We are looking for an Information Security Engineer to support a US Government project. Key
role of the person will be to manager security systems, logs, and alerts and proactively track
threats and mitigate risks.
Key Responsibilities:
- Proactively track threat actors and associated tactics, techniques, and procedures (TTPs).
- Oversee the monitoring of security systems, logs, and alerts.
- Investigate security alerts and incidents and take appropriate mitigation steps.
- Fix vulnerabilities and create security incident reports.
- Perform static code analysis to analyze source code for application safety and security.
- Provide guidance to system and application owners to remediate identified vulnerabilities.
- Install security software such as firewalls and encryption programs.
- Continuously improve security operations processes and procedures.
- Work with Security Architect to research, evaluate, and recommend new security tools, techniques, and technologies.
- Provide security awareness training to program teams and recommend security enhancements.
- Provide periodic risk assessment and penetration tests.
- Ensure security of facilities, equipment, tools, data, networks, and resources throughout the program.
- Conduct reviews of system audits and monitor corrective actions.
- Support planning, coordination, and implementation of tactical response to improve information security posture.
- Possess working knowledge of security practices, procedures, tools, hardware/software security implementation, communication protocols, encryption techniques/tools, commercial products, current Internet/EC technology, and open-source methodologies.
- Stay current on cloud and cyber security technology trends.
- Communicate information security and risk-related concepts effectively to both technical and non-technical audiences.
Requirements
Qualifications:
- Strong understanding of security principles, best practices, frameworks, and technologies.
- Fundamental technical knowledge of DHCP, DNS, Active Directory, Windows and Linux OSes, firewalls, and networks.
- Experience writing Windows Bash and PowerShell scripting, python, and other scripting languages.
- Good understanding of Security Development Lifecycle.
- Must be Clearable (CBP BI Public Trust).
- Strong problem-solving and analytical skills, ability to act calmly and competently in high-pressure situations.
- Familiarity with network and host-based Intrusion Detection Systems (IDSs) and Security Incident Event Management (SIEM).
- Security certification preferred (CISM, CISSP, CSSP Incident Responder Certification).
- Bachelor's degree and five (5) or more years of experience; Master's degree and three (3) years or more experience; PhD and 0 years related experience.
- Current holder of a DHS Public Trust clearance or the ability to obtain one.
Benefits
Join Our Team If you are a passionate and dedicated Information Technology professional looking to make a significant impact, we encourage you to apply.
COMPANY INFORMATION:
We are a professional services consulting firm located in Tysons Corner, VA. We are staffing for our direct and customer hiring needs.
We offer comprehensive benefits including medical, dental, vision insurances, HSA, FSA, 401(k), and life insurance, and disability insurance to eligible employees. Exempt personnel receive paid time off. Contracted and Hourly personnel are not eligible for paid time off unless required by law. Hourly personnel on a Service Contract Act project are eligible for paid sick leave.
We comply with Equal Opportunity and do not discriminate based on race, color, religion, sex, age, national origin, gender identity, disability, veteran status, sexual orientation or any other classification protected by federal, state or local law.