Information Security Engineer III
Annapolis Junction, MD, United States
Applications have closed
Millennium Corporation
Overview
For two decades, Millennium Corporation has been operating on the leading edge of cybersecurity. Our elite team of more than 400 experts has an unparalleled record of performance supporting Red Team Operations, Defensive Cyber Operations, Software Engineering, and Technical Engineering. With the largest contingent of contracted Red Team operators in the DoD, we provide an unmatched level of threat intelligence and battle-tested experience for customers in both the DoD and federal civilian markets.
What We Believe
We believe that diversity is a fact, inclusion is a choice. At Millennium Corporation, we are inclusive. We celebrate multiple approaches and different points of view. We strongly believe that diversity drives innovation, and we are building a culture where differences are valued. We are always growing our programs and we offer tools to help our employees grow and manage their careers.
Millennium is an equal opportunity employer and does not discriminate or allow discrimination on the basis of race, color, religion, gender, age, national origin, citizenship, disability, veteran status or any other classification protected by federal, state, or local law. Millennium promotes affirmative action for women, minorities, disabled persons, LGBTQ+ and veterans.
Responsibilities
Millennium Corporation is hiring a Network Engineer in Annapolis, MD. Candidate must have an active Top Secret/SCI clearance with eligibility to obtain CI Polygraph.
The Network Engineer will be responsible for assisting the government by providing the design, implementation, and maintenance of IT systems within the SCIF, ensuring compliance with stringent security requirements and best practices. Possesses knowledge of development and design of SCIF IT infrastructure to include virtualization, hybrid and cloud.
- Assists the government by providing senior-level system administration and engineering oversight for hardware, software, and network components.
- Collaborates with the ISSM to develop and enforce security policies and procedures in alignment with NIST RMF guidelines.
- Designs, installs, and manages security mechanisms that protect networks and information systems against hackers, breaches, viruses, and spyware.
- Responds to incidents, investigates violations, and recommends enhancements to plug potential security gaps.
- Analyzes data to spot trends, and creates tools to support research efforts. Mitigates threats by gathering information and developing plans, and monitors networks for security breaches.
- Creates and tests disaster recovery procedures to keep IT running in the event of a security breach. Researches data, learns about new technologies, and gathers information on the latest risks.
- Utilizes specialized expertise, up-to-date knowledge, and proficiency in analysis, forensics, and reverse engineering to monitor and diagnose malware events and vulnerability issues resulting in Web threats that facilitate cybercrime.
- Collaborates with the ISSM to develop and enforce security policies and procedures in alignment with NIST RMF guidelines as well as A&A process.
- Assist the government in developing and maintaining comprehensive System Security Plans (SSPs) and other relevant documentation.
- Actively participates in incident response activities and assist in security assessments and audits.
Qualifications
- Candidate must have an active active Top Secret/SCI clearance with eligibility to obtain CI Polygraph.
- Bachelor's degree and 8 years of experience OR Master's degree and 6-10 years of experience
- CCNA Certification
- Experience with server and software upgrade
- Experience with the performance, design, configuration, and testing of complex large-scale computer networks
- Experience designing and running government cyber testing ranges
- Experience with AWS, Microsoft Azure, Google Cloud Platform (GCP), Oracle Cloud Infrastructure (OCI) or IBM Cloud.
- Experience or knowledge of industry leading Cloud Service Providers (CSP)
- Knowledge of FedRAMP
- Experience with Accreditation and Authorization (A&A)/ Risk Management Framework(RMF) Process.
- Experience or knowledge of DEVSECOPS process
- Experience or knowledge of Terraform or other Infrastructer As Code applications or services.
Business Development
Assist with Business Development activities as required to support Millennium's strategic business objectives, which may include but not limited to participation in technical interviews, creation of technical documentation, general proposal writing support and proposal color reviews.
Physical Requirements
- Must be comfortable with prolonged periods of sitting at a desk and working on a computer.
- Must be able to lift up to 10-15 pounds at a time.
Travel Requirements
Once a quarter
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits AWS Azure Clearance Cloud Compliance Cyber crime DCO DevSecOps DoD FedRAMP Forensics GCP Incident response IT infrastructure Malware NIST Oracle Polygraph Red team Reverse engineering Risk management RMF Security assessment System Security Plan Terraform Threat intelligence Top Secret TS/SCI
Perks/benefits: Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.