Information System Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Information System Security Engineer (Cybersecurity): Designing and maintaining cybersecurity controls for mission-focused government information systems with an accent on RMF compliance, vulnerability management, and authorization packages. Focus on implementing secure architectures, coordinating remediation actions, and ensuring system reliability in high-impact environments.
Location: On-site in Clarksburg, WV. Top Secret (TS) Clearance with SCI eligibility is required.
Company
supports secure, mission-focused information systems within high-impact government and national security environments.
What you will do
- Design and implement security architectures and controls across system components and network environments.
- Execute Risk Management Framework (RMF) activities, including security control implementation and continuous monitoring.
- Develop and maintain critical security documentation such as System Security Plans (SSPs), POA&Ms, and ATO packages.
- Perform vulnerability management by reviewing scan results and coordinating technical remediation actions.
- Collaborate with system engineers, network engineers, and developers to support authorization activities.
Requirements
- Top Secret (TS) Clearance with SCI eligibility.
- 3-5 years of experience supporting cybersecurity or information assurance for enterprise or mission systems.
- Working knowledge of NIST RMF, FISMA, and ATO processes.
- Experience supporting cloud security in AWS GovCloud, C2S, SC2S, or Microsoft Azure.
- Hands-on experience with Splunk, Nessus, NMAP, and configuration tools.
- Ability to document security controls and communicate technical information effectively.
Nice to have
- Certifications: CISSP, CISM, CASP+ CECAP, Security+, or AWS Certified Security – Specialty.
- Experience in high-side or multi-enclave (U/S/TS) environments.
- Familiarity with Agile development teams and CI/CD pipelines.
- Knowledge of NIST 800-53 Rev. 5.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →