Title: Network Security Engineer SME
Location: Remote
Duration: Long Term
Clearance: Top Secret
Requirements
The Network Security Engineer (SME) shall be responsible for the following:
- Add and manage nodes in Splunk and Riverbed for monitoring purposes.
- Update monitoring tools using Ansible.
- Interact successfully with both program leads and DOJ partners to ensure objectives are completed on-time.
- Manage information technology security, including backups, firewalls, and routers.
- Provide guidance for design and management of information systems security policy, implementation, and management for a globally distribute MPLS infrastructure.
- Provide network security management and support Windows servers.
- Resolve routing and Network Address Translation (NAT) issues utilizing tcpdump and other tools.
- Perform system upgrades and implement any new security policies per agency guidance and policy.
- Key contributions include troubleshooting complex LAN/WAN infrastructure involving routing protocols BGP, EIGRP, OSPF, VPNs, web proxy, and XML gateway for enterprise web services.
- Work on various networking concepts and routing protocols like BGP, EIGRP, DMVPN, and other LAN/WAN technologies.
- Recommend enterprise information assurance and security standards.
- Develop and implement information assurance/security standards and procedures.
- Coordinate, develop, and evaluate security programs for the organization, recommending solutions to support customer requirements.
- Identify, report, and resolve security violations.
- Establish and satisfy information assurance and security requirements based on analysis of user, policy, regulatory, and resource demands.
- Support customers at the highest levels in developing and implementing doctrine and policies.
- Perform system engineering tasks related to major systems design, integration, and implementation, including personnel, hardware, software, and support facilities.
- Apply know-how to government and commercial systems, including dedicated systems requiring specialized security features.
- Perform analysis, design, and development of security features for system architectures.
- Define security requirements for various computer systems, including mainframes, workstations, and PCs.
- Design, develop, engineer, and implement security solutions that meet requirements.
- Provide integration and implementation of system security solutions.
- Analyze complex technical problems related to information assurance and provide engineering support.
- Perform vulnerability and risk analyses during all phases of the system development life cycle.
- Ensure all information systems are functional and secure.
- Perform system security tuning, monitoring, user management, and review software updates and patches.
- Monitor and script for storage, network, and peripheral interfaces.
- Design and execute security system tests.
- Support all certification and accreditation activities.
- Qualifications:
- Five years of experience, with at least two current years supporting and troubleshooting computing devices and OS.
- Strong technical background; CompTIA A+ preferred.
- Proficiency in networking and cybersecurity protocols.
- Experience with Linux/Unix OS troubleshooting.
- Experience with Application Layer Gateway (ALG), RTP, RTSP, FTP, DNS, HTTP, DHCP.
- Certifications: CompTIA Security+, CASP+, or CCCP preferred.
- Experience in Agile methodologies like Scrum, XP, Kanban, SAFe.
- Bachelor's degree in relevant field preferred.