Tbwa Chiat/Day Inc
System Security Engineer Washington, DC
Tbwa Chiat/Day Inc, Washington, District of Columbia, us, 20022
Arlo Solutions (Arlo) is an information technology consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to end-users, and give our customers a competitive edge, now and into the future.**This opportunity is contingent upon award**Company SummaryArlo Solutions (Arlo) is
a
n information technology
consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to
end-users
, and give our customers a competitive edge, now and into the future.Position OverviewAs a
Cloud-focused
System Security Engineer, you will
be responsible for
ensuring the integrity, confidentiality, and availability of systems and data.
This role entails
bridging
security assessment requirements
and
ensuring
they are completed ahead of deployment to
enable a
seamless integration into the DoD’s
CDAO
ecosystem.
Your
expertise
will be essential in
identifying
vulnerabilities, conducting risk assessments, and developing strategies to mitigate security risks.Work LocationWashington, DCJob Responsibilities and/or Success FactorsDesign, implement, and maintain security infrastructure components such as firewalls, intrusion detection/prevention systems, VPNs, and encryption protocols to protect the organization's systems and data.Conduct regular vulnerability assessments and penetration testing to identify weaknesses in systems, applications, and network infrastructure. Develop and implement remediation plans to address identified vulnerabilities.Develop and maintain incident response plans and procedures. Lead incident response activities during security breaches or incidents, including investigation, containment, and recovery.Monitor security logs and alerts to identify potential security incidents or breaches. Analyze security event data to identify trends and potential security risks.Develop and enforce security policies, standards, and procedures in accordance with industry best practices and regulatory requirements. Ensure compliance with relevant guidance such as NIST, SSDF, OWASP, etc.Develop and deliver security awareness training programs to educate employees on security best practices and promote a culture of security awareness throughout the organization.Maintain accurate and up-to-date documentation of security configurations, procedures, and incident response plans.Support the design, test, and development of a secure modular open-source platform.Support investigation of system security hardening with updated POA&M and update A&A documentation for AWS, Azure, and government required Cloud EnvironmentsSupport engineering, analysis, and implementation of CDAO cybersecurity acceptance criteria to run and deploy CDAO JATIC Platform, frameworks, packages, and toolkits from a government supported ecosystem.Support security engineering and documentation of core CDAO Platform as a distributable and accredited package from PYPI, other Open-Source Security Frameworks, and government supported marketplaces.Support Security Investigation and documentation for additional environments, as required.Stay abreast of the latest security threats, vulnerabilities, and technologies. Evaluate new security technologies and products to assess their suitability for the organization's security needs.Education and Minimum QualificationsMust be a US CitizenTS/SCI clearanceBachelor's degree in Computer Science, Information Security, or a related field. Master's degree preferred.Professional certifications such as CISSP, CISM, CEH, CCSK, SANS GIAC are highly desirable.Proven experience in designing, implementing, and maintaining security infrastructure components.Strong knowledge of network security protocols, cryptography, and secure coding practices.Experience in secure coding practices and development within a CI/CD DevSecOps environment.Expansive knowledge with integrating Iaas, Paas, and SaaS offerings into government cloud environments.Experience with security assessment tools such as Nessus, Metasploit, Nmap, Wireshark, etc.Experience with incident response procedures and tools.Familiarity with relevant regulations and compliance requirements.Excellent analytical and problem-solving skills.Strong communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams.AAP StatementWe are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.Apply for this job
*indicates a required fieldFirst Name *Last Name *Email *PhoneResume/CVEnter manuallyAccepted file types: pdf, doc, docx, txt, rtfEnter manuallyAccepted file types: pdf, doc, docx, txt, rtfWhat is your current address? *Are you willing to travel onsite in DC if needed? *
Select...Do you have at least 10+ years of cybersecurity experience including a senior technical or management role, Project or Program Management experience?How did you hear about this job? If you know of an Arlo Solutions employee, please state their name. *What is your desired salary range? *Do you have an active security clearance? If yes, what type of security clearance do you have? Please select from the dropdown.
*
Select...Are you legally authorized to work in the United States? *
Select...Will you now, or in the future, require sponsorship for employment visa status (e.g. H-1B visa status)?
*
Select...Voluntary Self-Identification
For government reporting purposes, we ask candidates to respond to the below self-identification survey.Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiringprocess or thereafter. Any information that you do provide will be recorded and maintained in aconfidential file.As set forth in Arlo Solutions LLC’s Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection.As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measurethe effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categoriesis as follows:A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.Select...Voluntary Self-Identification of Disability
Form CC-305Page 1 of 1OMB Control Number 1250-0005Expires 04/30/2026Voluntary Self-Identification of Disability
Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026Why are you being asked to complete this form?
We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp .How do you know if you have a disability?
A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability.
Disabilities include, but are not limited to:Alcohol or other substance use disorder (not currently using drugs illegally)Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDSBlind or low visionCancer (past or present)Cardiovascular or heart diseaseCeliac diseaseCerebral palsyDeaf or serious difficulty hearingDiabetesDisfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disordersEpilepsy or other seizure disorderGastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndromeIntellectual or developmental disabilityMental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSDMissing limbs or partially missing limbsMobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supportsNervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilitiesPartial or complete paralysis (any cause)Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysemaShort stature (dwarfism)Traumatic brain injury
Disability Status
Select...
PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.
#J-18808-Ljbffr
a
n information technology
consulting services company that specializes in delivering technology solutions. Our reputation reflects the high quality of the talented Arlo Solutions team and the consultants working in partnership with our customers. Our mission is to understand and meet the needs of both our customers and consultants by delivering quality, value-added solutions. Our solutions are designed and managed to not only reduce costs, but to improve business processes, accelerate response time, improve services to
end-users
, and give our customers a competitive edge, now and into the future.Position OverviewAs a
Cloud-focused
System Security Engineer, you will
be responsible for
ensuring the integrity, confidentiality, and availability of systems and data.
This role entails
bridging
security assessment requirements
and
ensuring
they are completed ahead of deployment to
enable a
seamless integration into the DoD’s
CDAO
ecosystem.
Your
expertise
will be essential in
identifying
vulnerabilities, conducting risk assessments, and developing strategies to mitigate security risks.Work LocationWashington, DCJob Responsibilities and/or Success FactorsDesign, implement, and maintain security infrastructure components such as firewalls, intrusion detection/prevention systems, VPNs, and encryption protocols to protect the organization's systems and data.Conduct regular vulnerability assessments and penetration testing to identify weaknesses in systems, applications, and network infrastructure. Develop and implement remediation plans to address identified vulnerabilities.Develop and maintain incident response plans and procedures. Lead incident response activities during security breaches or incidents, including investigation, containment, and recovery.Monitor security logs and alerts to identify potential security incidents or breaches. Analyze security event data to identify trends and potential security risks.Develop and enforce security policies, standards, and procedures in accordance with industry best practices and regulatory requirements. Ensure compliance with relevant guidance such as NIST, SSDF, OWASP, etc.Develop and deliver security awareness training programs to educate employees on security best practices and promote a culture of security awareness throughout the organization.Maintain accurate and up-to-date documentation of security configurations, procedures, and incident response plans.Support the design, test, and development of a secure modular open-source platform.Support investigation of system security hardening with updated POA&M and update A&A documentation for AWS, Azure, and government required Cloud EnvironmentsSupport engineering, analysis, and implementation of CDAO cybersecurity acceptance criteria to run and deploy CDAO JATIC Platform, frameworks, packages, and toolkits from a government supported ecosystem.Support security engineering and documentation of core CDAO Platform as a distributable and accredited package from PYPI, other Open-Source Security Frameworks, and government supported marketplaces.Support Security Investigation and documentation for additional environments, as required.Stay abreast of the latest security threats, vulnerabilities, and technologies. Evaluate new security technologies and products to assess their suitability for the organization's security needs.Education and Minimum QualificationsMust be a US CitizenTS/SCI clearanceBachelor's degree in Computer Science, Information Security, or a related field. Master's degree preferred.Professional certifications such as CISSP, CISM, CEH, CCSK, SANS GIAC are highly desirable.Proven experience in designing, implementing, and maintaining security infrastructure components.Strong knowledge of network security protocols, cryptography, and secure coding practices.Experience in secure coding practices and development within a CI/CD DevSecOps environment.Expansive knowledge with integrating Iaas, Paas, and SaaS offerings into government cloud environments.Experience with security assessment tools such as Nessus, Metasploit, Nmap, Wireshark, etc.Experience with incident response procedures and tools.Familiarity with relevant regulations and compliance requirements.Excellent analytical and problem-solving skills.Strong communication and interpersonal skills, with the ability to effectively collaborate with cross-functional teams.AAP StatementWe are proud to be an Affirmative Action and Equal Opportunity Employer and as such, we evaluate qualified candidates in full consideration without regard to race, color, religion, sex, sexual orientation, gender identity, marital status, national origin, age, disability status, protected veteran status, and any other protected status.Apply for this job
*indicates a required fieldFirst Name *Last Name *Email *PhoneResume/CVEnter manuallyAccepted file types: pdf, doc, docx, txt, rtfEnter manuallyAccepted file types: pdf, doc, docx, txt, rtfWhat is your current address? *Are you willing to travel onsite in DC if needed? *
Select...Do you have at least 10+ years of cybersecurity experience including a senior technical or management role, Project or Program Management experience?How did you hear about this job? If you know of an Arlo Solutions employee, please state their name. *What is your desired salary range? *Do you have an active security clearance? If yes, what type of security clearance do you have? Please select from the dropdown.
*
Select...Are you legally authorized to work in the United States? *
Select...Will you now, or in the future, require sponsorship for employment visa status (e.g. H-1B visa status)?
*
Select...Voluntary Self-Identification
For government reporting purposes, we ask candidates to respond to the below self-identification survey.Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiringprocess or thereafter. Any information that you do provide will be recorded and maintained in aconfidential file.As set forth in Arlo Solutions LLC’s Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection.As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measurethe effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categoriesis as follows:A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.Select...Voluntary Self-Identification of Disability
Form CC-305Page 1 of 1OMB Control Number 1250-0005Expires 04/30/2026Voluntary Self-Identification of Disability
Form CC-305
Page 1 of 1
OMB Control Number 1250-0005
Expires 04/30/2026Why are you being asked to complete this form?
We are a federal contractor or subcontractor. The law requires us to provide equal employment opportunity to qualified people with disabilities. We have a goal of having at least 7% of our workers as people with disabilities. The law says we must measure our progress towards this goal. To do this, we must ask applicants and employees if they have a disability or have ever had one. People can become disabled, so we need to ask this question at least every five years.Completing this form is voluntary, and we hope that you will choose to do so. Your answer is confidential. No one who makes hiring decisions will see it. Your decision to complete the form and your answer will not harm you in any way. If you want to learn more about the law or this form, visit the U.S. Department of Labor’s Office of Federal Contract Compliance Programs (OFCCP) website at www.dol.gov/ofccp .How do you know if you have a disability?
A disability is a condition that substantially limits one or more of your “major life activities.” If you have or have ever had such a condition, you are a person with a disability.
Disabilities include, but are not limited to:Alcohol or other substance use disorder (not currently using drugs illegally)Autoimmune disorder, for example, lupus, fibromyalgia, rheumatoid arthritis, HIV/AIDSBlind or low visionCancer (past or present)Cardiovascular or heart diseaseCeliac diseaseCerebral palsyDeaf or serious difficulty hearingDiabetesDisfigurement, for example, disfigurement caused by burns, wounds, accidents, or congenital disordersEpilepsy or other seizure disorderGastrointestinal disorders, for example, Crohn's Disease, irritable bowel syndromeIntellectual or developmental disabilityMental health conditions, for example, depression, bipolar disorder, anxiety disorder, schizophrenia, PTSDMissing limbs or partially missing limbsMobility impairment, benefiting from the use of a wheelchair, scooter, walker, leg brace(s) and/or other supportsNervous system condition, for example, migraine headaches, Parkinson’s disease, multiple sclerosis (MS)Neurodivergence, for example, attention-deficit/hyperactivity disorder (ADHD), autism spectrum disorder, dyslexia, dyspraxia, other learning disabilitiesPartial or complete paralysis (any cause)Pulmonary or respiratory conditions, for example, tuberculosis, asthma, emphysemaShort stature (dwarfism)Traumatic brain injury
Disability Status
Select...
PUBLIC BURDEN STATEMENT: According to the Paperwork Reduction Act of 1995 no persons are required to respond to a collection of information unless such collection displays a valid OMB control number. This survey should take about 5 minutes to complete.
#J-18808-Ljbffr