by intelligence communities
- Experience with IT and network security administration, including OS security configuration and account management for UNIX, Windows, Red Hat Enterprise Linux, and Cisco systems
- Understanding of systems engineering requirements, specifications, and the implementation of DoD and Federal IA Certification and Accreditation processes, IA controls, and related documentation
- Familiarity with Program Protection Plan requirements under DoDI 5000.02 and DoDI 5200.39
- Experience contributing as an Information Assurance subject matter expert on U.S. Government contract proposals