Post job

Security Engineer jobs at SAIC

- 41 jobs
  • Senior Network Security Architect

    Mantech International Corporation 4.5company rating

    Remote

    General information Requisition # R62949 Posting Date 08/27/2025 Security Clearance Required Public Trust/Suitability Remote Type Fully Remote Time Type Full time Description & Requirements Transform the future of federal services with MANTECH! Join a vibrant, energetic team committed to enhancing national security and public services through innovative tech. Since 1968, we've partnered with Federal Civilian sectors to deliver impactful solutions. Engage in exciting projects in Digital Transformation, Cybersecurity, IT, Data Analytics and more. Ignite your career and drive change. Your journey starts now-innovate and excel with MANTECH! MANTECH seeks a motivated, career and customer-oriented Senior Network Security Architect in South Burlington, VT or Camp Springs, MD. This position will be fully remote. Responsibilities include, but are not limited to: * Use Agile engineering approach to DevSecOps and solutioning with Access Identity and Directory Services to architect, engineer, and implement network security control methods in cloud, on-premise and virtual environments to support DHS directive 4300A, NIST 800-53, and industry best practices * Maintain network readiness and prepare to scale for the future through compliance with all federal requirements such as DHS 4300A, NIST 800-53, and other industry best practices. * Perform as Level 4 network / firewall escalation point for network security to effectively support security processes and procedures. Work with firewall engineers to configure and implement Next Generation Firewall and Intrusion Protection Systems. Extend into secure network solutions, Palo Alto firewall and intrusion protection devices to scale. * Continually improve on the network stability working with the performance team to establish network performance metrics for alerting and remediation automations. Architect and engineer a Network Access Control (NAC) solution. * Audit firmware versions and configuration settings for the USCIS cloud and infrastructure platforms/devices to eliminate vulnerabilities and ensure USCIS deploys and operates in accordance with vendor recommendations, industry best-practices and DHS configuration guidance. * Review existing configuration settings to identify potential security vulnerabilities and propose/implement setting or architectural changes to address these vulnerabilities. Evaluate current and future network designs to ensure that network security is incorporated as an integral consideration in all designs. * Perform securing, hardening, and rule creation for new firewalls, switches, routers, and other network equipment. This includes reviewing and re-evaluating existing configuration settings and rules to verify USCIS' security posture and eliminate unnecessary risk. Minimum Qualifications: * Ten (10) + years of experience as an Enterprise Architect across large and complex network and Microsoft AD environments * Certifications: CCIE, PCNSE * Extensive security background with Palo Alto firewall systems * A minimum of four (4) years of experience in cloud technologies such as but not limited to Azure and AWS. * Experience designing and implementing enterprise solutions that increase the availability and security of the enterprise. * Extensive experience with on premise physical infrastructure and Virtualization technologies including Hyper-V, VMWare, SAN, FCoe, NFS, SMB3 Preferred Qualifications: * Familiar with tools including: ServiceNow, GitHub, Jira, Confluence * Experience with ITIL, DevSecOps and Agile concepts * Experience supporting Government contracts Clearance Requirements: * Must be a U.S. Citizen with the ability to obtain and maintain Public Trust and DHS Security Clearance prior to starting the position. * Current DHS EOD highly preferred Physical Requirements: * Office work, typically sedentary with some movement around the office. The projected compensation range for this position is $130,800.00-$232,100.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, MANTECH invests in its employees beyond just compensation. MANTECH's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections. The projected compensation range for this position is $130,800.00-$232,100.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, MANTECH invests in its employees beyond just compensation. MANTECH's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections. MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation. If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
    $130.8k-232.1k yearly Auto-Apply 60d+ ago
  • Sr. Security Engineer - Detection & Response

    Unisys 4.6company rating

    Remote

    What success looks like in this role: Develop and Implement Custom Detections: Design, develop, and maintain high-fidelity detection rules, signatures, and analytics for a diverse array of enterprise security tools, including Security Information and Event Management (SIEM) systems, Endpoint Detection and Response (EDR) platforms, and Intrusion Detection Systems (IDS). The objective is to identify both known and emerging threats effectively. Translate complex threat intelligence, sophisticated attack methodologies (e.g., leveraging the MITRE ATT&CK Framework), and vulnerability insights into precise, actionable, and automated detection logic. Continuously tune and optimize existing detection mechanisms to significantly reduce false positives, enhance alert fidelity, and ensure a high signal-to-noise ratio, thereby minimizing alert fatigue for security analysts. Perform Tier 3 Security Investigations and Proactive Threat Hunting: Lead and conduct advanced, complex security investigations (Tier 3) escalated from lower tiers, encompassing root cause analysis, malware and indicator analysis, and recommending robust corrective measures to prevent future incidents. Proactively conduct threat hunting activities across network, endpoint, and cloud environments to identify novel or hidden threats, subtle anomalies, and security gaps that may evade existing detection controls. Collaborate closely with Incident Response (IR) teams to ensure effective communication, facilitate rapid response to detected threats, and integrate lessons learned into the development of new or refined detection capabilities. Manage and Optimize MSSP Tier 1 & Tier 2 Operations: Serve as the primary technical liaison for Managed Security Service Provider (MSSP) partners, providing expert guidance and strategic oversight for their Tier 1 and Tier 2 security monitoring and operational activities. Ensure MSSP adherence to organizational security policies, detection standards, and incident escalation procedures, thereby contributing to the overall security posture. Collaborate with MSSP teams on detection rule deployment, tuning, and validation, leveraging continuous feedback loops to enhance overall detection efficacy and reduce alert fatigue experienced by their analysts. Review MSSP-generated alerts and reports, providing constructive feedback and precise technical direction for continuous improvement in their detection and response capabilities. Security Automation and Tooling: Develop and maintain automation scripts and tools (e.g., Python, PowerShell, Bash) to streamline security detection operations, facilitate efficient data parsing, integrate disparate security tools, and enhance response capabilities. Build, design, run, and troubleshoot playbooks within a Security Orchestration, Automation, and Response (SOAR) solution to automate incident response processes and significantly improve operational efficiency. Documentation and Continuous Improvement: Maintain comprehensive and up-to-date documentation of detection logic, configurations, incident response procedures, and investigation findings for robust knowledge sharing and auditing purposes. Stay abreast of the latest security threats, vulnerabilities, attack vectors, industry trends, and emerging security technologies to proactively enhance detection measures and fortify digital boundaries. You will be successful in this role if you have: Experience: 5+ years of hands-on experience working in a Security Operations Center (SOC), Network Operations Center (NOC), Digital Forensics, or Incident Response role, demonstrating a foundational understanding of operational security challenges and the incident lifecycle. Technical Proficiency: In-depth understanding and practical experience with Security Information and Event Management (SIEM) systems (e.g., Splunk, LogRhythm, Google SecOps, Elastic) for log analysis, sophisticated rule creation, and dashboard development. Strong knowledge of Endpoint Detection and Response (EDR) and Intrusion Detection/Prevention Systems (IDS/IPS). Proficiency in scripting languages (e.g., Python, PowerShell, Bash) for automation, data manipulation, and custom tool development. Solid understanding of network security, protocols, and traffic analysis. Familiarity with threat intelligence platforms and frameworks (e.g., MITRE ATT&CK) to inform detection strategy and rule development. Analytical and Problem-Solving Skills: Exceptional analytical skills to analyze large, complex datasets, identify subtle anomalies, patterns, and indicators of malicious activity. Demonstrated ability to think critically, troubleshoot complex problems, and make sound decisions under pressure, particularly during incident investigations. Collaboration and Communication: Strong verbal and written communication skills for reporting findings, documenting procedures, and collaborating effectively with cross-functional teams and external partners. This role may require access to export-controlled commodities and technology. Therefore, to conform to U.S. export control regulations, applicant should be eligible for any required authorizations from the U.S. Government. Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers. If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at *************************** or alternatively Toll Free: ************ (Prompt 4). US job seekers can find more information about Unisys' EEO commitment here.
    $101k-140k yearly est. Auto-Apply 11d ago
  • Senior Network Security Architect

    Mantech 4.5company rating

    South Burlington, VT jobs

    **MANTECH** seeks a motivated, career and customer-oriented **Senior Network Security** **Architect** in **South Burlington, VT** or **Camp Springs, MD** . This position will be **fully remote.** **Responsibilities include, but are not limited to** : + Use Agile engineering approach to DevSecOps and solutioning with Access Identity and Directory Services to architect, engineer, and implement network security control methods in cloud, on-premise and virtual environments to support DHS directive 4300A, NIST 800-53, and industry best practices + Maintain network readiness and prepare to scale for the future through compliance with all federal requirements such as DHS 4300A, NIST 800-53, and other industry best practices. + Perform as Level 4 network / firewall escalation point for network security to effectively support security processes and procedures. Work with firewall engineers to configure and implement Next Generation Firewall and Intrusion Protection Systems. Extend into secure network solutions, Palo Alto firewall and intrusion protection devices to scale. + Continually improve on the network stability working with the performance team to establish network performance metrics for alerting and remediation automations. Architect and engineer a Network Access Control (NAC) solution. + Audit firmware versions and configuration settings for the USCIS cloud and infrastructure platforms/devices to eliminate vulnerabilities and ensure USCIS deploys and operates in accordance with vendor recommendations, industry best-practices and DHS configuration guidance. + Review existing configuration settings to identify potential security vulnerabilities and propose/implement setting or architectural changes to address these vulnerabilities. Evaluate current and future network designs to ensure that network security is incorporated as an integral consideration in all designs. + Perform securing, hardening, and rule creation for new firewalls, switches, routers, and other network equipment. This includes reviewing and re-evaluating existing configuration settings and rules to verify USCIS' security posture and eliminate unnecessary risk. **Minimum Qualifications** : + Ten (10) + years of experience as an Enterprise Architect across large and complex network and Microsoft AD environments + Certifications: CCIE, PCNSE + Extensive security background with Palo Alto firewall systems + A minimum of four (4) years of experience in cloud technologies such as but not limited to Azure and AWS. + Experience designing and implementing enterprise solutions that increase the availability and security of the enterprise. + Extensive experience with on premise physical infrastructure and Virtualization technologies including Hyper-V, VMWare, SAN, FCoe, NFS, SMB3 **Preferred Qualifications** : + Familiar with tools including: ServiceNow, GitHub, Jira, Confluence + Experience with ITIL, DevSecOps and Agile concepts + Experience supporting Government contracts **Clearance Requirements** : + Must be a U.S. Citizen with the ability to obtain and maintain Public Trust and DHS Security Clearance prior to starting the position. + Current DHS EOD highly preferred **Physical Requirements** : + Office work, typically sedentary with some movement around the office. MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation. If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
    $92k-119k yearly est. 22d ago
  • Cyber Security Engineer

    Modern Technology Solutions, Inc. 4.6company rating

    Dayton, OH jobs

    Direct and recent experience coding in C, C++, Python. Solid understanding of computer architecture, operating systems, and software development principles. Comfort working with assembly language, machine code, hexadecimal, and binary representations. Experience with reverse engineering tools such as IDA Pro, Ghidra, or GDB. Knowledge of network protocols (TCP/UDP) and basic cryptography functions. Hacker mindset with a demonstrated interest in analyzing software/firmware for weaknesses. 1-4 years of demonstrated experience in reverse engineering or related security disciplines. Experience developing user-mode applications for traditional platforms (Windows, Linux, mac OS, Android, iOS) or user/kernel-mode capabilities for non-traditional platforms (embedded/proprietary/custom firmware or operating systems). Experience analyzing and manipulating network protocols. Interest in the architecture and internals of proprietary operating systems. Participation or interest in Capture the Flag (CTF)/hacking competitions Experience with hardware reverse engineering tools and techniques. Knowledge of embedded systems and firmware analysis. Demonstrated ability to learn new technologies quickly and adapt to a fast-paced environment. Relevant certifications such as Offensive Security Certified Professional (OSCP), eLearnSecurity Junior Penetration Tester (eJPT), GIAC Reverse Engineering Malware (GREM), GIAC Certified Reverse Engineer (GCRE), or other reverse engineering, malware analysis, or security-related certifications. Bachelor's degree in Computer Science, Cyber Security, Computer Engineering, Electrical Engineering, or a related field strongly preferred. Ability to obtain and maintain a U. S. Security Clearance is required. Ability to obtain TS/SCI. Reverse Engineers use decompiling, disassembling, and de-obfuscating to gain a deeper understanding of how and what a malicious software operates. They identify, examine, and understand various forms of malicious software, such as adware, bots, rootkits, spyware, ransomware, Trojan horses, viruses, and worms. LI-BG1
    $64k-83k yearly est. Auto-Apply 10d ago
  • Cyber Security Systems Engineer

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Develop and implement system security plans, policies, and controls in accordance with DoD and NIST standards (e. g. , RMF, NIST SP 800-53). Conduct cybersecurity risk and vulnerability assessments and develop mitigation strategies. Support architecture and design reviews from a security perspective. Coordinate with cross-functional teams to ensure cybersecurity is integrated early in the systems engineering process. Assist with security test and evaluation (ST&E), including validation, verification, and accreditation efforts (e. g. , ATO/ATC). Contribute to Program Protection Plans (PPPs), Security Classification Guides (SCGs), and related security documentation. Required Bachelor's degree in Systems Engineering, Cybersecurity, Computer Science, or a related field (or equivalent experience). 5+ years of experience in cybersecurity or systems security engineering within a DoD environment. Familiarity with RMF, NIST SP 800 series, and DoDI 8510. 01. Experience supporting system accreditation packages and security documentation. Active Top Secret clearance with SCI eligability required. DoD 8570 IAT Level II or III certification (e. g. , Security+, CISSP, CASP+) required. Experience supporting classified DoD systems, weapon systems, or multi-domain platforms. Experience working closely with ISSMs/ISSEs and government security stakeholders.
    $56k-72k yearly est. Auto-Apply 10d ago
  • Systems Security Engineer

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Implement system security requirements throughout the Systems Engineering processes during weapon system lifecycle. Security Architecture Design: Design and implement security solutions to ensure the confidentiality, integrity, and availability of systems in compliance with government regulations and standards (e. g. , NIST 800-53, Risk Management Framework (RMF), DISA STIGs, and NSA Security configuration guides). Risk Assessment: Identify threats and vulnerabilities related to systems, networks, and applications, and provide recommendations to mitigate risks. Compliance Management: Ensure systems and processes align with DoD policies, federal regulations, and agency-specific security requirements. System Hardening: Perform system hardening activities, including configuring devices, removing unnecessary services, and applying patches according to DISA STIG guidelines. Incident Response: Lead efforts to respond to cybersecurity incidents by investigating, analyzing, and documenting security breaches. Monitoring and Reporting: Oversee real-time monitoring processes, analyze alerts, and prepare security reports to share with senior management or government agencies. Collaboration: Work closely with engineering, IT, and program management teams to integrate security into project lifecycles and provide guidance on best practices for safeguarding classified and sensitive information. Documentation: Develop and maintain comprehensive documentation, including system security plans (SSPs), risk matrixes, and assessment/evaluation reports. Education: Bachelor's degree in Computer Science, Computer Engineering, Electrical Engineering, Information Technology, Cybersecurity, or related field (Master's degree preferred). Experience: 5+ years of experience in systems security architecture or engineering, ideally within a government or DoD environment. Certifications: Relevant certifications such as CISSP, CEH, CISM, CompTIA Security+, or CAP. Knowledge: Deep understanding of accreditation processes, aircraft systems, embedded systems, systems engineering processes and COMSEC encryption. Technical Skills: Expertise in security, vulnerability scanning tools and avionics architectures. Must possess an active Top Secret clearance with eligibility for SCI. Experience with government contracting and DoD security program management. Familiarity with scripting, automation tools, and secure system integration techniques. Understanding of cloud security in classified environments. NSA engagement and crypto development experience. Strong analytical skills to identify cybersecurity risks and solutions. Excellent verbal and written communication skills for interfacing with internal teams and external government agencies. Ability to work in high-pressure environments and handle sensitive information securely.
    $56k-72k yearly est. Auto-Apply 10d ago
  • Systems Security Engineer

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Apply an understanding of DoD, Air Force and common engineering/scientific principles, processes and procedures to improve performance and sustainability of existing and future weapon systems. Translate user requirements into weapon system requirements which will be used to design, develop, fabricate, test and evaluate weapon systems, subsystems and equipment for eventual fielding and deployment. Perform technical/mission analyses of existing and future operational requirements, assist in developing systems concepts and perform technical trade-off assessments of designs/modifications. Develop and maintain Risk Management Framework documentation necessary to obtain Authorizations including but not limited to the System Security Plan (SSP), Architecture Analysis Report (AAR), Continuous Monitoring Plan, Security Control Traceability Matrix (SCTM), Security Assessment Report (SAR) and Risk Assessment Report (RAR). Provide support to produce or review technical documentation for acquisition programs including Cybersecurity Strategy, Test and Evaluation Master Plan (TEMP), Clinger-Cohen Act Compliance, Capabilities Development Document, Concept of Operations and more. Support system engineering and program management in conducting and reviewing milestone documentation including System Requirements Review (SRR), Preliminary Design Reviews (PDR), Critical Design Reviews (CDR) and Program Management Reviews (PMR). Perform information system security engineering tasks, ensuring that information security requirements are properly implemented throughout the processes of security architecture, design, development, configuration, and implementation. Develop, implement, and enforce information systems security policies ensuring system security requirements are addressed during all phases of the acquisition and Information System lifecycle. Review, analyze and validate system security designs within embedded avionics systems to validate security control and architecture implementations Conduct Assessment & Authorization (A&A) tasks in accordance with the Risk Management Framework (RMF) and National Institute of Standards and Technology (NIST) policy; identify deficiencies and provide recommendations of risk mitigation to program management. Employ best practices when implementing security controls, including software engineering methodologies, system/security engineering principles, secure design, secure architecture, and secure coding techniques Integrate/Develop new techniques to improve Confidentiality, Integrity, and Availability for networks/systems operating at various classification levels Assist program managers, system engineers and cyber test engineers in conducting Mission Based Cyber Risk Assessments Identify points of vulnerability, non-compliance with established cybersecurity standards and regulations, and recommend mitigation strategies Apply knowledge of cybersecurity policy, procedures, and workforce structure to implement secure networking, computing, and enclave environments Identify system and/or network designs that encompass multiple enclaves to include those with differing data protection/classification requirements REQUIRED: Education: BS degree from an accredited university including classes in Computer Science, Cybersecurity, Electrical/Electronics/Systems/Computer Engineering, or related field. Experience: 5+ years of experience in systems security architecture or engineering, ideally within a government or DoD environment. Certifications: Relevant certifications related to a Security Architect in accordance with DoD 8140 (CISSP, CISM, CCSP). Knowledge: Deep understanding of cybersecurity frameworks (NIST) and standards, RMF, DISA STIGs, and system accreditation processes. Technical Skills: Expertise with security concerns in avionics, embedded systems, Operational Technology and Supervisory Control and Data Acquisition systems. Familiarity with network security, firewalls, intrusion detection/prevention systems, secure coding practices, and vulnerability scanning tools. Must possess an active Top Secret clearance with eligibility for SCI. Experience with government contracting and DoD security program management.
    $56k-72k yearly est. Auto-Apply 10d ago
  • System Security Engineer - Senior

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Provide engineering support in requirements identification, evaluation, testing and integration, specifically with Program Protection planning and anti-tamper methodologies. Provide engineering support for technology and product acquisitions to include long-term planning, request for proposal (RFP) development, and technical oversight of ongoing projects. Develop plans to assess security features of Government Off-The-Shelf (GOTS) and Commercial Off-The Shelf (COTS) components for CPI susceptibility/vulnerability to exploitation and reverse engineering. Work with DoD Anti-Tamper Evaluation Teams to understand current designs and identify vulnerabilities to foreign and adversary exploitation. Assist efforts to improve US weapons system anti-tamper/anti-exploitation design, development, manufacturing, training, and sustainment. Provide support to Anti-Tamper courses by teaching modules to industry and Government participants, and assist with curriculum development and updates, as required. Requires a thorough understanding of the DoD systems engineering process, policy and procedures in the acquisition, manufacturing, fielding, and sustainment, modernization and disposal of new, existing and future weapons systems and capabilities, with specific experience in weapons system Program Protection planning. Experienced and motivated engineering professionals with the necessary skills to support the ATEA FPO by accomplishing highly technical tasks in a classified work environment. Apply knowledge of and expertise in DoD, AF and common engineering and scientific principles, criteria, and procedures to improve planned and existing weapon system manufacture, operations, re-manufacture and de-militarization operations and oversight. Highly desired that personnel in this position have expertise in understanding integrated circuitry, industry standard processors, and memory chips and have familiarity with methodologies for reverse engineering electronic systems and integrated circuitry. Assist in translating user requirements into system requirements, which will be used to design, develop, fabricate, test and evaluate systems, subsystems and equipment for deployment. Apply engineering principles and technical understanding of subject matter material into initial development, modification/updates/revisions, and maintenance of technical Anti-Tamper Security Classification Guides (SCG) using technical writing skills. Assist with the development of requirements and technology needs into action plans and policies necessary to improve and retain world class manufacturing, operations, re-manufacturing and de-militarization of weapon system capabilities. Perform technical/mission analyses of existing and potential operational requirements, assist in developing system concepts, and perform technological/trade-off study assessments of proposed designs. Support and conduct engineering performance, effectiveness, cost effectiveness, cost performance, lifecycle cost, producibility, maintainability, supportability, reliability, technical and schedule risk assessment and scheduling trade-off studies. Support and conduct systems analyses to include, but not limited to, system design/design feasibility and state-of-the-art assessment. Provide systems/subsystems integration support for the acquisition, development and verification of systems and equipment. Minimum of 10 years of relevant DoD work experience (years of experience may be waiverable with customer approval). No less than three (3) years' experience in an SAP and/or SCI environment within the last five (5) years (SAP/SCI experience may be waiverable with customer approval). BS and MS degree in Electrical, Radar, Software, Microelectronics, or Computer Engineering (Master's degree may be waiverable with customer approval). Experience with Program Protection planning and implementation in weapon system programs. Evaluating current fielded weapons systems to determine anti-tamper and reverse engineering susceptibility based on vendor design. Identifying susceptibility of critical protected information from exploitation and reverse engineering. Identifying methodologies to improve resistance of current and future electronic circuits to reverse engineering and exploitation. Supporting development of industry and DoD standards for future weapons systems to improve resistance to reverse engineering exploitation. Working with industry to assess tamper resistance of current weapons systems within the acquisition development cycle. Working within the electronic exploitation lab environment, utilizing or having familiarity with state-of-the-art exploitation equipment and instrumentation to evaluate current and new processors, memory units, and electronic circuits to exploit weaknesses, identify improvements to design, and develop new standards to deter technological exploitation. Possess an active Top Secret security clearance, based upon a Single Scope Background (SSBI/SBPR). Must be eligible for Sensitive Compartmented Information (SCI) and Special Access Programs (SAP) access.
    $83k-110k yearly est. Auto-Apply 10d ago
  • System Security Engineer - Senior

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Serve as technical expert to the Cybersecurity Assessment Program providing technical direction, interpretation and alternatives to complex problems. Develop procedures for implementation and validation to integrate effective security designs into system architectures. Perform information system security engineering tasks, ensuring that information security requirements are properly implemented throughout the processes of security architecture, design, development, configuration, and implementation. Develop, implement, and enforce information systems security policies ensuring system security requirements are addressed during all phases of the acquisition and Information System lifecycle Review, analyze and validate system security designs within embedded avionics systems to validate security control and architecture implementations Conduct certification and testing in accordance with the Risk Management Framework (RMF) and National Institute of Standards and Technology (NIST) policy; identify deficiencies and provide recommendations of risk mitigation to customer. Employ best practices when implementing security controls, including software engineering methodologies, system/security engineering principles, secure design, secure architecture, and secure coding techniques Integrate/Develop new techniques to improve Confidentiality, Integrity, and Availability for networks/systems operating at various classification levels Assist program managers, system engineers and cyber test engineers in conducting Mission Based Cyber Risk Assessments Participate in program protection analyses for program and system information, CPI, and critical components. Coordinate with the Anti- Tamper Executive Agent and test team to define AT requirements are implemented into system designs* Identify points of vulnerability, non- compliance with established cybersecurity standards and regulations, and recommend mitigation strategies Identify points of vulnerability, non-compliance with established cybersecurity standards and regulations, and recommend mitigation strategies Apply knowledge of cybersecurity policy, procedures, and workforce structure to implement secure networking, computing, and enclave environments Perform system or network designs that encompass multiple enclaves to include those with differing data protection/classification requirements Work closely with customers and vendors to provide expert level consultation and technical services on all aspects of System Security Engineering. Respond to technical issues in a professional and timely manner. Minimum of Eight (8) years of experience working in a cybersecurity related field Prior performance in roles such as ISSO, ISSM, ISSE/SSE or SCA Experience conducting security control assessments and/or implementation using NIST SP 800-53, NIST 800-171, ICD 503 and JSIG Must have the ability to work in a dynamic environment and effectively interact with numerous DOD, military/civilian personnel and industry partners Demonstrated experience in Systems Engineering writing systems level requirements, architectures, and designs Knowledge and experience working in the Systems Engineering "V" Lifecycle framework Familiar with the Digital Engineering Environment including using Model Based Systems Engineering and Model Based Cyber Risk Assessment tools Strong analytical and problem-solving skills Ability to take the initiative to complete tasks with minimal supervision Experience in Secure Software Development Lifecycle Experience working on DISA Security Technical Implementation Guide (STIG) implementation across multiple operating systems and applications Must be a team player and be able to work within all levels of a project team Excellent time management, scheduling, and organizational skills Ability to work well independently as well as follow detailed instructions for completing tasks Demonstrated ability to complete tasks, drive projects to closure, assimilate and correlate project information in a fast-paced environment Demonstrated ability to shift from one project to another in a dynamic, agile work environment Excellent oral and written communication skills and ability to clearly translate client technical needs into technical specifications Ability to communicate technical approaches and details within small project teams, including team interactions and presentations Familiarity with security procedures while working in a SCIF/SAPF environment Experience with aircraft avionics, system engineering or aircraft maintenance Prior work and experience working with aircraft, weapons or command & control systems Experience with various Security Content Automation Protocol (SCAP) tools such as Assured Compliance Assessment Solution (ACAS) (Nessus) and SCAP Compliance Checker (SCC) Experience using Security Incident and Event Management (SIEM) programs Experience with performing Mission Based Cyber Risk Assessments including the MRAP-C, Cyber Table Top or Blue Book BS degree from an accredited university including classes in Computer Science, Computer/Electronics/Electronics Engineering, Cybersecurity or related fields Must meet position and certification requirements outlined in the DoDD 8570. 01-M for Information Assurance Security Engineer (IASE) level 2 Possess an active Top Secret security clearance, based upon a Single Scope Background (SSBI/SBPR). Must be eligible for Sensitive Compartmented Information (SCI) and Special Access Programs (SAP) access.
    $83k-110k yearly est. Auto-Apply 10d ago
  • Cyber Security Engineer - Information Systems Security Engineer (ISSE) - Senior Principal

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Serve as the Information Systems Security Officer (ISSE) providing technical input, recommendations, and assistance with the implementation of both higher and granular-level cyber security approaches, methods and solutions that incorporate and maintain compliance to requirements resulting from laws, regulations, and other pertinent guidance. Participate in acquisition meetings (PMR, PDR, CDR, etc. ), concept of operation (CONOP) working groups, change boards, technical exchange meetings and other similar activities. Design and develop security requirements that drive down risk while maintaining operational capability. Work between architecture-level and implementation-level engineering meetings to maintain a system-wide view of security functions and apply risk mitigation strategies at the appropriate level. Guide and verify defense contractors' work against program requirements and goals. This includes participating in technical discussions, trade studies and working groups, and conducting research on industry best practices for potential implementation. Interface with program managers to explain security requirements, risks and mitigations relative to their priorities of cost and schedule to ensure an acceptable risk tolerance. Evaluate newly identified threats and vulnerabilities to customer information systems to ascertain the need for additional safeguards and develop timely implementation strategies to reduce risk. Enforce the design and implementation of trusted relationships among external systems and architectures. Assess proposed changes to customer information systems, their operation environment, and mission needs for impacts to cybersecurity architectures and continued compliance with cybersecurity requirements. Provide inputs to development teams responsible for designing and developing organizational information systems and upgrading legacy systems. Employ best practices when implementing security requirements for information systems including software engineering methodologies, system/security engineering principles, secure design, secure architecture, and secure coding techniques. Keep abreast of current and new security technologies and threats to better support the customer in maintaining cybersecurity resilience. Identify integration issues related to the implementation of new systems within the existing infrastructure; recommend mitigation and/or resolution options as appropriate. Assist in the design of systems and networks that encompass multiple enclaves to include those with differing data protection/classification requirements. 18+ years' technical experience in cybersecurity, information technology with focus on cybersecurity implementations. Demonstrated ability to understand cybersecurity needs of systems at varied stages of the SDLC. Firm understanding of the DoD 8500. 1-M, DoDM 5205. 07, Volume 1, Joint SAP Implementation Guide (JSIG), National Institute of Standards and Technology (NIST) Special Publication 800-53, Intelligence Community Directive (ICD) Number 503. Excellent oral and written communication skills and ability to clearly translate client technical needs into technical specifications. Demonstrated ability to complete tasks, drive projects to closure, assimilate and correlate project information in a fast-paced environment. Demonstrated ability to assess and articulate risk, including to non-technical audiences. Experience working on DISA Security Technical Implementation Guide (STIG) implementation. Experience working on-site in a government client environment. Familiarity with security procedures while working in a SCIF/SAPF environment. Familiarity and experience with NSA requirements for COMSEC. Experience with DoD Acquisition Lifecycle experience and/or Rapid Acquisition / Rapid Delivery experience Capable of applying system security engineering expertise to various client programs/processes (e. g. , system security design process, engineering life cycle, information domain and cross domain solutions, identification/authentication/authorization of commercial off-the-shelf and government off-the-shelf software employment, system integration, risk management, intrusion detection, contingency planning, incident handling, configuration control, change management, continuous monitoring, auditing, assessment and authorization, confidentiality, integrity, and availability. Bachelor's degree in engineering, computer science, cybersecurity, networking, or programming. Master's degree in engineering, computer science, cybersecurity, networking, or programming, (Highly Desired). Certified Information Systems Security Professional (CISSP or (CISSP-ISSEP/CISSP-ISSAP) Certified Cloud Security Professional (CCSP). AWS Architect or other similar cloud technology security certification Security Clearance Level Required: Must possess an active Top Secret security clearance, current within five (5) years, based upon a T5 or T5R investigation (formerly known as Single Scope Background Investigation (SSBI) or SSBI Periodic Review (SBPR). Please Note: U. S. Citizenship is required. LI-DB1
    $83k-110k yearly est. Auto-Apply 10d ago
  • Information System Security Officer

    Caci International Inc. 4.4company rating

    Dayton, OH jobs

    Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: Secret Employee Type: Regular Percentage of Travel Required: None Type of Travel: None * * * The Opportunity: CACI is seeking a skilled and experienced Information Systems Security Officer (ISSO) to join our team at Wright Patterson Air Force Base in Ohio. This critical role will be responsible for implementing and maintaining robust cybersecurity measures to protect Air Force information systems. The ideal candidate will have a strong background in DoD cybersecurity protocols, risk management, and cloud-based security tools. As an ISSO, you will play a vital role in ensuring the integrity, confidentiality, and availability of sensitive information while supporting the mission-critical operations onsite at Wright Patterson AFB. If you are passionate about cybersecurity and ready to contribute to national defense in a dynamic environment, we encourage you to apply for this challenging and rewarding position. Responsibilities: * Create and implement Air Force security policies, procedures, and controls to protect information systems. * Conduct risk assessments and develop risk management plans to identify and mitigate vulnerabilities. * Configure cloud-based security tools to monitor networks, systems, and user activity for security breaches, analyze threats, and review security and audit logs. * Develop and perform continuous monitoring techniques and procedures. * Review and evaluate STIG and static code analysis scans for compliance and vulnerabilities. * Provide security guidance to technical and software development teams throughout the software development lifecycle (SDLC). * Ensure software, hardware, and user access controls comply with security configuration guidelines. * Report incidents or vulnerabilities and initiate counter measures and actions to restore cybersecurity posture. Qualifications: Required: * Bachelor's degree in a related field or 6 years' experience. * Knowledgeable of DoDI 8500.01 (Cyber Security), 8510.01 (Risk Management Framework for Air Force Information Technology), AFI 17-101(Risk Management Framework for Air Force Information Technology), and NIST SP 800-53 Security and Privacy Controls. * Active DoD 8140 IAM Level II certification (CASP+, CCNP Security, CISA, CISSP (or Associate), CCSP, GCED, or GCIH). * Strong knowledge of IT security principles, network monitoring, operating systems, and security tools. * Strong customer service, interpersonal, and communication skills (written and verbal). * Good organizational, time management, analytical, and problem-solving skills. * Must be able to work as part of a team and individually, meeting tight deadlines. * Candidates must be U.S. Citizens and have the ability to obtain a secret clearance investigation in a timely manner. Desired: * Knowledgeable with Enterprise Mission Assurance Support Service (eMASS) and associated artifacts and Plan of Actions & Milestone (POA&M) requirements. * Knowledgeable about ZeroTrust tools and techniques including Identity, Credential, and Access Management (ICAM) efforts. * Ability to review and analyze for consistency, congruency, and in-depth due diligence. * Experience with Cloud environments and Cloud security tools. * Experience in software development environments including DevSecOps and tools such as the Atlassian suite (Jira, Confluence, etc). * Experience with security control evidence development. * Familiarity with Configuration Management and Configuration Control Boards. * ________________________________________________________________________________________ What You Can Expect: A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation. An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy. Your potential is limitless. So is ours. Learn more about CACI here. ________________________________________________________________________________________ Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here. The proposed salary range for this position is: $75,200-$158,100 CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
    $75.2k-158.1k yearly 4d ago
  • Information System Security Officer

    Caci International 4.4company rating

    Dayton, OH jobs

    Job Category: Information Technology Time Type: Full time Minimum Clearance Required to Start: Secret Employee Type: Regular Percentage of Travel Required: None Type of Travel: None * * * **The Opportunity:** CACI is seeking a skilled and experienced **Information Systems Security Officer (ISSO)** to join our team at Wright Patterson Air Force Base in Ohio. This critical role will be responsible for implementing and maintaining robust cybersecurity measures to protect Air Force information systems. The ideal candidate will have a strong background in DoD cybersecurity protocols, risk management, and cloud-based security tools. As an ISSO, you will play a vital role in ensuring the integrity, confidentiality, and availability of sensitive information while supporting the mission-critical operations onsite at Wright Patterson AFB. If you are passionate about cybersecurity and ready to contribute to national defense in a dynamic environment, we encourage you to apply for this challenging and rewarding position. **Responsibilities:** + Create and implement Air Force security policies, procedures, and controls to protect information systems. + Conduct risk assessments and develop risk management plans to identify and mitigate vulnerabilities. + Configure cloud-based security tools to monitor networks, systems, and user activity for security breaches, analyze threats, and review security and audit logs. + Develop and perform continuous monitoring techniques and procedures. + Review and evaluate STIG and static code analysis scans for compliance and vulnerabilities. + Provide security guidance to technical and software development teams throughout the software development lifecycle (SDLC). + Ensure software, hardware, and user access controls comply with security configuration guidelines. + Report incidents or vulnerabilities and initiate counter measures and actions to restore cybersecurity posture. **Qualifications:** _Required:_ + Bachelor's degree in a related field or 6 years' experience. + Knowledgeable of DoDI 8500.01 (Cyber Security), 8510.01 (Risk Management Framework for Air Force Information Technology), AFI 17-101(Risk Management Framework for Air Force Information Technology), and NIST SP 800-53 Security and Privacy Controls. + Active DoD 8140 IAM Level II certification (CASP+, CCNP Security, CISA, CISSP (or Associate), CCSP, GCED, or GCIH). + Strong knowledge of IT security principles, network monitoring, operating systems, and security tools. + Strong customer service, interpersonal, and communication skills (written and verbal). + Good organizational, time management, analytical, and problem-solving skills. + Must be able to work as part of a team and individually, meeting tight deadlines. + Candidates must be U.S. Citizens and have the ability to obtain a secret clearance investigation in a timely manner. _Desired:_ + Knowledgeable with Enterprise Mission Assurance Support Service (eMASS) and associated artifacts and Plan of Actions & Milestone (POA&M) requirements. + Knowledgeable about ZeroTrust tools and techniques including Identity, Credential, and Access Management (ICAM) efforts. + Ability to review and analyze for consistency, congruency, and in-depth due diligence. + Experience with Cloud environments and Cloud security tools. + Experience in software development environments including DevSecOps and tools such as the Atlassian suite (Jira, Confluence, etc). + Experience with security control evidence development. + Familiarity with Configuration Management and Configuration Control Boards. - **________________________________________________________________________________________** **What You Can Expect:** **A culture of integrity.** At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation. **An environment of trust.** CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. **A focus on continuous growth.** Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy. **Your potential is limitless.** So is ours. Learn more about CACI here. (************************************************ **________________________________________________________________________________________** **Pay Range** : There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here (***************************************************** . The proposed salary range for this position is: $75,200-$158,100 _CACI is_ _an Equal Opportunity Employer._ _All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any_ _other protected characteristic._
    $75.2k-158.1k yearly 3d ago
  • Information System Security Officer

    Caci International 4.4company rating

    Dayton, OH jobs

    Information System Security OfficerJob Category: Information TechnologyTime Type: Full time Minimum Clearance Required to Start: SecretEmployee Type: RegularPercentage of Travel Required: NoneType of Travel: None* * * The Opportunity: CACI is seeking a skilled and experienced Information Systems Security Officer (ISSO) to join our team at Wright Patterson Air Force Base in Ohio. This critical role will be responsible for implementing and maintaining robust cybersecurity measures to protect Air Force information systems. The ideal candidate will have a strong background in DoD cybersecurity protocols, risk management, and cloud-based security tools. As an ISSO, you will play a vital role in ensuring the integrity, confidentiality, and availability of sensitive information while supporting the mission-critical operations onsite at Wright Patterson AFB. If you are passionate about cybersecurity and ready to contribute to national defense in a dynamic environment, we encourage you to apply for this challenging and rewarding position. Responsibilities: Create and implement Air Force security policies, procedures, and controls to protect information systems. Conduct risk assessments and develop risk management plans to identify and mitigate vulnerabilities. Configure cloud-based security tools to monitor networks, systems, and user activity for security breaches, analyze threats, and review security and audit logs. Develop and perform continuous monitoring techniques and procedures. Review and evaluate STIG and static code analysis scans for compliance and vulnerabilities. Provide security guidance to technical and software development teams throughout the software development lifecycle (SDLC). Ensure software, hardware, and user access controls comply with security configuration guidelines. Report incidents or vulnerabilities and initiate counter measures and actions to restore cybersecurity posture. Qualifications: Required: Bachelor's degree in a related field or 6 years' experience. Knowledgeable of DoDI 8500.01 (Cyber Security), 8510.01 (Risk Management Framework for Air Force Information Technology), AFI 17-101(Risk Management Framework for Air Force Information Technology), and NIST SP 800-53 Security and Privacy Controls. Active DoD 8140 IAM Level II certification (CASP+, CCNP Security, CISA, CISSP (or Associate), CCSP, GCED, or GCIH). Strong knowledge of IT security principles, network monitoring, operating systems, and security tools. Strong customer service, interpersonal, and communication skills (written and verbal). Good organizational, time management, analytical, and problem-solving skills. Must be able to work as part of a team and individually, meeting tight deadlines. Candidates must be U.S. Citizens and have the ability to obtain a secret clearance investigation in a timely manner. Desired: Knowledgeable with Enterprise Mission Assurance Support Service (eMASS) and associated artifacts and Plan of Actions & Milestone (POA&M) requirements. Knowledgeable about ZeroTrust tools and techniques including Identity, Credential, and Access Management (ICAM) efforts. Ability to review and analyze for consistency, congruency, and in-depth due diligence. Experience with Cloud environments and Cloud security tools. Experience in software development environments including DevSecOps and tools such as the Atlassian suite (Jira, Confluence, etc). Experience with security control evidence development. Familiarity with Configuration Management and Configuration Control Boards. - ________________________________________________________________________________________ What You Can Expect: A culture of integrity. At CACI, we place character and innovation at the center of everything we do. As a valued team member, you'll be part of a high-performing group dedicated to our customer's missions and driven by a higher purpose - to ensure the safety of our nation. An environment of trust. CACI values the unique contributions that every employee brings to our company and our customers - every day. You'll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality. A focus on continuous growth. Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground - in your career and in our legacy. Your potential is limitless. So is ours. Learn more about CACI here. ________________________________________________________________________________________ Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here. The proposed salary range for this position is: $75,200-$158,100 CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
    $75.2k-158.1k yearly Auto-Apply 5d ago
  • Senior Cyber Security Engineer/Information Systems Security Manager (ISSM)

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Participate in acquisition meetings (PMR, PDR, CDR, etc. ), concept of operation (CONOP) working groups, change boards, technical exchange meetings and other similar activities. Work between architecture-level and implementation-level engineering meetings to maintain a system-wide view of security functions and apply risk mitigation strategies at the appropriate level. Advise customer on Risk Management Framework (RMF) assessment and authorization issues Develop and implement a security assessment plan Perform risk assessments and make recommendations to DoD agency customers Advise government program managers on security testing methodologies and processes Evaluate authorization documentation and provide written recommendations for authorization to government PM's Develop and maintain a formal Information Systems Security Program Ensure that all IAOs, network administrators, and other cyber security personnel receive the necessary technical and security training to carry out their duties Develop, review, endorse, and recommend action by the AO or DAO of system assessment documentation Ensure approved procedures are in place for clearing, sanitizing, and destroying various types of hardware and media Develop and execute security assessment plans that include verification that the features and assurances required for each protection level function Develop policies and procedures for responding to security incidents, to include investigating and reporting security violations and incidents Ensure proper protection or corrective measures have been taken when an incident or vulnerability has been discovered within a system Ensure that data ownership and responsibilities are established for each authorization boundary, to include accountability, access rights, and special handling requirements Ensure development and implementation of an information security education, training, and awareness program, to include attending, monitoring, and presenting local cyber security Evaluate threats and vulnerabilities to ascertain whether additional safeguards are needed Assess changes in the system, its environment, and operational needs that could affect the authorization Ensure that authorization is accomplished a valid Authorization determination has been given for all authorization boundaries under your purview 12+ years' technical experience in cybersecurity, information technology with focus on cybersecurity implementations. Firm understanding of the DoD 8500. 1-M, DoDM 5205. 07, Volume 1, Joint SAP Implementation Guide (JSIG), National Institute of Standards and Technology (NIST) Special Publication 800-53, Intelligence Community Directive (ICD) Number 503. Experience with EMASS, XACTA or equivalent RMF tools. Bachelor's degree in engineering, computer science, cybersecurity, networking, or programming. Must meet position and certification requirements outlined in DoD Directive 8140 for Information Assurance Manager Level II Certified Information Systems Security Professional (CISSP or (CISSP-ISSEP/CISSP-ISSAP) Active Top-Secret clearance with SCI and SAP eligibility LI-DB1
    $80k-103k yearly est. Auto-Apply 10d ago
  • Information Systems Security Manager (ISSM)

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Evaluate risk assessments and provide recommendations for system, network, and application design, implementation, and operation of enterprise-wide systems Evaluate vulnerability assessments of enterprise-wide or complex systems and networks to identify deviations from acceptable configurations or policies Support certification and accreditation through the coordinating documentation Evaluate the establishment of program control processes to ensure risk mitigation Evaluate implementation of required policies, procedures, and configurations Apply project management principles and methods to the leadership of security tasks or projects Coordinate communications regarding policies, procedures, and best practices for vulnerability and risk assessments Senior: Bachelor's Degree or higher Or an equivalent combination of education and experience IAM level 2- CISSP, CASP CE+, CGRC, or CISM Active Top SECRET clearance with SCI Eligibility. U. S. Citizenship is required for this position. LI-MS1 Dragon Buckeye
    $80k-103k yearly est. Auto-Apply 10d ago
  • Information Systems Security Officer

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Security Policy Implementation: Assist Information System Security Managers (ISSMs) in the development, implementation, and enforcement of security policies, standards, and procedures to ensure the protection of information systems and data. Configuration Management: Ensure that all information systems are configured securely according to DoD & organizational policies, industry's best practices, and security baselines. Risk Management: Conduct risk assessments to identify potential security threats and vulnerabilities. Develop and implement mitigation strategies to reduce risk and ensure business continuity. Assess the impact of changes in the IT environment and update the risk management framework accordingly. Security Compliance: Ensure that information systems comply with relevant government and industry standards, such as NIST, and DoD regulations. Demonstrate familiarity with RMF & JSIG processes for assessments and authorization efforts to prepare and maintain documentation for ATO compliance activities. Continuous Monitoring: Implement and manage continuous monitoring processes to maintain compliance with ATO requirements. Utilize Security Information and Event Management (SIEM) tools (e. g. , Greylog) to monitor system activities, analyze logs, and identify & report suspicious behavior & anomalous findings. Security Audits: Conduct regular security audits and assessments to evaluate the effectiveness of security measures and identify areas for improvement. Develop and implement remediation plans to address identified vulnerabilities. Collaboration: Work closely with other IT and security professionals, including system administrators, network engineers, and security analysts, to ensure a coordinated approach to cybersecurity. Liaise with external stakeholders & partnering agencies as needed. Documentation: Maintain comprehensive documentation of security policies, procedures, system configurations, and security incidents. Prepare reports for management on security status, compliance efforts, and incident response activities. Security Enhancements: Research, evaluate, and recommend security enhancements to improve the overall security posture of the organization. Stay updated with the latest security trends, technologies, and threats. Minimum of 3 years of experience in a similar ISSO or cybersecurity role. Proficiency in using security tools and technologies, such as VLANs, SIEMs, Static Application Security Testing (SAST) tools, network monitoring tools, and endpoint protection platforms (EPP). In-depth knowledge of network security, application security, and endpoint security principles. Strong understanding of operating systems (Windows, Linux, etc. ) and their security configurations. Hands-on experience with Greylog or other similar SIEM applications for security monitoring and log analysis. Experience with security compliance and regulatory requirements, including NIST USAF, and DoD regulations. Strong analytical and problem-solving abilities, with the capability to analyze complex security issues and develop practical solutions. Excellent written and verbal communication skills, with the ability to effectively communicate technical information to both technical and non-technical stakeholders. Ability to work independently and collaboratively in small team environments. Must possess a Top Secret Clearance with SCI eligibility. Must hold a minimum IAV Level 1 compliant certification, such as Security+ or an applicable DoD 8140 certification (e. g. , GSEC, CISSP Associate). Must be able to lift up to 50lbs. Experience with XACTA. Experience with eMASS. Experience supporting various guest networks such as CV2, AF7, JWICS. Experience with AF1067s and ITNRs. Associates degree and 2 additional years of relevant experience Bachelors degree (Preferred)
    $58k-76k yearly est. Auto-Apply 10d ago
  • Information Systems Security Engineer (ISSE)

    Modern Technology Solutions, Inc. 4.6company rating

    Wright-Patterson Air Force Base, OH jobs

    Develop and implement security architectures and designs for both new and existing systems, ensuring alignment with industry best practices, adherence to relevant regulatory requirements, and compliance with established organizational security policies. Conduct security risk assessments and vulnerability analyses to proactively identify potential weaknesses and vulnerabilities within systems, and develop and recommend effective mitigation strategies to address these identified risks. Evaluate and carefully select appropriate security technologies and solutions to effectively address specific and evolving security needs; create and maintain comprehensive security documentation, including detailed system security plans (SSPs), thorough security control assessments (SCAs), and comprehensive security test and evaluation (ST&E) reports. Configure and maintain a wide range of critical security tools and technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), security information and event management (SIEM) systems, advanced endpoint detection and response (EDR) solutions, and vulnerability scanners, ensuring optimal performance and effectiveness. Implement and rigorously enforce security policies and procedures across all systems and networks to ensure consistent security posture; collaborate closely with IT teams to seamlessly integrate security controls into capability development systems, experiments, and prototypes, encompassing requirements gathering, design, testing, and deployment; and automate security tasks and processes to improve overall efficiency and significantly reduce the risk of human error. Continuously monitor security logs and alerts to proactively identify potential security incidents and breaches, enabling swift and effective response actions. Thoroughly investigate security incidents and breaches to determine root causes and scope of impact, and develop and implement comprehensive and effective remediation plans to address the identified issues. Actively participate in incident response activities, including containment, eradication, and recovery efforts, to minimize the impact of security incidents; and develop and maintain robust incident response plans and procedures to ensure coordinated and effective responses. Ensure that all systems and applications strictly comply with relevant security standards and regulations, such as NIST, ISO 27001, HIPAA, PCI DSS, and GDPR, maintaining a strong security posture and mitigating compliance risks. Develop and maintain engaging security awareness training programs for employees to promote a security-conscious culture; collaborate closely with IT teams, developers, and other stakeholders to seamlessly integrate security into all aspects of the organization's operations; effectively communicate security risks and issues to management and other stakeholders in a clear and concise manner; provide expert security guidance and support to other IT staff; actively participate in security meetings and relevant industry conferences; and mentor junior security staff to foster their professional development. 8+ years experience in information security engineering or a related role Strong understanding of security principles, technologies, and best practices. Experience with security tools and technologies, such as firewalls, IDS/IPS, SIEM, EDR, and vulnerability scanners. Knowledge of network security protocols and technologies, such as TCP/IP, DNS, and VPNs. Experience with cloud security concepts and technologies (e. g. , AWS, Azure, GCP). Familiarity with scripting languages (e. g. , Python, PowerShell) for automation. Experience with operating systems (e. g. , Windows, Linux) and virtualization technologies. Master's degree in Computer Science, Information Systems, Cybersecurity, or a related field. 8 additional years of relevant experience may be substituted for master's degree. Preferred Certifications Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Certified Ethical Hacker (CEH) Security+ Global Information Assurance Certification (GIAC) Experience with penetration testing and vulnerability assessment. Experience with DevSecOps practices. Experience with security automation and orchestration tools. Ability to establish priorities, work independently, successfully execute multiple projects, and proceed with objectives with minimal supervision. Must possess an active DoD TS/SCI with in-scope SSBI and SAP eligibility. Please note: U. S. Citizenship is required. LI-MM1
    $63k-83k yearly est. Auto-Apply 10d ago
  • Network Administration Engineer

    Mantech International Corporation 4.5company rating

    Maryland jobs

    General information Requisition # R63524 Posting Date 10/06/2025 Security Clearance Required Public Trust/Suitability Remote Type Fully Remote Time Type Full time Description & Requirements Transform the future of federal services with MANTECH! Join a vibrant, energetic team committed to enhancing national security and public services through innovative tech. Since 1968, we've partnered with Federal Civilian sectors to deliver impactful solutions. Engage in exciting projects in Digital Transformation, Cybersecurity, IT, Data Analytics and more. Ignite your career and drive change. Your journey starts now-innovate and excel with MANTECH! MANTECH seeks a motivated, career and customer-oriented Network Administration Engineer in South Burlington, VT or Camp Springs, MD. This position will be fully remote. Responsibilities include but are not limited to: * Support network automation processes and procedures for configuration, management, testing, deployment, and operational support for virtual and physical devices with various scripting methods. Works with an experienced team of network engineers in performing vulnerability and fault analysis on enterprise perimeter devices, and developing and implementing system remediation and recovery plans * Use Maestro collaboration tools such as JIRA, Confluence to manage and document daily work efforts within an Agile methodology * Build network configurations and connections, monitors and maintains network performance. Maintains worldwide networking environment by updating system configuration and directing system installation. * Work autonomously on assigned tasks as well as collaboratively on larger projects across teams. * Defines, documents, and enforces system standards. Troubleshoot network disruptions, outages and security incidents. Install, configure and support network / firewall infrastructure within the enterprise * Configure firewall rules (source, destination, port, protocol) as well as Layer7 based rules. Creation / maintain firewall object library and application definitions. Network hardware configuration / performance tuning * Utilize ServiceNow ticket and incident management system and incorporate automations with other management systems. Function as member of team overseeing SNOW ticket queue to resolve escalation tickets from operations support tier. Minimum Qualifications: * 5 + years of enterprise network experience. * Strong documentation skills using MS Office applications. * Professional track record of enterprise network engineering LAN, WAN, WLAN, SDWAN. * Experience with IPAM management (preferably Infoblox) and firewall configuration auditing / cleanup (preferably Palo Alto, Panorama). * Strong skills in MS Office suite especially Word, Excel, Visio in the management and documentation of network design and administration. * Experience with cloud AWS/Azure as well as on-premise virtualization platforms (VMWare: ESXi, NSX and Hyper-V). Preferred Qualifications: * Bachelor's degree. * CCNP, CCNA, PCNSA, PCNSE. * Experience administration of Infoblox. * Experience administering Palo Alto firewalls. * Experience supporting government contracts. Clearance Requirements: * Must be a U.S. Citizen and be able to obtain and maintain a DHS EOD Suitability prior to starting this position. Physical Requirements: * Office work, typically sedentary with some movement around the office. * Ability to travel to support network troubleshooting or installs (rare). The projected compensation range for this position is $102,200.00-$169,500.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, MANTECH invests in its employees beyond just compensation. MANTECH's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections. The projected compensation range for this position is $102,200.00-$169,500.00. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, MANTECH invests in its employees beyond just compensation. MANTECH's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, short-term and long-term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections. MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation. If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
    $102.2k-169.5k yearly Auto-Apply 15d ago
  • Network Administration Engineer

    Mantech 4.5company rating

    South Burlington, VT jobs

    **MANTECH** seeks a motivated, career and customer-oriented **Network Administration Engineer** in **South Burlington, VT or Camp Springs, MD.** This position will be **fully remote.** **Responsibilities include but are not limited to:** + Support network automation processes and procedures for configuration, management, testing, deployment, and operational support for virtual and physical devices with various scripting methods. Works with an experienced team of network engineers in performing vulnerability and fault analysis on enterprise perimeter devices, and developing and implementing system remediation and recovery plans + Use Maestro collaboration tools such as JIRA, Confluence to manage and document daily work efforts within an Agile methodology + Build network configurations and connections, monitors and maintains network performance. Maintains worldwide networking environment by updating system configuration and directing system installation. + Work autonomously on assigned tasks as well as collaboratively on larger projects across teams. + Defines, documents, and enforces system standards. Troubleshoot network disruptions, outages and security incidents. Install, configure and support network / firewall infrastructure within the enterprise + Configure firewall rules (source, destination, port, protocol) as well as Layer7 based rules. Creation / maintain firewall object library and application definitions. Network hardware configuration / performance tuning + Utilize ServiceNow ticket and incident management system and incorporate automations with other management systems. Function as member of team overseeing SNOW ticket queue to resolve escalation tickets from operations support tier. **Minimum Qualifications:** + 5 + years of enterprise network experience. + Strong documentation skills using MS Office applications. + Professional track record of enterprise network engineering LAN, WAN, WLAN, SDWAN. + Experience with IPAM management (preferably Infoblox) and firewall configuration auditing / cleanup (preferably Palo Alto, Panorama). + Strong skills in MS Office suite especially Word, Excel, Visio in the management and documentation of network design and administration. + Experience with cloud AWS/Azure as well as on-premise virtualization platforms (VMWare: ESXi, NSX and Hyper-V). **Preferred Qualifications:** + Bachelor's degree. + CCNP, CCNA, PCNSA, PCNSE. + Experience administration of Infoblox. + Experience administering Palo Alto firewalls. + Experience supporting government contracts. **Clearance Requirements:** + Must be a U.S. Citizen and be able to obtain and maintain a DHS EOD Suitability prior to starting this position. **Physical Requirements:** + Office work, typically sedentary with some movement around the office. + Ability to travel to support network troubleshooting or installs (rare). MANTECH International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation. If you need a reasonable accommodation to apply for a position with MANTECH, please email us at ******************* and provide your name and contact information.
    $68k-90k yearly est. 22d ago
  • Application Delivery Network Engineer (A10, load balancing and ADC technologies) - Remote worker opening

    Bae Systems 4.7company rating

    Fort Walton Beach, FL jobs

    BAE Systems is seeking an Application Delivery Engineer who would provide support our A10 load balancing environment as well as initial Oracle Database troubleshooting. The position involves working on an off-shift schedule, with the majority of the work being conducted autonomously in an unsupervised environment. The ideal candidate should possess a Bachelor s degree in IT or related and have a minimum of 4 of experience with a background in application load balancing, TCP/IP, and TLS protocol, with the ability to troubleshoot issues and collaborate with cross-functional teams. The candidate should be a self-starter with a high degree of discipline and the ability to work independently with minimal supervision. Additionally, they should have excellent communication skills and work seamlessly in a team environment. **_Responsibilities:_** **_A10_** + Provide technical support for A10 Thunder ADC appliances running in VCS clusters, including configuration, troubleshooting, and maintenance of management HA and flow HA using VRRP + Collaborate with critical application teams to design and implement load balancing solutions that meet business requirements for a diverse range of protocols, including web applications, TCP applications, UDP applications, and others + Troubleshoot complex application and load balancing issues, working with internal teams to resolve problems quickly and efficiently + Configure and manage service configurations to ensure high availability, scalability, and performance + Lead application design discussions with other teams to ensure load balancing solutions meet business needs + Develop and maintain documentation for load balancing configurations, procedures, and best practices **_Oracle Database_** + Troubleshoot basic level technical issues for Oracle Databases, working with senior tier support as needed to ensure/restore availability + Provide technical support for Oracle Database maintenance activities **Required Education, Experience, & Skills** **_Required Skills and Education:_** **_A10_** + Experience with A10 Thunder ADC appliances, including configuration and management of VCS clusters, VRRP, and HA + Strong understanding of application load balancing concepts, including TCP/IP, HTTP headers, and cookies + Experience with TLS protocol, handshake, and troubleshooting + Familiarity with various protocols, including HTTP, HTTPS, TCP, UDP, and others **_Oracle Database_** + Ability to follow processes and procedures to standardize Database installations and configuration + Experience with Solaris and Red Hat Linux Operating Systems **_General_** + Excellent communication, presentation, and customer relationship skills + Proven ability to work creatively and analytically in a problem-solving environment + Can-do attitude, proactive and resourceful. **Preferred Education, Experience, & Skills** **_Preferred Skills and Education:_** + Experience automating, scripting and streamlining processes for efficiency and accuracy utilizing Unix shell scripting or other scripting tools (Ansible, Terraform, etc) and languages (Python, Perl, etc) + Experience with monitoring and logging tools, such as Splunk or ELK + Ability to work on unusually complex technical problems and provide solutions that are highly innovative and ingenious + Experience in disk array storage solutions preferably NetApp + Experience in Backup / Recovery solutions preferably CommVault **Pay Information** Full-Time Salary Range: $77814 - $132283 Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience. Employee Benefits: At BAE Systems, we support our employees in all aspects of their life, including their health and financial well-being. Regular employees scheduled to work 20 hours per week are offered: health, dental, and vision insurance; health savings accounts; a 401(k) savings plan; disability coverage; and life and accident insurance. We also have an employee assistance program, a legal plan, and other perks including discounts on things like home, auto, and pet insurance. Our leave programs include paid time off, paid holidays, as well as other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave. Employees may participate in the company recognition program to receive monetary or non-monetary recognition awards. Other incentives may be available based on position level and/or job specifics. **Application Delivery Network Engineer (A10, load balancing and ADC technologies) - Remote worker opening** **116897BR** EEO Career Site Equal Opportunity Employer. Minorities . females . veterans . individuals with disabilities . sexual orientation . gender identity . gender expression
    $77.8k-132.3k yearly 60d+ ago

Learn more about SAIC jobs

View all jobs