Are you looking for an opportunity to deepen your IT skills in a meaningful work environment that supports and protects explorers and heroes? Join our team! As a Systems Security Engineer III, you will play a pivotal role in ensuring the security of our IT infrastructure. You will lead the design, implementation, and maintenance of secure IT systems, and take charge of high-level incident response and digital forensics.
Responsibilities:
- Participate in high-quality interaction with customers, team members, contractors, and ultimately the government authorization official to achieve the directed Information Systems Security objectives.
- Serve as a subject matter expert in the field of Information Systems Security and provide guidance during the design, integration, or upgrade of software applications and information systems.
- Combined knowledge of Information Systems Security policies and operational understanding to develop or review Assessment & Authorization documentation based upon the NIST Risk Management Framework and other U.S. Department of Defense regulations.
- Perform random and scheduled security control assessments of software applications and information systems to ensure compliance with requirements based upon NIST Risk Management Framework and other U.S. military regulations.
- Participate in continuous monitoring activities such as vulnerability management, incident response, and accreditation record maintenance in systems such as eMASS or XACTA.
- Perform work product evaluation of other Information Systems Security team members during the design, integration, or upgrade of new or existing information systems.
Qualifications You Must Have:
- Bachelor's degree in Systems Security, Network Engineering, Information Technology, or related Engineering discipline
- 5+ years of experience in IT security or a related field.
- Relevant experience can be considered as a substitute for the required educational qualifications. In the absence of a degree, a minimum of 9 years of related experience is required.
- Higher level relevant degree may substitute for experience.
- Must have IAT Level III certification (CISSP, CASP, GCIH, etc.) or ability to attain within 6 months of hire.
- Demonstrated experience working in an application security environment and performing application security related tasks such as SAST/DAST/SCA testing.
- Demonstrated experience with security control assessment tools such as ACAS / Tenable Nessus, SCAP Compliance Checker, Static Application Security Testing tools and Dynamic Application Security Testing tools.
- Strong understanding of DoD applicable Security Technical Implementation Guides (STIGs), NIST special publications, and NSA Guides.
- Working knowledge of operating systems and networking concepts.
- Demonstrated ability to effectively communicate, complete tasks and assignments on time, problem solve, work in a team environment, and work independently when necessary.
Qualifications We Prefer:
- Experience implementing DevSecOps processes within existing DevOps pipelines.
- Experience configuring, deploying, and securing applications within the modern Kubernetes / CNCF landscape.
- Experience working with the RMF accreditation process for a Department of Defense customer.
- Experience working with deployed tactical information systems.
- Additional information security industry certifications such as the CISSP-ISSEP, CISM, or C|EH Certification
Essential Functions:
- Ability to work primarily at a computer for extended periods.
- Capability to participate in on-call rotation for incident response.
- Must be able to lift up to 25 lbs occasionally.
- Ability to work in an office or hybrid environment.
- Occasional travel may be required.
This posting will be open for application for a minimum of 5 days and may be extended based on business needs.
Benefits:
- SNC offers a generous benefit package, including medical, dental, and vision plans
- 401(k) with 150% match up to 6%
- life insurance
- 3 weeks paid time off
- tuition reimbursement
- and more.
IMPORTANT NOTICE:
This position requires current/active Top Secret U.S. Security Clearance. U.S. Citizenship status is required as this position needs an active U.S. Security Clearance for employment. Non-U.S. Citizens may not be eligible to obtain a security clearance. The Department of Defense Consolidated Adjudications Facility (DoD CAF), a federal government agency, handles the adjudicative aspects of the security clearance eligibility process for industry applicants. Adjudicative factors which affect the outco