Senior Cyber Security Engineer / Information Systems Security Engineer (ISSE) - Modern Technology Solutions, Inc.
Wright- Patterson AFB, OH 45433
About the Job
Own Your Future. Modern Technology Solutions, Inc. (MTSI) is seeking a Senior Cyber Secruity Engineer/Information Systems Security Engineer (ISSE) in Dayton, OH.
As a Senior Cybersecurity Engineer / Information Systems Security Engineer (ISSE) with MTSI you will support a customer operating out of Wright Patterson AFB, Dayton, OH with travel up to 20%, as required by the Government. The ISSE serves as the Program Office’s information security professional responsible for conducting information system security engineering activities that capture and refine their requirements and ensures security is integrated into system and security architecture designs. The ISSE works with the Systems Engineering teams to incorporate cyber resiliency objectives, techniques, and design principles into all engineering and development efforts throughout the systems development life cycle (SDLC).
Why is MTSI known as a Great Place to Work?
- Interesting Work: Our co-workers support some of the most important and critical programs to our national defense and security.
- Values: Our first core value is that employees come first. We challenge our co-workers to provide the highest level of support and service, and reward them with some of the best benefits in the industry.
- 100% Employee Ownership: we have a stake in each other's success, and the success of our customers. It's also nice to know what's going on across the company; we have company wide town-hall meetings three times a year.
- Great Benefits - Most Full-Time Staff Are Eligible for:
- Starting PTO accrual of 20 days PTO/year + 10 holidays/year
- Flexible schedules
- 6% 401k match with immediate vesting
- Semi-annual bonus eligibility (July and December)
- Company funded Employee Stock Ownership Plan (ESOP) - a separate qualified retirement account
- Up to $10,000 in annual tuition reimbursement
- Other company funded benefits, like life and disability insurance
- Optional zero deductible Blue Cross/Blue Shield health insurance plan
- Track Record of Success: We have grown every year since our founding in 1993
Modern Technology Solutions, Inc. (MTSI) is a 100% employee-owned engineering services and solutions company that provides high-demand technical expertise in Digital Transformation, Modeling and Simulation, Rapid Capability Development, Test and Evaluation, Artificial Intelligence, Autonomy, Cybersecurity and Mission Assurance.
MTSI delivers capabilities to solve problems of global importance. Founded in 1993, MTSI today has employees at over 20 offices and field sites worldwide.
For more information about MTSI, please visit www.mtsi-va.com.
Responsibilities:• Serve as the Information Systems Security Officer (ISSE) providing technical input, recommendations, and assistance with the implementation of both higher and granular-level cyber security approaches, methods and solutions that incorporate and maintain compliance to requirements resulting from laws, regulations, and other pertinent guidance.
• Participate in acquisition meetings (PMR, PDR, CDR, etc.), concept of operation (CONOP) working groups, change boards, technical exchange meetings and other similar activities.
• Design and develop security requirements that drive down risk while maintaining operational capability.
• Work between architecture-level and implementation-level engineering meetings to maintain a system-wide view of security functions and apply risk mitigation strategies at the appropriate level.
• Guide and verify defense contractors’ work against program requirements and goals. This includes participating in technical discussions, trade studies and working groups, and conducting research on industry best practices for potential implementation.
• Interface with program managers to explain security requirements, risks and mitigations relative to their priorities of cost and schedule to ensure an acceptable risk tolerance.
• Evaluate newly identified threats and vulnerabilities to customer information systems to ascertain the need for additional safeguards and develop timely implementation strategies to reduce risk.
• Enforce the design and implementation of trusted relationships among external systems and architectures.
• Assess proposed changes to customer information systems, their operation environment, and mission needs for impacts to cybersecurity architectures and continued compliance with cybersecurity requirements.
• Provide inputs to development teams responsible for designing and developing organizational information systems and upgrading legacy systems.
• Employ best practices when implementing security requirements for information systems including software engineering methodologies, system/security engineering principles, secure design, secure architecture, and secure coding techniques.
• Keep abreast of current and new security technologies and threats to better support the customer in maintaining cybersecurity resilience.
• Identify integration issues related to the implementation of new systems within the existing infrastructure; recommend mitigation and/or resolution options as appropriate.
• Assist in the design of systems and networks that encompass multiple enclaves to include those with differing data protection/classification requirements.
• 8+ years' technical experience in cybersecurity, information technology, or systems engineering.
• Active TS required, SCI Eligible
• Able to demonstrate understanding of cybersecurity needs of systems at varied stages of the SDLC.
• Firm understanding of the DoD 8500.1-M, DoDM 5205.07, Volume 1, Joint SAP Implementation Guide (JSIG), National Institute of Standards and Technology (NIST) Special Publication 800-53, Intelligence Community Directive (ICD) Number 503.
• Excellent oral and written communication skills and ability to clearly translate client technical needs into technical specifications.
• Demonstrated ability to complete tasks, drive projects to closure, assimilate and correlate project information in a fast-paced environment.
• Demonstrated ability to assess and articulate risk, including to non-technical audiences.
Desired Qualifications:
• Experience working on DISA Security Technical Implementation Guide (STIG) implementation.
• Experience working on-site in a government client environment.
• Familiarity with security procedures while working in a SCIF/SAPF environment.
• Cloud Security Implementation experience.
• Familiarity and experience with NSA requirements for COMSEC.
• Experience with DoD Acquisition Lifecycle experience and/or Rapid Acquisition / Rapid Delivery experience
• Capable of applying system security engineering expertise to various client programs/processes (e.g., system security design process, engineering life cycle, information domain and cross domain solutions, identification/authentication/authorization of commercial off-the-shelf and government off-the-shelf software employment, system integration, risk management, intrusion detection, contingency planning, incident handling, configuration control, change management, continuous monitoring, auditing, assessment and authorization, confidentiality, integrity, and availability.
Education Requirements:
• Bachelor’s degree in engineering, computer science, cybersecurity, networking, or programming.
• Master’s degree in engineering, computer science, cybersecurity, networking, or programming, (DESIRED).
Certification Requirements in one or more of the following:
• Certified Information Systems Security Professional (CISSP or (CISSP-ISSEP/CISSP-ISSAP) DESIRED
• Certified Cloud Security Professional (CCSP).
• AWS Architect or other similar cloud technology security certification
Clearance Requirements:
Security Clearance Level Required: Top Secret
Please Note: U.S. Citizenship is required.
#LI-DB1
#LI-Onsite