Enable job alerts via email!

Scientist, Information Security Systems Engineer Secret - Clifton, NJ 1

L3Harris Technologies

Clifton (NJ)

On-site

USD 110,000 - 160,000

Full time

3 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading aerospace and defense technology innovator is seeking a Senior Information Security Systems Engineer to apply advanced security engineering methods and collaborate with government clients. This full-time role requires expertise in accreditation processes and entails working 100% on-site in a lab environment. Candidates should possess a substantial background in systems security and a Bachelor’s degree.

Qualifications

  • Bachelor's Degree with minimum 12 years relevant experience.
  • In lieu of a degree, minimum of 16 years of prior related experience.

Responsibilities

  • Ensures security authorization of systems while working closely with government customers.
  • Responsible for integration of multiple methods into a cohesive system security perimeter.

Skills

Program Protection
System Security Engineering
Risk Management Framework
Cyber Defense Technologies

Education

Bachelor’s Degree
Graduate Degree

Tools

Fortify
Gitlab
ACAS
SCC
Splunk

Job description

L3Harris is dedicated to recruiting and developing diverse, high-performing talent who are passionate about what they do. Our employees are unified in a shared dedication to our customers’ mission and quest for professional growth. L3Harris provides an inclusive, engaging environment designed to empower employees and promote work-life success. Fundamental to our culture is an unwavering focus on values, dedication to our communities, and commitment to excellence in everything we do.

L3Harris Technologies is an agile global aerospace and defense technology innovator, delivering end-to-end solutions that meet customers’ mission-critical needs. The company provides advanced defense and commercial technologies across space, air, land, sea and cyber domains. L3Harris has approximately $18 billion in annual revenue and 50,000 employees, with customers in more than 100 countries.

Job Title : Sr. Information Security Systems Engineer

Job Code : 15674

Job Description :

Applies current Systems Security Engineering methods, practices, and technologies to the architecture, design, development, evaluation, and integration of systems and networks to maintain system security. Works closely with Government customers to ensure that the security protection needs, concerns, and requirements are defined and implemented with appropriate fidelity and rigor, early and in a sustainable manner throughout the life cycle of system that will allow for the security authorization of the system of interest. Works with systems developers or commercial product vendors in the design and evaluation of state-of-the-art secure systems, networks, and database products. Uses methods such as encryption technology, vulnerability analysis, and security management. Responsible for integration of multiple methods into a cohesive system security perimeter and environment and the policies and procedures necessary to monitor and maintain such an environment. Will prepare Certification and Accreditation documentation, using multiple standards under RMF and derivative processes (DOD 8510, JSIG, ICD-503, CNSSI 1253), to achieve security authorization of supported systems. Represents program security needs, concerns and requirements at customer meetings.

Essential Functions :

  • Program Protection and System Security Engineering experience to include support of accreditation activities.
  • Experience in Risk Management Framework (RMF) accreditation and authorization (A&A) processes to include RMF steps 1-4 (categorization, controls selection, control implementation, security assessment) and standard body of evidence (BoE) package development.
  • Experience with A&A package processing.
  • Experience in DoD software selection and approval processes for COTS, GOTS and FOSS.
  • Support security engineering activities, including basis of estimate development, requirements development, design, test, configuration management and maintenance of information systems and data.
  • Assist program security in the development of policies and procedures for emerging security technologies.
  • Support vulnerability assessment activities as required.
  • Support the evaluation, qualification, testing and delivery of security architecture improvement, obsolescence replacement and vulnerability response projects.
  • Experience with Security Testing and Verification
  • Work is to be accomplished 100% onsite, in a lab environment, no options for remote support.

Qualifications :

  • Education : Bachelor’s Degree and minimum 12 years of prior relevant experience. Graduate Degree and a minimum of 10 years of prior related experience. In lieu of a degree, minimum of 16 years of prior related experience.
  • Program Protection and System Security Engineering experience.

Preferred Additional Skills :

  • Experience in Static Application Security Testing (SAST) for Application Security and Development STIG compliance using tools such as Fortify and Gitlab as part of a DevSecOps Continuous Integration / Continuous Deployment (CI / CD) Pipeline, and generation of summary reports.
  • Experience in configuration and use of cyber defense and vulnerability assessment tools such as ACAS and SCC.
  • Experience in Model-Based Systems Engineering (MBSE).
  • NSA Type 1 Certification of cryptographic high value products.
  • Experience with NSA High Assurance products and IASRD requirements.
  • Understanding of security control inheritance in terms of IaaS, PaaS, and SaaS relationships.
  • Experience in the application of DISA SRGs and STIGs.
  • Windows and Linux system administration skills.
  • Experience in the content development and administration of SEIM / audit reduction tools (e.g., Splunk).
  • DOD 8570.01M IASAE II or IAT II Certification is desired.
  • Strong understanding of engineering processes, concepts and information security systems engineering principles (NIST SP 800-160 Vol1).
  • System test and evaluation methods and RMF assessment methodology & process.
  • Experience in Cyber Defense technologies.
  • Experience with DOD 5200.39.
  • Experience with CI / CD, agile system development, and DevSecOps tools and processes.
  • Understanding of system vulnerabilities and exploitation.
  • Active TS / SCI Clearance is highly desired.
Create a job alert for this search

Information System Security Engineer • Clifton, NJ

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.