Senior Information Security Engineer with TS/SCI Poly

New Today

Description Join Leidos, a company committed to delivering innovative solutions to our diverse and talented teams dedicated to customer success. We believe in empowering our teams, contributing to our communities, and employing sustainable practices. We operate with a strong commitment to integrity, making choices that benefit our customers, our people, and our community. Our Mission, Vision, and Values are at the core of our business operations. Here, you will find opportunities for career development and experience rewarding relationships with supportive supervisors and talented colleagues. If you are ready to take on meaningful work in an environment where you can thrive, we invite you to be part of our team! Leidos is seeking a Senior Security Engineer to join an agile team utilizing the Scaled Agile Framework (SAFe) methodology to support a complex, fast-paced program. As part of our team of security engineers, you will support enhancements to system security architecture, manage multiple system security plans using the Risk Management Framework (RMF), and ensure security verification testing of Type 1 devices. Our work includes engineering, development, testing, integration, and operational support, emphasizing the introduction of new technologies and advanced capabilities while maintaining ongoing operational systems. In this role, you will play a crucial part in adding new capabilities to a complex system with stringent security, performance, and interface requirements. You'll work with a dedicated team to improve our operational, test, integration, and development systems while addressing challenging issues within a significant program. Key Responsibilities: Validate, verify, and establish system security requirements and designs for large-scale systems and components across a complex network environment. Implement information security architectures and functionality to ensure compliance with security policies and enterprise solutions. Develop technical solutions, products, and standards based on the desired system security architecture. Assess and mitigate system security threats and risks throughout the program life cycle. Lead security planning, assessment, risk analysis, and certification activities related to system operations. Collaborate effectively with internal technical experts on a daily basis. Communicate with Program Managers and customer Point of Contacts (POCs) regarding critical security issues. Participate in Program Increment Planning and agile team activities. Coordinate with System Engineering, Test Engineering, and Integration teams to ensure security requirements are met. Analyze system implementation against multiple security compliance policies, recommending enhancements as needed. Assess new development impacts on the operational security posture. Evaluate and test critical software for security compliance. Propose and enforce standards for information systems security policies and methodologies. Conduct audits and assessments of system security configurations using established methodologies and tools. Manage security policies for various system components effectively. Provide configuration management for security-relevant software. Act as a subject matter expert in security architecture, advising Program Managers and technical teams. Ensure security compliance for new system features and remediate identified security issues. Support risk assessment, management, and continuous monitoring functions. Work with development teams to improve awareness of vulnerabilities and remediation techniques. Plan and conduct security verification testing on relevant Type 1 devices. Basic Qualifications: Bachelor's degree in Computer Science, Information Assurance, Information Security Systems Engineering, or related field with at least 12 years of relevant experience; additional experience may substitute for a degree. Solid understanding of security practices and hands-on vulnerability testing experience. Experience with Risk Management Framework. Ability to formulate and assess IT security policy. Proficient with security tools such as Nessus, NMAP, and Wireshark. Experience with secure configurations of desktop and server operating systems. Ability to work on multiple systems simultaneously. Strong verbal and written communication skills. Commitment to best practices in security. Ability to plan, prioritize tasks, and communicate technical options effectively. Capability to perform high-quality work independently and as part of a team in a fast-paced environment. Preferred Qualifications: Five years of experience with Defense in Depth principles and risk assessment methodologies. DoD 8570 compliance with IASAE Level 2 or 3. Information Systems Security Engineering Professional (ISSEP) Certification. Computer Information Systems Security Professional (CISSP) Certification. Experience in integrating security services management processes, including risk analysis and incident response. Knowledge of penetration testing tools. Familiarity with scripting languages. The role is essential for facilitating secure systems in a collaborative, innovative environment. We encourage highly skilled candidates to apply and join our mission-driven team.
Location:
Annapolis Junction, MD, United States
Category:
Computer And Mathematical Occupations

We found some similar jobs based on your search