Senior Security Engineer

By Light Professional IT Services LLC

Orlando, Florida

JOB DETAILS
SKILLS
Agile Programming Methodologies, Analysis Skills, Ansible, Automation, Bash Scripting, Chef (Configuration Management), Cisco Network Systems, CompTIA Security+, Computer Science, Computer Security, Continuous Deployment/Delivery, Continuous Integration, Documentation, Emerging Technology, Employee Assistance Plan, Establish Priorities, Federal Government, Gaming, ISO (International Organization for Standardization), Information Technology & Information Systems, Internet Security, Life Insurance, Linux Operating System, Maintain Compliance, Microsoft Windows Operating System, Nessus, Network Monitoring, Network Protocols, Online Training, Open Source, Operating Systems, Operations Processes, Procedure Implementation, Professional Services, Program Planning, Puppet (Configuration Management), Python Programming/Scripting Language, Regulations, Regulatory Compliance, Risk, Risk Analysis, Scripting (Scripting Languages), Scrum Project Management and Software Development, Security Architecture, Security Attacks, Simulation, Software Patches, Systems Engineering, Team Lead/Manager, Technical Support, Test Plan/Schedule, U.S. National Institute of Standards and Technology (NIST), United States Department of Defense (DoD), VMWare, Virtualization, Vulnerability Scanners, Windows PowerShell, Writing Skills
LOCATION
Orlando, Florida
POSTED
1 day ago
Company Overview:

By Light Professional IT Services LLC readies warfighters and federal agencies with technology and systems engineered to connect, protect, and prepare individuals and teams for whatever comes next. Headquartered in McLean, VA, By Light supports defense, civilian, and commercial IT customers worldwide. 

 

Cole Engineering Services (CESI), a By Light company, is recognized as a premier provider of modeling and simulation (M&S) training solutions to the Federal Government and industry. Since 2004, CESI has been at the forefront of developing, maintaining, and integrating simulation-based training, serious gaming, technical services, training and other support in live, virtual, constructive, and gaming (LVCG) domains.  CESI also designs, builds and runs infrastructure, platforms, applications and processes that enable cyber training for the integrated multi-domain force. Our vision is to become a worldwide full spectrum LVCG and cyber training/analysis developer, integrator and services provider.

Position Overview:

This position is for the NCRC Range Modernization (RM) Senior Security Engineer position providing senior-level development, testing, and security support associated with their designated NCRC product scrum teams.

Responsibilities:
  • Vulnerability Management
    • Implement patching procedures for multiple Operating Systems (Linux, Windows, VMware, Cisco)
    • Run and review vulnerability scans and STIGs
    • Prioritize vulnerability remediation efforts across endpoints, networks, and applications
    • Automate patching process for multiple Operating Systems (Linux/Windows)
    • Responsible for securing and hardening hardware and software systems.
  • Governance, Risk & Compliance
    • Support tracking resolution and milestones for program's Plan of Action and Milestones (POA&M) items
    • Develop and maintain security policies, procedures, and standards
    • Ensure compliance with relevant standards, directives and regulations
    • Conduct risk assessments and support audit activities
    • Remain abreast of emerging technologies, cyber threats and security tools
  • Security Architecture & Engineering
    • Design, implement, and manage security solutions (e.g., SIEM, EDR, firewalls, IDS/IPS, IAM, VPN)
    • Evaluate and integrate new security technologies and tools
  • Advise ISSO and ISSM on issues related to securing and monitoring classified DoD networks
  • Creation and maintaining of data flow and system boundary diagrams
  • Agile/Scrum process
Required Experience/Qualifications:
  • Bachelor’s (BS) degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
  • Security+ Certification
  • Strong understanding of network protocols, security architecture, and security practices
  • Experience with Linux-based and Windows-based systems
  • Proficient in scripting (e.g., Python, PowerShell, Bash)
  • Experience with automation tools (e.g., Ansible, Terraform, Chef, Puppet)
  • Understanding of CI/CD
  • In-depth knowledge of modern threat landscapes, vulnerabilities, mitigation techniques, and security tools and processes
  • Familiarity with NIST 800-53, NIST 800-171, SOC 2 and/or ISO 27001
  • Ability to write clear and concise cybersecurity guidance, procedures and documentation
Preferred Experience/Qualifications:
  • DoD RMF security practices and regulations
  • Virtualization (preferably VMware)
  • Familiarity with open-source security tools
  • Familiarity with ACAS, Tenable Security Center, and Tenable Nessus
Special Requirements/Security Clearance:

In accordance with the specifications of a government contract, eligibility for this position mandates U.S. Citizenship status and a minimum SECRET security clearance with the ability to obtain a TOP SECRET The precise security clearance requisites will be detailed in the Government's Task Order.

 

This job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee. The above is intended to describe the general contents of and requirements for the performance of this job.

Benefits Overview:

CESI recognizes that our strength is our people. We support every employee as an individual to build strong teams across the enterprise.  Our benefit package includes:

  • Medical, Dental & Vision Coverage
  • Wellness Program
  • 401(k) Matching
  • Disability (Short Term & Long Term)
  • Employee Assistance Program
  • Life Insurance
  • Education & Training
  • Generous Leave Policy (11 Federal Holidays, PTO, Military Leave, Bereavement and Jury Duty)

Cole Engineering Services, Inc. is an equal opportunity employer. We consider qualified applicants without regard to race, color, creed, religion, national origin, sex, sexual orientation, gender identity and expression, political affiliation, age, marital status, disability, genetic information, veteran status, membership in an employee organization, or any other basis prohibited by federal, state, or local laws.

About the Company

B

By Light Professional IT Services LLC