Information System Security Officer

Information Systems Security Officer

Industry: Aerospace / Aviation / Defense

Job Category: Information Technology – Security

Job Description:

Performs ISSO duties under the guidance of the Information System Security Manager (ISSM) or a senior ISSO on assigned government-authorized systems. Knowledgeable in information technology and security. Responsibilities include: authoring and maintaining documentation supporting the Assessment & Authorization (A&A) of assigned systems in accordance with the Risk Management Framework (RMF) under the JSIG and NISPOM; performing security control assessments as part of the systems’ Continuous Monitoring Plan; overseeing configuration management of assigned systems; works with IT organization to develop device and system hardening guides following DISA and NIST guidelines; auditing systems to ensure security posture integrity; conducting periodic hardware/software inventory assessments; identifying system security controls shortcomings and developing POA&Ms; remediate control deficiencies; conducts, documents and reports annual self-assessments; maintaining operational information security posture for a system, program, or enclave; investigating security incidents such as data spills, data integrity and malicious events; authoring and delivering security education training to range of audience levels.

 

Qualifications:

  • Bachelor’s degree from an accredited college in a related discipline or equivalent years of experience.
  • Minimum Security+CE required
  • Top Secret security clearance with the ability to get SCI
  • 3+ years’ experience as an ISSO overseeing or managing cybersecurity on classified systems under JSIG, NISPOM Ch8, ICD 503, and/or NIST 800-53
  • Experience developing, managing, providing evidence to close POA&Ms associated with the A&A and project management processes
  • Able to work individually as well as part of a team
  • Solid time management skills
  • Experience with Microsoft operating systems
  • Experience interpreting vulnerability scanning results (Nessus, Retina)
  • Exceptional verbal, written, interpersonal and presentation skills, customer relationship building skills, analytical skills and ability to lead/mentor teammates
  • High level of personal motivation and initiative to learn and acquire new skills

 

Preferred:

  • Linux is a plus
  • CISSP, CISA, CISM, or GSLC certification
  • Experience reviewing workstation, server, firewall, & IPS logs
  • Flexibility to adjust to changing requirements, schedules, and priorities
  • Experience working in a military environment
  • Able to socialize ideas, make recommendations, and gain team consensus
  • An Active CI polygraph

Senior Principal Information Security Software Engineer

Sr. Principal Information Security Software Engineer

Industry: Aerospace / Aviation / Defense

Job Category: Information Technology – Security

 

Job Description:

The Information Security Software Engineer is responsible for the Security architecture, strategy and policies governing application deployment.

  • This individual will be required to work across the corporation and various levels of engineering and management to identify and set direction.
  • In-depth Knowledge of PKI
  • Must have proven ability to present decisions to Executive Management and technical specialists for consensus building across the corporation.
  • Must demonstrate mastery of hands-on information software and security competencies to be considered for this position.
  • Some travel will be required.
  • Responsible for architecting Web Application Security controls across the corporation, including Web Applications Firewalls, databases for information systems.
  • Implements enforce, communicates and develops security policies or plans for data categorization, software applications, and databases.
  • Must possess Executive Management potential.
  • Serve as a mentor to Jr. Security Analysts/Engineers, including regular seminars on topics of interest and knowledge gained from attending industry conferences.
  • Must know OWASP top 10 and able to influence others to follow without direct line authority.

 

Tasks:

  • Utilize code scanning tools to identify risks in applications prior to deployment. Work on development teams to address risk and mitigation.
  • Develop Security architecture for Web Applications, including Web design and selection of Web Application Firewalls (WAF). Create rules, exceptions and mitigate known risks.
  • Review deployed architecture logs and reports to identify potential exploits. Work with applications teams to repair exploited code.
  • Work on Merger and Acquisition teams to identify all Internet-facing web applications and integration/migration plans for acquired assets.
  • Lead external third-party security testing/penetration testing.
  • Work with Incident Response Team (IRT) to analyze code (executables, javascript, PDF, etc.) to determine purpose and impact of computing resources.
  • Work with Product Line engineering resources to ensure all of the customers’ delivered products are secure.
  • Work with DBAs to identify data fields for encryption and architecture for deployment.
  • Build out a training program for developers and serve as application Security “evangelist” for the corporation, implementing security practices in our product line SDLC.

 

Qualifications:

  • Bachelor’s degree in Computer Science, Computer Engineering or related field
  • Must have 9+ years of work-related programming and debugging of web applications in either Java, ASP, or C#.
  • Must have 3+ years’ experience with Information Security
  • Deep understanding of HTTP protocol. Must be able to address/debug issues with only HTTP stream for review.
  • Demonstrated expertise in analyzing intelligence information and technical data to identify exploitation opportunities to develop real-time solutions to mitigate immediate issues and interpret results to guide long-term security architecture.
  • Ability to obtain a US DOD Security clearance is required
  • Understanding of Engineering maturity models
  • Ability to architect defensive countermeasures and mitigation strategies.
  • Self-starter must be able to work independently.
  • Good customer service with strong oral/written communication skills.
  • Must be self-motivated and be capable of handling multiple tasks and projects simultaneously.

 

Preferred/Additional Skills:

  • Ability to reverse engineer malware and questionable executables.
  • Knowledge of Oracle and/or SQL highly desirable
  • CISSP or GIAC
  • Knowledge of FISMA, NISPOM, NIST, PCI, HIPAA, ISO 27000 and SOX
  • MS preferred.

 

This position requires the candidate to be able to obtain a Top-Secret security clearance. To obtain a clearance, you need to be a US Citizen and show proof of citizenship.

Information Systems Security Manager

Information Systems Security Manager

Industry: Aerospace / Aviation / Defense

Job Category: Information Technology – Security

Job Description:

The Information Systems Security Manager manages a team of professionals in the design, development, implementation, and operation of security programs across the enterprise. This person will oversee information systems security engineering and operations activities, including daily oversight of ISSO and ISSE efforts in the continuous monitoring of authorized systems, including device and system hardening, anomalous activity detection and response, security management applications, review of security documentation, and project engineering. Specific duties will include providing technical direction and oversight to infrastructure ISSOs performing:

 

  • Vulnerability scanning and remediation
  • SIEM, & Firewall configuration, deployment, and maintenance
  • Assessment & Authorization
  • Deployment, implementation, and strategy of tools and related Network Security Management Systems
  • Works with a Program Manager (SCRUM) to provide regular status reporting of security team projects to senior management and customers
  • Responsible for process definition and assurance for network security functions, ensuring configuration documents for deployed security solutions remain current and complete
  • Regularly attends conferences and seminars to represent program security interests and keep program abreast of current technologies
  • Responsible for senior level incident investigation

 

Qualifications:

  • BS/BA degree in Information Security, Computer Science or a related field
  • MS in Information Security, Computer Science or a related field plus 10 years of experience
  • Must have a Top Secret/SCI Security Clearance
  • A minimum of 7 total years related experience, with specific experience in the following targeted areas:
  • Experience with security control implementation per NIST 800-53, JSIG, CNSSI 1253, and/or ISFO Manual
  • Configuration management & change control
  • Vulnerability assessment and remediation
  • POA&M creation & management
  • Operating system & network device hardening
  • SIEM tool configuration and management
  • IS Security documentation creation & proofreading.
  • Secure network design,
  • Incident remediation & response management
  • IS Security project management.
  • CISSP certification.
  • Minimum of 8 years managing a team of Security professionals responsible for continuously monitoring highly secure systems.
  • Minimum of 8 years leading IT & IS Security project teams in moving established security & IT processes to RMF-compliant processes.

 

Preferred Additional Skills:

  • CISA or SANS GIAC security certifications strongly desired.
  • DCID 6/3, JAFAN 6/3, NISPOM Ch8, or DIACAP Certification and Accreditation experience.
  • ITIL v3.0 Foundation certification.
  • Ability to lead a team and provide career leadership direction to team members desired.
  • Experience in leading network security projects in the Government sector is strongly desired.
  • Ability to make decisions quickly as well as demonstrating sound judgment in balancing risk with business needs to offer customers and management optimal security solutions.
  • Flexibility to adjust to changing requirements, schedules, and priorities.
  • Ability to socialize ideas, make recommendations and gather team consensus to move forward.
  • Must have exceptional verbal, written, interpersonal, and presentation skills as well as strong ability to lead and mentor teammates.

 

Security Clearance:

This position requires the candidate to already possess and maintain an active Top-Secret Security. Clearance with SCI Access or can obtain one immediately. To obtain a clearance, you need to be a US Citizen and show proof of citizenship.

Information System Security Engineer

Information System Security Engineer

 

Also, could be called Network Systems Engineers, Cyber Network Architects, Information Security IA Architects, etc. – systems background.

 

 

Job Description:

  • Function as the lead ISSE on Federal Government programs responsible for the following:
  • Recommend and implement measures to maintain compliance with ICD 503.
  • Manage all aspects of cybersecurity for systems maintained on site and at customer locations.
  • Work closely with program managers, system engineering, and other engineering disciplines.
  • Brief senior management on all aspects of security engineering.
  • Lead and support frequent interaction with government customers.
  • Ensure security requirements are addressed in all phases of the system development lifecycle (SDLC).
  • Develop required security accreditation documentation under the DoD Information Assurance Certification and Accreditation Program (DIACAP) and Federal Risk Management Framework (RMF) as required for assigned systems (National Institute for Standards and Technology, Department of Defense, Special Access Programs, Defense Security Service, National Industrial Security Program).
  • Lead and support security assessment activities needed to obtain and/or maintain the Approval to Operate (ATO) security authorization for assigned systems.
  • Identify security risks, threats, and vulnerabilities of networks, systems, applications and new technology initiatives (hardware, software, cross-domain solutions, firewalls, intrusion detection systems, anti-virus systems and software deployment tools).
  • Conduct complex security architecture analysis to evaluate and mitigate issues.
  • Validate and test security architecture and design solutions to produce detailed engineering specifications.

 

 

 

Qualifications:

  • College Degree(s) in Computer Science, Engineering (or equivalent) as follows:
  • Doctorate Degree with a minimum of 3 years of experience in an information security domain.
  • Master’s Degree with a minimum of 8 years of experience in an information security domain.
  • Bachelor’s Degree with a minimum of 10 years of experience in an information security domain.
  • DoDI 8570 IAT or IAM Level 3 compliant professional certification (i.e. CISSP, CISM, GSLC, GCIH, CISA, GCED, or SCNA).
  • Active Top Secret/SCI security clearance required.

 

Preferred Qualifications:

  • Proven cybersecurity professional with excellent oral and written communications skills and the ability to work well with program teammates and work without supervision.
  • Experience with system architectures, operating systems, network components, software assurance, and databases.
  • Experience with configuring, hardening and vulnerability assessment of Windows, Linux clients, and servers.
  • Experience with configuring, hardening and vulnerability assessment of Network products such as Routers, Switches, and Firewalls (, Juniper etc).
  • Experience with security assessment and authorization activities required for Federal information systems
  • Experience using security tools such as Nessus/ACAS, STIGs, McAfee, ArcSight, Tripwire, among others
  • Background in Systems Engineering with emphasis on cybersecurity
  • Ability to travel and work night and weekend shifts, if needed.
  • Ability to communicate technical terms/concepts to non-technical audiences.
  • Ability to read, analyze, and interpret general business periodicals, professional journals, technical procedures, or governmental regulations.
  • Ability to effectively present information and respond to questions from groups of managers, clients, customers, and the general public.
  • Possess advanced level analytical and problem-solving skills.
  • Possess excellent interpersonal and communications skills.
  • Skills and Certifications [note: bold skills and certification are required]
  • CISSP

 

Top Secret/SCI Clearance required

Security Clearance Required: Yes

Full-time Benefits – Full

Relocation Assistance Available – Yes

Interview Travel Reimbursed – Yes

Candidate Details

7+ to 10 years’ experience

Seniority Level –

Minimum Education – Bachelor’s Degree

Willingness to Travel – Occasionally

System Engineer-TS/SCI

SYSTEMS ENGINEER – TS/SCI

Industry: Aerospace / Aviation / Defense

Job Category: Engineering – Systems

Job Title: Systems Engineer – TS/SCI

 

Job Description:

  • Provide technical leadership for development teams of new multi-discipline (mechanical, electrical, software, RF, etc.) products
  • Responsible for developing internal requirements, CONOPs and interface control documents from customer / product requirements.
  • Support full program development lifecycles including concept, design fabrication, production, test, installation, operations, maintenance and disposal.
  • Provide technical leadership to development teams at internal and external gate reviews such as technical baseline reviews and design reviews.
  • Perform functional analysis, timeline analysis, detail trade studies, requirements allocation and interface definition studies to translate customer requirements into hardware and software specifications.

 

Qualifications:

  • Requires an active Top Secret/SCI Security Clearance.
  • BS/BA degree in Electrical, Mechanical, Computer, Systems Engineering (or similar technical discipline)
  • Minimum of 6 years of System Engineering experience required.
  • Minimum of 2-3 years of leadership experience in product/project management.

 

Additional Preferred Qualifications:

  • Collaborative leadership style with a proven track record of building high performance teams.
  • Excellent verbal and written communication skills in a technical information environment a plus.
  • Experience with Model Based System Engineering
  • Ability to work multiple tasks in a fast-paced environment and adapt quickly to changing situations a plus
  • Experience with writing and producing proposals is desired.
  • Experience with writing requirements and technical documentation.
  • Leadership experience in a remote sensing product-type business with specific expertise in driving operational effectiveness.
  • Security Clearances

 

 

SKILLS AND CERTIFICATIONS:

  • TS/SCI security clearance required
  • 2-3 years of leadership experience in product/project management

 

 

CANDIDATE DETAILS

5+ to 7 years’ experience

Minimum Education – Bachelor’s Degree

Willingness to Travel – Occasionally

Full-time Benefits – Full

Relocation Assistance Available – Yes

Interview Travel Reimbursed – Yes

EMBEDDED SOFTWARE ENGINEER

EMBEDDED SOFTWARE ENGINEER

Location: Multiple locations

Industry: Aerospace / Aviation / Defense

 

Description:

Software Engineer responsible for the design and development of software solutions for classified systems. Work will involve solutions for embedded technologies.

 

Basic Qualifications:

  • 6+ years applicable experience with BS/BA degree in Computer Engineering or related field.
  • Active Top Secret/SCI security clearance required.

 

Preferred Additional Skills:

  • Experience with software development for embedded systems.
  • Understanding of SW development processes and life cycle.
  • Team player able to work in a large program environment and have good communication skills.
  • RTOS experience is preferred.
  • Minimum 3 years with C++ programming language highly preferred.
  • Experience with VxWorks, Linux, or related embedded operating systems.

 

Security Clearance:

Please be aware that this position requires the candidate to currently possess a TS/SCI Security Clearance, Security clearances may only be granted to U.S. citizens. In addition, applicants who accept a conditional offer of employment may be subject to government security investigation(s) and must meet eligibility requirements for access to classified information.

 

SKILLS AND CERTIFICATIONS:

  • Top Secret/SCI Security Clearance
  • Bachelor’s degree (preferably in Computer Engineering or a related field)
  • Minimum of 3 years’ experience with software development for embedded systems
  • Security Clearance Required: Yes
  • Full-time Benefits – Full
  • Relocation Assistance Available – Yes
  • Interview Travel Reimbursed – Yes

 

CANDIDATE DETAILS:

  • 5+ to 7 years’ experience
  • Seniority Level – Mid-Senior
  • Minimum Education – Bachelor’s Degree
  • Willingness to Travel – Occasionally
  • All candidates must have an active Top Secret/SCI security clearance.
  • Hands -on experience with software development of embedded systems is a must.

INFORMATION SECURITY SYSTEMS ENGINEER (ISSE) – TS/SCI

INFORMATION SECURITY SYSTEMS ENGINEER (ISSE) – TS/SCI

Industry: Aerospace / Aviation / Defense

Job Category: Engineering – Systems

 

Security Systems Engineer, managing design, development, implementation and operation of security programs across an enterprise serving government and commercial telecommunications WAN domains. Manages information systems security engineering activities, including planning and scheduling of work for network security engineers performing credential management, device and system hardening, intrusion detection and response, information assurance, security management applications, and project engineering. Specific duties will include providing technical direction and oversight to staff engineers performing.

  • Vulnerability Scanning and remediation.
  • IDS, Web App, SIEM, Firewall configuration, deployment, and maintenance.
  • Security engineering design and architecture, security implementations, firewall/IPS/IDS, VMware, Microsoft, UNIX/Linux, and CISCO router/switch/IPS configuration experience.
  • RMF skills including assessment and authorization
  • Deployment, implementation and strategy of tools and related Network Security Management systems.
  • Provides regular status reporting of security team projects to senior management and customers.
  • Responsible for process definition and assurance for network security functions, ensuring configuration documents for deployed security solutions remain current and complete.
  • Regularly attends conferences and seminars to represent program security interests and keep program abreast of current technologies.
  • Responsible for senior level incident investigation.
  • Manage a technical team responsible for the design, development and implementation of WAN/LAN security architectures.

 

Qualifications:

  • BS/BA (or equivalent) in Information Security, Computer Science or related field, and minimum 6-10 total years related experience, with specific experience in the following targeted areas:
  • Executing configuration control processes within a security engineering discipline.
  • Managing a complex security architecture consisting of multiple trust levels.
  • Provisioning and operation of Security networking equipment, including IDS, Antivirus, AAA, Firewall, Security Gateway, VPN appliances, and SIEM architectures.
  • Project engineering experience or recent experience in a lead security engineer capacity for network design projects.
  • Active DoD TS/SCI security clearance required.
  • CISSP certification required.

 

Preferred Additional Skills:

  • GIAC certification is strongly desired.
  • Exceptional verbal, written, interpersonal, and presentation skills as well as strong ability to lead and mentor teammates.
  • Strong team and career leadership abilities desired.
  • Experience in leading network security projects in the Government sector is strongly desired.
  • Ability to make decisions quickly as well as demonstrating sound judgment in balancing risk with business needs to offer customers and management optimal security solutions.
  • Published articles or experience presenting topics in the field of information security.
  • Self-driven and resourceful to achieve goals independently as well as work well in groups.
  • Flexibility to adjust to changing requirements, schedules and priorities.
  • The ability to socialize ideas, make recommendations and gather team consensus to move forward.

 

Security Clearances:

Please be aware that many of our positions require a security clearance, or the ability to obtain one. Security clearances may only be granted to U.S. citizens. In addition, applicants who accept a conditional offer of employment may be subject to government security investigation(s) and must meet eligibility requirements for access to classified information.

 

SKILLS AND CERTIFICATIONS:

CISSP

Top Secret/SCI Clearance required

Security Clearance Required: Yes

Full-time Benefits – Full

Relocation Assistance Available – Yes

Interview Travel Reimbursed – Yes

CANDIDATE DETAILS

7+ to 10 years’ experience

Minimum Education – Bachelor’s Degree

Willingness to Travel – Occasionally

MECHANICAL ENGINEER

MECHANICAL ENGINEER

Industry: Aerospace / Aviation / Defense

Job Category: Engineering – Mechanical

Job Description:

Mechanical Engineer to perform research, development, design, and analysis tasks on complex mechanical hardware including precision mechanisms, electro-mechanical hardware, and complex electronic packaging in a program team environment. Program support and technical leadership over requirements definition, concept generation, material selection, trade studies, design sensitivity/optimization studies, preliminary and final design, design documentation, and assembly/integration and testing. Candidate must have experience in 3D modeling, design for manufacturing, and ability to work independently or within a multi-disciplined team environment.

Qualifications:

Bachelors or Master’s Degree in Mechanical Engineering, Aerospace Engineering, Engineering Mechanics, or related disciplines

5+ years of relevant experience with Bachelor’s Degree or 3+ years of relevant experience with a Master’s Degree.

Must have an active Top Secret/SCI (TS/SCI) security clearance.

Preferred Additional Skills:

Experience in design or analysis of electronic systems, structures, or mechanisms, along with engineering drawing development

Proficiency in CAD tools such as Creo and understanding of ASME Y14.5 Geometric Dimensioning and Tolerancing standards

Proficiency in analysis FEA tools such as Femap, NASTRAN, ANSYS

Security Clearance:

This position requires the candidate to have an active Top Secret/SCI Security Clearance. This requires the candidate to be a US Citizen and be able to show evidence of citizenship.

SKILLS AND CERTIFICATIONS [note: bold skills and certification are required]

Top Secret/SCI Security Clearance

Bachelor’s Degree in Mechanical Engineering (or similar)

Proficiency in CAD tools such as Creo and understanding of ASME Y14.5 GD&T

Security Clearance Required: Yes

Full-time Benefits – Full

Relocation Assistance Available – Yes

Bonus Eligible – Yes

CANDIDATE DETAILS

5+ to 7 years’ experience

Minimum Education – Bachelor’s Degree

Willingness to Travel – Occasionally

IDEAL CANDIDATE

Candidate must have an active Top Secret/SCI clearance. Manager prefers candidates with a Bachelor’s Degree in Mechanical Engineering. Prefer hands on experience with Creo CAD tool.

Located in Florida base 105k to 130k