|
|
|
|
| Company: |
Vangent |
| Location: |
US-VA-Falls Church
Loading Map...
|
| Base Pay: |
N/A |
| Employee Type: |
Full-Time |
| Industry: |
Consulting Computer Software |
| Manages Others: |
Not Specified |
| Job Type: |
Information Technology Engineering |
| Req'd Education: |
4 Year Degree |
| Req'd Experience: |
At least 8 year(s) |
| Req'd Travel: |
Not Specified |
| Relocation Covered: |
Not Specified |
| Contact: |
Not Available |
| Phone: |
Not Available |
| Email: |
Send Email Now |
| Fax: |
Not Available
|
| Ref ID: |
13515 |
--Careers at Vangent
|
|
|
Vangent is a leading global provider of Consulting, Systems Integration, Human Capital Management and Business Process Outsourcing services to government, commercial, education, and healthcare organizations. Vangent is a diverse, prosperous and rewarding place to work, where our employees are provided with competitive benefits, educational assistance and career growth opportunities. Every employee is valued for their talents and contributions, and takes pride in doing work that shapes the impact of services to our customers, aiding in the overall success of the company. Vangent is an Equal Opportunity Employer M/F/V/D.ResponsibilitiesOverview:Function as a Sr. Information Asurance Engineer for the Single Sign-on Context Management program providing support to Vangent Health Care group within the Information System / Program Executive Office Information Assurance.The Vangent Team will ensure that all systems and networks covered under our solution application and architecture are developed and maintained in accordance with the Information Assurance (IA) controls of a Mission Assurance Category II (MAC II) sensitive system as outlined in Department of Defense Directive 8500.2 (DODD 8500.2). We will ensure all system supporting Operating Systems (OS), Database Management Systems (DBMS) Web Applications remote monitoring, application development, etc. conform to the requirements outlined in all applicable Defense Information Security Agency (DISA) Security Technical Implementation Guides (STIG).Responsibilities:¿ Within the framework of this program, our IA Professionals will ensure system development and migration efforts continuously address all security-related controls and requirements, as well as provide close coordination with the Government COR and DAA to ensure all DIACAP documentation and DIACAPrelated activities are completed, thereby ensuring a smooth certification and accreditation process prior to issuance of the authorization to operate (ATO) decision by the DAA. This includes the development and delivery of DIACAP Artifacts, Plan of Action and Milestones (POAM), DIACAP System Life Cycle Status and Configuration Analysis, and the DIACAP Implementation Plan with Government concurrence.Routinely, these documents are delivered in draft form for Government COR review and comment, then Government comments are integrated into the documents prior to final delivery - all products will be delivered in a Government specified format. The Vangent Team will deliver draft IA documentation at PDR and final IA documentation at CDR (Deliverable 71).Our security team will also regularly monitor network activity, perform virus scanning and elimination services IAW the Joint task Force-Global Network Operation, special security investigations, and security/OPSEC education and awareness training services.Vangent will work closely with the Government to ensure that local caching of user credentials is managed in accordance with guidelines and policies (i.e. DoDI 8500.2) regarding stored credentials. Areas of consideration include but are not limited to:1. Encryption methodology and strength2. Duration for validity without synchronization to the SSO solution3. Procedures and methodologies for resolving issues for mobile users particularly theater based users4. Synchronization mechanism with SSO solution¿ Provide application and network vulnerability assessment for Vangent Systems, using process to include: 1. Certification Testing and Evaluation (CT&E)2. Security Testing and Evaluation (ST&E)3. Using both automated vulnerability assessment tools (Gold Disk, eRetina, Nessus, NMap, AppDetective, WebInspect) as well as manual testing scripts ¿ Evaluate and assesses compliance with established information assurance policies and regulations. ¿ Conduct technical design reviews on products and designs. ¿ Perform security assessments, review documentation, and support security analysts in a team of technically diverse personnel. ¿ Conduct and document risk and threat assessments. ¿ Make recommendations implementing countermeasures, prepare required documentation for and coordinate with senior engineer. ¿ Develop certification evaluation and findings reports¿ Conduct engineering analysis and evaluation for security-related hardware, software, and network component evaluations¿ Evaluate security risk assessments and engineering change proposals.¿ Develop and provide test plans and vulnerability reports to a team of Security Analysts according to Vangent, HIPPA, DoD and other Information Assurance (IA) related requirements.¿ Keep abreast of emerging security technologies and make appropriate recommendations regarding their implementation.
|
|
¿ At least 8 years prior IT security experience¿ ¿ Basic experience in network design, Windows Active Directory services, and Windows operating system.¿ Proficient in designing cutting-edge technologies including relational, network, and hierarchical database designs, Web Services and Service Oriented Security Architecture. Desired Skills:¿ Project management experience desired.¿ Security engineer should have familiarity with HIPPA, DoD, Federal, NIST and other Information Assurance (IA). ¿ Knowledge of information systems technology such as computing platforms, systems integration, analysis and software architecture desired. ¿ Familiarity with Unix operating system is also desired. ¿ Ability to analyze network and system designs for potential security risks ¿ Experience in network security (IDS, VPN, Firewall, PKI, cryptography), security controls for LAN/WANs, client server, web-based systems, and databases are desired. ¿ Proficient in designing cutting-edge technologies including relational, network, and hierarchical database designs, Web Services and Service Oriented Security Architecture. Skilled in managing Windows, UNIX, and government cryptographic systems.*Candidates must be a U.S Citizen and be able to obtain an ADP Level II Security Clearance.Education and Certifications:¿ BA or BS Degree (Information/Computers preferred)¿ CISSP~CB~
|
|
Headquartered in Arlington, VA with over 5,500 employees worldwide, Vangent, Inc. is a leading global provider of Consulting, Systems Integration, Human Capital Management and Business Process Outsourcing services to the U.S. federal and international governments, higher education institutions and corporations. Clients include the Centers for Medicare & Medicaid Services, the U.S. Departments of Education, Health and Human Services, Justice and Labor; the Equal Employment Opportunity Commission and the U.S. Office of Personnel Management, as well as Fortune 500 companies.
|
|