Cyber Security Engineer
Company: Leidos
Location: Huntsville
Posted on: April 9, 2021
|
|
Job Description:
Description Job Description: This is an opportunity to support
NASA and the End User Services Office (EUSO). In this mission we
manage the primary infrastructure and core services. We operate,
maintain, deploy, and manage an existing Government furnished
systems. The candidate will support the Assessment and
Authorization, Vulnerability Management, and Security Engineering.
Provide analytical and technical security recommendations to the
team, oversight boards, and customer. Meet with clients and
management to help specify and negotiate application and system
security requirements, reviews current policies and procedures for
applicability, and system OS security patch levels, and ensures
safe transition of applications to production.What You'll Get to
Do:The successful candidate will manage the overall security
related policies, procedures, laws and regulations; create,
document and implement various security plans and compliance
documents to enforce Information Assurance principles of NASA EUSO
Systems. Will develop, maintain, and manage Security Authorization
and Assessment packages that include System Security Plans (SSP),
Contingency Plans (CP), POA&Ms, and other relevant security
documentation for existing and new systems. Will conduct both
technical and non-technical internal audits and testing to validate
system and operational requirements compliance; document, organize,
and implement security control requirements; identify current and
new risks; and prepare vulnerability test plans and coordinate the
testing and result procedures. Will conduct analysis of identified
vulnerabilities and work with the teams to coordinate mitigation
actions. Oversee all the POA&Ms and RBD's identified for the
end user services office and ensuring compliance and actions are
reported. Ensuring the proper NIST Guidelines for each system
component are applied; register the system in the NASA Assessment
tool RISCS to support the Risk Management Framework (RMF) process.
Lead a team of Cybersecurity professionals for vulnerability
management and help manage projects though the lifecycle.
---Support the implementation and administration of information
security policies, procedures, and technologies to ensure the
protection of systems, applications, and data on production and
development networks.---Provide professional security services for
IA/Cybersecurity in accordance with US Government (USG) and NIST
policies and guidelines.---Provide the necessary support to monitor
and ensure compliance with information security policies,
procedures and regulatory requirements including assistance with
internal auditing, reporting, technical reviews, and identification
of security risks.---Assist with drafting, reviewing, editing, and
recommending guidance for Standard Operating Procedures (SOP), Plan
of Action and Milestones (POA&M), and Federal Information
Security Management Act (FISMA).---Management of Plan of Action and
Milestones (POA&Ms) to completion through the vulnerability
management lifecycle, while working with operations on solidifying
a plan to mitigate according to NIST guidelines.System and
applications vulnerability assessment with tools such as Nessus,
BigFix, SCCM, Jamf, Satellite, and the RISCS tools.---Providing
configuration management for security-relevant information system
software.---Contributing to the security planning, assessment, risk
analysis, risk management, certification and awareness activities
for system operations.---Analyzes and documents results of security
compliance & vulnerability scanning in order to identify
vulnerabilities and coordinate associated remediation
efforts---Creates Security Test Plans in accordance with NIST
800-53 rev 4 standards---Communicating with and working closely
with System Engineering and operations teams to ensure that the
hardware and software implementation meets the security
requirements for processing classified information.---Analyzing and
assessing system implementation against multiple security
compliance policies and evaluating the impact of new
development.---Developing technical solutions for security-related
vulnerabilities using solid security standards and best
practices.---Evaluating, reviewing, and/or testing
security-critical software.---Auditing and assessing system
security policies and configuration settings.You'll Bring These
Qualifications:---A BA/BS degree and 4-8 years of prior relevant
experience---Must have a minimum of three (3) experience working in
an IT environment similar in size (or larger) and scope to this
task order.---Must have a minimum of three (3) working knowledge of
large, complex IT environments.---Experience meeting with clients
and management to specify and negotiate application security
requirement, reviews current policies and procedures for
applicability, and system OS security patch levels, and ensures
safe transition of application to production.---Experienced in
providing risk analysis for vulnerabilities, incidents and change
request.---Experienced in being an active member in technical
workgroups to recommend effective security configurations and
architecture.---Experienced in developing documentation to support
ongoing security systems operations, maintenance and specific
problem resolution.---Ability for oral and written communications
with the highest level of management.---Ability for oral and
written communications with the highest level of management.These
Qualifications Would be Nice to Have:---5+ years of experience in
IA/Cybersecurity.---Security certificates such as CISSP, CISM,
GSLC, or CASP.---Experience in performing risk assessment, IT
audits, security planning, systems accreditation and policy
development.---Experience complying with USG and NIST regulations
and preparing for responding to information security audits and
questionnaires.---Understanding of related information technology
(e.g. firewalls, VPN, virtualization, DLP, etc) and physical
security assets.---Knowledge of domain structures, user
authentication, data encryption, access audits and end-user
security best practices.---Experience with UNIX/LINUX OS and any
scripting language.---Experience working with IDS/IPS and
processes. External Referral Bonus: Eligible Potential for
Telework: Yes, 50% Clearance Level Required: Public Trust Travel:
Yes, 25% of the time Scheduled Weekly Hours: 40 Shift: Day
Requisition Category: Professional Job Family: Information
Assurance Pay Range: Leidos is a Fortune 500 -- information
technology, engineering, and science solutions and services leader
working to solve the world's toughest challenges in the defense,
intelligence, homeland security, civil, and health markets. The
company's 38,000 employees support vital missions for government
and commercial customers. Headquartered in Reston, Va., Leidos
reported annual revenues of approximately $11.09 billion for the
fiscal year ended January 3, 2020. For more information, visit .Pay
and benefits are fundamental to any career decision. That's why we
craft compensation packages that reflect the importance of the work
we do for our customers. Employment benefits include competitive
compensation, Health and Wellness programs, Income Protection, Paid
Leave and Retirement. More details are available here .Leidos will
never ask you to provide payment-related information at any part of
the employment application process. And Leidos will communicate
with you only through emails that are sent from a Leidos.com email
address. If you receive an email purporting to be from Leidos that
asks for payment-related information or any other personal
information, please report the email to .All qualified applicants
will receive consideration for employment without regard to sex,
race, ethnicity, age, national origin, citizenship, religion,
physical or mental disability, medical condition, genetic
information, pregnancy, family structure, marital status, ancestry,
domestic partner status, sexual orientation, gender identity or
expression, veteran or military status, or any other basis
prohibited by law. Leidos will also consider for employment
qualified applicants with criminal histories consistent with
relevant laws.
Keywords: Leidos, Huntsville , Cyber Security Engineer, Engineering , Huntsville, Alabama
Click
here to apply!
|
Didn't find what you're looking for? Search again!
Other Engineering JobsFull Time Mechanic - Birmingham Description: Company Overview: br br At Veo, we're bringing the next generation of mobility sharing to cities and universities globally through our dockless pedal bike, e-bike and e-scooter systems. We also offer (more...) Company: Veo Location: Birmingham Posted on: 04/14/2021 Principal Design Engineer Description: Job Ref: 3249768 - Type: Permanent / Full Time About Rocket Lab br Rocket Lab is the global leader in small satellite launch. Our mission is to open access to space to improve life on Earth. There are (more...) Company: Rocket Lab USA Location: Huntsville Posted on: 04/14/2021 91B Light-Wheel Vehicle Mechanic Description: AGE REQUIREMENTS: Must be between the ages of 17 and 35 br br As a Light-Wheel Vehicle Mechanic for the Army National Guard you'll ensure that anything that moves on wheels is ready to hit the road. (more...) Company: Army National Guard Location: Pulaski Posted on: 04/14/2021 Huntsville - Automotive Mechanic 1st Class Description: UPS is hiring individuals to work as Full-Time Automotive Technicians. Fleet diesel and gas experience or trade school training Company: UPS Location: Huntsville Posted on: 04/14/2021 DevOps Engineer III Description: Spreetail is an ecommerce company that connects brands with customers wherever they love to shop online. We delight our customers every day by putting our technology, marketing, and supply chain to work (more...) Company: Spreetail Inc. Location: Lincoln Posted on: 04/14/2021 Senior Principal Reliability/Maintainability/Safety Engineer Description: COVID-19 Company Updates: We've altered the hiring process to ensure as many safety precautions as possible. Learn more. Senior Principal Reliability/Maintainability/Safety Engineer Req : 68400BR Huntsville, (more...) Company: BAE Systems PLC Location: Huntsville Posted on: 04/14/2021 Mac Tools Seeking Mechanics - Automotive Technicians - Full Training Description: Job title: Mac Tools Seeking Mechanics - Automotive Technicians - Full Training Job description: Build a Great Career and a Quality Life with Mac Tools. Feel the freedom and independence of working on (more...) Company: Mac Tools Location: Lawrenceburg Posted on: 04/14/2021 Veterans Preferred - Manufacturing Engineer - Leeds, AL Description: Military Veterans are Encouraged to Apply. Corporate Overview Hubbell Incorporated was founded in 1888 and has grown into an international manufacturer of quality electrical, lighting and power solutions (more...) Company: Hubbell Location: Leeds Posted on: 04/14/2021 Data Presentation Engineer Description: Software Technology - Data Management / Spreetail is an ecommerce company that connects brands with customers wherever they love to shop online. We delight our customers every day by putting our technology, (more...) Company: Spreetail Inc. Location: Lincoln Posted on: 04/14/2021 Junior Graphics Application Engineer Description: : OASYS, INC. offers a robust benefit plan to include: BC/BS of Alabama Heath Dental, VSP Vision, Employee Stock Ownership Plan ESOP , 401-K with Matching, Flexible Spending Account, Tuition Reimbursement, (more...) Company: Oasys, Inc. Location: Huntsville Posted on: 04/14/2021 |