Cybersecurity Engineer
Infinity Systems Engineering · Buckley AFB, Colorado, United States · 2 wk ago
Information TechnologyFull-time
About the role
We are seeking a Cyber Security Systems Engineer to join our professional engineering team. This position will support cybersecurity assessments and hardening of operational and support systems to decrease vulnerabilities and increase system and operational resilience. Develop, implement and document approaches to satisfy Risk Management Framework requirements.
Responsibilities
- Maintain awareness of current and emerging Cyber threats
- Analyze and assess Cyber threats and determine their impact on the systems
- Evaluate how the systems can mitigate Cyber threats and develop Courses of Action (COAs) to mitigate threats and prioritize risks
- Develop procedures to counter/mitigate Cyber threats to the Ground Systems, Space Vehicle, and payloads while maintaining the mission to the maximum extent possible
- Assist with the development of recovery plans to return the systems to operation
- Apply systems engineering and cyber expertise for the development and implementation of mission recovery support Tactics, Techniques, and Procedures (TTPs) in the event of Cyber incidents
- Assess software and hardware behaviors due to system modifications and any related expected system impacts
Provide 'Protected EHF SATCOM' Cybersecurity Sustaining Engineering support by:
- Supporting and implementing intrusion detection solutions and/or systems into the Protected EHF SATCOM system baselines, including but not limited to:
- Host-based intrusion detection systems (HIDS)
- Network intrusion detection systems (NIDS)
- Intrusion protection systems (IPS), where not covered or inherited by DoD-provided defensive cyber operations (DCO)
Provide System Security Engineering and Cybersecurity support and expertise by:
- Preparing, maintaining, and submitting the RMF-artifact delivery schedule (which includes identified RMF package delivery dates) as provided in the prime contractor format
- Capturing the status of submission frequency of identified RMF artifacts per system sustainment cybersecurity-related activities in accordance with the contract
- Performing network vulnerability scans in support of Government validation checks for CS systems
- Maintaining the approved Program Protection Implementation Plan (PPIP)
- Supporting Support Security Assessment Plans (SAP)
- Providing technical engineering and cyber support for all required cybersecurity technical meetings
Requirements
- Bachelor's Degree in a relevant field; experience will be considered in lieu of degree
- Secret clearance required, TS/SCI desired
- Must possess a DoD 8140 or 8570 IAT II Certification (e.g., Security+ CE, or higher)
- 4–8 years of experience with DISA STIGs, SCC (SCAP, Benchmarks)
- 4–8 years of experience administering DISA Assured Compliance Assessment Solution (ACAS)
- 4–8 years of experience with DISA Endpoint Security Solutions (Trellix) or legacy Host Based Security System
- 4–8 years of experience with secure configuration and hardening of DoD Information Systems
- 4–8 years hands-on experience administering, configuring, trouble-shooting, and securing Windows Servers and/or Red Hat Linux servers and workstations
- Experience with assessing and implementing Risk Management Framework (RMF) security controls
- Familiarity with NIST 800-30, NIST 800-37, NIST 800-53, CNSSI 1253 and associated overlays
Preferred Qualifications
- Hands-on experience with implementing and tuning Splunk
- Hands-on experience with implementing ClamAV
- Experience with Agile Development Lifecycle, including use of JIRA Project Management Tool
- Experience with Defense Counterintelligence and Security Agency Authorization packages
- Experience with Git source control and GitLab CI/CD Pipelines
- Experience with Infrastructure as Code (IaC) (Ansible playbooks)
- Experience with Xylok STIG Automation Tool
Benefits
- Health Benefits: Infinity covers 100% of the monthly medical and dental premiums for you and your family.
- Rest and Relaxation: Enjoy three weeks of vacation, with the flexibility to use vacation hours in advance before fully accrued.
- Health and Wellness: In addition to vacation, we provide 48 hours of sick leave, plus Flex-Spending Account (FSA) options for medical and dependent care.
- Prepare for the Future: Our 401(k) plan includes company contributions without requiring matching, along with access to free professional financial planning services.
- Education and Professional Training Reimbursement: We invest in our team's growth with our Education Reimbursement Program, supporting your career advancement.
- Profit Sharing Plan: Our employees are key to our success, which is why all eligible team members receive an annual payout through our Profit-Sharing Plan.