Cyber Security Engineer
Bethesda, MD
Hatch IT
hatch I.T. is a tech recruiting partner for scaling startups and small businesses. We specialize in engineering, data, and product teams.
hatch I.T. is partnering with cyDaptiv to find a Cyber Security Engineer. See details below:
About The Role:cyDaptiv Solutions is seeking a Cyber Security Engineer with experience supporting Federal and DoD cyber security and information assurance projects. The CSE must have knowledge of the Risk Management Framework (RMF), security principles, concepts, policies and regulations and be able to identify risks in information systems and work with system administrators and engineers to resolve security weaknesses.The successful candidate will have experience assessing security control implementation and system configurations using automated tools and manual check lists; determining compliance/risk severity; recommending remediations; and have ability / skillset to implement fixes. The candidate must also have experience working with stakeholders at various organizational levels and be able to manage and coordinate assessment activities in a collaborative manne
About the Company:cyDaptiv Solutions, Inc. is a firm specializing in Systems Engineering, Cybersecurity Solutions Integration, Risk Management & Compliance, IT Services, and Project Management. cyDaptiv’s Information Technology professionals have significant experience delivering services for enterprise-scale IT systems in a variety of DoD environments. Led by PMP-certified Project Managers, cyDaptiv’s skilled and experienced technology professionals deliver high-impact results in short-term focused engagements and long-term IT service and support delivery in both CONUS and OCONUS locations. We have dynamic teams supporting projects in the US (including Hawaii), Korea, Japan, and Germany
About The Role:cyDaptiv Solutions is seeking a Cyber Security Engineer with experience supporting Federal and DoD cyber security and information assurance projects. The CSE must have knowledge of the Risk Management Framework (RMF), security principles, concepts, policies and regulations and be able to identify risks in information systems and work with system administrators and engineers to resolve security weaknesses.The successful candidate will have experience assessing security control implementation and system configurations using automated tools and manual check lists; determining compliance/risk severity; recommending remediations; and have ability / skillset to implement fixes. The candidate must also have experience working with stakeholders at various organizational levels and be able to manage and coordinate assessment activities in a collaborative manne
About the Company:cyDaptiv Solutions, Inc. is a firm specializing in Systems Engineering, Cybersecurity Solutions Integration, Risk Management & Compliance, IT Services, and Project Management. cyDaptiv’s Information Technology professionals have significant experience delivering services for enterprise-scale IT systems in a variety of DoD environments. Led by PMP-certified Project Managers, cyDaptiv’s skilled and experienced technology professionals deliver high-impact results in short-term focused engagements and long-term IT service and support delivery in both CONUS and OCONUS locations. We have dynamic teams supporting projects in the US (including Hawaii), Korea, Japan, and Germany
Responsibilities:
- Implementing the DoD Assess and Authorize (A&A) process IAW DoDI 8510.01 Risk Management Framework (RMF) for DoD Information Technology (IT).
- Ability to manage RMF Artifacts in eMASS.
- Assess systems using automated tools such as ACAS / Nessus, and Security Content Automation Protocol (SCAP), and Manual STIGs reviews.
- Experience testing and implementing DoD STIGs and devising mitigation strategies, applying Information Assurance Vulnerability Management (IAVM) patches to systems and complete security compliance scans upon applying patches or updates to the system.
- Experience drafting Architecture Diagram, Hardware Software Inventory List, Ports Protocols Services Registration, and Data Flow diagram.
- Introduce new team members to project tasks and expectations.
- Additional details of the position will be provided to qualified applicants.
Qualifications:
- 4 years of relevant experience in Federal and DoD network and computing environments.
- 2 years of experience supporting DoD Risk Management Framework (RMF) and implementation of technical controls.
- Meet DOD 8570/8140 certification requirements for IAT Level II. Includes: CCNA Sec, GISCP, GSEC, Security+ CE, CND, or SSCP
- Bachelor’s degree or higher in Computer Science, Information Systems/Technology or engineering discipline preferred.
- Strong technical understanding of the network and systems operations in secured DoD environments.
- Strong understanding of SDLC process in a DoD environment.
- Hands on experience with tools such as NMAP, ACAS/Nessus, and Security Content Automation Protocol (SCAP), and STIGViewer.
- Experience using DoD SRGs/STIGs and other manual system configuration review methods, developing mitigation strategies, applying systems and vulnerability patches.
- Strong written and verbal communications skills to provide IA / cybersecurity guidance to relevant project stakeholders.
- Ability to work independently with minimal supervision.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
0
0
0
Category:
Security Engineering Jobs
Tags: ACAS Automation CND Compliance Computer Science DoD DoDD 8140 DoDD 8570 eMASS GSEC Nessus Nmap Risk management RMF SCAP SDLC SSCP STIGs Vulnerability management
Region:
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information System Security Officer jobsSenior Cloud Security Engineer jobsSenior Security Analyst jobsInformation Security Manager jobsInformation Security Specialist jobsSenior Cybersecurity Engineer jobsSenior Network Security Engineer jobsSecurity Consultant jobsIT Security Engineer jobsSecurity Specialist jobsSenior Information Security Analyst jobsSenior Penetration Tester jobsCyber Security Specialist jobsSenior Cyber Security Engineer jobsChief Information Security Officer jobsSystems Engineer jobsInformation System Security Officer (ISSO) jobsIT Security Analyst jobsCloud Security Architect jobsSenior Product Security Engineer jobsStaff Security Engineer jobsSystems Administrator jobsPrincipal Security Engineer jobsCybersecurity Specialist jobsSecurity Operations Analyst jobs
Kubernetes jobsCI/CD jobsForensics jobsEncryption jobsSaaS jobsIDS jobsEDR jobsSDLC jobsSplunk jobsIPS jobsBash jobsTop Secret jobsRMF jobsOWASP jobsIntrusion detection jobsSQL jobsThreat detection jobsCompTIA jobsFinance jobsDocker jobsDoDD 8570 jobsITIL jobsCRISC jobsActive Directory jobsOSCP jobs
VPN jobsGIAC jobsBanking jobsTCP/IP jobsHIPAA jobsUNIX jobsSANS jobsTerraform jobsMITRE ATT&CK jobsClearance Required jobsSOX jobsSOC 2 jobsCISO jobsIT infrastructure jobsCCSP jobsDNS jobsJavaScript jobsIndustrial jobsSOAR jobsPolygraph jobsJira jobsCryptography jobsData Analytics jobsAnsible jobsCyber defense jobs