Information Assurance Security Engineer, Staff Principal
Colorado Springs, CO - USA
Job Summary
AMERICAN SYSTEMS is seeking a talented INFORMATION SYSTEMS SECURITY ENGINEER (ISSE) Staff Principal with a Top Secret/SCI Clearance 12 years of experience conducting information system security engineering activities to join our team at Peterson Space Force Base.
- Be an integral part of the development team designing and developing organizational information systems or upgrading legacy systems.
- Employ best practices when implementing security requirements within an information system including software engineering methodologies system/security engineering principles secure design secure architecture and secure coding techniques.
Receive a robust benefits package that includes Employee Stock Ownership Plan! - Be part of an empowered accountability culture where each employee-owner has a meaningful stake in the future success and growth of the company.
- Work within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies such as HQ Air Force Office of the Secretary of Defense (OSD) and Military Departments efforts.
Collect and process the captured information security requirements and ensures that the requirements are effectively integrated into information systems through purposeful security architecting design development and configuration.
Provide day-to-day support for Collateral Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.
Perform oversight of the development implementation and evaluation of information system security program policy; special emphasis placed upon integration of existing SAP network infrastructures. - Perform analysis of network security based upon the Risk Management Framework (RMF) with emphasize on Joint Special Access Program Implementation Guide (JSIG) authorization process and provides expert support research and analysis of exceptionally complex problems and processes relating to them.
Serve as technical expert to the Cybersecurity Assessment Program providing technical direction interpretation and alternatives to complex problems. - Contribute to the development of new principles concepts and methodologies.
Recommend cybersecurity software tools and assists in the development of software tool requirements and selection criteria to include the development of product specific STIGs from applicable DISA SRGs.
Lead technical teams in implementation of predetermined long- range goals and objectives. Support customer and SAP community IA working groups participate in SSE IPT reviews. - Provide expert level consultation and technical services on all aspects of Information Security. Review ISSE related designs and provides security compliance recommendations.
Develop and provide IA risk management recommendations to the customer.
Provide ISSE support for Mission and Training systems design and development.
Integrate COTS & GOTS products to collect display and remediate a variety of automated system security and system operations/performance functions and metrics. - Interface and support the System Engineer (SE) on system security design interoperability and basic engineering endeavors implementing cybersecurity policy system security engineering processes and basic system engineering (SE) processes.
- Assist with development and maintenance of the Program Protection Plan site activation activities and design review
- Active TS/SCI Clearance and be SAP eligible Willingness to obtain a CI Poly may be required to maintain employment in contract option years.
- 12-15 Years related Experience and prior performance in roles such as ISSO ISSM SCA or SAP IT Technical Director ;
Travel 20% (Not to exceed 20 days per trip)
DoD 8570 IASAE I OR II certification (e.g. CASP CE CISSP CSSLP). Strong background in Patch/Configuration management DevOps and tier 3 support. - Excellent analytical and problem-solving skills. & Must be familiar with DoD policy as it applies to implementing and executing system and network administration.
- Must write and execute cybersecurity test procedures for validation of control compliance and work on unusually complex technical problems and provides highly innovative and ingenious solutions
Experience with NIST SP 800 series and DoDI/D 8500 series and solving technical problems quickly and identifying opportunities to automate repetitive processes - Strong communication and interpersonal skills. Ability to work independently and as part of a team. Detail-oriented with a commitment to accuracy and quality.
- Advanced technical competency in one or more of the following supported platforms: Microsoft Windows Server Active Directory Red Hat Enterprise Linux servers MS Hyper- V/VMWare/ESx/Xen Hypervisors Enterprise networking/firewalls/intrusion detection/prevention systems forensic analysis/vulnerability assessment Group Policy management and configuration Scripting BMC Footprints WSUS Lumension Bitlocker SQL Server 2012 TomCat IIS Windows Server 2012r2/2016 Win 10 Red Hat 6.5 Microsoft Office. Strong background in Toolkits SIEMs Logrhythm ACAS/Nessus/SCAP mandatory/role-based access control concepts (e. g. SE Linux extensions to RHEL PitBull AppArmor and Sentris) video teleconferencing/VOIP Oracle/MS SQL database security and Apache/IIS Web server security
Required Experience:
Staff IC
About Company
AMERICAN SYSTEMS has been delivering IT and Engineering solutions to complex national priority programs since 1975. Our mission-focused approach ensures a trusted, collaborative partnership with our customers. Performance is paramount. We know what’s at stake. ®