Job DescriptionJob Title: Senior Information Systems Security Engineer
Location: Peterson, SFB and Colorado Springs, CO SCIF (on-site)
Security Clearance: DoW Top Secret (SCI Eligibility)
We are seeking a strong
SeniorInformation Systems Security Engineer to support our Space portfolio. In this role you will support security analysis of operational and development environments, threats, vulnerabilities and internal interfaces to define and assess compliance with accepted industry and Government standards. Candidates must be passionate, energized, and excited to work on modern architectures and solve challenging problems for our clients.
Position Description (what you will do):- Perform engineering-focused security analysis of operational and development environments, identifying threats, vulnerabilities, and internal interfaces in order to define and verify compliance with applicable industry and government standards.
- Support the design and implementation of the Assessment and Authorization (A&A) processes under the NIST Risk Management Framework (RMF) for the development and sustainment of secure information systems.
- Develop, implement, and refine audit mechanisms for systems to maintain the integrity of the security posture throughout the system's lifecycle.
- Leverage assessment methodologies, test results, and analysis outputs to ensure compliance with established security requirements, while identifying opportunities for system engineering enhancements.
- Perform and manage periodic hardware and software inventory assessments to ensure alignment with security engineering practices.
- Collaborate with government stakeholders, suppliers, and organizational teams to design, implement, and validate protective mechanisms that meet cybersecurity requirements, emphasizing clear communication and adherence to security engineering principles.
Requirements:- 8 years of direct Cybersecurity experience with at least: 3 years applying RMF to support the design, development, and authorization of secure systems.
- 2 years conducting security engineering analysis to identify and mitigate threats, vulnerabilities, and risks in systems.
- 2 year implementing security controls and architectures in alignment with government and industry standards.
- 2 year performing vulnerability assessments and risk analysis to inform system design.
- 2 years supporting configuration management practices and conduct hardware/software inventory assessments.
- Must meet Requirements outlined in DoDM 8140 for System Security Engineer (633), i.e. Sec+, CISSP
Nice to Have:- Proficiency with security compliance tools such as eMASS or Xacta for risk management and reporting.
- Collaborate with stakeholders, developers, and suppliers to integrate and validate security requirements.
- Experience with cybersecurity policies and implementation of Risk Management Framework (RMF): e.g., DAAPM, CNSSI 1253, ICD-503, JSIG, or NIST SP 800 series
- Experience in utilizing security-relevant tools such as ACAS, ESS, SCAP
Our team is always hungry for more - more knowledge, more problem solving, more growth, more innovation, and, ultimately, customer success. This hunger and hustle fuel our determination to excel in everything we do. It's not just about meeting established goals; it's about exceeding them. We take immense pride in applying our expertise in cutting-edge technologies and our ability to adapt to emerging trends directly to the users in the field, as our nation's protectors deserve nothing less.
Proposed Pay Scale - $139,000 -$149,000