STIG Tester
Herndon, VA, US
Corsec Security, Inc.
Corsec Security provides expert guidance and consulting for organizations seeking cybersecurity certifications like FIPS 140-2/3, Common Criteria, CSfC, and the DoDIN APL. Our proven methodology ensures efficient certification.We're looking for an individual with network configuration and testing experience, who would like to work on and with cutting edge systems as they work to meet DoD requirements. If you have experience in testing or the federal space come join our fast growing team.
Job Description: STIG and interoperability testing supporting IT product vendors to achieve DoDIN APL listing.
Job Functions
- Configure IT products to meet compliance requirements and produce certification-specific deployment guidance.
- Test products against STIGs and perform vulnerability assessments.
- Examine and test IT products against security certification standards in order to determine and document compliance gap reports.
- Analyze design, architecture and implementation details of IT products and produce technical documentation specific to security certifications.
- Assist in maintenance of test bed lab and lab equipment
- Hybrid work opportunities.
Education
- Bachelor's degree in Information Systems, Cyber Security, Computer Engineering, or a comparable field.
Required Skills and Experience
- Hands on experience applying STIGs to IT products.
- Deep understanding of at least two of the following IT concepts: networking, cryptography, operating systems administration, cybersecurity, information assurance and Federal sales.
- Working knowledge of commonly deployed enterprise IT solutions such as Active Directory, NTP servers, syslog servers, VMware vSphere, vCenter and ESXi etc.
- Strong analytical and technical skills in assessing IT products, excellent organization skills, and great attention to detail in reporting and tracking compliance activities.
- Ability to work independently and conduct research to expand skill set.
- Ability to install, configure and troubleshoot networking products such as Firewalls, Ethernet Switches, Routers, IDS/IPS, SIEM, Cybersecurity tools etc.
- Ability to use vulnerability scanning tools such as Nessus or Wireshark and generate reports on risks and mitigation plans.
- Excellent technical writing skills - must be able to prepare consistent and quality technical documentation.
- Strong oral presentation skills - ability to articulate requirements in technical and non-technical terms to customers, peers and management.
Desired Skills and Experience
- Federal Sales Engineer experienced with deployments within DoD.
- Familiarity with Common Criteria, FIPS 140-3, DoDIN APL, or NIST SP 800-53.
- Familiarity with project management.
- Background in development of SAR and POA&Ms.
- Familiarity with Docker and Kubernetes.
- Familiarity with AD and PKI.
- Background in product testing.
Tags: Active Directory Compliance Cryptography Docker DoD Ethernet Firewalls IDS IPS Kubernetes Nessus NIST NIST 800-53 PKI Security Assessment Report SIEM STIGs VMware
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.