Senior Information Systems Security Engineer
TAD PGS, Inc.
Washington, DC, United States
1 day ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source
Tech stack
Microsoft Windows
Software System Penetration Testing
Cloud Computing
Control Objectives for Information and Related Technology (COBIT)
Cyber Security
Linux
Intrusion Detection and Prevention
Information Systems Security Architecture Professional
Network Protocols
PCI Data Security Standards
Secure Coding
Software Engineering
+4 more
Software Security
Information Technology
Devsecops
Vulnerability Analysis
Job description
We are seeking a highly experienced and motivated Senior Information Systems Security Engineer to join our team in Washington, DC. This role is critical to our organization’s mission, requiring expertise in designing, implementing, and maintaining robust security solutions to protect sensitive information and systems., * Develop and implement security strategies, policies, and procedures to safeguard organizational data and systems.
- Conduct vulnerability assessments, penetration testing, and risk analysis to identify and mitigate security threats.
- Manage and configure security tools and technologies, including firewalls, intrusion detection/prevention systems, and endpoint protection solutions.
- Collaborate with IT and development teams to integrate security best practices into system design and development lifecycles.
- Provide technical support and guidance to staff on security awareness and compliance requirements.
- Stay current on emerging security threats, trends, and industry standards to ensure proactive defense measures.
- Lead incident response efforts, including investigation, containment, eradication, and recovery of security breaches.
- Ensure compliance with relevant regulations, standards, and internal policies.
Requirements
- Bachelor’s degree in Computer Science, Information Security, or a related field; Master’s degree preferred.
- Minimum of 5 years of experience in information systems security, with a strong focus on engineering and technical implementation.
- Certified Information Systems Security Professional (CISSP) or Certified Ethical Hacker (CEH) certification highly desired.
- In-depth knowledge of operating systems (Windows, Linux), networking protocols, and cloud computing environments.
- Experience with security frameworks such as NIST, ISO/IEC 27001, and COBIT.
- Strong understanding of threat modeling, secure coding practices, and application security.
- Excellent analytical and problem-solving skills, with the ability to work independently and as part of a team.
- Outstanding communication and interpersonal skills, with the ability to convey complex technical concepts to non-technical stakeholders.
Preferred Qualifications:
- Experience with DevSecOps practices and tools.
- Knowledge of compliance requirements such as HIPAA, PCI-DSS, or GDPR.
- Familiarity with secure software development lifecycle (SDLC) methodologies.
- Experience working in a government or highly regulated industry.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
over 2 years ago
KD
Krissy Davis
Best Paying Jobs in Technology
about 3 years ago
LM
Luis Minvielle
Top-Paying Tech Jobs (with Salaries)
over 2 years ago
LM
Luis Minvielle
The Most Popular IT Jobs on the Market
over 2 years ago
LM
Luis Minvielle
The 12 Best Jobs for Software Engineers
over 2 years ago
DC
Daniel Cranney
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
7 months ago