Case Management Consulting LLC is seeking to fill the Systems Engineer position for one of our customers. Case Consulting LLC is an 8(a) Certified Minority Womanowned Small Business which focuses on delivering secure highquality webbased process automatization tools and knowledge management solutions.
Position: Systems Engineer
Location: Springfield VA
Position type: Onsite
Clearance: TS/SCI
Responsibilities:
Develop update and review Risk Management Framework (RMF) documentation including Security Plans Implementation Plans Plans of Action and Milestones (POA&Ms) and Risk Assessment Reports.
Assess system compliance with National Institute of Standards and Technology (NIST) Department of Defense (DOD) and National Geospatial Agency (NGA) Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs).
Produce necessary evidence of compliance with NIST DOD and NGA security requirements to meet government standards.
Collaborate with system administrators engineers and developers to create or update system/site policies procedures and process guides.
Coordinate with subject matter experts (SMEs) internal teams and external customers to identify and develop authorization boundary diagrams architecture diagrams and hardware and software inventories.
Analyze vulnerability scans of information systems and assist in remediation tasks.
Conduct risk and vulnerability assessments of information systems to identify vulnerabilities risks and protection needs.
Facilitate or participate in meetings with stakeholders to discuss the status and efforts of SIS systems and report findings to the government.
Prepare and submit biweekly system or program status reports to team leads and the government engineering team.
Serve as an SME on one or more technologies/skills related to Assessment & Authorization (A&A) activities.
Actively facilitate and participate in regular A&A status meetings with government and task order personnel to promote progress and address potential issues related to RMF system efforts.
Participate in sessions to identify plan and execute strategies in response to emerging cybersecurity RMF policies.
Maintain awareness of and knowledge of evolving security and risk management standards including DOD and NGA policies procedures and regulations and communicate relevant changes to existing processes.
Ensure proper use of remote access connectivity from NGA to Background Investigation systems approved by NGAs CIOT office and maintained per NGA policies and procedures.
Ensure that File Transfer Protocol (FTP) connections from NGA to the Background Investigation system meet NGA and NIST requirements.
Ensure that sitetosite Virtual Private Network (VPN) tunnels are established based on NGA and DOD requirements.
Ensure NGAapproved documentation of all interconnections with systems within the SIS footprint connected to NGA infrastructures.
Audits on computer systems are conducted to detect prevent and document computer use and abnormalities.
Report any attempts by unauthorized users to access SIS systems to the Information System Security Officer (ISSO) or Information System Security Manager (ISSM) and provide monthly logs to NGA.
Ensure data is protected per NGA and DOD policies standards regulations and procedures for the specified SIS systems.
Coordinate the implementation of multiple security countermeasures such as firewalls access control and auditing to protect the integrity of information assets in SIS systems per accreditation standards using NISTs Intelligence Community Directive (ICD) 503.
Develop and update security policies and procedures to align with accreditation standards using NISTs Risk Management Framework (RMF) and categorization methods.
Ensure the security system is protected by implementing controls against malicious activities including intrusion tampering and virus detection.
Document specific equipment restrictions including all required documentation on interconnections for SIS systems.
Ensure that no personal computers peripherals or computers from other agencies not authorized by NGAs CIOT office are used across interconnections or on NGA networks.
Requirements:
An active TS/SCI clearance (with the ability to obtain a CI poly)
Bachelors degree or equivalent experience in a related field specifically in security engineering
A minimum of 3 to 6 years of relevant experience
Proficiency in Windows operating systems
Experience with AWS services
Familiarity with assessing systems using NIST 80053 and DISA STIGs and SRGs
Compliance with DOD 8070/8140 standards and CompTIA Security certification
Competence in RMF package development including the creation of POAMs (Mitigation Statements) security plans and risk assessment systems as well as site policies procedures processes and architecture
If you are interested in this position please send me a copy of your latest resume at with the information requested below: Also please let me know what time/number is best to call to discuss this great opportunity. In case you are not interested in this position or this is not a right fit for you please feel free to share this opportunity with your friends/networks or anyone you know who may be interested in this position. Thank you!
Availability to start a new job
Best Rates
Contact #
Please dont hesitate to contact me for any question (s) you may have. All employment is decided on the basis of qualifications merit and business need.
Regards
Nareen Qureshi Senior Recruitment Professional Case Management Consulting LLC Cell: Email:
An Equal Opportunity Employer Case Management Consulting LLC is proud to be an Equal Employment Opportunity Employer. We do not discriminate based on race religion color national origin political affiliation sex sexual orientation gender identity age marital/parental /veteran status disability genetic information membership in an employee organization retaliation military service other nonmerit factors or any other applicable characteristics protected by law.
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.