Senior Information System Security Engineer
See all open roles at redhorse corporation →
Likely real
- 72 open roles at this company in 30 days (mass-hiring blitz)
See your fit for this role and apply with a truthfully tailored résumé.
About the role
Key Responsibilities
Provide technical and programmatic Information Assurance services to internal and external customers to support network and information security systems.
Design, develop, and implement security requirements within the organization’s business processes.
Prepare comprehensive security documentation utilizing accepted guidelines such as DITSCAP, DIACAP, and NIST SP 800-37.
Develop and execute Security Test and Evaluation (ST&E) plans to verify the efficacy of security controls.
Conduct complex risk and vulnerability assessments to identify system weaknesses and recommend mitigation strategies.
Analyze existing policies and procedures against Federal laws and regulations, providing strategic recommendations to close compliance gaps.
Develop, test, and integrate computer and network security tools to enhance system defense.
Manage and complete System Security Plans (SSP) and Contingency Plans to ensure operational continuity.
Perform vulnerability assessments and develop risk mitigation strategies to address identified deficiencies.
Secure system configurations, install security tools, and scan systems to determine and report compliance results.
Conduct security program audits and develop solutions to lessen identified risks.
Provide IA support for the development and implementation of security architectures to meet new and evolving requirements.
Assist in computer incident investigations and perform root cause analysis.
Develop strategies to comply with privacy, risk management, and e-authentication requirements.
Required Experience/Clearance
Must have an active TS/SCI with FS Poly security clearance
Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field.
8+ years of related experience performing information assurance and information systems security engineering duties.
Demonstrated experience in the certification and accreditation (C&A) of information systems.
Direct experience with NIST SP 800-37 (RMF), DIACAP, NIACAP, or DCID 6/3 frameworks.
Proficiency in developing System Security Plans (SSP) and performing vulnerability scans.
Desired Experience
We encourage all candidates who meet the basic requirements to apply, even if you do not have any of the following experience:
Professional certifications such as CISSP, ISSEP, or CISM.
Experience with modern cloud security environments (AWS, Azure, or Google Cloud).
Familiarity with automated compliance tools and DevSecOps pipelines.
Operational experience with DataBricks, GitLab, or Jira in a secure environment.
Experience leading a team of junior security analysts or engineers.
Stop applying to ghosts.
OyaPilot surfaces only verified, real jobs, scores your fit, and tailors your application truthfully.
Do more with OyaPilot