Team CACI has an exciting and challenging opportunity available for a Network Communications Engineer for Intrusion Detection Systems (IDS) supporting an Intelligence Community customer’s wide-area (WAN), local-area (LAN) and campus-area (CAN) networks across multiple security domains.
Ensure the overall health and strong security posture of complex network architectures. The Network Security Engineer will be actively involved with all phases of security design, implementation, proactive monitoring, troubleshooting and analysis of firewalls, IDSs, VPNs, security controls and policies. Maintain compliance with DOD Information Assurance requirements as well as ensuring service performance indicators are met or exceeded.
Work with both corporate and customer leadership to research, analyze, and implement enterprise-wide network security solutions/capabilities/enhancements to support customer business/mission goals and objectives.
Analyze, test and implement state-of-the-art secure network architectures
Conduct risk assessment and provides recommendations for design.
Conduct encryption technology, penetration and vulnerability analysis of various security technologies, and information technology security research
Manage WAN, LAN, CAN, and remote network security as well as incident and problem management.
Security infrastructure sustainment, maintenance, and advanced configuration. (firewalls, web gateways, mail gateways, IDS, intrusion detection systems, and management tools.
Report, document and investigate of all security related incidents
Member of a team of network security personnel that will be performing an array of information security tasks for a 24/7 service that revolves around mission requirements.
Create and maintain System Security Authorization Agreement (SSAA) documentation, creates and maintains Plan of Action and Milestones for each system.
Evaluate and report on new network Security technologies to enhance capabilities of the network.
Bachelor’s degree in Computer Science or related field
DOD 8570 IAT III certification.
Security Clearance: active TS/SCI
Demonstrated experience with SourceFire Network Security Solutions
Demonstrated experience with FireEye Cyber Security and Malware Protection
Demonstrated experience with NetWitness Applications and Solutions
Ability to work independently with little direction and guidance
Ability to work weekends and evening hours as needed
Excellent writing and communication skills, including the ability to develop analytical documents and present oral presentations to senior/executive management
Proficient is MS Office suite – Visio, Word, Excel, PowerPoint, and Project
Travel up to 15% of the time
8+ years related technical experience in Network Security
4+ years experience with large-scale enterprise/global networks in a high paced diverse environment
Understanding and experience with the DoD Architecture Framework and other key DoD network architecture and strategic planning instructions
Experience with Intelligence Community Directive (ICD) 503 instructions; system accreditation and security system documentation
Knowledge and understanding of ISO 27000 information security management principles
Knowledge of CISCO firewall/VPN equipment (Adaptive Security Appliance, etc)
Knowledge of IP services (IPv4, VPN, IPv6, Multicast, QOS, SNMP, VOIP, VTC, etc)
Experience in providing status reports and products to senior management and customers
Experience with managing and tracking Authority To Connnect (ATC) and closures of liens to obtain an Authority To Operate (ATO).
Experience with Netscreen Firewall, Sidewinder Firewall, McAfee Web/Email Gateway, Netscout, Blue Coat or Cisco ASA, IPS/IDS.
Experience with plans, designs, and evaluations of security systems and architectures.
Master’s degree in Computer Science or related field
Systems Security Certified Practitioner (SSCP) or Certified Information Systems Security Professional (CISSP)