Talent.com
FedRAMP Senior Cyber Engineer (Multiple Levels)
FedRAMP Senior Cyber Engineer (Multiple Levels)Noblis • Dover, DE, United States
FedRAMP Senior Cyber Engineer (Multiple Levels)

FedRAMP Senior Cyber Engineer (Multiple Levels)

Noblis • Dover, DE, United States
30+ days ago
Job type
  • Full-time
  • Part-time
Job description

Responsibilities

Are you a Cyber Security professional or a Cloud Computing Engineer / Architect interested in Cyber Security? Are you looking to make an impact across the entire federal government? Do you want to help reshape the Federal Security assurance model? Do you love researching new technologies and capabilities? Are you self-driven and detail oriented with excellent written and verbal skills? Then this job is for you! Come be a part of a growing team of highly skilled FedRAMP cyber security SMEs and help reimagine the FedRAMP process.

FedRAMP Cyber Security Engineers are technologists with an eye for cyber security and policy. We are visionaries, reshaping how the Federal Government thinks about secure cloud implementation. We review security packages to evaluate compliance with FedRAMP security requirements and ensure package deliverables clearly and accurately represent the security and risk posture of the cloud service offering. FedRAMP Cyber Security Engineers review the system architecture, key performance indicators, security controls, and the results of an independent security assessment to determine suitability for government-wide use. Cyber Security Engineers work with the FedRAMP team to advise on new and emerging technologies with an emphasis on security impact. We are seeking qualified individuals to be FedRAMP SMEs and develop government-wide guidance.

Key Responsibilitiesa :

Perform compliance reviews of cloud service offering (CSO) system security plans (SSPs) and / or Key Security Indicators to ensure the security posture is sufficient for multi-agency USG use

Provide risk-based guidance to cloud service providers (CSPs) to address security concerns

This position requires the successful candidate to :

Work hand-in-glove with a team of SMEs that are performing the same level of review on other portions of the compliance package

Collaboration with industry to advance transparency and efficiency

Operate in a high-visibility environment where your judgement will :

Have significant impact on cybersecurity for the USG

Be scrutinized in detail, first by your colleagues within the program, and then by external stakeholders

Be completely supported by the program when finalized

Organizationally, day-to-day activities require :

Maintaining focus on the highest priority package at hand

Rapidly shifting focus to support stakeholder review meetings to present your findings

Daily reporting of package status to coordinate multiple teams reviewing multiple packages

Contributing to, and following, detailed standard operating procedures to ensure :

Firm, fair, and consistent reviews from one package to the next

Secure handling of sensitive and proprietary vendor data

Coordination of document revision control with your team members

Exceptional candidates will have experience in several of the following areas of compliance focus :

FIPS 140 validated encryption addressing data at rest, data in transit, and MFA authenticators

Human-to-machine authentication based on NIST SP 800-63-3

Familiarity with service offerings from hyperscale IaaS / PaaS vendors such as AWS, Azure, Google, IBM, and Oracle such as :

How a vendor implements TCP / IP constructs within their respective software defined networking (SDN) architectures

Which implementations are deployed for customers by default, versus requiring customer configuration, or entirely a customer responsibility

Aspects of DNS including DNSSEC, typical configurations for DDoS protection, DNS over TLS (DoT), and DNS over HTTPS (DoH)

Domain-based Message Authentication, Reporting & Conformance (DMARC) for email

Research evolving Federal policy and guidance for application to FedRAMP initiatives and cloud service reviews

Develop policy / guidance for new / emerging technologies

Required Qualifications

Understanding of government cryptography requirements

Strong understanding of cloud architecture, various cloud technologies, and security concepts

Strong understanding of networking principles and security best practices Strong analytical and writing skills

Strong technical research skills

Strong communication skills and ability to explain complex technical concepts to non- technical stakeholders

Excellent teamwork, organizational, communication, and collaboration skills

US citizen and eligible for public trust

Jr level

Bachelor's degree in Computer Science, Software Engineering, or a related field plus 3 years of experience OR Master's degree in Computer Science, Software Engineering, or a related field plus 1 years of experience; or Associate's Degree + 6 years of experience, Or High School diploma or equivalent + 9 years of experience.

  • Compensation : $77,000 - $120,275

Mid level

Bachelor's degree in Computer Science, Software Engineering, or a related field plus 5 years of experience. OR Master's degree + 3 years of experience; or Associate degree + 8 years of experience, Or High School diploma pr equivalent + 11 years of experience.

  • Compensation : $93,200 - $145,550
  • Senior level

    Bachelor's degree in Computer Science, Software Engineering, or a related field plus 8 years of experience; OR Master's degree + 6 years of experience; or Associate's degree + 11 years of experience; or High School diploma + 14 years of experience.

  • Compensation : $112,700 - $176,150
  • Desired Qualifications

    Application development

    Security automation techniques

    Security testing and penetration testing experience

    Vulnerability management experience

    API development and security practices

    Experience developing enterprise security policies and procedures

    OSCAL experience

    CISSP, CISA, CISM or similar certifications

    Experience with operating system or network security management Experience managing incident response and after-action remediation

    Post graduate degree in computer science, cybersecurity or information systems

    Overview

    Noblis () and our wholly owned subsidiaries, Noblis ESI , and Noblis MSD tackle the nation's toughest problems and apply advanced solutions to our clients' most critical missions. We bring the best of scientific thought, management, and engineering expertise together in an environment of independence and objectivity to deliver enduring impact on federal missions. Noblis works with a wide range of government clients in the defense, intelligence and federal civil sectors. Learn more at Noblis -About Us ()

    Why work at a Noblis company?

    Our employees find greater meaning in their work and balance the other things in life that matter to them. Our people are our greatest asset. They are exceptionally skilled, knowledgeable, team-oriented, and mission-driven individuals who want to do work that matters and benefits the public. Noblis has won numerous workplace awards () . Noblis maintains a drug-free workplace.

  • Remote / hybrid status is subject to change based on Noblis and / or government requirements
  • Commitment to Non-Discrimination

    All qualified applicants will receive consideration for employment without regard to race, color, ethnicity, sex, age, national origin, religion, physical or mental disability, pregnancy / childbirth and related medical conditions, veteran or military status, or any other characteristics protected by applicable federal, state, or local law.

    If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and / or to receive other benefits and privileges of employment, please contact us () .

    EEO is the Law () | E-Verify () | Right to Work ()

    Total Rewards

    At Noblis we recognize and reward your contributions, provide you with growth opportunities, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, and work-life programs. Our award programs acknowledge employees for exceptional performance and superior demonstration of our service standards. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in our benefit programs. Other offerings may be provided for employees not within this category. We encourage you to learn more about our total benefits by visiting the Benefits () page on our Careers () site.

    Compensation at Noblis is determined by various factors, including but not limited to, the combination of education, certifications, knowledge, skills, competencies, and experience, internal and external equity, location, clearance level, as well as contract-specific affordability, organizational requirements and applicable employment laws. The projected compensation range for this position is based on full time status. For part time or on-call staff, compensation is proportionately adjusted based on hours worked. While monetary compensation is important, it's just one component of Noblis' total compensation package.

    Posted Salary Range

    USD $78,900.00 - USD $123,300.00 / Yr.

    Create a job alert for this search

    Cyber Engineer • Dover, DE, United States

    Related jobs
    Lead Cybersecurity Engineer; HP NonStop Systems

    Lead Cybersecurity Engineer; HP NonStop Systems

    Capital One • Dover, DE, United States
    Full-time +1
    Lead Cybersecurity Engineer; HP NonStop Systems.In this key technical Lead Cybersecurity role, you'll be responsible for the overall security architecture, design, and configuration of the PULSE HP...Show more
    Last updated: 5 days ago • Promoted
    Data Integration Engineer

    Data Integration Engineer

    Eliassen Group • Dover, DE, United States
    Full-time +1
    We are currently seeking a talented Data Integration Principal to join us as we develop our data driven, analytic focused and predictive products to help revolutionize the law enforcement sector.Th...Show more
    Last updated: 18 days ago • Promoted
    Endo Procedural Tech

    Endo Procedural Tech

    TidalHealth • Seaford, DE, United States
    Full-time +1
    Looking for a rewarding place to work? Choose TidalHealth.Our hospitals have been named among the Top 5 percent of all U. Healthgrades and a five-star hospital by the Centers for Medicare & Medicaid...Show more
    Last updated: 26 days ago • Promoted
    Network Engineer 1.19

    Network Engineer 1.19

    Focused HR Solutions • Dover, Delaware, United States
    Full-time
    Quick Apply
    This job is Hybrid in Dover, DE.Our direct client has an opening for a Network Engineer 1459.This position is for 24 months, with the option of extension, and is in Dover, DE.We can work corp...Show more
    Last updated: 30+ days ago
    Senior Engineer, IT Governance and Compliance

    Senior Engineer, IT Governance and Compliance

    Cardinal Health • Dover, DE, United States
    Full-time
    NYSE : CAH) is a global healthcare services and products company.We provide customized solutions for hospitals, healthcare systems, pharmacies, ambulatory surgery centers, clinical laboratories, phy...Show more
    Last updated: 5 days ago • Promoted
    Associate Team Leader

    Associate Team Leader

    H&R Block • Smyrna, DE, US
    Full-time +1
    At H&R Block, we believe in the power of people helping people.Our defining Purpose is to provide help and inspire confidence in our clients, associates, and communities everywhere.We also believe ...Show more
    Last updated: 26 days ago • Promoted
    Senior Manager, IT Web Services

    Senior Manager, IT Web Services

    Sumitomo Pharma • Dover, DE, United States
    Full-time
    Japan with operations in the U.With several marketed products and a diverse pipeline of early- to late-stage investigational assets, we aim to accelerate discovery, research, and development to bri...Show more
    Last updated: 12 days ago • Promoted
    Endpoint Vulnerability Management Subject-Matter Expert / Technical Lead

    Endpoint Vulnerability Management Subject-Matter Expert / Technical Lead

    GovCIO • Dover, DE, United States
    Full-time
    GovCIO is currently hiring for Endpoint Vulnerability Management Subject-Matter Expert / Technical Lead for our NIH Proposal. The Technical Lead will support our client's contract needs.This position ...Show more
    Last updated: 5 days ago • Promoted
    Senior Business Intelligence Engineer

    Senior Business Intelligence Engineer

    Humana • Dover, DE, United States
    Full-time
    Become a part of our caring community and help us put health first.The Senior Business Intelligence Engineer addresses Health Equity and social determinants of health (SDOH) using data from interna...Show more
    Last updated: 12 days ago • Promoted
    Manager of Cyber Defense Engineering

    Manager of Cyber Defense Engineering

    Lumen Inc • Dover, DE, United States
    Full-time
    We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly.Together, we are building a culture and company from the people up - committed to t...Show more
    Last updated: 13 days ago • Promoted
    Offensive Security Engineer, Assessments (Web3)

    Offensive Security Engineer, Assessments (Web3)

    Coinbase • Dover, DE, United States
    Full-time
    Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...Show more
    Last updated: 5 days ago • Promoted
    Senior Cybersecurity Engineer (Networking)

    Senior Cybersecurity Engineer (Networking)

    Amentum • Dover, DE, United States
    Full-time
    Amentum is a global leader in advanced engineering and innovative technology solutions, trusted by the United States and its allies to address their most significant and complex challenges in scien...Show more
    Last updated: 5 days ago • Promoted
    Restaurant Delivery - Sign Up and Start Earning

    Restaurant Delivery - Sign Up and Start Earning

    DoorDash • Seaford, DE, United States
    Full-time +1
    DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day. As a Dasher, you’ll stay busy with a variety o...Show more
    Last updated: 28 days ago • Promoted
    Associate Security Engineer : : Dover, DE (Onsite)

    Associate Security Engineer : : Dover, DE (Onsite)

    Ark Solutions • Dover, DE, United States
    Full-time
    Associate Security Engineer - Dover, DE.Seeking for an Associate Security Engineer to support data security, compliance readiness, and audit activities. Join our team to work on data privacy, govern...Show more
    Last updated: 5 days ago • Promoted
    Senior Backend Engineer (M / F / X) (Remote)

    Senior Backend Engineer (M / F / X) (Remote)

    Jobgether • DE, US
    Remote
    Full-time
    Quick Apply
    This position is posted by Jobgether on behalf of a partner company.We are currently looking for a Senior Backend Engineer (M / F / X) in Delaware (USA). As a Senior Backend Engineer, you will play a pi...Show more
    Last updated: 10 days ago
    Senior Security Engineer (Cryptography)

    Senior Security Engineer (Cryptography)

    Zoom Corporation • Dover, DE, United States
    Full-time
    Senior Security Engineer (Cryptography) at Zoom is responsible for designing, and guiding encryption primitives implementation for Zoom video and meeting applications and services.The ideal candida...Show more
    Last updated: 7 hours ago • Promoted • New!
    Senior Security Engineer - Data Loss Prevention Operations

    Senior Security Engineer - Data Loss Prevention Operations

    Oracle • Dover, DE, United States
    Full-time
    Our rapidly growing team specializes in threat hunting, analyzing indicators of compromise (IOCs), investigating security incidents, managing incident responses, and conducting digital forensics ac...Show more
    Last updated: 5 days ago • Promoted
    Remote Market Research Participant (Hiring Immediately)

    Remote Market Research Participant (Hiring Immediately)

    Earn Haus • Seaford, Delaware, US
    Remote
    Full-time +2
    We are urgently looking for people interested in taking online surveys for Fortune 500 brands.If you are a self-starter, looking for flexible hours throughout the week, this may be for you! Earn up...Show more
    Last updated: 30+ days ago • Promoted