Information Systems Security Engineer (ISSE)

advertisement
Information Systems Security Engineer (ISSE)
Clearance Required: Active Top Secret with Polygraph
Location: Fort Meade, MD
Anticipated Start Date: Immediate Pending Customer Approval
PCI has an immediate, funded opening on an existing contract supporting the Agency in Ft Meade.
Seeking a skilled security engineer who is an expert in systems security, applications security, network
security, cryptography or automated malware analysis. Seeking a security researcher who thrives on
addressing real world problems. In this role, the engineer will focus on security for components of our
systems, such as client devices, networking equipment and server infrastructure, with an emphasis on threats
from all sources. We are looking for a skilled Security Engineer to analyze software designs and
implementations from a security perspective, and identify and resolve security issues. You will include the
appropriate security analysis, defenses and countermeasures at each phase of the software development
lifecycle, to result in robust and reliable software
Tasks
•
Perform tasks focused on the development of policy for program, security test plans, conducting
security testing, the analysis of test results, and the development of risk assessment reports that document
vulnerabilities, threats, impacts, and recommended mitigations
•
Work independently with data owners and system administrators to gain an in depth understanding of
complex networks and infrastructures to ensure Certification and Accreditation (C&A) documentation
accurately depicts the environment
•
Work closely with the Designated Accrediting Authority (DAA) and Security Control Assessors to
develop secure solutions to mission driven requirements
•
Work closely with the Designated Accrediting Authority (DAA) and Security Control Assessors to
develop secure solutions to mission driven requirements
•
Implement, test and operate advanced software security techniques in compliance with technical
reference architecture
•
Perform on-going security testing as needed on a variety of HW and SW suites
•
Provide engineering designs for new software solutions to help mitigate security vulnerabilities
•
Consult team members on secure coding practices
•
Certification and Accreditation documentation such as Security Concept of Operations (SECCONOPS),
Systems Requirements Document (SRD), Security Features User’s Guide (SFUG), Systems Security Plan (SSP)
•
Provide security direction and oversight to System Engineers and Developers of current and upcoming
system architecture
Requirements:
 Shall have at least one Information Security related certification (Security+, CISSP, CISM).
 Eight (8) years of applicable information assurance/security experience
 Three (3) years of direct experience with an intelligence community or signals intelligence activity.
 Education
Shall have a Bachelor’s degree in a related field (e.g. Business Management, Computer
Science, Electrical Engineering, Information Management, Program Management etc), or two (2) years
of additional relevant experience above all experience requirements listed, in lieu of a Bachelor’s
degree.
Download