Sierra Nevada Corporation

Systems Security Engineer III

Sierra Nevada Corporation$108K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Systems Security, Network Engineering, Information Technology, or related Engineering discipline
  • 5+ years of experience in IT security or a related field
  • Ability to attain IAT Level III certification (CISSP, CASP, GCIH, etc.) within 6 months of hire
  • Demonstrated experience working in an application security environment
  • Strong understanding of DoD applicable Security Technical Implementation Guides (STIGs)
  • Working knowledge of operating systems and networking concepts

Responsibilities

  • Participate in high-quality interaction with customers and team members to achieve Information Systems Security objectives
  • Serve as a subject matter expert in Information Systems Security during software application and system upgrades
  • Develop or review Assessment & Authorization documentation based on the NIST Risk Management Framework
  • Perform regular security control assessments of software applications to ensure compliance
  • Engage in continuous monitoring activities including vulnerability management and incident response
  • Evaluate work products of other Information Systems Security team members during systems upgrades

Benefits

  • Medical, dental, and vision plans
  • 401(k) with 150% match up to 6%
  • Life insurance
  • 3 weeks paid time off
  • Tuition reimbursement
Full Job Description
As a Systems Security Engineer III, you will play a pivotal role in ensuring the security of our IT infrastructure. You will lead the design, implementation, and maintenance of secure IT systems, and take charge of high-level incident response and digital forensics.

The Mission Solutions and Technologies (MST) business area provides affordable, turn-key command/control, communications, integrated ISR, force protection and security solutions worldwide. The MST team has a long legacy of supporting the Department of Defense, Department of Homeland Security, commercial and international customers with years of experience in platform operations, engineering and full lifecycle management across domains - air, land, sea, space and cyber.

Responsibilities:
  • Participate in high-quality interaction with customers, team members, contractors, and ultimately the government authorization official to achieve the directed Information Systems Security objectives.
  • Serve as a subject matter expert in the field of Information Systems Security and provide guidance during the design, integration, or upgrade of software applications and information systems.
  • Combined knowledge of Information Systems Security policies and operational understanding to develop or review Assessment & Authorization documentation based upon the NIST Risk Management Framework and other U.S. Department of Defense regulations.
  • Perform random and scheduled security control assessments of software applications and information systems to ensure compliance with requirements based upon NIST Risk Management Framework and other U.S. military regulations.
  • Participate in continuous monitoring activities such as vulnerability management, incident response, and accreditation record maintenance in systems such as eMASS or XACTA.
  • Perform work product evaluation of other Information Systems Security team members during the design, integration, or upgrade of new or existing information systems.


Qualifications You Must Have:
  • Bachelor's degree in Systems Security, Network Engineering, Information Technology, or related Engineering discipline
  • 5+ years of experience in IT security or a related field.
  • Relevant experience can be considered as a substitute for the required educational qualifications. In the absence of a degree, a minimum of 9 years of related experience is required.
  • Higher level relevant degree may substitute for experience.
  • Must have IAT Level III certification (CISSP, CASP, GCIH, etc.) or ability to attain within 6 months of hire.
  • Demonstrated experience working in an application security environment and performing application security related tasks such as SAST/DAST/SCA testing.
  • Demonstrated experience with security control assessment tools such as ACAS / Tenable Nessus, SCAP Compliance Checker, Static Application Security Testing tools and Dynamic Application Security Testing tools.
  • Strong understanding of DoD applicable Security Technical Implementation Guides (STIGs), NIST special publications, and NSA Guides.
  • Working knowledge of operating systems and networking concepts.
  • Demonstrated ability to effectively communicate, complete tasks and assignments on time, problem solve, work in a team environment, and work independently when necessary.


Qualifications We Prefer:
  • Experience implementing DevSecOps processes within existing DevOps pipelines.
  • Experience configuring, deploying, and securing applications within the modern Kubernetes / CNCF landscape.
  • Experience working with the RMF accreditation process for a Department of Defense customer.
  • Experience working with deployed tactical information systems.
  • Additional information security industry certifications such as the CISSP-ISSEP, CISM, or C|EH Certification


Essential Functions:
  • Ability to work primarily at a computer for extended periods.
  • Capability to participate in on-call rotation for incident response.
  • Must be able to lift up to 25 lbs occasionally.
  • Ability to work in an office or hybrid environment.
  • Occasional travel may be required.


This posting will be open for application for a minimum of 5 days and may be extended based on business needs.

SNC offers a generous benefit package, including medical, dental, and vision plans, 401(k) with 150% match up to 6%, life insurance, 3 weeks paid time off, tuition reimbursement, and more.

IMPORTANT NOTICE:
This position requires current/active Top Secret U.S. Security Clearance. U.S. Citizenship status is required as this position needs an active U.S. Security Clearance for employment. Non-U.S. Citizens may not be eligible to obtain a security clearance. The Department of Defense Consolidated Adjudications Facility (DoD CAF), a federal government agency, handles the adjudicative aspects of the security clearance eligibility process for industry applicants. Adjudicative factors which affect the outcome of the eligibility determination include, but are not limited to, allegiance to the U.S., foreign influence, foreign preference, criminal conduct, security violations, and illegal drug use.

Learn more about the background check process for Security Clearances.

About Sierra Nevada Corporation

Sierra Nevada Corporation (SNC) is an American privately held electronic systems provider and systems integrator specializing in microsatellites, telemedicine, and commercial orbital transportation services. The company was founded in 1963 and is headquartered in Sparks, Nevada. SNC has a workforce of over 4,000 employees and operates in 33 locations in 19 U.S. states, United Kingdom, Germany, Turkey, and Australia. The company's products and services include spacecraft, aircraft, electronics, and cyber security. SNC is committed to providing innovative solutions that help customers achieve their goals.
Learn more about Sierra Nevada Corporation
Size
4,000 employees
Industry
Founded
1980

Similar Jobs

More Jobs at Sierra Nevada Corporation

More Information Technology Jobs

Find similar Systems Security Engineer III jobs: