By Light Professional IT Services

Cyber Security Engineer

Aerospace & Defense
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's Degree in Computer Science, Engineering, Cybersecurity, IT, or related field.
  • Professional and/or military experience may substitute for degree.
  • Experience in software engineering and systems engineering across the system development lifecycle.
  • Systems administration skills with Linux, including security settings and shell scripting or Python.
  • System troubleshooting and recovery expertise.
  • Knowledge of threat assessment and mitigation strategies.
  • Experience with offensive security tools and techniques.
  • Familiarity with NIST SP 800-53 security compliance.

Responsibilities

  • Define cybersecurity requirements for software applications.
  • Recommend security engineering practices in system development.
  • Assess cybersecurity requirement compliance using analytical tools.
  • Identify vulnerabilities in applications using adversarial techniques and tools.
  • Propose mitigation strategies to address software-level threats.
  • Collaborate with software development team on security engineering principles.
  • Mentor junior cybersecurity engineers in best practices and skill development.

Benefits

  • Medical, Dental & Vision Coverage
  • Wellness Program
  • 401(k) Matching
  • Disability (Short Term & Long Term)
  • Employee Assistance Program
  • Life Insurance
  • Education & Training
  • Generous Leave Policy including 11 Federal Holidays and PTO.
Full Job Description
Position Overview

Provide cybersecurity engineering support to DoD software application development activities through cybersecurity requirements definition, process enhancements and application security testing activities.

Responsibilities

  • Define cybersecurity requirements for software applications to meet program requirements and objectives.
  • Provide recommendations to incorporate security engineering practices throughout the system development lifecycle.
  • Perform assessments of cybersecurity requirement compliance using manual and automated software analysis tools and methods and present them to the customer as necessary.
  • Perform assessments using adversarial tools, techniques, and methods against network-enabled applications and web applications to identify weaknesses, gaps, and vulnerabilities.
  • Propose mitigation and countermeasures to reduce or eliminate software-level threats.
  • Directly interface with the software development team to ensure software security engineering principles are applied throughout the system development lifecycle.
  • Provide technical leadership and mentorship to junior cybersecurity engineers, fostering skill development, adherence to cybersecurity best practices, and continuous learning.


Required Experience/Qualifications

  • Bachelor's Degree in Computer Science, Engineering, Cybersecurity, IT or related field required.
  • Professional and / or military experience may be substituted in lieu of degree.
  • Experience in software engineering, development and/or systems engineering throughout all phases of the system development lifecycle.
  • Systems administration skills, experience with Linux, security settings, services, hardening of systems (STIGs, security policies); any shell scripting or Python a plus.
  • System troubleshooting, recovery, and advisory in the event of unexpected adverse configuration changes.
  • Knowledge of threat assessment and solutions to mitigate or eliminate such threats.
  • Experience with offensive security tools and adversarial techniques and methods.
  • Experience implementing software application solutions to comply with NIST SP 800-53 security controls.
  • Compliance and vulnerability reporting and similar formal technical documentation skills.
  • Experience working with Cyber Range Environments.
  • Understanding of Risk and Compliance Frameworks.


Preferred Experience/Qualifications

  • An understanding of DoD acquisition processes and relevant cyber security processes, such as the Risk Management Framework (RMF).
  • Desired Certifications: CISSP, OSCP, GPEN, GWAPT, GSSP, CEH.


Special Requirements/Security Clearance

  • This position requires certifications necessary to meet IAT Level II in accordance with DoD 8570 baseline certifications.
    • IAT Level II certification is required immediately upon hire.
    • Current certification status will be maintained by obtaining continuing education as specified by the certification authority.
  • Has a current SECRET security clearance, with the ability to attain a TOP SECRET/SCI clearance. Security Clearance requirements will be specified in the Government's Task Order.


Benefits Overview

CESI recognizes that our strength is our people. We support every employee as an individual to build strong teams across the enterprise. Our benefit package includes:
  • Medical, Dental & Vision Coverage
  • Wellness Program
  • 401(k) Matching
  • Disability (Short Term & Long Term)
  • Employee Assistance Program
  • Life Insurance
  • Education & Training
  • Generous Leave Policy (11 Federal Holidays, PTO, Military Leave, Bereavement and Jury Duty)

About By Light Professional IT Services

By Light Professional IT Services is a provider of full lifecycle information technology and telecommunications solutions to the federal government and commercial clients. The company provides services in the areas of cybersecurity, cloud computing, application development, network engineering, and strategic consulting. By Light has been recognized as one of the fastest-growing private companies in the United States by Inc. Magazine and has been named a top workplace by The Washington Post.
Learn more about By Light Professional IT Services
Size
1,500 employees
Industry

Similar Jobs

More Jobs at By Light Professional IT Services

More Aerospace & Defense Jobs

Find similar Cyber Security Engineer jobs: