Base-2 Solutions is seeking a TS/SCI Security Engineer Architect to provide technical security expertise across cloud and on-premises infrastructure supporting National Digital Exploitation & OSINT Center systems under the DOMEX Technology Platform contract. This role leads teams through the Risk Management Framework to system authorizations to operate across multiple domains and coordinates security engineering activities in a hybrid work environment based primarily at the client location in Bethesda, MD.
Essential Duties and Responsibilities
- Provide management oversight and coordination of the DTP Security Team across multiple task orders, with a focus on streamlining authorization to operate management processes through engineering solutions and best-practice efficiencies.
- Provide technical guidance to team members while employing effective security solutions.
- Directly interact with DIA CIO and NDOC Security Points of Contact.
- Create, improve, and maintain security policies and procedures.
- Provide operating system hardening and system patching guidance based on DISA STIGs and NIST publications.
- Analyze security incidents and provide recommendations for resolution.
- Apply strong knowledge and experience in software development in an Agile or SAFe environment.
- Serve as Product Owner for the Security Engineering Team.
- Manage individual project priorities, deliverables, and deadlines.
- Foster collaboration among team members to provide quality service and products to the customer.
Required Qualifications
- Relevant experience meeting one of the applicable education and experience pathways in the equivalency section.
- Familiarity with NIST Special Publications, including NIST SP 800-27, 800-30, 800-37, 800-53, and 800-60.
- Experience with CNSS publication CNSSI 1253.
- Experience supporting DoD and Intelligence Community systems through the entire Risk Management Framework Plus process to authorization to operate.
- Experience with incident response plans, plans of actions and milestones, risk management plans, and vulnerability management plans.
- Experience establishing and maintaining a System Security Engineering management process to integrate security and privacy controls into complex hardware and software systems.
- Experience managing a team of Cyber Security Engineers and Information System Security Officers.
- Experience using Tenable Security Center and all components.
- Experience with Linux, Windows, firewalls, gateways, proxies, virtual private clouds, and public key infrastructure.
- Strong analytical, communication, problem-solving, and interpersonal skills.
Preferred Qualifications
- Certified Scrum Master (CSM) or SAFe Scrum Master (SSM) certification.
- Experience with SAFe methodology.
- Successfully achieved authorization to operate under RMF+ across multiple domains.
- Experience working in Agile and DevOpsSec environments.
- Experience with big data applications.
- Experience with Jira and Confluence.
- Experience with OIDC or OAuth2.
- Experience with Kubernetes, Rancher, or Cloudera containerization technologies.
- Experience with continuous integration and continuous delivery tools such as Jenkins or GitLab.
- Experience with Elasticsearch.
- Experience with Active Directory.
- Experience with SQL and NoSQL databases.
- Experience with scripting languages such as Bash, Python, or PowerShell.
Required Education and Experience Equivalency
- Bachelor's degree with 15+ years of prior relevant experience.
- Master's degree with 12+ years of prior relevant experience.
Required Certifications
- Meet DoD 8570.01-M IASAE Level II certification requirements with at least one of the following: CISSP, CISSP-ISSAP, CISSP-ISSEP, CSSLP, or CASP+ CE. The CISSP Associate is not acceptable.
Required Security Clearance