Information Assurance Engineer
General Dynamics Mission Systems · Taunton, MA · 3 wk ago
HybridInformation Technology$119k/yrFull-time
General Dynamics Mission Systems engineers a diverse portfolio of high-technology solutions, products, and services for defense and scientific missions.
Qualifications
- Bachelor's degree in Engineering, or a related Science or Mathematics field, plus a minimum of 5 years of relevant experience; or Master's degree plus a minimum of 3 years of relevant experience.
- Ability to obtain a Department of Defense Secret security clearance at time of hire; U.S. citizenship is required.
- CISSP or equivalent certification.
Responsibilities
System Security Engineering
- Supports cyber security requirements analysis, security requirements definition, survivability/Cyber resilience analysis, system security design, security architecture generation, security trade studies, and security verification and validation with little or no supervision (e.g., Cybersecurity Architecture Analysis Report – AAR).
- Supports customer security requirements analysis, develops system security requirements, and defines allocations to lower levels (subsystem, elements, and components) (e.g., Security Requirements Traceability Matrix – SRTM, Security Control Traceability Matrix – SCTM).
- Understands and provides cybersecurity inputs to MBSE models and Digital Engineering (DE).
- Supports assessments and mitigations of system security threats and risks throughout the program life cycle to develop cyber survivable systems; familiar with Mission Based Cybersecurity Risk Assessment (MBCRA) approaches such as Mission Risk Assessment Process – Cyber (MRAP-C) and Cyber Table Top (CTTs) exercises.
- Researches and analyzes data, such as vendor products, COTS components, GFE/CFE, specifications, and manuals to determine security of design; familiarity with Trusted Systems and Networks (TSN) analysis and Cybersecurity – Supply Chain Risk Management desirable.
- Experience with DevSecOps.
- Identifies opportunities to apply AI for continuous improvement and innovation.
General Technical Skills
- Strong understanding of cyber security technology and trends.
- Recognizes various security architectural patterns, applies them appropriately, and understands strengths/weaknesses within those security architectures.
- Effectively selects and implements the appropriate cyber standards, processes, procedures, and tools throughout the system development life cycle to support the generation of security engineering products.
- Supports development of required security documentation, including security plans, risk assessments and mitigation reports, and security tests plans and procedures in compliance with IA policy.
- Strong understanding of cyber security guidance such as Risk Management Framework (RMF) 800-53, STIGs, Cyber Survivability Endorsement Implementation Guide, and other government security specifications and guidelines.
- Experience performing vulnerability and code analysis scans in DevSecOps environment (e.g., Nessus, Static Code Analysis – SCA, STIGs).
- Supports the development of the RMF body of evidence for security requirements including system risk assessments and mitigation reports, security plans (SP), security testing plans and procedures, Security Control Traceability Matrices (SCTM), and System Impact Analyses.
- Supports the Assessment and Authorization (A&A) activities and the generation of the cyber package for the program leading to granting of the Authority To Operate (ATO).
- Supports the execution of security testing and evaluation to ensure correct implementation of security requirements (e.g., scanning with tools for static and dynamic code analysis, penetration testing).
Personal Skills
- Excellent written and verbal communications skills.
- Effective ability in communicating issues, impacts, and corrective actions as they affect cyber design and implementation.
- Excellent ability in reporting relevant cyber systems engineering design topics.
- Effective communication and coordination with project leaders, customer program leadership, and professionals within the Engineering department and with project teams.
- Creative thinker, good multi-tasker.
Pay
Target salary range: USD $118,570.00/Yr. – USD $125,054.00/Yr.
Benefits
- Highly competitive benefits.
- Flexible work environment where contributions are recognized and rewarded.