ECS is seeking a Mid-level SIEM Engineer to work in our Washginton, DC office.Â
Â
ECS Federal is a leading information security and information technology company in Washington DC. We are looking to hire a Mid Security Engineer to support a full range of cyber security services on a long-term contract. The position is full-time/permanent and will support a US Government civilian agency. The position is available immediately upon finding a qualified candidate with the appropriate background clearance.
Â
Position Responsibilities:
Â
- Design hardware, operating systems, and software applications to adequately address cybersecurity requirements.Â
- Design and develop cybersecurity or cybersecurity-enabled products.
- Develop and direct system testing and validation procedures and documentation.Â
- Develop dashboarding capabilities, utilizing the enterprise SIEM and Enterprise Governance Risk and Compliance (eGRC) solution, for the ISSO’s to perform real time monitoring of Agency information systemsÂ
- Develop detailed security design documentation for component and interface specifications to support system design and development.Â
- Implement security designs for new or existing system(s).Â
- Incorporate cybersecurity vulnerability solutions into system designs (e.g., Cybersecurity Vulnerability Alerts).Â
- Create and track metrics using the dashboard in the SIEM/eGRC solutionÂ
- Design, implement, test, and evaluate secure interfaces between information systems, physical systems, and/or embedded technologies.Â
- Design, develop, integrate, and update system security measures that provide confidentiality, integrity, availability, authentication, and non-repudiation.Â
- Perform security reviews and identify security gaps in architecture.Â
- Trace system requirements to design components and perform gap analysis.Â
- Verify stability, interoperability, portability, and/or scalability of system architecture.Â
Â
Salary Range:Â $108,000- $125,000
General Description of Benefits
- Strong written and verbal communication skills.
- Knowledge of secure configuration management techniques. (e.g., Security Technical Implementation Guides (STIGs), cybersecurity best practices on cisecurity.org).
- Knowledge of CRIBL.
- Knowledge of software development models (e.g., Waterfall Model, Spiral Model).
- Knowledge of software engineering.
- Knowledge of structured analysis principles and methods.
- Experience designing architectures and frameworks.
- Knowledge of system design tools, methods, and techniques, including automated systems analysis and design tools.
- Knowledge of the systems engineering process.
- Knowledge of Supply Chain Risk Management Practices (NIST SP 800-161)
- Knowledge of critical infrastructure systems with information communication technology that were designed without system security considerations.
- Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
- Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.
- Experience with Windows, Linux, UNIX, any other major operating systemsÂ
- Experience with programming in Python, C, Java, Perl, Shell and/or bash shell scripting.Â
- Familiarity with REST API best practices and usageÂ
- Familiarity with security technologies (firewalls, IDS/IPS, AV, etc.) and other SIEM productsÂ
Certifications/Licenses:Â
- Bachelor’s degree or higherÂ
- 5+ years’ experience security engineering experience and SIEM (security incident and event monitoring) administration, deployment, and/or architectural designÂ
- Certifications addressing security and risk management, asset security, security engineering, communications and network security, identity and access management, security assessment and testing, security operations, software development security, system security, network infrastructureÂ
- Active Public Trust clearance or eligible to obtain a Public Trust clearanceÂ
Learn more about this Employer on their Career Site
