Systems Engineer - Level 3

    Highlights

    Support efforts related to NIST Risk Management Framework (RMF) and develop, review and maintain ATO documentation packages including: System Security Plans (SSPs); Security Assessment Reports (SARs); Authorization Packages, and Plans of Action & Milestones (POA&Ms). > Participate in Stakeholder Coordination & Meetings to communicate security risks, control gaps, and remediation priorities in clear, actionable terms to both technical and non-technical stakeholders.

    Numbers & Facts

    LocationPomona, NJ

    Description




     

    Location: William J Hughes Technical Center for Advanced Aerospace
    Employment Type: Hybrid (must be able to work onsite most of the time at the FAA Atlantic City, NJ)

    Responsibilities:
     > Security/Systems Engineer 10-15 years of experience with FAA systems and telecommunications infrastructure in support of Aeronautical Information Systems  in the FAA National Airspace System (NAS).
    > Respond to Department of Transportation and FAA Data Calls as necessary to resolve Known Exploited Vulnerabilities (KEV).
    > Work onsite at FAA's William J. Hughes Technical Center (3-4 days/week) along-side FAA's Security Lead and Program Managers.
    > Support efforts related to NIST Risk Management Framework (RMF) and develop, review and maintain ATO documentation packages including: System Security Plans (SSPs); Security Assessment Reports (SARs); Authorization Packages, and Plans of Action & Milestones (POA&Ms).
    > Respond to data calls, audit inquiries, and compliance reviews in support of IG assessments, FISMA reporting, and agency-level oversight activities.
    > Participate in Stakeholder Coordination & Meetings to communicate security risks, control gaps, and remediation priorities in clear, actionable terms to both technical and non-technical stakeholders.
    > Create, maintain, and track Plan of Action and Milestones (POA&M) items through full remediation lifecycle, ensuring accuracy, milestone currency, and timely escalation of overdue items.
    > Review vulnerability scan outputs and coordinate remediation efforts with system owners and DevSecOps/engineering teams.
    >  Support Vulnerability Scanning & In-House Scanning Infrastructure (e.g. Nessus, OpenSCAP)

    Qualifications - Minimum Required:
    PSS Systems Engineer 3 - Bachelor's Degree and 15+ years experience, or MS plus 10+ years experience

    Previous Experience Required:
    Technical Knowledge, Skills and Abilities:
    Desired:
    •   NIST RMF / FedRAMP / FISMA FAA & DOT policies
    •   Vulnerability scanning platforms
    •   SCAP / STIG compliance tooling
    •   POA&M lifecycle managementMonitor and manage Linux systems (RHEL) and infrastructure
    •   Data call & audit response
    •   Risk communication & prioritization
    •   Documentation & technical writing
    •   Stakeholder communication & briefings

    Qualities:
      o   Self starter, willing to learn
      o   Organized and strong communication skills
      o   Teamwork and Cross-functional project coordination

    AS&T is an EOE/AA Disability/Veteran

    AS&T is committed to providing a work environment that is free from unlawful discrimination and harassment in any form. AS&T will make reasonable accommodations for qualified individuals with disabilities unless doing so would result in an undue hardship. If you are interested in applying for employment and feel you need a reasonable accommodation pursuant to the ADA, you are encouraged to contact us at

    admin@adv-sci-tech.com

    .



    AS&T is an EOE - M/F/D/V AS&T
    Offers a first class benefits package, competitive salary and bonus incentives.

    Similar Jobs

    See more jobs