1 day old

Information Assurance/Security Policy Engineer Sr.

Springfield, VA 22150
Apply Now
Apply on the Company Site
Business Group Highlights

Intelligence

The Intelligence group provides high-end systems engineering and integration products and services, data analytics and software development to national and military intelligence customers. Serving federal agencies and the Intelligence Community for more than 50 years, the Intelligence group helps our clients meet their mission needs by providing trusted advisors, leading-edge technologies, and innovative solutions.


Responsibilities

Provides technical and programmatic Information Assurance Services to internal and external customers in support of network and information security systems. Designs, develops and implements security requirements within an organizations business processes. Prepares documentation from information obtained from customer using accepted guidelines such as RMF (Risk Management Framework). Prepares test plans. Provides assessment and authorization (A&A) support in the development of security and contingency plans and conducts complex risk and vulnerability assessments. Analyzes policies and procedures against Federal laws and regulations and provides recommendations for closing gaps. Develops and completes system security plans and contingency plans. Recommends system enhancements to improve security deficiencies. Develops, tests and integrates computer and network security tools. Secures system configurations and installs security tools, scans systems in order to determine compliancy and report results and evaluates products and various aspects of system administration. Conducts security program audits and develops solutions to lessen identified risks. Develops strategies to comply with privacy, risk management, and e-authentication requirements. Provides information assurance support for the development and implementation of security architectures to meet new and evolving security requirements. Evaluates, develops and enhances security requirements, policy and tools. Provides assistance in computer incident investigations. Performs vulnerability assessments including development of risk mitigation strategies.

Program Description:

This contract/program provides SETA (Systems Engineering Technical Advisor) & SE&I (Systems Engineering & Integration) services to an IC customer with a focus on assured space communications and supporting IT infrastructure. The contract support is part of the customer core team focused on all aspects of the systems life cycle including conops development, capturing requirements, working with developers to deliver capability, testing to ensure capabilities meet requirements, transition to operations and operations support. The program also supports customer front office functions including administrative, finance, contracts, acquisition strategy and information assurance support.

Specific Position Description:

This is an Information Systems Security Engineer (ISSE) position supporting a government customer's IT Security team in the ongoing process of assessing and accrediting new and upgraded systems to be compliant with the IC's ICD-503 policy on IT systems security. The ISSE will work with all members of an acquisition team, from the customer & SETA teams to the development contractors, to help ensure an IT system can get through the Assessment & Authorization (A&A) process and eventually be given the Authority to Operation (ATO). The ISSE will advise on and potentially assist with the development of artifacts that will be included in a Body of Evidence (BOE) that the ISSE will submit on behalf of the program. The ISSE will then represent the program, answering all questions, concerns or issues generated by the reviewing authorities. The ISSE will also work with engineers at the beginning stages of an acquisition to ensure security requirements are built into the baseline to make security an integral part of the system.


Qualifications

Required:

10 to 12 years experience with IT systems security with BS in Engineering (Cyber Security, Comp Sci, Electrical, Systems, Information Systems or related field) or 8 to 10 years with MS/MA or 5 to 7 years with PhD.

CompTIA Security+CE or equivalent certification and desire to obtain CISSP certification.

Demonstrated success in work well within a team of engineers.

Demonstrated success in working with government customers.

Desired:

CISSP certification or the ability to obtain cert within 6 months.

Prior experience with Intel Community Directive 503 (ICD-503), the IT systems acredidation process, XACTA, POAMs, Creating Bodies of Evidence, understanding of the Risk Management Framework (RMF).

IT Systems and/or network infrastructure background for providing design advice on developing systems that meet ICD-503.

Experience with the systems development life cycle and working in security requirements from the beginning.


About Perspecta

What matters to our nation, is what matters to us. At Perspecta, everything we do, from conducting innovative research to cultivating strong relationships, supports one imperative: ensuring that your work succeeds. Our company was formed to bring a broad array of capabilities to all parts of the public sectorfrom investigative services and IT strategy to systems work and next-generation engineering.

Our promise is simple: never stop solving our nations most complex challenges. And with a workforce of approximately 14,000, more than 48 percent of which is cleared, we have been trusted to do just that, as a partner of choice across the entire sector.

Perspecta is anAA/EEOEmployer - Minorities/Women/Veterans/Disabled and other protected categories.

As a government contractor, Perspecta abides by the following provision

Pay Transparency Nondiscrimination Provision

The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of the other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractors legal duty to furnish information. 41 CFR 60-1.35(c).

Industry

  • Information Technology
Posted: 2020-10-27 Expires: 2020-11-27

With offerings in mission services, digital transformation and enterprise operations, our team of 14,000 engineers, analysts, investigators and architects work tirelessly to create innovative solutions. We have the expertise and experience not only to devise solutions, but to execute on them successfully.

Sponsored by:
ADP Logo

Before you go...

Our free job seeker tools include alerts for new jobs, saving your favorites, optimized job matching, and more! Just enter your email below.

Share this job:

Information Assurance/Security Policy Engineer Sr.

Perspecta
Springfield, VA 22150

Join us to start saving your Favorite Jobs!

Sign In Create Account
Powered ByCareerCast