Logo
Imagine Believe Realize, LLC

Information Systems Security Engineer

Imagine Believe Realize, LLC, Iowa, Louisiana, United States, 70647


The Information Systems Security Engineer must be able to meet the key criteria below:

Location:

100% Remote

Years’ Experience:

6+ years

Education:

Bachelor’s Degree in Cybersecurity or IT related field

Security Clearance:

IBR is a federal contractor. Applicants must be able to meet the requirements to obtain at minimum a Public Trust security clearance.NOTE: United States Citizenship is required as part of the eligibility criteria to be able to obtain this type of security clearance.

Employment Type:

Exempt

Key Skills:RMF package and Assessment and Authorization (A&A) experience using eMASS

Experience with AWS

Must possess an active CISSP certification or equivalent

Overview

IBR is looking to add a talented Information System Security Engineer (ISSE) to our Cybersecurity business unit. As a member of our cybersecurity team, you will be responsible for providing security engineering and security architecture support for RMF based A&A initiatives. The most qualified candidates will have a detailed understanding of standards and requirements outlined by DoD/Navy RMF, cloud computing, and DevSecOps best practices. The ability to collaborate well with IBR customers and other IBR employees supporting our customers is key for this position.

Responsibilities

Collaborate with customers and internal engineering teams to lead required RMF process/steps to assess and authorize a system obtaining and maintaining a full ATO (Authority to operate).

Assist the customer with authorizing assessment and authorization (A&A) documentation.

Support writing and reviewing of Risk Management Framework (RMF) documentation packages to support risk assessments.

Expected to contribute to Product or Network Information Security Engineering activities pertaining to CDRLs, trade studies, security requirements analysis, secure architecture development, management & compliance with security controls, design review milestones (SRR, SDR, PDR, CDR) and security test/verification activities.

Perform functional analysis, timeline analysis, detailed trade studies, requirements derivation and allocation, and interface definition studies to translate customer Information Security requirements into hardware and software specifications.

Provide Information Assurance (IA) technical leadership for development teams of new multi-discipline (mechanical, electrical, software, RF, etc.) products.

Strong understanding of Navy RMF procedures for ATOs, MFRs, and Use Cases.

Provide technical support including design, deployment and RMF packages.

Design and execute the security testing plan of all requirements and analysis required to complete a RMF package document for submittal and approval.

Knowledge of web application security, mobile application security, and DoD RMF processes, procedures, governance.

Malware detection for Windows and Linux.

Knowledge of Cybersecurity, Network, Systems, and Software Engineering best practices.

Experience with DoD eMASS, STIGs, and SRGs.

Be proficient with vulnerability scanning tools and frameworks to evaluate the security posture of a system.

Assist the customer in preparing training conferences, exercises, and video teleconferences to meet annual IA training objectives.

Have technical understanding of cloud technologies (i.e., AWS) and their implementation within the customer’s network environments.

Qualifications

Must be able to obtain a Public Trust security clearance.

Bachelor degree or higher education required.

6+ years of cybersecurity professional experience.

Must possess an active CISSP certification or equivalent.

Experience with requirements analysis, architect, design, and documentation development of cybersecurity and information security solutions.

Experience leading RMF packages for IATT/ATO activities involving custom on-prem and cloud solutions is a bonus.

Experience performing vulnerability risk analysis on the deficiencies found during RMF control testing.

Experience in writing and managing RMF body of evidence documents (ie. System Security Plan (SSP), Security Compliance Traceability Matrix (SCTM), Risk Management Report (RMR), Continuous Monitoring (ConMon) Plan, and Security Assessment Plans and Procedures (SAPP).

Experience with cybersecurity tools and scanners used to evaluate the security posture of the system/enclave (preferred tool experience: tenable.io, Nessus, GitLab, Docker, Palo Alto Prisma Cloud, Fortify, AWS Inspector, BurpSuite, ZAP).

AWS Cloud security knowledge including architecture, design, deployment, and management of cloud security technologies.

Experience utilizing vulnerability analysis and assessment tools such as Nessus, ACAS, and/or SCC.

Experience with content development and administration of SIEM/audit reduction tools such as Splunk.

Experience supporting account, PKI, and LDAP configuration and management.

Knowledge of Layer 3 architecture and diagramming within Visio a bonus.

Familiarity with Linux administration as well as scripting experience (Python, Bash, Shell, Perl).

Experience with eMASS, MCCAST, Jira, Agile, Accelerator, and/or Bitbucket a bonus.

Familiarity with Model Based System Engineering (UML, SysML, DoDAF) is a bonus.

Experience as a Navy Qualified Validator (NQV) Level III validator is a bonus.

Physical Demands and Work Environment

While this position primarily involves sedentary work in an office environment and/or home-office environment, there are some physical demands associated with the role, including:

Extended periods of sitting and working at a computer workstation.

Occasional lifting and carrying of equipment or materials weighing up to 20 pounds.

Occasional travel to client sites or meetings may be required.

Work may need to be performed in a fast-paced environment requiring quick thinking and rapid judgements.

Additionally, flexible work arrangements may be available based on business needs.

Employee will be exposed to a wide variety of clients in differing functions, personalities, and abilities.

About IBRImagine Believe Realize, LLC (IBR) is an emerging small business focused on delivering software and systems engineering solutions to government and commercial clients. Our talent acquisition strategy is tailored to career seeking candidates who embrace continuous learning and desire to grow as a professional in the software/systems engineering industry. We strive to enhance our team members ability to thrive in the workplace by creating a proper work/life balance and first-class benefits package that includes:

Nationwide medical, dental, and vision insurance.

3 weeks of Paid Time Off and 11 Paid Federal Holidays.

401k matching.

Life Insurance, Short-Term Disability, and Long-Term Disability at no cost to our employees.

Flexible spending accounts and Dependent Care spending accounts.

Wellness incentives.

Reimbursement for professional development and certifications.

Training assistance opportunities.

Upon hire and in compliance with federal law, all persons hired are required to verify identity and eligibility to work in the United States, and to complete the required employment eligibility verification and background check. IBR is a Federal Contractor.

Imagine Believe Realize, LLC is proud to be an Equal Opportunity and Affirmative Action Employer. We do not discriminate based upon race, age, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.Learn more at

http://www.teamibr.com

If alternative methods of assistance are needed with the application process, additional contact information has been provided below:

info@teamibr.com407.459.1830

#J-18808-Ljbffr