8 часов назад
Systems Security Engineer III (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Systems Security Engineer III (Cybersecurity): Designing, implementing, and maintaining secure IT systems while performing security control assessments, vulnerability management, incident response, and RMF authorization activities with an accent on DoD regulations, NIST frameworks, and application security testing. Focus on evaluating SAST/DAST/SCA results, maintaining accreditation records in eMASS or XACTA, and supporting secure systems across aerospace and national security environments.
Location: Southern Pines, North Carolina, United States; office or hybrid environment, with occasional travel.
Company
develops aerospace and national security technologies, including command and control, communications, ISR, force protection, and cybersecurity solutions.
What you will do
- Design, integrate, upgrade, and maintain secure IT systems and software applications.
- Provide Information Systems Security expertise to customers, team members, contractors, and government authorization officials.
- Develop and review Assessment & Authorization documentation using the NIST Risk Management Framework and Department of Defense regulations.
- Conduct scheduled and random security control assessments for applications and information systems.
- Perform vulnerability management, incident response, continuous monitoring, and accreditation record maintenance in eMASS or XACTA.
- Evaluate security work products and support the quality of work delivered by other Information Systems Security team members.
Requirements
- Bachelor’s degree in Systems Security, Network Engineering, Information Technology, or a related engineering discipline, or equivalent experience.
- At least 5 years of experience in IT security or a related field; 9 years may substitute for the degree.
- Current and active Top Secret U.S. Security Clearance and U.S. citizenship are required.
- IAT Level III certification, such as CISSP, CASP, or GCIH, or the ability to obtain it within 6 months of hire.
- Experience with application security, including SAST, DAST, and SCA testing, and tools such as ACAS/Tenable Nessus and SCAP Compliance Checker.
- Strong knowledge of DoD STIGs, NIST special publications, NSA Guides, operating systems, and networking concepts.
Nice to have
- Experience implementing DevSecOps processes in existing DevOps pipelines.
- Experience configuring, deploying, and securing applications in Kubernetes and the CNCF ecosystem.
- Department of Defense RMF accreditation experience and experience with deployed tactical information systems.
- Additional certifications such as CISSP-ISSEP, CISM, or C|EH.
Culture & Benefits
- Collaborative work environment supporting aerospace, defense, and national security missions.
- Medical, dental, and vision insurance.
- 401(k) with a 150% match up to 6%.
- Life insurance, three weeks of paid time off, and tuition reimbursement.
- On-call participation is required for incident response; occasional lifting of up to 25 pounds may be necessary.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
3 часа назад
Cyber Systems Engineer IV - ISSE (Cybersecurity)
115 575 - 200 964$
2 часа назад
Information System Security Manager (Cybersecurity)
3 часа назад
Cyber Systems Engineer Technical Specialist - ISSE (Cybersecurity)
133 901 - 232 828$
7 часов назад
Security Engineer (Cloud Security)
150 000 - 200 000$
8 часов назад
Information System Security Engineer (ISSE)
3 часа назад
Cyber Systems Engineer (Cybersecurity)
88 533 - 175 744$