Lead, Info Security Systems Engineer
Palm Bay, Floride; Fort Wayne, Indiana
Job ID 21184L3Harris se fait un devoir de recruter et de former des talents performants qui sont passionnés par ce qu’ils font. Nos employés sont liés par un engagement commun envers leur croissance professionnelle et la mission de nos clients. L3Harris offre un environnement inclusif et engageant conçu pour responsabiliser les employés et encourager un équilibre entre le travail et la vie personnelle. Notre culture repose sur l’importance que nous accordons à nos valeurs, notre dévouement envers nos collectivités et notre engagement envers l’excellence dans tout ce que nous faisons. L3Harris Technologies est l’entreprise perturbatrice de confiance dans l’industrie de la défense. Ayant toujours à l’esprit les besoins essentiels de nos clients, nos employés offrent des solutions technologiques de bout en bout reliant les domaines de l’espace, de l’air, de la terre, de la mer et des cyberdomaines, dans l’intérêt de la sécurité nationale.
Job Title: Information Security Systems Engineer
Job Code: 21184
Job Location: Fort Wayne, IN
Job Schedule: 9/80
Job Description:
Applies current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration of systems and networks to maintain system security. Works closely with Government customers to ensure that the security protection needs, concerns and requirements are defined and implemented with appropriate fidelity and rigor, early and in a sustainable manner throughout the life cycle of system that will allow for the security authorization of the system of interest. Works with systems developers or commercial product vendors in the design and evaluation of state-of-the-art secure systems, networks, and database products. Uses methods such as encryption technology, vulnerability analysis and security management. Responsible for integration of multiple methods into a cohesive system security perimeter and environment and the policies and procedures necessary to monitor and maintain such an environment. Will prepare Certification and Accreditation documentation, using multiple standards, to achieve security authorization of supported systems. Represents program security needs, concerns and requirements at customer meetings.
Essential Functions:
- Experience in writing and managing RMF body of evidence documents (e.g., System Security Plan (SSP), Security Compliance Traceability Matrix (SCTM), Risk Assessment Report (RAR), Continuous Monitoring (ConMon) Plan, and Security Assessment Plans and Procedures (SAPP).
- Experience with A&A package processing in eMASS and Xacta.
- Experience in DoD software selection and approval processes for COTS, GOTS and FOSS.
- Experience in the application of DISA SRGs and STIGs.
- Experience in the implementation and use of cybersecurity tools (ACAS, SCAP, etc.).
- Support security engineering activities, including basis of estimate development, requirements development, design, test, configuration management and maintenance of information systems and data.
- Assist program security in the development of policies and procedures for emerging security technologies.
- Perform functional analysis, timeline analysis, detailed trade studies, requirements derivation and allocation, and interface definition studies to translate customer Information Security requirements into hardware and software specifications.
- Provide Information Assurance (IA) technical leadership for development teams of new multi-discipline (mechanical, electrical, software, RF, etc.) products.
- Responsible for developing security overlays, data flow diagrams, internal requirements, CONOPs and interface control documents from customer / product requirements.
- Knowledge of security requirements, documentation, and risk mitigation strategies.
- AWS cloud security knowledge including architecture, design, deployment, and management of cloud security technologies.
- Strong familiarity with Linux.
- Familiarity with security related tools – SIEM, malware, HIPS, etc
- Identify security risks, threats and vulnerabilities of networks, systems, applications and new technology initiatives (hardware, software, cross-domain solutions, cryptographic devices, firewalls, intrusion detection systems, anti-virus systems and software deployment tools).
- Support vulnerability assessment activities as required.
- Support the evaluation, qualification, testing and delivery of security architecture improvement, obsolescence replacement and vulnerability response projects.
- Ability to work individually or as part of a cybersecurity team. Must be able to lead and provide direction based on program and customer requirements and compliance.
- Possess excellent speaking abilities and skills to brief leadership and customers.
- Possess ability to conduct research on security and other applicable topics as needed as the cybersecurity lead.
- Must be a self-starter that is able to understand requirements and develop plans and articulate needs to meet compliance and requirements.
- This is an On-Site Position
Qualifications:
- Education
- Bachelor’s Degree and minimum 9 years of prior relevant experience, or
- Graduate Degree and a minimum of 7 years of prior related experience or
- In lieu of a degree, minimum of 13 years of prior related experience.
- Must have active TS/SCI security clearance
- DoD 8140.03 IAT Level 3 certification
Preferred Additional Skills:
- Familiarity with Model Based System Engineering (UML, SysML, UAF).
- Experience in configuration and use of cyber defense and vulnerability assessment tools such as ACAS and SCC.
- Moderate understanding of vulnerability analysis tools such Tenable NESSUS Security products.
- Experience in the content development and administration of SEIM/audit reduction tools (e.g., Splunk).
- Foundational knowledge of Layer 3 architecture and diagramming within Model based System Engineering tools such as CAMEO (or equivalent).
- Supporting account management, PKI cert management, LDAP configuration/management.
- Scripting experience (Bash/Shell, Python, Perl, PowerShell).
- Active TS/SCI with CI poly is highly desired.