Senior Security Engineer

Koniag Services, Inc.
Smyrna, GA, United States
21 days ago
Apply on www.techcareers.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English

Tech stack

Cloud Computing Security Cyber Security Information Systems Continuous Integration Intrusion Detection and Prevention Information Systems Security Architecture Professional Network Security Systems Development Life Cycle Zero Trust Network Access Sherwood Applied Business Security Architecture Systems Architecture Systems Integration
+5 more
SC Clearance Information Technology CIS Benchmarks Devsecops Vulnerability Analysis

Job description

Koniag IT Systems, a Koniag Government Services company, is seeking an experienced Senior Security Engineer to serve as the single point of contact in support of our government customer. The ideal candidate is a highly skilled cybersecurity professional with extensive experience in Security Architecture and Engineering within the DoW environment, possessing deep knowledge of DoW Security Requirements Guides (SRGs), Security Technical Implementation Guides (STIGs), and DoW Instructions, Policies, and Directives. An active ADP-II/Secret clearance is required for this position.

The Senior Security Engineer will serve as the primary government point of contact for all Security Architecture and Engineering tasks, applying security baselines, implementing Common Security Architecture, and ensuring compliance with DoW security requirements across the enterprise.

Principal responsibilities will include but are not limited to:

  • Serve as the single point of contact for the Government ensuring effective communication and coordination between the technical team and government stakeholders on all security engineering matters.
  • Provide expert leadership and technical guidance in Security Architecture and Engineering within the DoW environment, ensuring alignment with applicable DoW Instructions, Policies, and Directives.
  • Apply and enforce DoW Security Requirements Guides (SRGs) and Security Technical Implementation Guides (STIGs) across information systems and infrastructure components to maintain compliance with DoW security standards.
  • Demonstrate and apply expertise in the DoW Ports, Protocols, and Services Management (PPSM) Program, ensuring all ports, protocols, and services are properly registered, managed, and compliant with DoW requirements.
  • Support and manage activities related to the DoW ensuring appropriate approvals and documentation are maintained for authorized ports, protocols, and services.
  • Apply security baselines across systems and environments, ensuring consistent implementation of security controls in accordance with DoW and federal standards.
  • Design, develop, and implement a Common Security Architecture at the enclave level, ensuring the integration of cybersecurity controls into the overall system architecture in accordance with IASAE-III responsibilities.
  • Lead the design and integration of cybersecurity systems at the enclave level, ensuring security requirements are addressed throughout the system development and integration process.
  • Collaborate with system owners, program managers, and other stakeholders to ensure security architecture requirements are incorporated into new and existing systems and technologies.
  • Conduct security architecture reviews and assessments, identifying gaps and recommending improvements to strengthen the overall security posture of the enterprise.
  • Develop and maintain security architecture documentation, including system diagrams, data flow diagrams, and security design specifications.
  • Provide technical guidance and mentorship to team members supporting security engineering and architecture activities.
  • Monitor the evolving threat landscape and emerging DoW cybersecurity requirements, recommending updates to security architectures and engineering approaches as needed.
  • Coordinate with the RMF team and other cybersecurity stakeholders to ensure security architecture decisions are reflected in A&A documentation and ongoing risk management activities.

Requirements

  • Bachelor’s Degree with an emphasis in Information Technology Security, Cybersecurity, or a related field from an accredited college or university. Extensive experience in the required discipline may serve as a substitution for the Bachelor’s Degree requirement.
  • Minimum of 7 years of experience with an emphasis in Cybersecurity System Architecture and Engineering, with at least 5 of those years in the U.S. Federal Government.
  • Without a Bachelor’s Degree, a minimum of 10+ years of experience in U.S. Federal Government Cybersecurity System Architecture and Engineering is required.
  • Certified in accordance with DoD 8570.01-M/8140.01 (or most current DoW guidance) as IASAE-III, as designated per DoD 8570.01-M C10.3-C10.5.1 for the design, development, and implementation of the design and integration of cybersystems at the enclave level., * Exceptional communication skills in English - both written and oral - with the ability to effectively communicate complex security architecture and engineering concepts to both technical and non-technical stakeholders, including senior government leadership.
  • In-depth knowledge and hands-on experience with DoW Security Requirements Guides (SRGs) and Security Technical Implementation Guides (STIGs), with a demonstrated ability to apply them across diverse system environments.
  • Demonstrated experience applying security baselines and implementing Common Security Architecture across DoW or federal government environments.
  • Strong expertise in designing, developing, and implementing cybersecurity systems at the enclave level in accordance with IASAE-III responsibilities.
  • Deep knowledge of DoW Instructions, Policies, and Directives governing cybersecurity architecture and engineering.
  • Ability to conduct thorough security architecture reviews and assessments, identifying vulnerabilities and recommending effective mitigation strategies.
  • Experience developing and maintaining comprehensive security architecture documentation, including system diagrams, data flow diagrams, and security design specifications.
  • Strong leadership and technical mentorship skills, with the ability to provide direction and guidance to cybersecurity engineering team members.
  • Ability to serve as the primary point of contact and liaison between technical teams and government stakeholders on all security architecture and engineering matters.
  • Active ADP-II/Secret clearance.

Desired Skills and Competencies:

  • Experience with cloud security architecture and engineering, including the application of DoW security requirements within cloud-hosted or hybrid environments.
  • Familiarity with additional cybersecurity frameworks such as NIST SP 800-53, FISMA, FedRAMP, or CMMC and their application within security architecture and engineering efforts.
  • Knowledge of zero trust architecture principles and experience implementing zero trust security models within DoW or federal environments.
  • Additional certifications such as CISSP, CISSP-ISSAP, SABSA, or other relevant security architecture and engineering credentials beyond the minimum DoD 8570.01-M/8140.01 requirements.
  • Experience with network security architecture, including the design and implementation of secure network segmentation, firewall rule sets, and intrusion detection/prevention systems.
  • Familiarity with DevSecOps principles and experience integrating security architecture requirements into agile or CI/CD development environments.
  • Experience supporting or contributing to RMF and A&A activities, particularly in the context of security architecture documentation and control implementation.
  • Knowledge of emerging cybersecurity technologies and trends, with the ability to evaluate and recommend new tools and approaches to strengthen the enterprise security architecture.

Benefits & conditions

We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more.

About the company

Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.techcareers.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

2:07 min

Integrating security practices for devsecops adoption

Nevelina Aleksandrova · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all