Security Engineer III
Paragon Technology Group, Inc Scott AFB, Illinois, United States · $85K–$90K/yr
IT Services and IT Consulting · 51-200 employees
About the role
The Security Engineer III is responsible for designing and implementing security solutions to protect sensitive information and conducting technical evaluations of IT systems. They also perform vulnerability assessments, manage security product evaluations, and ensure compliance with DoD Risk Management Framework standards.
What they look for
Requirements
Candidates must possess a Bachelor's degree or equivalent experience and at least 7 years of experience in security engineering. A DoD Secret clearance or higher and US citizenship are mandatory requirements for this role.
Full description
The Security Engineer III provides technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation. Responsible for designing and implementing solutions for protecting the confidentiality, integrity and availability of sensitive information. Provides technical evaluations of IT systems and assists with making security improvements. Participates in design of information system contingency plans that maintain appropriate levels of protection and meet time requirements for minimizing operations impact to customer organization. Conducts security product evaluations, and recommends products, technologies and upgrades to improve the organization’s security posture. Understands Information Security Continuous Monitoring (ISCM) concepts and the employ of security automation and risk dashboarding tools and processes to more quickly identify and respond to risk and support more efficient Assessment & Authorization processes such as ongoing authorization. Conducts testing and audit log reviews to evaluate the effectiveness of current security measures.
- Expertise to develop and/or review system authorization documentation in accordance with DoD implementation of the Risk Management Framework (RMF)
- Experience participating in TIMs on a wide range of PMO security engineering meetings
- Experience participating in Acquisition program Engineering Milestone Reviews,
- Experience coordinating with development Contractor security/system engineers and USTRANSCOM/DISA Security Office to resolve program security issues
- Possess skills to conduct Technical Reviews of development Contractor produced security deliverables
- Experience performing security activities to maintain authorization of the PMO programs
- Experience using the DOD Enterprise Mission Assurance Support Service (eMASS) system
- Experience providing support to ensure PMO system(s) are designed, developed, and deployed in accordance with applicable Executive Orders, Federal Policy, DOD regulations, USTRANSCOM requirements, and commercial best practice
- Experience performing vulnerability scans using ACAS, Nessus, and Fortify SCA, analyze outputs to identify vulnerabilities, and recommend mitigation and remediation actions
- Experience implementing DISA STIGS and verifying application
- Experience writing and tracking POA&Ms
- Experience conducting and evaluating security testing activities including security assessments, audits, and penetration testing
- Experience supporting operational security activities e.g., firewall implementation, risk mitigation, host security, encryption, intrusion detection, Virtual Private Network (VPN) implementations, and viral detections
- Experience with security lockdown and/or hardening of servers and network devices
- Ability to coordinate overall security strategy with multiple agencies, Authorizing Official (AO) representatives
- Ability to coordinate with developers, vendors, and other government organizations/agencies to assess security engineering issues
- Experience recommending changes to network and security architecture to improve security posture and meet operational performance requirements
Job Requirements
- Bachelor’s Degree or equivalent experience
- IAT I, IAT II, IAM I, IAM II.
- 7+ years’ experience in security engineering
- Must be a US Citizen with a DoD Secret, or higher, clearance determination.
Similar roles
-
Cybersecurity Test Coordinator
JT4 Kern County, California, United States · $86K–$110K/yr
-
Cybersecurity Architect
GM Financial Irving, Texas, United States
-
Cybersecurity Analyst
GM Financial Irving, Texas, United States
-
Bitcoin Security Engineer
MicroStrategy Tysons, Virginia, United States · $104K–$187K/yr
-
Senior Security Engineer
Church Mutual Insurance Company, S.I. Merrill, Wisconsin, United States
-
Cybersecurity Engineer - 405 EN
Export Development Canada | Exportation et développement Canada Toronto, Ontario, Canada · CA$97K–CA$129K/yr