Develop, implement, and/or integrate Information Assurance (IA) and security systems, including those for networking, computing, virtualization, cloud, and enclave environments, to include those with multiple enclaves and with differing data protection/classification requirements. 8+ years of experience supporting highly secure cybersecurity systems, including ATO processing, A&A documentation, networking operations, and security control analysis/remediation.
Numbers & Facts
Location
Chantilly, Virginia
Description
This role provides cybersecurity and systems security engineering expertise to protect mission-critical information systems and ensure compliance with applicable Intelligence Community security requirements. The ISSE will assess system architectures, identify and mitigate vulnerabilities, support authorization activities, and collaborate with technical and mission stakeholders to integrate security throughout the system lifecycle.
Technical cybersecurity role responsible for designing and embedding security controls into system architectures
Ensure scans for all systems are run on a routine basis and work with system administrators/developers to patch vulnerabilities and policy failures
Understanding of computer architecture, networking, operating systems, and network security
Work with ISSMs to resolve any issues
Develop, implement, and/or integrate Information Assurance (IA) and security systems, including those for networking, computing, virtualization, cloud, and enclave environments, to include those with multiple enclaves and with differing data protection/classification requirements.
Review and conduct technical security assessments of computing environments to identify points of vulnerability, non-compliance with established Information Assurance (lA) standards and regulations, and recommend mitigation strategies.
Create and review Assessment and Authorization (A&A) Body of Evidence documentation and provide feedback on completeness and compliance of its content.
Advise and assist the Sponsor's customers with the Lifecycle Assessment and Authorization process.
Ensure all program activities maintain system baselines and configuration management items, including security event monitoring policies, in a manner determined and agreed to by the COTR and the Sponsor's management.
Ensure changes are made using the Sponsor’s approved cybersecurity approval process and are coordinated and scheduled.
Maintain appropriate levels of documentation deemed acceptable by Agency regulations and guidelines for each individual project, including operations and maintenance information, operations guides, design documents, scans, and overall concepts of operations.
Enforce the design and implementation of trusted interfaces among external systems and architectures.
Utilize COTS/GOTS and custom tools in order to scan, identify, contain, mitigate and remediate vulnerabilities and intrusions.
Protect information and information systems from unauthorized access, use, disclosure, disruption, modification, perusal, inspection, recording and destruction.
Recognize potential, successful, and unsuccessful intrusion attempts and compromises thorough reviews and analyses of relevant event detail and summary information.
Required:
An active TS/SCI Full Scope Poly Security Clearance (Preferrably from this client)
Bachelor's Degree in Cybersecurity, computer science, or related field
8+ years of experience supporting highly secure cybersecurity systems, including ATO processing, A&A documentation, networking operations, and security control analysis/remediation