Security Engineer III

Paragon Technology Group

Illinois

On-site

USD 110,000 - 150,000

Full time

29 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Paragon Technology Group seeks a Security Engineer III to support vulnerability and risk assessments, network security, and security implementations. You will design protective solutions for confidentiality, integrity, and availability of data, and review system authorization documentation.

The role involves ISCM concepts, security automation, and ongoing authorization processes to quickly identify risks. Key duties include evaluating security products, performing vulnerability scans, and

Qualifications

  • Bachelor’s Degree or equivalent experience.
  • Experience implementing RMF-based security for DoD programs.
  • Knowledge of ISCM concepts and security automation.

Responsibilities

  • Conduct vulnerability assessments, risk evaluations and security testing.
  • Evaluate security products, provide recommendations and improvements.
  • Coordinate with agencies and contractors to resolve security issues.

Skills

Vulnerability assessment
Risk assessment
Network security
Security engineering
Information security

Education

Bachelor’s degree or equivalent experience

Tools

ACAS
Nessus
Fortify SCA
eMASS

Job description

The Security Engineer III provides technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation. Responsible for designing and implementing solutions for protecting the confidentiality, integrity and availability of sensitive information. Provides technical evaluations of IT systems and assists with making security improvements. Participates in design of information system contingency plans that maintain appropriate levels of protection and meet time requirements for minimizing operations impact to customer organization. Conducts security product evaluations, and recommends products, technologies and upgrades to improve the organization’s security posture. Understands Information Security Continuous Monitoring (ISCM) concepts and the employ of security automation and risk dashboarding tools and processes to more quickly identify and respond to risk and support more efficient Assessment & Authorization processes such as ongoing authorization. Conducts testing and audit log reviews to evaluate the effectiveness of current security measures.

  • Expertise to develop and/or review system authorization documentation in accordance with DoD implementation of the Risk Management Framework (RMF)
  • Experience participating in TIMs on a wide range of PMO security engineering meetings
  • Experience participating in Acquisition program Engineering Milestone Reviews,
  • Experience coordinating with development Contractor security/system engineers and USTRANSCOM/DISA Security Office to resolve program security issues
  • Possess skills to conduct Technical Reviews of development Contractor produced security deliverables
  • Experience performing security activities to maintain authorization of the PMO programs
  • Experience using the DOD Enterprise Mission Assurance Support Service (eMASS) system
  • Experience providing support to ensure PMO system(s) are designed, developed, and deployed in accordance with applicable Executive Orders, Federal Policy, DOD regulations, USTRANSCOM requirements, and commercial best practice
  • Experience performing vulnerability scans using ACAS, Nessus, and Fortify SCA, analyze outputs to identify vulnerabilities, and recommend mitigation and remediation actions
  • Experience implementing DISA STIGS and verifying application
  • Experience writing and tracking POA&Ms
  • Experience conducting and evaluating security testing activities including security assessments, audits, and penetration testing
  • Experience supporting operational security activities e.g., firewall implementation, risk mitigation, host security, encryption, intrusion detection, Virtual Private Network (VPN) implementations, and viral detections
  • Experience with security lockdown and/or hardening of servers and network devices
  • Ability to coordinate overall security strategy with multiple agencies, Authorizing Official (AO) representatives
  • Ability to coordinate with developers, vendors, and other government organizations/agencies to assess security engineering issues
  • Experience recommending changes to network and security architecture to improve security posture and meet operational performance requirements

The Security Engineer III provides technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation. Responsible for designing and implementing solutions for protecting the confidentiality, integrity and availability of sensitive information. Provides technical evaluations of IT systems and assists with making security improvements. Participates in design of information system contingency plans that maintain appropriate levels of protection and meet time requirements for minimizing operations impact to customer organization. Conducts security product evaluations, and recommends products, technologies and upgrades to improve the organization’s security posture. Understands Information Security Continuous Monitoring (ISCM) concepts and the employ of security automation and risk dashboarding tools and processes to more quickly identify and respond to risk and support more efficient Assessment & Authorization processes such as ongoing authorization. Conducts testing and audit log reviews to evaluate the effectiveness of current security measures.

  • Expertise to develop and/or review system authorization documentation in accordance with DoD implementation of the Risk Management Framework (RMF)
  • Experience participating in TIMs on a wide range of PMO security engineering meetings
  • Experience participating in Acquisition program Engineering Milestone Reviews,
  • Experience coordinating with development Contractor security/system engineers and USTRANSCOM/DISA Security Office to resolve program security issues
  • Possess skills to conduct Technical Reviews of development Contractor produced security deliverables
  • Experience performing security activities to maintain authorization of the PMO programs
  • Experience using the DOD Enterprise Mission Assurance Support Service (eMASS) system
  • Experience providing support to ensure PMO system(s) are designed, developed, and deployed in accordance with applicable Executive Orders, Federal Policy, DOD regulations, USTRANSCOM requirements, and commercial best practice
  • Experience performing vulnerability scans using ACAS, Nessus, and Fortify SCA, analyze outputs to identify vulnerabilities, and recommend mitigation and remediation actions
  • Experience implementing DISA STIGS and verifying application
  • Experience writing and tracking POA&Ms
  • Experience conducting and evaluating security testing activities including security assessments, audits, and penetration testing
  • Experience supporting operational security activities e.g., firewall implementation, risk mitigation, host security, encryption, intrusion detection, Virtual Private Network (VPN) implementations, and viral detections
  • Experience with security lockdown and/or hardening of servers and network devices
  • Ability to coordinate overall security strategy with multiple agencies, Authorizing Official (AO) representatives
  • Ability to coordinate with developers, vendors, and other government organizations/agencies to assess security engineering issues
  • Experience recommending changes to network and security architecture to improve security posture and meet operational performance requirements
Job Requirements
  • Bachelor’s Degree or equivalent experience
  • IAT I, IAT II, IAM I, IAM II.
  • 7+ years’ experience in security engineering
  • Must be a US Citizen with a DoD Secret, or higher, clearance determination.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer III
Security Engineer III

Socket.dev • Illinois

On-site
USD 110,000 - 170,000
Security Engineer III
Security Engineer III

Paragon Technology Group, Inc. • Illinois

On-site
USD 130,000 - 170,000
Security Engineer III
Security Engineer III

Paragon Technology • Illinois

On-site
USD 85,000 - 90,000
Security Engineer III
Security Engineer III

ADP, Inc. • Illinois

On-site
USD 85,000 - 90,000
Information Security Analyst
Information Security Analyst

Jobtailor • Tampa (FL)

On-site
USD 90,000 - 130,000
System Engineer III
System Engineer III

DigiFlight, Inc. • Columbia (MD)

On-site
USD 110,000 - 160,000
Information Assurance Engineer
Information Assurance Engineer

Agile IT Synergy, LLC • Tampa (FL)

On-site
USD 90,000 - 130,000
Cyber Security Specialist
Cyber Security Specialist

Jobtailor • Fort Wayne (IN), New York (NY)

On-site
USD 140,000 - 190,000
Information System Security Engineer III
Information System Security Engineer III

Centuria • Philadelphia

On-site
USD 90,000 - 130,000
Information Systems Security Engineer III
Information Systems Security Engineer III

ARMADA, Ltd. • Philadelphia

On-site
USD 90,000 - 110,000