Navstar Inc. · 1 month ago
ISSE
Navstar, Inc. is an award-winning organization that has a proven track record of successfully providing IT services and solutions. The Senior ISSE will deliver and lead threat-informed cybersecurity products, conduct risk assessments, and support the design and implementation of security systems to enhance national security efforts.
CRMData ManagementInformation TechnologyRoboticsSoftware
Responsibilities
Conduct cybersecurity risk assessments and provide prioritized risk mitigation recommendations in support of the customer’s mission
Support the design, implementation, and operation of real-time capabilities to discover, detect, analyze, and mitigate threats and vulnerabilities
Analyze candidate architectures by evaluating against defined security requirements to identify security gaps and provide recommended mitigation strategy
Research and evaluate candidate emerging technologies to determine cybersecurity effectiveness
Aid stakeholders through the development, refinement, delivery, and implementation of innovative solutions and capabilities
Engage stakeholders to ensure security objectives, protection needs, security requirements and associated validation methods are defined
Validates and verifies system security requirements definitions and analysis and establishes system security design
Designs, develops, implements and/or integrates IA and security systems and system components including those for networking, computing and enclave environment to include those with multiple enclaves and with differing data protection/classification requirements
Assist architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of Agency security policy and enterprise solutions
Contributes to the security planning, assessment, risk analysis, risk management, certification and awareness activities for system and networking operations
Reviews C&A documentation, providing feedback on completeness and compliance of its content
Qualification
Required
To be eligible for this position you must hold an active TS/SCI clearance with Polygraph
Seven years (7) experience as an ISSE on programs and contracts of similar scope, type, and complexity required
Bachelor's degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or university is required
DoD 8570 compliance with IASAE Level 2 is required. Four (4) years of ISSE experience may be substituted for a bachelor's degree
Strong writing skills
Confidence and ability to present briefing to senior level DoD officials in both prepared briefings and/or in ad hoc discussions
Expertise in the Risk Management Framework (RMF) and conducting cybersecurity risk assessments
Expertise in network technology and systems security engineering
Experience in identifying, researching, characterizing, and documenting security weaknesses related to operating systems, software applications, firmware, network hardware components, as well as network architecture design to identify protection needs and documented policies and procedures
Experience developing and documenting system security requirements and conducting requirements gap analysis
Experience with security monitoring and incident response capabilities
Experience with emerging technologies such as Zero Trust, Cloud Computing, etc
Knowledge of, and practical experience with the NIST Special Publications 800 Series, CNSSI 1253, and DoD 8500
Ability to work independently within a schedule and with little direction
Preferred
Experience with the following: JEE (EJB, JPA, JTA, JAX-B, JAX-RS, JAX-WS), SQL, application servers (Tomcat, WebLogic, JBoss), scripting
Experience with high level requirements management including requirements decomposition, secure systems engineering and development, trade-off analysis, interface control, and testing and continuous integration
Experience in software development on Agile teams using Agile Developer practices such as Pair Programming, TDD, Refactoring, and ATDD
Experience with FITNesse, Mockito, Cucumber, Unified Functional Tester (UFT), Selenium
Experience with Behavior Driven Development (BDD)
Secure Software development (i.e., Layer 7 Policy)
Experience with the Scaled Agile Framework (SAFe) methodology, SAFe Agilest Certification, or experience as a member of an agile team
Additional experience in J2EE, Python, C/C++, SQL, SOAP, WSDL, Postgres, Oracle, Mongo, PowerShell a plus
Benefits
Highly Competitive Health Care Premiums, including 100% employer paid for employee
Flexible Spending Accounts for Medical and Dependent Care
Generous PTO and Federal Holiday Paid Leave
Employer Paid STD/LTD
Employer Paid Life Insurance
401K plan and Employer Match
Referral and Opportunity Referral Programs
Professional Development Assistance