COLSA
Senior Information Systems Security Engineer (ISSE)
COLSA, Huntsville, Alabama, United States, 35824
Senior Information Systems Security Engineer (ISSE)
Join to apply for the
Senior Information Systems Security Engineer (ISSE)
role at
COLSA
Job Description Responsible for the design, test, operation and implementation of secure operating systems, networks, and database products.
This role is 100% on-site
Designs, develops, tests, and implements cyber applications, secure operating systems, and database products to find secure solutions for enterprise-wide cyber systems and networks.
Manages the full range of security issues including architectures, firewalls, electronic data traffic, and network access.
Performs research and analysis at the deepest levels of total system product to include concept, design, fabrication, test, installation, operation, maintenance, and disposal.
Designs encryption, penetration testing, and vulnerability analysis solutions of various security technologies.
Integrates architectural features into existing infrastructures and designs cyber security architectural artifacts.
Provides full assessments of system’s security posture.
Performs security testing to verify cyber security integrity of the system. Designs and recommends mitigations.
Conducts architectural analysis and relates existing system to future needs and trends.
Embeds advanced forensic tools and techniques for attack reconstruction.
Develops security policies and procedures to be applied across multiple system architectures.
Provides technical expertise and guidance to more junior team members.
May interface with external agencies (law enforcement, intelligence/government agencies, etc.).
May design and develop cloud computing and mobile devices application security products.
Work hand-in-hand with the customer and Sr. ISSO/ISSE/ISSMs to navigate through the ATO process and Continuous Monitoring.
Maintain system currency with STIG and SCAP requirements.
Update security documentation (SSP, Test Plans & scripts, POA&M, etc.) as required.
Participate in Configuration Advisory Boards (CAB).
Document the various security control implementations as well as gather the artifacts that support the RMF and ICD 503 Security Accreditation for various A&A efforts.
Gather information by working with team members to write A&A related documents, such as Contingency Plan (CP), General User Guide (GUG), Privileged User Guide (PUG), and Standard Operating Procedures (SOPs).
Support Accreditation and Authorization (A&A) reviews by ISSO/E/M, and by the Security Controls Assessor (SCA).
Required Experience & Required Qualifications
Bachelor’s degree in computer science, information technology, cyber security, engineering, or related field or equivalent work experience. Advanced degree preferred.
Minimum of 10 or more years of experience in information security, cyber security, or a related field.
10+ years working as an ISSE and/or Linux system administrator.
Ability to clearly present and communicate technical approaches and findings.
DoD 8570 IAT Level 2 certification (Security+ CE or higher).
Good verbal and written communication.
Linux experience, specifically with security hardening.
BASH or other Linux scripting to validate security compliance.
Familiarity with ICD 503 and NIST 800-53.
Experience executing DISA SCAP testing.
Experience with Xacta and eMASS.
Splunk configuration experience is a plus.
Active Top Secret clearance with SCI eligibility.
Must be able to pass CI poly within 6 months of hire date.
U.S. Citizenship required.
This role is 100% on-site.
Preferred Qualifications
TS/SCI Security Clearance.
Cloud familiarity.
Applicant selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. COLSA Corporation is an Equal Opportunity Employer, Minorities/Females/Veterans/Disabled. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.
#J-18808-Ljbffr
Senior Information Systems Security Engineer (ISSE)
role at
COLSA
Job Description Responsible for the design, test, operation and implementation of secure operating systems, networks, and database products.
This role is 100% on-site
Designs, develops, tests, and implements cyber applications, secure operating systems, and database products to find secure solutions for enterprise-wide cyber systems and networks.
Manages the full range of security issues including architectures, firewalls, electronic data traffic, and network access.
Performs research and analysis at the deepest levels of total system product to include concept, design, fabrication, test, installation, operation, maintenance, and disposal.
Designs encryption, penetration testing, and vulnerability analysis solutions of various security technologies.
Integrates architectural features into existing infrastructures and designs cyber security architectural artifacts.
Provides full assessments of system’s security posture.
Performs security testing to verify cyber security integrity of the system. Designs and recommends mitigations.
Conducts architectural analysis and relates existing system to future needs and trends.
Embeds advanced forensic tools and techniques for attack reconstruction.
Develops security policies and procedures to be applied across multiple system architectures.
Provides technical expertise and guidance to more junior team members.
May interface with external agencies (law enforcement, intelligence/government agencies, etc.).
May design and develop cloud computing and mobile devices application security products.
Work hand-in-hand with the customer and Sr. ISSO/ISSE/ISSMs to navigate through the ATO process and Continuous Monitoring.
Maintain system currency with STIG and SCAP requirements.
Update security documentation (SSP, Test Plans & scripts, POA&M, etc.) as required.
Participate in Configuration Advisory Boards (CAB).
Document the various security control implementations as well as gather the artifacts that support the RMF and ICD 503 Security Accreditation for various A&A efforts.
Gather information by working with team members to write A&A related documents, such as Contingency Plan (CP), General User Guide (GUG), Privileged User Guide (PUG), and Standard Operating Procedures (SOPs).
Support Accreditation and Authorization (A&A) reviews by ISSO/E/M, and by the Security Controls Assessor (SCA).
Required Experience & Required Qualifications
Bachelor’s degree in computer science, information technology, cyber security, engineering, or related field or equivalent work experience. Advanced degree preferred.
Minimum of 10 or more years of experience in information security, cyber security, or a related field.
10+ years working as an ISSE and/or Linux system administrator.
Ability to clearly present and communicate technical approaches and findings.
DoD 8570 IAT Level 2 certification (Security+ CE or higher).
Good verbal and written communication.
Linux experience, specifically with security hardening.
BASH or other Linux scripting to validate security compliance.
Familiarity with ICD 503 and NIST 800-53.
Experience executing DISA SCAP testing.
Experience with Xacta and eMASS.
Splunk configuration experience is a plus.
Active Top Secret clearance with SCI eligibility.
Must be able to pass CI poly within 6 months of hire date.
U.S. Citizenship required.
This role is 100% on-site.
Preferred Qualifications
TS/SCI Security Clearance.
Cloud familiarity.
Applicant selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. COLSA Corporation is an Equal Opportunity Employer, Minorities/Females/Veterans/Disabled. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.
#J-18808-Ljbffr