Talent.com
Lead Security Engineer (Due 11/21)
Lead Security Engineer (Due 11/21)ABBTECH Professional Resources • Washington, DC, United States
Lead Security Engineer (Due 11 / 21)

Lead Security Engineer (Due 11 / 21)

ABBTECH Professional Resources • Washington, DC, United States
15 hours ago
Job type
  • Full-time
Job description

Pay rate ($ / hr) : $107 USD / hr

Remote but local candidates get preference

only U.S. Citizens and GC Holders only

Position Description : The Security Lead will support the District of Columbia Access System (DCAS) under the Technical Program manager to identify security vulnerabilities, design, and implement security solutions, monitor security systems, and respond to security incidents impacting DHCF on-premises and cloud hosted resources. The contractor shall provide subject matter expertise in the design, development and implementation of security best practices which includes, but is not limited to, network security, application security, access control, and security policy development.

Responsibilities :

  • Conduct security assessments and audits to identify vulnerabilities and provide recommendations for remediation of DHCF assets.
  • Design, implement, and manage security infrastructure and tools, including firewalls, intrusion detection systems, vulnerability management systems, antivirus systems.
  • Collaborate with IT teams to ensure security best practices are integrated into IT projects and operations for divisions providing services internally and externally.
  • Develop and maintain security policies, procedures, and standards.
  • Monitor security systems and respond to security incidents in a timely manner.
  • Provide security awareness training to employees and stakeholders.
  • Stay up to date with the latest security trends, threats, and technologies.
  • Should have experience with Center for Medicaid Services (CMS), Internal Revenue Services (IRS) and Social Security Administration (SSA) Audits and Remediation.

Deliverables :

  • Comprehensive cybersecurity strategy document outlining short-term and long-term goals.
  • Updated security policies and procedures manual.
  • Regular compliance reports and documentation of security measures taken.
  • Security assessment reports detailing identified vulnerabilities and recommended remediation strategies.
  • Documentation of implemented security measures and configurations.
  • Incident reports for security incidents, including analysis, containment, eradication, recovery, and lessons learned.
  • Create a detailed implementation plan outlining the steps and timeline for deploying security solutions, configuring firewalls, intrusion detection systems, and other security tools.
  • Integrate and configure security tools, such as SIEM (Security Information and Event Management) systems, intrusion detection systems, and vulnerability scanners, for continuous monitoring and threat detection.
  • Develop a comprehensive incident response plan outlining procedures for identifying, containing, eradicating, recovering from, and documenting security incidents. Conduct tabletop exercises to validate the plan.
  • Configure network security devices, including firewalls, routers, and switches, to enforce access controls, segmentation, and threat detection.
  • Complete Remediation of all findings from audit reports and communicate with the federal agencies that conduct audit.
  • Qualifications :
  • Minimum of 15 years of experience working in the field of cybersecurity.
  • Knowledge of federal and industry-specific regulations and compliance requirements related to cybersecurity (e.g., FISMA, HIPAA, GDPR).
  • Experience in preparing for and participating in security audits and assessments.
  • Expertise in network security, including firewalls, intrusion detection / prevention systems, and VPNs.
  • Proven experience with security assessment tools and methodologies.
  • Proficiency in security technologies such as SIEM (Security Information and Event Management) systems and endpoint protection solutions
  • Experience with security monitoring tools, log analysis, and incident response procedures in Azure environments.
  • Strong leadership skills with the ability to motivate and manage a team effectively.
  • Excellent communication and interpersonal skills to work collaboratively with diverse teams and stakeholders.
  • Demonstrated ability to develop and implement security policies, procedures, and standards.
  • Experience in incident response, including conducting investigations and managing security incidents.
  • Strong understanding of cloud security principles and best practices.
  • Strong knowledge of network security, encryption, authentication methods, and security protocols.
  • Excellent problem-solving skills and attention to detail.
  • Strong communication skills and ability to work collaboratively with cross-functional teams.
  • Skill | Required / Desired | Amount
  • 16+ yrs. MS Office / PowerPoint experience | Required

    Bachelor's degree in IT or related field or equivalent experience | Required

    Knowledge and exp in state and federal information security laws, including but not limited to HIPAA, including NIST, PCI and all other regulations | Required | 8

    Proven expertise in presenting executive level reports on project security and compliance | Required | 8

    Healthcare Privacy and Security (CHPS) certification and / or other healthcare industry related security credentials | Highly desired

    Proven track record in the successful completion of an SDLC from a security workstream standpoint | Required | 10

    Expertise translating security protocols and requirements to stakeholders and / or technical project managers | Required | 8

    Knowledge of project management tools - JIRA, SharePoint, Sciforma, Salesforce, MS Project (preferably) | Required | 8

    Proven documentation expertise for the purpose of security policy development, audit finding responses, security risks / gap analysis reports etc. | Required | 8

    Proven experience functioning as the prim POC for IT security audits | Required | 8

    Knowledge of HIPAA, state and federal guidelines on security, transactions and security | Required | 8

    Experience working in IT Security for the Health and Human Services sector | Required | 10

    Experience managing a team of IT professionals specializing in IT Security | Required | 10

    CISSP Certification (preferred) | Highly desired

    Excellent communication and leadership skills | Required | 10

    Expert knowledge of the MS Office Suite | Required | 10

    Knowledge and / or understanding of Curam - V6 or higher (desired) | Highly desired

    ITIL Certification (desired) | Highly desired

    Proven knowledge and expertise with health care relevant legislation and standards for the protection of health information and patient security | Required | 7

    Professional Experience that Meets the requirements for a Master Level Business Systems Analyst | Required | 16

    Benefits (Full-Time, W2 Employees - at least 30 hours per week) :

    Medical, Dental, and Vision offerings

    Weekly Direct Deposit

    Paid Holidays and Personal Time Off

    401(k) with match

    Voluntary Life and AD&D, Short / Long Term Disability, plus other voluntary coverages

    Pre-Paid Legal and Employee Assistance Programs

    Northwest Federal Credit Union Membership

    BB&T @ Work Program

    ABBTECH is an EOE / Minorities / Women / Disabled Individuals / Veterans

    Create a job alert for this search

    Lead Security Engineer • Washington, DC, United States

    Related jobs
    Security Engineer

    Security Engineer

    Verotis • Washington, DC, United States
    Full-time
    Verotis is seeking an experienced Security Engineer to support security operations, strategy, planning, architecture, vulnerability assessments and remediation, and coordination with various govern...Show more
    Last updated: 17 hours ago • Promoted • New!
    Senior Offensive Security Engineer

    Senior Offensive Security Engineer

    CoStar Group • Arlington, VA, United States
    Full-time
    Senior Offensive Security Engineer.CoStar Group (NASDAQ : CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces.Included in the...Show more
    Last updated: 15 hours ago • Promoted • New!
    Security Engineer

    Security Engineer

    Electrosoft • Gaithersburg, MD, United States
    Full-time
    While cybersecurity is our specialty, we also focus on ICAM, enterprise IT modernization, and software solutions.We always seek to delight our customers, so we retain highly qualified employees and...Show more
    Last updated: 17 hours ago • Promoted • New!
    Security Engineer - Baltimore, MD

    Security Engineer - Baltimore, MD

    Georgia IT Inc • Baltimore, MD, United States
    Full-time
    US Citizens, GC, EAD ( H4, L2), E3 TN visa holders preferred, NO third party corp to corp accepted for this job.Architect and Design IAM solutions based on ForgeRock suite of tools such as OpenAM, ...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineering Manager, Kuiper Security

    Security Engineering Manager, Kuiper Security

    Amazon • Herndon, VA, United States
    Permanent
    We are open to hiring candidates to work out of one of the following locations : .Arlington, VA, USA | Herndon, VA, USA | Redmond, WA, USA. Project Kuiper is an initiative to launch a constellation of...Show more
    Last updated: 17 hours ago • Promoted • New!
    Lead Security Engineer

    Lead Security Engineer

    CoStar Group • Arlington, VA, United States
    Full-time
    CoStar Group (NASDAQ : CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100, ...Show more
    Last updated: 17 hours ago • Promoted • New!
    Security Engineering Lead

    Security Engineering Lead

    Tyto Athene, LLC • Ashburn, VA, United States
    Full-time
    Tyto Athene is searching for a.You will play a critical role in leading in-depth analyses and responding to incidents from cyber threats facing our clients. This individual will lead engineering eff...Show more
    Last updated: 17 hours ago • Promoted • New!
    Security Engineer SME

    Security Engineer SME

    Govcio LLC • Fairfax, VA, United States
    Full-time
    GovCIO is currently hiring for a Security Engineer SME with an active Secret clearance in support of our DEA Bluestone program. Build culture of security-first development and IT infrastructure.Deli...Show more
    Last updated: 17 hours ago • Promoted • New!
    Lead Adversarial Security Engineer

    Lead Adversarial Security Engineer

    Trellix • Washington, DC, United States
    Full-time
    Lead Adversarial Security Engineer.Trellix, the trusted CISO ally, is redefining the future of cybersecurity and soulful work. Our comprehensive, GenAI-powered platform helps organizations confronte...Show more
    Last updated: 17 hours ago • Promoted • New!
    Sr. Security Engineer, Kuiper Security, Kuiper Security

    Sr. Security Engineer, Kuiper Security, Kuiper Security

    Amazon • Arlington, VA, United States
    Permanent
    We are open to hiring candidates to work out of one of the following locations : .Arlington, VA, USA | Redmond, WA, USA | San Francisco, CA, USA | Sunnyvale, CA, USA. Project Kuiper is an initiative t...Show more
    Last updated: 17 hours ago • Promoted • New!
    Security Engineer

    Security Engineer

    AnaVation LLC • Washington, DC, United States
    Full-time
    Be Challenged and Make a Difference.In a world of technology, people make the difference.We believe if we invest in great people, then great things will happen. At AnaVation, we provide unmatched va...Show more
    Last updated: 15 hours ago • Promoted • New!
    LEAD INFORMATION SECURITY ENGINEER

    LEAD INFORMATION SECURITY ENGINEER

    Lumen Technologies • Herndon, VA, United States
    Full-time
    We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly.Together, we are building a culture and company from the people up - committed to t...Show more
    Last updated: 30+ days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    CoStar Realty Information, Inc. • Arlington, VA, United States
    Full-time
    CoStar Group (NASDAQ : CSGP) is a leading global provider of commercial and residential real estate information, analytics, and online marketplaces. Included in the S&P 500 Index and the NASDAQ 100, ...Show more
    Last updated: 15 hours ago • Promoted • New!
    Endpoint Security Engineer Lead (CrowdStrike)

    Endpoint Security Engineer Lead (CrowdStrike)

    Leidos Inc • Arlington, VA, United States
    Full-time
    Leidos has an immediate need for a lead Endpoint Security Engineer for a customer on a highly visible and strategic Cybersecurity Task Order. The Security Engineer will need to be a self-starter wit...Show more
    Last updated: 10 hours ago • Promoted • New!
    Baseline Security Engineer, Lead

    Baseline Security Engineer, Lead

    Booz Allen Hamilton • Washington, DC, United States
    Full-time +1
    Baseline Security Engineer, Lead.Develop and implement security solutions in alignment with security strategy.Maintain an awareness of market and technology trends to bring best of breed solutions ...Show more
    Last updated: 17 hours ago • Promoted • New!
    Security Engineer

    Security Engineer

    Berkeley Research Group • Washington, DC, United States
    Full-time
    Second Sight Solutions, a subsidiary of Berkeley Research Group (BRG), is a health technology company, and our innovative technology reimagines how drug discount data is exchanged, establishing new...Show more
    Last updated: 15 hours ago • Promoted • New!
    Security Engineering Lead

    Security Engineering Lead

    TekSynap • Ashburn, VA, United States
    Full-time
    Responsibilities & Qualifications.Make recommendations on the implementation of new tools and technologies that will enhance or generally improve SOC functions and capabilities.Advising and assisti...Show more
    Last updated: 15 hours ago • Promoted • New!
    Senior FIPS 140 Security Engineer

    Senior FIPS 140 Security Engineer

    DanSources • Silver Spring, MD, United States
    Full-time
    Senior FIPS 140 Security Engineer.Seeking a Senior FIPS 140 Security Engineer to join an Accredited Testing and Evaluation (AT&E, Common Criteria / FIPS) team. This role provides an exciting opportuni...Show more
    Last updated: 15 hours ago • Promoted • New!