Jobs · Information Technology · Florida

Senior Security Engineer

Xtalks · Orlando, FL · 4 days ago
Information TechnologyFull-time

This position is for the NCRC Range Modernization (RM) Senior Security Engineer role, providing senior-level development, testing, and security support associated with designated NCRC product scrum teams.

Responsibilities

  • Vulnerability Management:
    • Implement patching procedures for multiple Operating Systems (Linux, Windows, VMware, Cisco)
    • Run and review vulnerability scans and STIGs
    • Prioritize vulnerability remediation efforts across endpoints, networks, and applications
    • Automate patching processes for multiple Operating Systems (Linux/Windows)
    • Secure and harden hardware and software systems
  • Governance, Risk & Compliance:
    • Support tracking resolution and milestones for program's Plan of Action and Milestones (POA&M) items
    • Develop and maintain security policies, procedures, and standards
    • Ensure compliance with relevant standards, directives, and regulations
    • Conduct risk assessments and support audit activities
    • Remain abreast of emerging technologies, cyber threats, and security tools
  • Security Architecture & Engineering:
    • Design, implement, and manage security solutions (e.g., SIEM, EDR, firewalls, IDS/IPS, IAM, VPN)
    • Evaluate and integrate new security technologies and tools
    • Advise ISSO and ISSM on issues related to securing and monitoring classified DoD networks
    • Create and maintain data flow and system boundary diagrams
  • Agile/Scrum process participation

Requirements

  • Must be a U.S. citizen with an active security clearance
  • Bachelor's (BS) degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
  • Strong understanding of network protocols, security architecture, and security practices
  • Experience with Linux-based and Windows-based systems
  • Proficient in scripting (e.g., Python, PowerShell, Bash)
  • Experience with automation tools (e.g., Ansible, Terraform, Chef, Puppet)
  • Understanding of CI/CD
  • In-depth knowledge of modern threat landscapes, vulnerabilities, mitigation techniques, and security tools and processes
  • Familiarity with NIST 800-53, NIST 800-171, SOC 2, and/or ISO 27001
  • Ability to write clear and concise cybersecurity guidance, procedures, and documentation
  • Security+ Certified

Skills

  • DoD RMF security practices and regulations
  • Virtualization (preferably VMware)
  • Familiarity with open-source security tools
  • Familiarity with ACAS, Tenable Security Center, and Tenable Nessus

Clearance

This position requires U.S. citizenship and a U.S. government security clearance at the Secret level with Top Secret/SCI eligibility.

Travel

Less than 10% travel required.

Benefits

  • Medical, dental, and vision plans
  • 401(k) with company match
  • Life insurance
  • Vacation and sick paid time off accruals (amounts increase based on role and years of service)
  • 11 paid holidays
  • Tuition reimbursement

About Us

Scientific Research Corporation is an advanced information technology and engineering company that provides innovative products and services to government and private industry, as well as independent institutions. At the core of our capabilities is a seasoned team of highly skilled engineers and scientists with multidisciplinary backgrounds.

Similar jobs

Senior Security Engineer

CGIPennsylvania, United States· 2 wk ago
Information Technology$57k–$154k/yrapply on cgi.njoyn.com