Senior Security Engineer at ITC Federal developing and implementing internal security plans and compliance audits. Must have experience in system architecture design and risk assessments.
Responsibilities
Develop and implement internal System Security Plan (SSP) and Security Assessment Plan (SAP)
Evaluate the effectiveness of security controls, and develop findings and remediation recommendations i.e. Plan of Action and Milestones (POA&Ms)
Develop and implement security and compliance audit logging and monitoring
Implement and maintain security compliance and security monitoring technologies
Monitor security events and respond and/or coordinate response and mitigation efforts
Perform system architecture security risk and waiver assessments and propose mitigation plans
Perform Security Impact Assessment (SIA) for proposed system change requests
Perform vulnerability assessment and vulnerability remediation/mitigation research
Monitor patch and security advisories releases and review and develop deployment plans
Develop and implement security policy, processes, procedures, and guidance documentation
Provide security guidance to drive infrastructure decisions in collaboration with other technical and management stakeholders to ensure security policies and principles are being upheld
Engage in ongoing research of new and emerging security technologies that may benefit the security posture of strategic goals
Work closely with senior management, systems operations staff, software development staff, support staff, 3rd parties and end-users to ensure rapid resolution of security issues
Support others in analyzing and resolving difficult technical problems
Conduct in-depth technical reviews of new and existing IT systems in order to identify the appropriate mitigation strategies required to bring these systems into compliance with established NIST policy and industry guidelines
Performs other security related duties as required
Requirements
Bachelor of Science in Computer Engineering / Computer Science with 4-7 years’ experience
3+ years of experience system architecture design with experience providing security integration
2+ years of experience working with virtualization technologies
1+ year of working with cloud services and/or collaboration with cloud service providers
One or more of the following certification: MCSA/MCSE, CCNA Security, GSEC, GCIA, GCIH, CISA, CISM, CCSP, CAP and/or CISSP
In-depth understanding of access control, authentication and authorization, security auditing, and security configuration technologies
In-depth understanding of standard Internet protocols (i.e., FTP, HTTP, DNS, DHCP, RADIUS, SNMP, and SMTP)
In-depth understanding of security and compliance best practices and standard (i.e., FISMA, FedRAMP, CIS Benchmarks, DoD STIGs, SCAP, NIST SP800-53/39/37, ISO 27001/27002)
Recent hands-on experience or familiarity implementing IT security equipment (Governance Risk and Compliance Tools, Firewalls, Intrusion Detection Systems, Vulnerability Scanners, Virtual Private Networking, virus protection technologies, and Log Management solutions)
Familiarity or experience with the following types of appliances/ tools a plus: Tenable Security Center/ Nessus, Web Inspect, LogRythm, BigFix, SentinelOne, Active Directory, Palo Alto Firewall, Juniper SRX Firewall, Cisco, Global Protect
Ability to perform risk assessments and build risk mitigation plans
Strong organization, written and oral communication skills
Strong ability to function independently or as a part of a large, integrated cross-functional team
Intellectual curiosity and a willingness to learn new things
Experience working in a dynamic lab environment preferred
Senior Sales Specialist driving cybersecurity solutions for TELUS, focusing on high - level client relationships and strategic sales growth in Quebec. Collaborative role with interdisciplinary teams for exceptional service.
Senior Cybersecurity Sales Specialist joining TELUS to elevate customer experience across Canada. Driving change and delivering results in the Montreal cybersecurity market through strategic consultation and account management.
Tier 2 support specialist within Cyber Fraud Investigations at Enbridge. Responsible for detecting, investigating, and preventing fraudulent activity across digital channels.
IT Security System Administrator responsible for vulnerability detection and internal IT security at GovTech solutions company. Collaborating within IT team to enhance security infrastructure.
CISO managing the information security program at Sokin, a B2B financial services provider. Leading strategy, compliance, and security operations across global operations.
Personnel Security Specialist for FBI operations reviewing investigation documentation for accuracy and processing. Support background investigations and conduct security assessments for personnel qualifications.
Personnel Security Specialist handling background investigations and security document management for government personnel security processes. Ensuring compliance with operational security requirements in a mission - driven environment.
Personnel Security Assistant providing customer service and administrative support for personnel security case processing. Reviewing forms, assisting applicants, and coordinating follow - ups based in Springfield, VA.
Security Police Officer supporting the protection of DOE property and assets with a focus on maintaining a secure environment. Observing incidents and preserving order at assigned client sites in Platteville, CO.