Info Systems Security Engineer (ISSE) - Peraton
Kansas City, MO
About the Job
Responsibilities
Cyber Engineer
Location: Onsite in Kansas City, Missouri
Cybersecurity Engineer
Overview:
We are seeking a Cybersecurity Engineer to:
- Support US Marine Corps (USMC) enterprise-level hybrid cloud data center design, development, engineering and operations.
- Enable USMC world-wide customers to execute critical missions
What you will do:
As a Cybersecurity Engineer, you will support an Information System Security Manager (ISSM) and Information System Security Officer (ISSO) and collaborate with a team responsible for all aspects of cybersecurity support to the hybrid-cloud enterprise hosting environment. You will conduct vulnerability analysis and self-assessment technical analysis, monitor compliance status, manage and maintain the accreditation packages and support plan of action and milestone (POA&M) for known security vulnerabilities. In addition, you will support ATO package development for the datacenter. Finally, you will participate in the continuous monitoring program supporting datacenter operations.
Responsibilities include:
- Providing technical and authorization and accreditation support
- Conducting vulnerability management assessments using ACAS (Tenable Nessus) and other tools including mitigation development and POA&M and documentation support
- Coordinating and collaborating with engineering and installations teams and the operations cybersecurity team to identify solutions for vulnerability mitigation and preparing cybersecurity documentation to obtain support and approval to operate
- Preparing systems for review and independent verification and validation (self-assessments)
- Developing POA&M for identified vulnerabilities and developing remediation, mitigation and criticality downgrade strategies
- Supporting accreditation activities for in-deployment infrastructure as well as requirements in development and engineering change proposal/pipeline processes such as developing supporting documentation and completing cybersecurity compliance requirements; collaborate with operations team for installed and operating systems vulnerability management and accreditation
- Coordinating with independent verification and validation team and operations cybersecurity support to enable overall cybersecurity program activities
- Developing, maintaining, editing, authoring, and supporting accreditation package requirements including use of USMC's accreditation tool - MCCAST
- Supporting continuous monitoring activities
Qualifications
Required Experience/Education:
- BS 8-10, MS 6-8, PhD 3-5, Will also consider HS diploma and 12+ years of experience.
- DoD Secret Clearance
- IAT III Certification required (within 6 months)
- Experience creating and maintaining RMF-based accreditation packages
- Experience using a certification and accreditation tool/GRC -- MCCAST (built on RSA Archer preferred), eMASS alternative
- Demonstrated understanding of DOD cybersecurity infrastructure tools including PKI, Data encryption, McAfee HBSS/ePO, DOD IA Toolkit
- Strong technical foundation with system administration skills and experience to support independent assessments of cybersecurity risk and mitigation measures of enterprise data center systems including Virtualization, networking (CISCO, Palo Alto), Storage (SAN, NAS), Windows, Linux, Oracle and SQL database, SharePoint solutions
- Experiencing operating within an Enterprise ITSM solution and queue operations (BMC Remedy preferred)
- Experience with the configuration of datacenter monitoring and management solutions
- Experience using Log Management and SIEM solutions to support cybersecurity program (LogInsight is tool in use)
Preferred
- ACAS and RMF certification desired
- Demonstrated strong understanding and application of RMF And DISA STIG/Security framework implementation, experience with cloud implementation desired
- Expert experience conducting Tenable ACAS vulnerability management and reporting using Security Center, Nessus, PVS), experience with IAVM/IAVA management and reporting desired
- Fundamental understanding of ITSM/ITIL processes (ITIL training or certification desired)
Benefits: At Peraton, our benefits are designed to help keep you at your best, beyond the work you do with us daily. We are fully committed to the growth of our employees. From fully comprehensive medical plans, to tuition reimbursement, tuition assistance, and fertility treatment, we are there to support you all the way.
Peraton Overview
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we’re keeping people around the world safe and secure.