Enable job alerts via email!
Boost your interview chances
Create a job specific, tailored resume for higher success rate.
Trilyon, Inc. is seeking a Security/Certification Engineer specializing in FIPS/CC for mobile devices. This role involves validating IT products, developing security targets, and ensuring compliance with FIPS 140-3 requirements. The ideal candidate will have extensive experience in Common Criteria evaluations and a strong background in security protocols, contributing to the security of cutting-edge mobile technology.
This range is provided by Trilyon, Inc.. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.
$80.00/hr - $90.00/hr
Direct message the job poster from Trilyon, Inc.
For over 15 years, Trilyon has been at the forefront of providing comprehensive global workforce solutions and staffing services. Leveraging our extensive expertise across multiple domains such as Cloud technology, Salesforce, AI, Machine Learning, and Technical Writing, we consistently exceed expectations in catering to a wide range of requirements.
Currently we are seeking a “Security/Certification Engineer - FIPS/CC (Mobile Devices)” for one of our clients that is a leading multination corporation.
TITLE: Security/Certification Engineer - FIPS/CC (Mobile Devices)
Location: Remote
Duration: 12 Plus Months Contract with the possibility of extension or conversion
We are looking for an individual who has experience in the common criteria evaluations of IT products and who has experience with FIPS validation of cryptographic modules ( FIPS 140-3) . They will be responsible for the end-end validation of the products ( performing initial assessment of the security functions and specifications; consult with various teams in the development of the process, design, and documentation required for the common criteria evaluations of our Mobile Device products and the FIPS 140-2/3 accreditation of our cryptographic modules.
Role and Responsibilities:
Develop the security target for our products, assist with the testing,documentation and working with the necessary engineering teams during the evaluation.
Develop plans and procedures using applicable security controls, including NIAP Protection Profiles (MDFPP, VPN, WLAN, Biometric enrollment, and verification), assist with the CAVP algorithm testing ,drafting and review of the security policies for our cryptographic modules according to the FIPS 140-3 specifications, possess information around the DCID 6/3, DoD 8500, or NIST SP 800-53.
Assist in the development and review of all test reports and required certification documentation for all the Common Criteria evaluations and FIPS 140-2/3 accreditation.
Experience building testing environments, performing testing and reporting results (technical writing) for all of the common criteria and FIPS evaluations.
Develop mitigation strategies to address vulnerabilities uncovered during security testing; and assist with completing all the required documentation to meet the specifications and certification requirements, as required.
Perform vulnerability analysis of product or system designs against applicable security criteria using common tools, including Nessus, NMAP, and Wireshark.
Project POC with Internal/External audience when required.
Skills:
Self-motivated individual with the ability to thrive in a team-based or independent environment.
Detail-oriented with strong organization skills.
Ability to work in a fast-paced environment.
Limited supervision and the exercise of discretion.
Ability to comprehend security standard requirements and specifications and apply them to products.
Excellent communication (written/verbal) skills and analytical skills.
Required Experience and Education:
5+ years of technical experience in Common Criteria evaluations NIAP-managed Common Criteria Evaluation and Validation Scheme (CCEVS or Scheme) of any product in the US scheme . Mobile device and Software knowledge highly preferred.
Bachelor's Degree in Electrical Engineering, Computer/Information Science, Information Assurance/Cybersecurity, or equivalent degree (Master's Degree preferred).
Knowledge of common security related protocols and their design (i.e., SSH, IPsec, TLS, etc.)
Be highly proficient in FIPS 186-4/5, SP 800-186, SP800-90B and the FIPS 140-3 requirements and have knowledge around the cryptographic encryption algorithms, key exchange algorithms, hashing/message authentication algorithms, PKI, random number generators .
Regards
Nima Nayak | Trilyon, Inc.
Ph: 408-834-7790 Fax: 1-877-896-9866
nima@trilyonservices.com | www.TrilyonServices.com
https://www.linkedin.com/company/trilyon
Trilyon is an Equal Opportunity Employer, committed to fairness and respect for all individuals. We value diversity in age, disability, ethnicity, gender, gender identity, religion, and sexual orientation, believing it drives innovation and better service. Employment decisions are made impartially, without regard to any protected characteristic under federal, state, or local law. Our diverse team drives innovation, competitiveness, and creativity, enhancing our ability to effectively serve our clients and communities. This commitment to diversity makes us stronger and more adaptable.
Referrals increase your chances of interviewing at Trilyon, Inc. by 2x
United States $80,000.00-$120,000.00 1 week ago
United States $153,200.00-$204,300.00 3 weeks ago
United States $60,000.00-$70,000.00 6 days ago
United States $120,000.00-$150,000.00 2 weeks ago
United States $100,000.00-$150,000.00 1 week ago
We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.