Define, plan, design, and evaluate information security systems with the following:
Provide solutions for and implement Risk Management Framework (RMF) security controls
Perform requirements analysis, design, and integration for complex software applications and collaboration infrastructures
Conduct assessment testing and reporting in accordance with the RMF and NIST 800-53; identifies deficiencies (POA&M) and provides recommendations for solutions
Participate in the change management process, and assess security impact of proposed changes
Write implementation and design documents describing how security features are implemented
Design and implement an encryption solution for workstations and the datacenter environment
Design and implement an RSA two-factor authentication solution for general and privileged users
Position Requirements:
Requires Bachelor’s degree or equivalent in the fields of mathematics, telecommunications, electrical engineering, computer engineering, or computer science and 5-7 years related experience; or Master’s degree with 3-5 years of experience
Experience implementing and engineering encryption and/or key management solutions
Must possess excellent analytical skills and be capable of quantifying risk to enterprise systems and level of compliance with security policy
Experience with modern Microsoft and VMware technologies
PKI, RSA technologies experience
Experience with assessment testing, RMF, information assurance tools, DoD STIG, and vulnerability assessment a plus
Security Requirements:
Active TS/SCI with CI Poly
What You'll Do
Define, plan, design, and evaluate information security systems with the following:
Provide solutions for and implement Risk Management Framework (RMF) security controls
Perform requirements analysis, design, and integration for complex software applications and collaboration infrastructures
Conduct assessment testing and reporting in accordance with the RMF and NIST 800-53; identifies deficiencies (POA&M) and provides recommendations for solutions
Participate in the change management process, and assess security impact of proposed changes
Write implementation and design documents describing how security features are implemented