Information Systems Security Engineer - Principal jobs in United States
cer-icon
Apply on Employer Site
company-logo

Jacobs · 2 months ago

Information Systems Security Engineer - Principal

Jacobs is a company focused on shaping the Cyber, Security, & Intel space, and they are seeking a Principal Information Systems Security Engineer to support mission-critical projects impacting the Nation’s security and intelligence mission. This role involves leading cybersecurity initiatives, conducting risk assessments, and collaborating with engineering teams to ensure robust security measures are in place.

Civil EngineeringConsultingCyber SecurityIndustrialIndustrial EngineeringInformation TechnologyInfrastructureProfessional ServicesReal Estate
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Conduct cybersecurity risk assessments and provide prioritized risk mitigation recommendations in support of the technical solution requirements
Help define security requirements for new technology solutions and prototypes
Analyze solution architecture by evaluating against defined security requirements to identify security gaps, and provide mitigation strategy
Review security requirements while collaborating in multifunctional teams providing a holistic cyber security posture
Research and evaluate emerging technologies to determine cybersecurity effectiveness
Aid stakeholders through the design, build, configuration, and implementation of innovative solutions and capabilities
Engage stakeholders to ensure security objectives, protection needs, security requirements and associated validation methods are defined and implemented
Validate and verify system security requirements and establish system security design
Design, develop, implement, and integrate IA and security systems and components for networking, computing, and unified capabilities services, across multiple enclaves with different data protection/classification requirements
Assist architects and engineers in the identification and implementation of information security functionality to ensure uniform application of security policies
Contribute to the security planning, assessment, risk analysis, risk management, certification, and awareness activities for system and networking operations
Utilize eMASS/XACTA to document security controls, track vulnerabilities, generate reports, and manage the ATO process
Prepare and review RMF artifacts to be used for new IS accreditation
Lead the creation and completion of System Security Plan (SSP) for a new IS prototype
Foster positive relationships between government, military, and contracting personnel

Qualification

Risk Management Framework (RMF)Cybersecurity risk assessmentsEMASS managementSystem Security Plan (SSP)Common VulnerabilitiesExposures (CVEs)MITRE ATT&CK frameworkZero TrustCloud ComputingSecurity Technical Implementation Guides (STIGs)Incident responseTechnical presentationsSoft skillsTeam collaborationProblem-solving

Required

BS degree or equivalent in the fields of mathematics, telecommunications, electrical engineering, computer engineering, or computer science, Cybersecurity, Information Security, etc
15 years of experience as a Cyber Security Engineer or Systems Engineer
Experience presenting technical information to both technical and non-technical audiences to include senior stakeholders
Expertise in the Risk Management Framework (RMF) and conducting cybersecurity risk assessments
Experience identifying, mitigating, and managing IT system Common Vulnerabilities and Exposures (CVEs) and Information Assurance Vulnerability Alerts (IAVAs)
Experience using the MITRE ATT&CK framework to identify adversary TTPs
Experience using eMASS to manage Authority To Operate (ATO) processes
Experience developing and documenting system security requirements and conducting requirements gap analysis
Experience with security monitoring and incident response capabilities
Experience with emerging technologies such as Zero Trust, Cloud Computing, etc
Experience in evaluating and implementing Cyber security tools for assessing and maintaining system security within the Department of Defense (DoD)
Experience in ensuring the establishment and satisfaction of cyber security and security requirements based upon analysis of user, policy, regulatory, and resource demands
Ability to define requirements for business continuity, operations security, regulatory compliance, and insider threat detection and mitigation to best protect information assets
Implement and validate security designs in hardware, software, data, and procedures
Demonstrated ability to work with Systems Architects and Engineers, acquire information for resolving controls and POAMs and update the customer's A&A system
Skilled in performing analyses to ensure threat assessments, protection, detection, and reaction functions are performed
Ability to analyze general cyber security-related technical problems and provide basic engineering and technical support in solving these problems
Expertise implementing Security Technical Implementation Guides (STIGs) and Assured Compliance Assessment Solution (ACAS) or other vulnerability management tool
Knowledge of connection security approval processes and compliance policies
Ability to troubleshoot technical configurations and make recommendations on the protection of classified and sensitive data
Demonstrated proficiency with the following computer operating systems (e.g. Microsoft Windows, LINUX, UNIX, Mac OS, etc.)
Ability to work independently within a schedule and with little direction
Ability to travel up to 10%
Must have active Top Secret clearance with SCI eligibility
Current DOD 8570 Information Assurance Technician "IAT" III certification

Preferred

Familiarity with classified cloud environments (e.g., AWS Secret Region, Azure Government Secret)
Expertise of CDS (NCDSMO, DSWAG, CDTAB, etc), and/or VoIP/UC
Certifications: IASAE Level III - CISSP-ISSEP, CISSP-ISSAP
Experience working on DoD prototype or rapid acquisition programs

Benefits

Medical, dental, vision, and basic life insurance
401k plan
Deferred compensation plan
Executive Deferral Plan
17 days of vacation per year
Seven paid holidays
Floating holidays
Caregiver leave
Purchase company stock
Performance discretionary bonus

Company

Jacobs leads the global professional services sector delivering solutions for a more connected, sustainable world.

Funding

Current Stage
Public Company
Total Funding
$1.1B
2023-08-18Post Ipo Debt· $600M
2023-02-16Post Ipo Debt· $500M
1980-09-26IPO

Leadership Team

leader-logo
Bob Pragada
Chair & Chief Executive Officer at Jacobs
linkedin
leader-logo
Paul Friedman
CTO, StreetLight Data
linkedin
Company data provided by crunchbase