Information Assurance, Lead
Nashville, TN - USA
Job Summary
Job Title: Lead Information Security System Engineer
Job Code: 40592
Job Location: Nashville TN
Job Schedule: 9/80 Every other Friday off!
Job Description:
The Lead Cybersecurity Engineer serves as the accountable owner for cybersecurity implementation and validation across the program and broader product line. This role partners with program leadership systems engineering software hardware integration and test network engineering and government stakeholders to translate contractual mission and regulatory requirements into secure architecture secure network designs verifiable technical requirements and objective evidence needed for authorization and operational use. The ideal candidate brings deep experience applying NIST SP 800-53 NIST SP 800-171 and RMF principles in complex DoD or national security environments and can drive cybersecurity execution from design through deployment and sustainment.
Essential Functions:
- Own cybersecurity implementation and validation for the program ensuring security requirements are decomposed into system software hardware and network designs and verified through analysis inspection testing continuous monitoring and closure of assessment findings.
- Lead secure network architecture and interface protection activities across the product line including boundary protection segmentation routing and switching design considerations access control logging encryption secure remote access firewall rules and integration with mission networks.
- Define allocate and trace cybersecurity requirements for product line components and interfaces and ensure alignment with NIST SP 800-53 NIST SP 800-171 program security requirements and customer expectations.
- Develop maintain and deliver authorization artifacts including the System Security Plan (SSP) Security Assessment Report Plan of Action and Milestones (POA&M) network diagrams data flow artifacts and privileged user guidance.
- Coordinate vulnerability management hardening STIG implementation scan execution remediation planning and closure of cybersecurity findings across development integration test deployment and sustainment.
- Partner with engineering and program leadership to assess risk recommend secure design decisions and drive timely resolution of cybersecurity issues that affect cost schedule performance or authorization posture.
- Support cybersecurity test planning and execution requirements verification and evidence collection to demonstrate implementation effectiveness and readiness for customer review and operational acceptance.
- Brief customers and program leadership on cybersecurity status residual risk compliance posture and readiness.
Required Qualifications:
- Secret clearance required at time of hire and if required by the program ability to obtain a Top Secret clearance at a later date.
- Bachelors Degree Cybersecurity Information Assurance Information Systems Network Engineering Computer Engineering and minimum 9 years of prior relevant experience. Graduate Degree and a minimum of 7 years of prior related lieu of a degree minimum of 13 years of prior related experience.
- Security or CISSP certification required.
- 4 years of experience NIST SP 800-53 and NIST SP 800-171 and their implementation in system design validation and continuous monitoring activities.
- 4 years of experience Windows and Linux security administration and networking technologies such as TCP/IP DNS routing switching VPNs firewalls and secure communications.
- 4 years of experience DoD STIGs ACAS Nessus SCAP or similar hardening and compliance assessment tools.
- 7 years of experience planning and executing cybersecurity verification and validation activities including requirements traceability test support artifact generation and remediation of findings from assessors and scanners.
Preferred Additional Skills:
- Strong analytical written verbal and cross-functional communication skills with the ability to influence technical and program decisions.
- Experience serving as the cybersecurity lead across a product line family of systems or other complex mission system portfolio.
- Experience with embedded systems tactical networks platform security features or hardware security evaluation.
- Experience integrating cybersecurity into systems engineering manufacturing or fielded support environments.
- Experience supporting customer assessments control inheritance strategies continuous monitoring and long-term sustainment for operational programs.
#LI-EB1
About Company
At L3Harris, we anticipate and mitigate risk with agile end-to-end solutions that meet our customers' mission-critical needs across all domains.