Our Team has an exciting and challenging opportunity available for a Security Engineer supporting an Intelligence Community customer’s Cloud presence wide-area (WAN), local-area (LAN) and campus-area (CAN) networks across multiple security domains. Ensure the overall health and strong security posture of complex network architectures. The Security Engineer will be actively involved with all phases of security design, implementation, proactive monitoring, troubleshooting and analysis of firewalls, IDSs, VPNs, security controls and policies. Develop system specifications, architecture designs, integration and test plans, and all relevant documentation. Develop security assessment and mitigation strategies. Maintain compliance with DOD Information Assurance requirements as well as ensuring service performance indicators are met or exceeded.
Duties and Responsibilities:
Maintain compliance with DOD Information Assurance requirements as well as ensuring service performance indicators are met or exceeded.
Understanding and experience with the DoD Architecture Framework and other key DoD network architecture and strategic planning instructions.
Work with both corporate and customer leadership to research, analyze, and implement enterprise-wide network security solutions/capabilities/enhancements to support customer business/mission goals and objectives.
Conducts risk assessment and provides recommendations for design.
Conducts encryption technology, penetration and vulnerability analysis of various security technologies, and information technology security research.
Manage WAN, LAN, CAN, and remote network security as well as incident and problem management.
Oversee security infrastructure sustainment, maintenance, and advanced configuration. (firewalls, web gateways, mail gateways, IDS, intrusion detection systems, and management tools.
Oversee the reporting, documentation and investigation of all security related incidents; lead the development and implementation of corrective measures.
Responsible for staffing of network security personnel that will be performing an array of information security tasks for a 24/7 service that revolves around mission requirements.
Responsible for development and execution of standard operating procedures for security tools. Create and maintain System Security Authorization Agreement (SSAA) documentation, creates and maintains Plan of Action and Milestones for each system.
Evaluate and report on new network Security technologies to enhance capabilities of the network. Act as liaison to the contract and customer management, and government Designated Approving Authority (DAA) with regard to all network security status, policies, and procedures.
Demonstrated experience with the following: SourceFire Network Security Solutions; NetWitness network monitoring; and/or FireEye Cyber Security and Malware Protection.
Ability to work independently with little direction and guidance.
Ability to work weekends and evening hours.
Excellent writing and communication skills, including the ability to develop analytical documents and present oral presentations to senior/executive management.
Proficient is MS Office suite Visio, Word, Excel, PowerPoint.
Proven experience with Intelligence Community Directive (ICD) 503 instructions; system accreditation and security system documentation.
Proven application of ISO 27000 information security management principles.
Knowledge of CISCO firewall/VPN equipment (Adaptive Security Appliance, etc.)
Knowledge of IP services (IPv4, VPN, IPv6, Multicast, QOS, SNMP, VOIP, VTC, etc)
Experience in providing status reports and products to senior management and customers.
Experience with managing and tracking Authority To Connect (ATC) and closures of liens to obtain an Authority To Operate (ATO).
Experience with Netscreen Firewall, Sidewinder Firewall, McAfee Web/Email Gateway, Netscout, Blue Coat or Cisco ASA, IPS/IDS. Experience with plans, designs, and evaluations of security systems and architectures
IASAE level 2 certification
Certifications: DOD 8570 IAT3 level certification.
Experience Network Security
Experience with large-scale enterprise/global networks in a high paced diverse environment
Master degree in Computer Science or related field Systems Security Certified Practitioner (SSCP) or Certified Information Systems Security Professional (CISSP) CCNP Security and/or CCNA Security certification ITIL certification Security +
Typically requires a bachelor's degree or equivalent and ten to twelve years of related experience.