Skip to Main Content
Cyber Security Engineer
SAIC Herndon, VA

Cyber Security Engineer

SAIC
Herndon, VA
Expired: February 07, 2024 Applications are no longer accepted.
  • Full-Time

Job ID: 2402025

Location: HERNDON, VA, US

Date Posted: 2024-02-07

Category: Cyber

Subcategory: Cybersecurity Spec

Schedule: Full-time

Shift: Day Job

Travel: No

Minimum Clearance Required: TS/SCI with Poly

Clearance Level Must Be Able to Obtain: None

Potential for Remote Work: No


Description

Description:

INTRODUCTION: The Sponsor manages security assessment, security compliance, change management, and continuous monitoring responsibilities across cloud service providers. The Sponsor requires support in understanding and implementing standards like ICD 503, NIST Risk Management Framework, and cloud technologies. The work requires a healthy mix of technical and policy knowledge. The work will be driven by the Sponsors needs and priorities.

WORK REQUIREMENTS: The Sponsor will direct priorities and delegate tasks.

• The Contractor Team shall manage security assessment, security compliance, change management, and continuous monitoring activities across five cloud service providers through the Sponsor’s office.

• Assess cloud security technologies for security gaps and weaknesses according to industry standards.

• Analyze security scan findings and perform risk analysis on security scan findings.

• Review cloud security body of evidence packages for completeness and accuracy.

• Collaborate with other internal components and security peers to determine security and potential weaknesses of cloud infrastructure and cloud services.

• Advise Sponsor leadership on cloud security services.

• Analyze system alerts to determine if a security weakness exists and document risk mitigation procedures.

• Sustain and evolve the Sponsor’s standard operating procedures to meet Program Objectives.

• Facilitate technical exchange meetings (TEMs) with cloud service providers to review cloud service architectures.

Qualifications

Required Skills:

1. Demonstrated experience facilitating Technical Exchange Meeting (TEM) with cloud service providers to review cloud service architectures.

2. Demonstrated experience maintaining assessment and authorization packages across multiple services or systems in accordance with FIPS-199, NIST 800-53, and CNSS 1253 requirements.

3. Demonstrated experience designing, implementing, assessing, or reviewing systems that utilize cloud technology with either Amazon Web Services, Oracle Cloud, Google Cloud, IBM Cloud, or Microsoft Azure cloud architecture.

4. Demonstrated experience utilizing or reviewing cross domain technology and common architecture designs.

5. Demonstrated experience consulting project teams on system architecture and security posture.

6. Demonstrated experience with continuous monitoring requirements to include scan analysis for critical or high findings with common scan tools such as Rapid 7, Nessus or Qualys.

7. Demonstrated experience creating, monitoring, or closing system or service Plans Actions and Milestone items (POA&Ms).

8. Demonstrated experience utilizing compliance tools to track assessment and authorization activities such as Xacta 360, Service Now, or RSA Archer.

9. Demonstrated experience with the common control provider concept within the NIST Risk Management Framework.

10. Demonstrated experience with security control assessments (SCAs) to include working with SCAs and preparing security packages for SCAs.

Desired Skills:

1. Demonstrated experience using the Sponsors or similar element assessment and authorizing process.

2. Demonstrated experience creating or reviewing A&A body of evidence documentation in a cloud security environment.

3. Demonstrated experience identifying, implementing, or reviewing appropriate information security controls.

4. Demonstrated experience working in Xacta 360.

 


SAIC accepts applications on an ongoing basis and there is no deadline.

Covid Policy: SAIC does not require COVID-19 vaccinations or boosters. Customer site vaccination requirements must be followed when work is performed at a customer site.

Address

SAIC

Herndon, VA
20171 USA

Industry

Technology

Get fresh Cyber Security Engineer jobs daily straight to your inbox!

¹You may also apply directly on the company website.
By clicking “Continue” above,I agree to the ZipRecruiter Terms of Use and acknowledge I have read the Privacy Policy, and agree to receive email job alerts.