Cyber Engineer

Science Applications International Corporation
San Diego, CA, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
0 years minimum
Compensation
$80,001.0 - $120,000.0
Working hours
Regular working hours
Job source

Tech stack

Cyber Security Identity and Access Management Network Security Public Key Infrastructure System Testing Software Vulnerability Management Information Technology Tools for Reporting

Job description

SAIC is looking for a Cybersecurity Specialist to support a Navy contract located in San Diego, CA. This position supports the Assessment and Authorization (A&A) cybersecurity efforts for NIWC PAC code 82000 to support the Research, Development, Test & Evaluation (RDT&E) network. The Cybersecurity Vulnerability Analyst II will serve as a Risk Management Framework (RMF) Subject Matter Expert (SME) for all network security architectures, designs, implementations, and operations within 3 NIWC Pacific RDT&E systems, networks, and applications. Additionally, the position will provide engineering and technical support for the testing of systems, software, tools and products while identifying operational and functional requirements of new, developing and existing systems and develop a system security approach, which includes but not limited to defining potential threats, vulnerabilities, safeguards, and risk factors., * Shall perform analysis of cybersecurity directives, policies and instructions to include, but not limited to: Communications Task Orders (CTOs), Fragmentary/Task/Operation Orders (FRAG/TASK/OPORDs), IA Vulnerability Management (IAVM), Public Key Infrastructure (PKI) guidance, ACAS and STIG requirements.

  • Ensure configuration, asset, remediation, and mitigation management supports vulnerability management efforts within the DODIN.
  • Identify and provide guidance on security-relevant configurations for DoD.
  • Ensure compliance with DoD vulnerability notification and corrective action process.
  • Coordinate vulnerability risk reports and assessments within NIWC PAC as required.
  • Interface with Senior Cybersecurity Engineer and NIWC Pacific supported programs/projects to provide technical consulting/advisory support services required to ensure accurate vulnerability management of NIWC Pacific Corporate, Program of Record (POR), operationally supported, and various RDT&E and joint assets to the Navy’s Vulnerability Remediation and Asset Management (VRAM) tool or other government directed tool.
  • Assist with determining the impact compliance with these directives will have on the security and operability of the RDT&E network and make recommendations to the government regarding strategies to meet compliance objectives.
  • Assist with tracking and reporting compliance status in the Vulnerability Remediation Asset Manager (VRAM) and similar reporting tools as applicable.
  • Perform risk analysis/independent verification on security configuration and STIG finding risk reports/POA&Ms for devices on the RDT&E network.
  • Support Federal Information Security Management Act (FISMA) data reporting requirements.

Requirements

  • Bachelors in STEM, or Information Technology related field and two (2) years or more experience; Masters and 0 years related experience.
  • Must be a U.S. Citizen.
  • Must have an Active Secret Clearance to start.
  • NQV Level I or II.
  • Risk Management Framework (RMF) experience.
  • Threat and Vulnerability Analysis.
  • IAT Level II/IAM-1 (CAP, CASP, GSLC, Security + CE) certification.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

7:25 min

Writing system tests to verify operational infrastructure

Ryan Latta · WWC 2021

1:16 min

Securing internal pod communication with network security policies

Marc Nimmerrichter · WWC 2022

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all