Information Assurance/Security Engineer IV - Security Clearance Required

DAn Solutions, Inc
Herndon, Virginia
Full-time

REQUIRES AN ACTIVE / EXISTING TS / SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ONSITE

  • Defines information security requirements and their integration into information systems and its technology component through purposeful security design.
  • Develops and implements security designs ensure that the hardware, operating systems and software applications adequately address cyber security requirements and Security Controls Traceability Matrix (SCTM).
  • Identify points of vulnerability, non-compliance with established Information Assurance (IA) standards and regulations and recommend mitigation strategies.

Implement, validate Security Technical Implementation Guide (STIG) requirements and / or perform SRG assessments for all development and implementation projects.

  • Develop, customize, and configure Splunk applications and dashboards.
  • Develop Security Test Procedure (STP), conducts self-assessments to verify compliance with required configuration guidance and support A&A testing and validation of security designs.
  • Conducting risk analysis reviewing ACAS, CVEs, plugins, CWEs, research, collaborate with System Administrators to mitigate identified vulnerabilities and / or author Plans of Actions and Milestones (PO&AM) as needed.
  • Execution of continuous monitoring efforts responds to data calls, scan requests, and various weekly and monthly security metrics reporting requirements.
  • Validate control implementations provide enforcement of the require data access and network flow restrictions align with the continuous monitoring strategy.
  • Participates in Agile Planning Events to provide technical input.
  • Support government activities and reporting to appropriate IC and DoD authorities (i.e., USCYBERCOM, IC-SCC)
  • Support security authorization activities in compliance with the customer Information System Certification and Accreditation Process following the NIST Risk Management Framework (RMF), CNSSI No 1243 and other prescribed business processes for security engineering.
  • Assist architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of Agency security policy and enterprise solutions.
  • Apply system security engineering expertise in one or more of the following to : system security design process; engineering life cycle;
  • information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification;
  • authentication; and authorization; system integration; risk management; intrusion detection; contingency planning; incident handling;

configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control); and security testing.

Required Qualifications :

  • Must be a US Citizen
  • 8 years of relevant experience and a Bachelor's degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or university is required.

A Master's degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline may be substituted for two (2) years of additional experience.

Four (4) years of additional ISSE experience may be substituted for a bachelor's degree.

  • DoD 8570 compliance with IASAE Level 3 is required
  • Three (3) years of experience in scripting languages, Linux / RedHat, and / or Networking Appliances

Information Systems Security Engineering Professional (ISSEP) and CISSP Certifications are required

Active TS / SCI security clearance with the ability to obtain polygraph is required

Desire Qualifications :

  • Skilled in implementing mitigation strategies and how to resolve problems, and to re-test / re-evaluate systems
  • Demonstrated experience with DISA Security Technical Implementation Guide (STIG) implementation and Security Content Automation Protocol (SCAP) tool usage
  • Possess a working knowledge of administrating servers, system and application security threats and vulnerabilities
  • Experience extending existing applications in areas such as security, monitoring, task automation, continuous integration, deployment, and performance optimization
  • Demonstrate writing of your own project in scripting / programming (use of Shell scripting, Python, JavaScript, PowerShell) in a Linux or Windows environment to support the various Cyber Security tools and applications required
  • Provide guidance on vulnerability and malware remediation.
  • Experience analyzing vulnerabilities, establishing cause and impact, and identifying the corrective action needed to eliminate and prevent the event from happening in the future.

Please be advised that all legitimate communications from Dan Solutions will only originate from email addresses ending in "@dansolutions.

com". Exercise caution with emails from other addresses, as they may be phishing scams. If in doubt, please contact us directly.

Your security is our priority

12 days ago
Related jobs
Promoted
DAn Solutions, Inc
Herndon, Virginia
Full-time

Identify points of vulnerability, non compliance with established Information Assurance (IA) standards.. Active TS SCI security clearance with the ability to obtain polygraph is required Desire Qualifications..

Promoted
Peraton
Herndon, Virginia
$146K-$234K a year
Full-time

Provides information assurance support for the development and implementation of security architectures.. years of relevant experience Candidate selected must have an active TS SCI clearance with a Full Scope..

Promoted
DAn Solutions Inc
Herndon, Virginia
Full-time

AT&T has an opening for an Information Assurance Engineer Level 3 (IAE 3) to support the Defense and Nat.. Mentor as directed needed to support the mission of the team. Required Clearance. TS SCI with poly ( ts..

Promoted
AT&T
Chantilly, Virginia
$98.1K-$160K a year
Full-time

AT&T has an opening for an Information Assurance Engineer Level 3 (IAE 3) to support the Defense and Nat.. Mentor as directed needed to support the mission of the team. Required Clearance. TS SCI with poly ( ts..

Promoted
Battelle
Chantilly, Virginia
Full-time

Or from detailed procedures developed by, engineering staff. Includes assembling required test articles.. Eligibility and willingness to obtain a Secret Clearance and DHS Suitability. Must be US Citizen..

Promoted
Sciolex Corporation
Chantilly, Virginia
Full-time

Our core services include systems engineering technical advice, technical support, and administrative.. Qualifications & Physical Requirements TS SCI security clearance with a CI polygraph. Bachelor's STEM..

Promoted
Arcfield
Chantilly, Virginia
Full-time

Responsibilities Seeking a strong cyber security engineer (CSE) or information security systems engineer.. the functions of sub processes, and the impact of changes when required. Review Plan of Actions and..

Promoted
Avid Technology Professionals, LLC
Dulles, Virginia
Full-time

Required Education. Bachelors degree in Systems Engineering, Computer Science, Information Systems or related technical field. Two years of related work experience may be substituted for each..

Promoted
ManTech
Herndon, Virginia
Full-time

ManTech is seeking a Senior Information Systems Security Officer (SR. ISSO) to support the Information.. Security Clearance Requirements. Must have active current TS SCI with CI Polygraph. required to apply..

Promoted
Axiologic Solutions
Chantilly, Virginia
Full-time

Prepare technical proposals for presentation to the Sponsor's engineering review boards for approval.. similar or different areas o Application level security controls (e.g. web application firewalls) o..