SonicJobs Logo
Left arrow iconBack to search

Security Engineer Jr.

Saliense
Posted 2 months ago, valid for a day
Location

Arlington, VA 22226, US

Salary

Competitive

Contract type

Full Time

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

Sonic Summary

info
  • The Security Engineer Junior role requires a minimum of one year of federal information systems security experience and a BS/BA in a technology-related discipline.
  • The position involves developing and executing test plans for internal control assessments and documenting all assessment activities and results.
  • Candidates should possess solid knowledge of federal information system security policy, security control assessments, and configuration management.
  • The role also includes conducting security product evaluations and recommending improvements to enhance the customer's security posture.
  • The salary for this position is not explicitly stated, but it typically aligns with industry standards for entry-level security engineering roles.

About the role

The Security Engineer Junior supports work performed under the contract possessing a core set of knowledge of federal information system security policy, industry best practices, security control assessments, Plan of Action and Milestones (POA&M) management, system authorizations, configuration management, and system analysis.  

Possesses a solid knowledge of federal information system security policy, industry best practices, security control assessments, Plan of Action and Milestones (POA&M) management, system authorizations, configuration management, and system analysis.


This position will require an onsite presence 1 day per week in Arlington, VA.


What you'll do

From a technical perspective the Security Engineer Junior is responsible for developing and executing test plans of the OMB Circular A-123 internal control assessments as well as FISMA internal control assessments. Determines, gathers, examines, and analyzes artifacts related to FISMA security control assessments and remediation verification. Documents all assessment activities and results in sufficient detail to enable external review of all assessment processes, activities, results, and conclusions. Provide security expertise to ensure security controls are implemented and the resulting documentation and artifacts are current. Conducts security product evaluations, and recommends products, technologies, and upgrades to improve the customer’s security posture.  

Qualification

  • Minimum Educational Requirements: BS/BA in Computer Science, Information Systems, Engineering, Business, Physical Science, or other technology-related discipline.
  • Must have a minimum of one (1) year of federal information systems security experience.
  • Technical Skills: - Experience with RMF and applying the NIST Cybersecurity Framework.
  • Solid knowledge of federal information system security policy, industry best practices, security control assessments, Plan of Action and Milestones (POA&M) management, system authorizations, configuration management, and system analysis
  • Experience designing and implementing solutions for protecting the confidentiality, integrity, and availability of sensitive information.
  • Experience providing technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation.
  • Experience designing and implementing solutions for protecting the confidentiality, integrity, and availability of sensitive information.
  • Experience using CSAM.
  • Solid understanding and application of NIST Special Publications including SP 800-53, SP 800-137, SP 800-171, and SP 800-37.
  • Solid understanding of FISMA audit requirements.
  • Solid understanding of IT audit requirements.
  • Ability to work with cooperatively and at a technical level with developers, engineers, and managers on system teams.
  • Knowledge of computer networking concepts, protocols, and network security methodologies.
  • Knowledge of risk management processes and tools (e.g., methods and tools for assessing and mitigating risks).
  • Knowledge of laws, regulations, policies, and ethics as they relate to cybersecurity and privacy in a federal environment.
  • Knowledge of current and past cybersecurity threats and vulnerabilities.

 




Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.