Назад
Company hidden
8 часов назад

Systems Security Engineer III (Cybersecurity)

Формат работы
hybrid/onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Systems Security Engineer III (Cybersecurity): Designing, implementing, and maintaining secure IT systems while performing security control assessments, vulnerability management, incident response, and RMF authorization activities with an accent on DoD regulations, NIST frameworks, and application security testing. Focus on evaluating SAST/DAST/SCA results, maintaining accreditation records in eMASS or XACTA, and supporting secure systems across aerospace and national security environments.

Location: Southern Pines, North Carolina, United States; office or hybrid environment, with occasional travel.

Company

hirify.global develops aerospace and national security technologies, including command and control, communications, ISR, force protection, and cybersecurity solutions.

What you will do

  • Design, integrate, upgrade, and maintain secure IT systems and software applications.
  • Provide Information Systems Security expertise to customers, team members, contractors, and government authorization officials.
  • Develop and review Assessment & Authorization documentation using the NIST Risk Management Framework and Department of Defense regulations.
  • Conduct scheduled and random security control assessments for applications and information systems.
  • Perform vulnerability management, incident response, continuous monitoring, and accreditation record maintenance in eMASS or XACTA.
  • Evaluate security work products and support the quality of work delivered by other Information Systems Security team members.

Requirements

  • Bachelor’s degree in Systems Security, Network Engineering, Information Technology, or a related engineering discipline, or equivalent experience.
  • At least 5 years of experience in IT security or a related field; 9 years may substitute for the degree.
  • Current and active Top Secret U.S. Security Clearance and U.S. citizenship are required.
  • IAT Level III certification, such as CISSP, CASP, or GCIH, or the ability to obtain it within 6 months of hire.
  • Experience with application security, including SAST, DAST, and SCA testing, and tools such as ACAS/Tenable Nessus and SCAP Compliance Checker.
  • Strong knowledge of DoD STIGs, NIST special publications, NSA Guides, operating systems, and networking concepts.

Nice to have

  • Experience implementing DevSecOps processes in existing DevOps pipelines.
  • Experience configuring, deploying, and securing applications in Kubernetes and the CNCF ecosystem.
  • Department of Defense RMF accreditation experience and experience with deployed tactical information systems.
  • Additional certifications such as CISSP-ISSEP, CISM, or C|EH.

Culture & Benefits

  • Collaborative work environment supporting aerospace, defense, and national security missions.
  • Medical, dental, and vision insurance.
  • 401(k) with a 150% match up to 6%.
  • Life insurance, three weeks of paid time off, and tuition reimbursement.
  • On-call participation is required for incident response; occasional lifting of up to 25 pounds may be necessary.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →