Senior Information Systems Security Engineer in Huntsville
Energy Jobline ZR · Huntsville, US ·
- Seniority
- Senior
- Category
- Security
- Experience
- 6+ years
Job DescriptionJob Description
Our organization is in search of a driven, career-focused, and customer-oriented Senior Information System Security Engineer (ISSE) to become part of our team in Huntsville, AL.
Key Responsibilities:
- Establish and execute cybersecurity requirements, architectures, and secure system designs across various information systems and network environments.
- Develop, design, and integrate security solutions, including Cross Domain Solutions (CDS), to facilitate secure data transfer and system interoperability.
- Apply network security measures and countermeasures to guarantee confidentiality, integrity, availability, authentication, and non-repudiation.
- Identify, evaluate, and address system and network vulnerabilities, suggesting improvements to enhance the overall security framework.
- Maintain and monitor vulnerability data, Plans of Action and Milestones (POA&Ms), and remediation efforts using Governance, Risk Management, and Compliance (GRC) and enterprise tracking tools.
- Facilitate stakeholder engagement through office hours, guidance, and updated procedures to bolster vulnerability management and compliance initiatives.
- Respond promptly to data requests, RFIs, and inquiries from leadership, including the escalation and reporting of high-risk or non-compliant remediation actions.
Essential Qualifications:
- Must possess one of the following experience levels: a high school diploma/GED with 14 years of experience, an Associate’s degree with 10 years of experience, a Bachelor’s degree with 8 years of experience, or a Master’s degree with 6 years of experience.
- Must hold at least one of the following certifications: Certified Information Systems Security Professional (CISSP) (or Associate), CompTIA Advanced Security Practitioner (CASP) CE, Certified Secure Software Lifecycle Professional (CSSLP), CISSP- Information System Security Engineering Professional (ISSEP), Certified Information Security Manager (CISM), or CISSP- Information System Security Architecture Professional (ISSAP).
- Familiarity with security tools such as Tenable Nessus and/or Security Center, IBM Guardium, HP WebInspect, Network Mapper (NMAP), or similar applications.
- Proficient understanding of the Institute of Standards and Technology (NIST) Risk Management Framework (RMF) and Authorization to Operate (ATO) processes.
- Experience in vulnerability management programs, including the identification, tracking, and remediation of Common Vulnerabilities and Exposures (CVEs) and Known Exploited Vulnerabilities (KEVs).
- Knowledge of federal cybersecurity directives and frameworks, including CISA Emergency Directives (EDs), Binding Operational Directives (BODs), and DOJ Vulnerability Patch Requirements (VPRs).
- Experience with Risk Management Framework (RMF), POA&M tracking, and GRC tools.
Qualifications:
- A degree in Computer Science, Cybersecurity, or a related cyber discipline.
- Ability to thrive in fast-paced environments with rapid response needs and strict deadlines.
- Strong organizational and process improvement capabilities to support reporting, tracking, and compliance efforts.
Security Clearance Requirements:
- Must possess an active TOP SECRET security clearance and be willing to obtain SCI eligibility before starting.
- The selected candidate must be prepared to undergo a Polygraph examination.
Physical Requirements:
- Must be able to remain in a stationary position for 50% of the time.
- Occasionally needs to move around the office to access file cabinets, office machinery, etc.
- Regularly operates a computer and other office productivity equipment, such as calculators, copiers, and printers.
- Frequently positions oneself to maintain computers in the lab, including under desks and in server closets.
- Often communicates with colleagues, management, and clients, which may involve delivering presentations. Must be able to convey accurate information in these situations.