Security Administrator
NDI Engineering Company · Thorofare, NJ · 1 wk ago
On-siteEducationFull-time
About the role
NDI Engineering Company is seeking a full-time Security Administrator/Analyst to join our team in South Jersey to support our growing operations. The ideal candidate will have demonstrated experience in establishing and enforcing security controls, policies, and procedures over a company's information systems and networks, ensuring security compliance with established industry standards such as NIST 800-171R2, ISO 27001, and ISO 27002.
Responsibilities
- Implementation, assessment, and audit of security policies, controls, and procedures in accordance with NIST 171R2 and Cybersecurity Maturity Model Certification (CMMC).
- Manages and configures security applications that monitor activity on the NDI corporate networks and analyzes/reports from those tools to identify unusual behavior and reported security events to prevent unauthorized access, vulnerability scanning and remediation, risk analysis, modification and/or destruction of files, email, operating system, or applications.
- Manages, configures, and updates NDI security applications/tools that monitor activity on the NDI network, including Endpoint Management System (EMS), Network Analyzer, Endpoint Detection and Response (EDR), SIEM, email security gateway, and Identification/Authentication.
- Conduct continuous security assessments, audits, and reviews to identify potential risks and vulnerabilities for remediation to ensure compliance with NIST 800-171R2 and CMMC security control requirements.
- Monitor user authentication and access activities and enforce security access control policies.
- Plan and recommend changes to increase the security of the NDI network and attached devices (servers, workstations, laptops).
- Proactively identify network vulnerabilities using penetration testing, vulnerability scans, and vulnerability assessment reports.
- Implementation and updating of NDI business continuity and disaster recovery policies and procedures.
- Implementing network security policies, application security, access control, and corporate data safeguards.
- Training fellow employees in security awareness and procedures.
Requirements
- Must be a US citizen and able to qualify for a DoD Secret clearance.
- Associates Degree in Information/Computer Science or related field, or Military Service in Cybersecurity.
- 3-5 years’ experience as System Security Administrator/Security Analyst.
- CompTIA Cybersecurity Analyst (CySA+) or Certified Information Systems Security Professional (CISSP) certification.
- Demonstrated hands-on experience in security application configuration, implementation, and application sustainment (troubleshooting problems, application updates, log file analysis).
- Knowledge of Windows 11, Windows Server 2022, ESXi, and Linux.
- Ability to work on-site in our offices is required.
- Ability to provide periodic after-hours support for infrastructure weekend maintenance and related emergencies.
- Familiarity with NIST Cyber Security Standards (171R2, 800-53R5) or ISO 27001/27002 Security Standard and Cybersecurity Maturity Model Certification (CMMC).
- Good verbal and written communications skills along with the ability to implement feedback from engineers, follow work instructions, and work somewhat independently.