Information System Security Engineer (ISSE) - Risk Management Framework (RMF), AWS, ACAS, Splunk

Applied Research Associates Inc

Raleigh, NC

JOB DETAILS
SKILLS
Amazon Web Services (AWS), Ansible, Audiovisual, Best Practices, Career Development, Cloud Computing, Communication Skills, CompTIA Security+, Computer Science, Computer Security, Computer Software, Configuration Management, Defense Information Systems Agency (DISA), DoD Secret Clearance, Documentation, Endpoint Security, Information Systems Security Engineering (ISSE), Information Technology & Information Systems, Information/Data Security (InfoSec), Internet Security, Linux Administration, Maintain Compliance, Mathematics, Microsoft Product Family, Microsoft Windows Azure, Microsoft Windows System Administration, Physical Science, Problem Solving Skills, Risk Management Framework (RMF), Security Analysis, Security Compliance, Security Monitoring, Software Development, Software Simulation, Splunk, Systems Administration/Management, Systems Analysis, Team Player, Test Plan/Schedule, United States Department of Defense (DoD), Vulnerability Scanners
LOCATION
Raleigh, NC
POSTED
3 days ago

If you are looking for a career as an Information System Security Engineer (ISSE) and you are interested in designing, securing, and improving information systems through the Department of Defense (DoD) Risk Management Framework (RMF), then our Raleigh, NC and/or San Antonio, TX division of ARA has an exciting opportunity worth considering. Not only will you solve challenging cybersecurity problems, but you'll also have the opportunity to grow your career in an environment that promotes teamwork, mentorship, and cross-training across a broad range of cybersecurity and engineering disciplines.

Applied Research Associates, Inc. (ARA) is looking for a bright, motivated, and energetic individual who embraces our core values of Passion, Freedom, Service, and Growth! As an Information System Security Engineer, you will participate in a dynamic team to develop, test, and validate Department of Defense (DoD) Risk Management Framework (RMF) security controls across cloud environments. You will also be offered learning opportunities that will help you grow your technical and professional skills and allow you to pursue the work you are passionate about.

What you'll do as an Information System Security Engineer:

  • Work alongside system administrators, software developers, and customers to identify and remediate cybersecurity vulnerabilities
  • Become responsible for managing tools such as Assured Compliance Assessment Solution (ACAS), Splunk, Microsoft Defender, and Clam AV to monitor system health, assess security compliance, and investigate findings
  • Apply Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIG), security best practices, and configuration management processes to harden systems and maintain compliance with DoD cybersecurity requirements

Information System Security Engineer Requirements:

  • US citizenship (Selected applicants will undergo a security investigation and must meet eligibility requirements at the time of employment)
  • Active DoD Secret Clearance (At the time of hire)
  • BS or higher in Cybersecurity, Computer Science, Information Technology, Engineering, Applied Mathematics, or a closely related field
  • 2-4 years of relevant work experience with a bachelor's degree, or 0-2 years of relevant work experience with a master's degree
  • Excellent communication, documentation, and collaboration skills
  • Ability to work onsite 3 days per week in Raleigh, NC or San Antonio, TX

Information System Security Engineer Preferences:

  • Relevant AWS Certification
  • CompTIA Security +
  • Experience supporting or implementing the DoD RMF
  • Experience with ACAS and other vulnerability scanners
  • Experience using security monitoring and endpoint protection tools such as Splunk, Microsoft Defender, and Clam AV
  • Experience applying DISA STIGs and Security Requirement Guides (SRGs)
  • Experience identifying, prioritizing, and remediating operating system, application, and infrastructure vulnerabilities
  • Familiarity with continuous monitoring, vulnerability management, and security compliance processes
  • Experience with cloud platforms such as AWS or Azure
  • Experience with Infrastructure as Code (IaC) and/or Configuration as Code (CaC) tools such as Terraform, Salt, or Ansible
  • Familiarity with Windows and Linux systems administration

Who is ARA?

Do you want to work for a purpose? Applied Research Associates, Inc. (aka ARA) is an employee-owned international research and engineering company. We have been providing technically superior solutions to complex and challenging problems in the physical sciences since 1979. ARA has over 2,200 employee-owners and continues to grow rapidly. Together, our offices throughout the U.S. and Canada provide a broad range of technical expertise in defense, civil, and health technologies, computer software and simulation, systems analysis, environmental technologies, and testing and measurement.

ARA also prides itself, on having a challenging culture where innovation & experimentation are the norm. The motto, "Engineering and Science for Fun and Profit" sums up the ARA experience. Employee ownership ensures you have a voice in what happens in the company. We are also very proud of our Women's Initiative Network (WIN), whose purpose is to motivate, support, and encourage professional career development for women to maximize career and professional accomplishments.

To find out more about what the Software Enterprise Division has to offer, visit our website at: https://www.ara.com/benefits/

About the Company

A

Applied Research Associates Inc