Job Description
Job Description
Designs, tests, and implements state-of-the-art secure operating systems, networks, and database products. Conducts risk assessment and provides recommendations for application design. Involved in a wide range of security issues including architectures, firewalls, electronic data traffic, and network access. Uses encryption technology, penetration and vulnerability analysis of various security technologies, and information technology security research. May prepare security reports to regulatory agencies.
Minimum Confidential Clearance required to start.
The candidate will assist system owning engineers with the selection, application and implementation of security controls on various network systems. Primarily this will be assessing compliance of various network technologies with security controls and determining the security impacts of network infrastructure changes. The ability to quickly learn new technologies and to turn general principles into concrete implementations will be helpful.
The candidate must be able to :
- Interpret security controls and guidance (e.g. DIACAP, DOD / NIST RMF, etc.) for applicability to specific technologies
- Apply those controls in a technical fashion to a variety of networks, systems, technologies and components.
- Assess device configurations and determine compliance with STIGs
Experience :
Four or more years' of experience with either IT Network administration or IT System administrationFour or more years' of experience executing DoD STIG testing with demonstrated analysis proficiencyPrior direct experience with network technologies (Layer 3 switches, firewalls, etc.) and networking protocols and concepts such as OSPF, RADIUS, Access Control Lists and port securityPreferred :
Two to four years' experience with virtualization technologies such as; VMware, ESXi, server virtualization, network virtualization, storage virtualization, virtual router, vSwitches and management of virtual applicationsFacilitating discussions with cross-sectional teams to compile the compliance documentsDirect experience with Splunk, installation, configurations and creating deliverablesDirect experience configuring Cisco, Juniper, or Alcatel devicesDirect experience with tools such as Wireshark, Net Management solutions and logging solutionsPrior experience with system administration, operating system hardening or control systems / SCADADoD 8140 recognized certifications, e.g. Security+, Network+, CCNA, desired.Basic Qualifications
Bachelor's Degree and 9 years of experience ORMaster's Degree and 7 years of experience ORPh.D. and 4 years of experience.A relevant professional certification can be substituted for a Bachelor's Degree.