Senior Cyber Security Engineer (Contingent on Contract Award) at MSM Technology, LLC
Quantico, Virginia, United States -
Full Time


Start Date

Immediate

Expiry Date

10 Feb, 26

Salary

0.0

Posted On

12 Nov, 25

Experience

10 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Cybersecurity, Network Defense, Vulnerability Management, Compliance Monitoring, Incident Response, Risk Management Framework, Authorization and Accreditation, Security Information and Event Management, Intrusion Detection, Firewalls, Host-Based Security Systems, Advanced Persistent Threats, Log Analysis, Encryption Technologies, Cybersecurity Solutions, System Security Plans

Industry

IT Services and IT Consulting

Description
Description Serve as the lead cybersecurity engineer responsible for all aspects of network and system defense, vulnerability management, and compliance monitoring for NCIS ITCSU environments. Implement and oversee Computer Network Defense (CND) capabilities, including firewalls, Intrusion Detection/Prevention Systems (IDS/IPS), Host-Based Security Systems (HBSS), Assured Compliance Assessment Solution (ACAS), and Security Information and Event Management (SIEM) tools. Manage and maintain the Authorization and Accreditation (A&A) packages for all NCIS systems under the Risk Management Framework (RMF), ensuring systems maintain valid Authority to Operate (ATO), Authority to Connect (ATC), or Authority to Test (ATT). Develop, maintain, and monitor all security artifacts necessary for accreditation, including System Security Plans (SSPs), Plan of Actions and Milestones (POA&Ms), and Configuration Management Plans (CMPs). The CND Incident Response (CND/IR) Analyst shall identify, collect, and analyze network and host data, and report events or incidents that occur or might occur within a network to mitigate immediate and potential network and host threats. Provide trend analysis and reports on Computer Network Defense activity. Maintain situational awareness of Cyber incidents and activity with appropriate partners via tools and reporting mechanisms. Research, identify, and verify new Advanced Persistent Threat tactics, techniques, and procedures from commercial and government sources. Provide recommendations to strengthen the client’s overall Cybersecurity posture. Apply knowledge of monitoring, analyzing, detecting, and responding to Cyber events and incidents within information systems and networks. Advise on an integrated, dynamic Cyber defense and leverage Cybersecurity solutions to deliver Cybersecurity operational services, including intrusion detection and prevention, situational awareness of network intrusions, security events, and data spillage, and incident response actions. Designs, develops, engineers, and implements solutions that meet security requirements, and is responsible for the integration and implementation of computer system security solutions. Engineer will serve as an Information System Security Engineer (ISSE). Requirements Minimum of seven (7) years of experience performing computer network defense (CND) incident triage. Deep understanding of DoD Risk Management Framework (RMF), DIACAP to RMF transitions, and system accreditation lifecycle management. Proven ability to manage and maintain A&A packages, prepare RMF documentation, and coordinate with Authorizing Officials (AOs) and Security Control Assessors (SCAs). Strong technical proficiency in network and host-based security, encryption technologies, key management, and incident response processes. Experience analyzing log files, firewalls, firewall logs, and intrusion detection systems and IDS Logs to identify possible threats to network security, and to perform command and control functions in response to incidents. Experience in Host Based Security Systems (HBSS), ACAS vulnerability scanning software and Cyber Security Vulnerability Alerts (IAVA). HBSS resources must possess appropriate certifications and experience at contract start. This position requires a fully adjudicated Secret clearance level at contract start but must be eligible for a Top Secret (TS)/Sensitive Compartmented Information (SCI). Position shall meet the requirements of an IAT III/ IAM III per the DoD 8570.01-M, Certified Information Systems Security Professional (CISSP) certification preferred.
Responsibilities
The Senior Cyber Security Engineer will lead all aspects of network and system defense, vulnerability management, and compliance monitoring for NCIS ITCSU environments. Responsibilities include implementing Computer Network Defense capabilities and managing Authorization and Accreditation packages under the Risk Management Framework.
Loading...