🚀 Launch your SaaS fast, with Larafast.

Production ready Laravel Starter Kit with everything that you need to start your next SaaS project, AI Wrapper or any other web application.

Launch Your SaaS Fast

Senior Specialist, Info Sec Sys Engineer - Remote

L3HHCM20
Tallahassee, Florida, United States
8
Calm

Summary

Responsibilities

  • Contribute to product or network information security engineering activities, including security requirements analysis and compliance management.
  • Perform functional analysis and translate customer information security requirements into hardware and software specifications.
  • Provide information assurance technical leadership for development teams of multi-discipline products.
  • Develop security documentation including overlays, data flow diagrams, and internal requirements.
  • Identify security risks, threats, and vulnerabilities in networks and systems.

Requirements

  • Bachelor's Degree and minimum 6 years of relevant experience, or a Graduate Degree and a minimum of 4 years of related experience, or at least 10 years of prior related experience in lieu of a degree.
  • Ability to attain a Public Trust clearance.
  • AWS cloud security knowledge and strong familiarity with Linux.

Work-Life Balance Benefits

  • Remote work options
  • Flexible working hours
  • Generous vacation policies

Benefits

  • Competitive salary
  • Professional development opportunities
  • Health and wellness programs

Apply Now

👉 Please mention that you found this job on CalmJobs, thanks!

Full Details of Job Post

Job Title:  ​Senior Specialist, Information Security Systems Engineer

Job Code:  16575

Job Location: Remote

Job Description:   

Applies current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration of systems and networks to maintain system security. Works closely with Government customers to ensure that the security protection needs, concerns and requirements are defined and implemented with appropriate fidelity and rigor, early and in a sustainable manner throughout the life cycle of system that will allow for the security authorization of the system of interest. Works with systems developers or commercial product vendors in the design and evaluation of state-of-the-art secure systems, networks, and database products. Uses methods such as encryption technology, vulnerability analysis and security management. Responsible for integration of multiple methods into a cohesive system security perimeter and environment and the policies and procedures necessary to monitor and maintain such an environment. Will prepare Certification and Accreditation documentation, using multiple standards, to achieve security authorization of supported systems. Represents program security needs, concerns and requirements at customer meetings.

Essential Functions: 

  • Expected to contribute to Product or Network Information Security Engineering activities pertaining to CDRLs, trade studies, security requirements analysis, secure architecture development, management & compliance with security controls, design review milestones (SRR, SDR, PDR, CDR) and security test/verification activities.  
  • Perform functional analysis, timeline analysis, detailed trade studies, requirements derivation and allocation, and interface definition studies to translate customer Information Security requirements into hardware and software specifications.  
  • Provide Information Assurance (IA) technical leadership for development teams of new multi-discipline (mechanical, electrical, software, RF, etc.) products.  
  • Responsible for developing security overlays, data flow diagrams, internal requirements, CONOPs and interface control documents from customer / product requirements.  
  • Knowledge of security requirements, documentation, and risk mitigation strategies.  
  • AWS cloud security knowledge including architecture, design, deployment, and management of cloud security technologies. 
  • Strong familiarity with Linux. 
  • Familiarity with security related tools – SIEM, malware, HIPS, etc 
  • Identify security risks, threats and vulnerabilities of networks, systems, applications and new technology initiatives (hardware, software, cross-domain solutions, cryptographic devices, firewalls, intrusion detection systems, anti-virus systems and software deployment tools).  
  • Experience in writing and managing RMF body of evidence documents (e.g., System Security Plan (SSP), Security Compliance Traceability Matrix (SCTM), Risk Assessment Report (RAR), Continuous Monitoring (ConMon) Plan, and Security Assessment Plans and Procedures (SAPP).  
  • Knowledgeable with malware detection systems for Windows and Linux. 

Qualifications: 

  • Education 
    • Bachelor’s Degree and minimum 6 years of prior relevant experience, or 
    • Graduate Degree and a minimum of 4 years of prior related experience or 
  • In lieu of a degree, minimum of 10 years of prior related experience. 
  • Ability to attain a Public Trust clearance.  

Preferred Additional Skills:

  • Familiarity with Model Based System Engineering (UML, SysML, DoDAF). 
  • DoD 8140.03 IASAE Level 3 certification (e.g. CISSP - ISSEP or ISSAP).  
  • Experience in configuration and use of cyber defense and vulnerability assessment tools such as ACAS and SCC. 
  • Moderate understanding of vulnerability analysis tools such Tenable NESSUS Security products. 
  • Experience in the content development and administration of SEIM/audit reduction tools (e.g., Splunk). 
  • Foundational knowledge of Layer 3 architecture and diagramming within Visio (or equivalent). 
  • General knowledge of common threats to information systems and how compromise would damage system integrity. 
  • Supporting account management, PKI cert management, LDAP configuration/management. 
  • Scripting experience (Bash/Shell, Python, Perl, PowerShell). 
  • Active TS/SCI is highly desired. 

Apply Now

👉 Please mention that you found this job on CalmJobs, thanks!

Similar Jobs

Cloudlinux

Poland TELECOMMUTE FULL_TIME

View Details

CrowdStrike

Romania FULL_TIME

View Details

CrowdStrike

Romania FULL_TIME

View Details

Cubic Corporation

United States TELECOMMUTE FULL_TIME

View Details

CrowdStrike

Canada FULL_TIME

View Details

CrowdStrike

United Kingdom FULL_TIME

View Details

CrowdStrike

Romania PART_TIME

View Details

Cloudlinux

Poland TELECOMMUTE FULL_TIME

View Details

Patterson Companies

United States FULL_TIME

View Details