Cyber Security Specialist IV

VTG

Herndon (VA)

On-site

USD 175,000 - 220,000

Full time

37 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Byte Systems, a VTG subsidiary, seeks an experienced Information Systems Security Engineer to join the Information Assurance team in Herndon, VA. You will design, implement and monitor security controls across multiple analytic systems, lead RMF activities, and produce comprehensive documentation in XACTA.

You will collaborate with developers and architects to ensure secure design, perform vulnerability analysis, and support continuous monitoring and reporting.

Qualifications

  • 9+ years supporting A&A and information assurance with RMF; BS degree or 7 years with MS; additional 4 years in lieu of degree.
  • Hands-on validation of control implementations and test procedures.
  • Knowledge of current security risks and protocols.
  • Willingness to work outside standard hours if required.
  • DoD 8140 Baseline Certifications (eg, Security+)
  • RMF, Xacta experience
  • TS/SCI with Poly
  • On-site in a secure environment
  • Indoc'd to start

Responsibilities

  • Design and implement safety measures and controls.
  • Monitor network activity to identify vulnerable points.
  • Address privacy breaches and malware threats.
  • Support A&A processes and IA documentation for multiple systems.
  • Lead RMF activities and maintain security BoE and SSP in XACTA.
  • Develop SCTM and STP procedures within XACTA.
  • Analyze existing security systems and recommend improvements.
  • Prepare reports and action plans for security breaches.
  • Monitor network and provide early warning of issues.
  • Communicate system status and downtime to users
  • Collaborate with developers and architects on security requirements
  • Guide application developers on security policy and requirements
  • Create POA&Ms and coordinate with PMs and engineers
  • Support Continuous Monitoring of operational systems
  • Log review/analysis using SIEM tools
  • Vulnerability analysis with ACAS, Prisma, SonarQube, X-Ray, GitLab
  • DISA STIGs and STIG Viewer experience

Skills

RMF / A&A processes
XACTA
SIEM (Splunk)
Vulnerability assessment
Communication with developers
DoD 8140 Baseline Certifications (e.g.

Education

Bachelor's degree
Master's degree

Tools

XACTA
ACAS
Prisma
SonarQube
JFrog X-Ray
GitLab Code Quality
Splunk

Job description

Overview

Byte Systems, a subsidiary of VTG, is seeking a seasoned Information Systems Security Engineer (ISSE) to join our diverse Information Assurance team supporting the Intelligence Community at our Herndon, VA office.

What will you do?
The Candidate Will Be Expected To
  • Design and implement safety measures and controls.
  • Monitor network activity to identify vulnerable points.
  • Address privacy breaches and malware threats.
  • Support the Assessment and Authorization (A&A) processes and Information Assurance documentation for multiple analytic and mission systems across all CLINs
  • Generate and maintain the complete security Body of Evidence (BoE) while leading the A&A activities according to the Risk Management Framework (RMF) processes (ICD 503, CNSSI-1253, NIST 800-37, NIST 800-53, etc.) for all multiple information systems
  • Author, complete and maintain the System Security Plan (SSP) within XACTA
  • Develop the Security Controls Traceability Matrices (SCTM), and the Security Test Plan (STP) procedures within Xacta.
  • Analyze existing security systems and make recommendations for changes or improvements
  • Prepare reports and action plans if a security breach does occur
  • Monitor the network and provide early warning of abnormalities or problems
  • Communicate the system status and keep users informed of downtime or changes to the system
  • Experience working with software developers and architects to understand security requirements
  • Experience guiding the application developers on security policy, identifying security requirements, providing technical guidance for the satisfaction of requirements
  • Experience creating and managing the plan of action and milestones (POA&Ms), and working with project managers and engineers to develop schedules and engineering actions that mitigate open findings
  • Experience supporting the Continuous Monitoring of operational systems; experience monitoring and auditing operational systems for proper use
  • Log Review/Analysis using SIEM tools (Splunk, etc.)
  • Vulnerability Analysis and Review (ACAS, Prisma, SonarQube, JFrog X-Ray, GitLab Code Quality)
  • DISA STIGs and STIG Viewer experience
Do you have what it takes?
Required Qualifications
  • 9+ years supporting Assessment and Authorization (A&A) and information assurance processes and documentation using RMF, BS degree; 7 years of experience with a masters; an additional 4 years of experience required in lieu of a degree
  • Hands-on experience to validate control implementations and test procedures
  • Knowledge of current security risks and protocols
  • Willingness to work outside of standard hours if circumstances require
  • DoD Approved 8140 Baseline Certifications (eg, Security+) certifications
  • RMF, Xacta experience
  • TS/SCI with Poly
  • Work 100% onsite in a secure environment
  • Must be indoc'd to start
Desired Qualifications
  • Experience working with AWS/Google cloud-hosted information systems or applications
  • Experience working with Containerized Systems or Applications
  • Experience working with Redhat or CentOS Linux operating systems
  • Experience working in a DevSecOps environment and tool chain

Pay Range: VTG's estimated starting pay range is $175,000-$220,000 annually, which is a general guideline for the geographic location. When extending an offer, VTG also considers work experience, education, skill level, market considerations and may possibly include contractual requirements which may cause an offer to fall outside of this range.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Specialist IV
Cyber Security Specialist IV

VT Group (VTG) • Herndon (VA)

On-site
USD 175,000 - 220,000
Cyber Security Specialist IV
Cyber Security Specialist IV

Vosper Thornycroft Group • Herndon (VA)

On-site
USD 175,000 - 220,000
Information Assurance Specialist
Information Assurance Specialist

VT Group (VTG) • Bethesda (MD)

On-site
USD 185,000 - 200,000
Information Assurance Specialist
Information Assurance Specialist

Vosper Thornycroft Group • Bethesda (MD)

On-site
USD 185,000 - 200,000
Information Systems Security Engineer
Information Systems Security Engineer

VTG Defense • McLean (VA)

On-site
USD 120,000 - 180,000
Information Systems Security Engineer
Information Systems Security Engineer

VTG Defense • Herndon (VA)

On-site
USD 130,000 - 170,000
Information Systems Security Manager
Information Systems Security Manager

Vosper Thornycroft Group • Chantilly (VA), Northern (KY)

Hybrid
USD 150,000 - 210,000
Information System Security Engineer (ISSE)
Information System Security Engineer (ISSE)

VTG Defense • Chantilly (VA)

On-site
USD 100,000 - 210,000
Information Systems Security Engineer (ISSE)
Information Systems Security Engineer (ISSE)

VTG • Chantilly (VA)

On-site
USD 120,000 - 170,000
Health insurance
Information Security System Engineer
Information Security System Engineer

Elevate Technology Group • Fairfax Station (VA)

On-site
USD 150,000 - 220,000
Employer-funded 401(k) contribution
Flexible benefits allowance
Medical, Dental & Vision coverage
+1