Systems Security Engineer

HigherEchelon, Inc.
Huntsville, AL, United States
13 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Access Network Software Applications CompTIA Security+ Cyber Security Computer Networks Information Leak Prevention Linux Servers RSA (Cryptosystem) SC Clearance Tactics, Techniques and Procedures (TTPs) Vulnerability Analysis

Job description

  • Candidate will be sitting in a classified lab
  • Must cover security protocols for the lab
  • Install, Secure, Configure and Maintain the DoD approved versions of United States Department of Defense commercial off-the-shelf suite of software applications used within the DOD to monitor, detect, and defend the DOD computer networks and systems.
  • Test and evaluate new/updated end point products before approval.
  • Develop and implement plans to apply patches, hot fixes, and other critical updates as needed.
  • Develop and maintain policies and tasks for all related endpoint products.
  • Create and tune policy exemptions for Host Intrusion Prevention, Endpoint Security and Data Loss Prevention.
  • Maintain security status of Patriot Testbed Enclave infrastructure, including OS and STIG compliance.
  • Develop Tactics, Techniques and Procedures (TTPs) for Operation and Maintenance of United States Department of Defense commercial off-the-shelf software applications.
  • Participate in Change Management process as required for all software-related changes.
  • Conduct risk and vulnerability assessment at the network, system, and application level.
  • Involved in a wide range of security issues including architecture, firewalls, electronic data traffic, and network access.
  • Research, evaluate, and recommend new security tools, techniques, and technologies and introduce them to the enterprise in alignment with IT security strategy.
  • Utilize COTS/GOTS and custom tools and processes/procedures to scan, identify, contain, mitigate, and remediate vulnerabilities, and intrusions.
  • Assist in the implementation of the required government policy (i.e., Risk Management Framework (RMF) and make recommendations on process tailoring.
  • Perform analysis to validate established security requirements and to recommend additional security requirements and safeguards.

Requirements

  • Knowledge of Microsoft and Linux Server Operating Systems
  • Experience with Risk Management Framework
  • Ability to Install, Configure, and Maintain the DoD approved versions of United States Department of Defense commercial off-the-shelf suite of software applications
  • Ability to monitor, detect, and defend the DOD computer networks and systems.
  • Experience with STIG compliance
  • Experience and ability to conduct risk and vulnerability assessment at the network, system, and application level.
  • Ability to test and evaluate new/updated end point products before approval.
  • Experience developing and implementing plans to apply patches, hot fixes, and other critical updates as needed
  • Must be U.S. Citizen
  • Must possess an Active Secret clearance

Desired Skills:

  • Experience with United States Department of Defense commercial off-the-shelf software applications and ACAS.
  • Experience with RSA MFA
  • Active CompTIA Security+ certification
  • Familiar with DISA STIG and U.S. Cyber Command OPORD requirements
  • Familiar with best Business practice for networks and administration of United States Department of Defense commercial off-the-shelf software applications.
  • Experience supporting Information Assurance Certification and Accreditation (C&A) and associated IA processes, procedures, and activities with capability and expertise to implement DoDD 8530.1, DoDD 8500.2, DoDI 8510.1, DoDI 8510.01 and other applicable NIST and CNSS IA directives, instructions, guidelines
  • Currently certified Microsoft Windows.

Education and Experience:

  • Bachelor’s degree and 2+ years of relevant experience
  • CompTIA Security+ certification or obtain within 6 months of start date

Benefits & conditions

HigherEchelon, Inc. (HE) is a service-disabled veteran-owned small business (SDVOSB) with offerings in Engineering, Gaming, Human Capital, Enterprise Technology and Cyber Solutions. HigherEchelon aims to be the premier trusted partner in organizational excellence and achieves this through sustained investment in talent and the employee experience. HigherEchelon puts the employee first to better serve customer needs and sustain excellence.

HigherEchelon offers competitive full-time benefits including paid vacation and holidays, 401(k) matching, full health/dental/vision coverage, plus much more. For on-site and remote employees, flexible work schedules are offered when authorized.

By joining our team, you are choosing to embark on a journey towards excellence as a valued team member and trusted partner. We appreciate your inquiry and look forward to discussing the opportunity further.

EOE/Minorities/Females/Veterans/Disabled:

HigherEchelon, Inc. is an Equal Employment Opportunity employer and provides reasonable accommodation for qualified individuals with disabilities and disabled veterans in its job application procedures.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

9:33 min

Limiting script execution permissions in Node and package managers

Chris Heilmann +2 · LIVE

1:43 min

The physical pain of early web app deployment

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:14 min

Securing analysis platforms via network access controls

Jennifer Reif · LIVE

3:50 min

Understanding Docker container architecture and virtual machine differences

Francesco Ciulla Francesco Ciulla · World Congress 2024

Videos

See all

Related articles

See all