Information System Security Engineer, Senior

Booz Allen HamiltonLexington, MA
138d$77,600 - $176,000

About The Position

Maintain responsibility for all Information Systems Security Engineer (ISSE) duties in support of Department of Defense (DoD) Risk Management Framework (RMF) and Intelligence Community Directive (ICD) 503. Leverage knowledge of National Institute of Standards and Technology (NIST) Special Publication 800-53 security controls and the Committee on National Security Systems Instruction 1253. Apply systems security engineering or architecture principles in support of the DoD RMF such as the specification, design, development, implementation, and modification of information system components. Select, tailor, and implement NIST SP 800-53 security controls in support of RMF Assessment and Authorization (A&A) requirements. Develop layered protections and establish cybersecurity Standard Operating Procedures (SOPs) or guidelines in support of security engineering practices for the organization's authorization boundary. Understand and apply system development lifecycle principles, including Agile or Waterfall, and perform duties such as delineating physical and logical security boundaries, ensuring that software developers are trained on how to build secure software, running security vulnerability scans, specifically with the DoD's Assured Compliance and Assessment Solution (ACAS) while generating and interpreting vulnerability scans, implementing Security Technical Implementation Guidelines (STIGs) and CIS Benchmarks, and other duties associated with RMF Continuous Monitoring, including remediating or mitigating findings and vulnerabilities on system POA&Ms.

Requirements

  • 5+ years of experience as an Information Systems Security Engineer.
  • 5+ years of experience implementing defense in-depth solutions and developing cybersecurity SOPs.
  • 5+ years of experience applying DevSecOps into all phases of the software development lifecycle.
  • 4+ years of experience employing system development lifecycle principles using Agile or Waterfall methodologies.
  • 4+ years of experience with DoD Continuous Monitoring procedures.
  • 3+ years of experience implementing STIGs and CIS Benchmarks.
  • 3+ years of experience utilizing and operating security tools, including Tenable Nessus and Security Center.
  • 3+ years of experience with A&A package development in eMASS or Xacta.
  • Top Secret clearance.
  • Bachelor's degree.

Nice To Haves

  • Experience in USCYBERCOM or the Intelligence Community.
  • Master's degree in Cybersecurity, Information Systems Management, Computer Engineering, Mathematics, Physics, Electrical Engineering, Mechanical Engineering, or Software.

Responsibilities

  • Maintain responsibility for all Information Systems Security Engineer (ISSE) duties in support of DoD RMF and ICD 503.
  • Leverage knowledge of NIST SP 800-53 security controls and CNSS Instruction 1253.
  • Apply systems security engineering or architecture principles in support of the DoD RMF.
  • Select, tailor, and implement NIST SP 800-53 security controls for RMF A&A requirements.
  • Develop layered protections and establish cybersecurity SOPs or guidelines.
  • Understand and apply system development lifecycle principles, including Agile or Waterfall.
  • Delineate physical and logical security boundaries.
  • Ensure software developers are trained on secure software development.
  • Run security vulnerability scans with DoD's ACAS.
  • Generate and interpret vulnerability scans.
  • Implement STIGs and CIS Benchmarks.
  • Perform duties associated with RMF Continuous Monitoring, including remediating findings and vulnerabilities.

Benefits

  • Health, life, and disability insurance.
  • Financial and retirement benefits.
  • Paid leave.
  • Professional development.
  • Tuition assistance.
  • Work-life programs.
  • Dependent care.
  • Recognition awards program.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Career Level

Senior

Industry

Professional, Scientific, and Technical Services

Education Level

Bachelor's degree

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service