The SEMCON Group, LLC ยท 12 hours ago
Cybersecurity Systems Engineer (Linux / FAA Systems)
The SEMCON Group, LLC is dedicated to supporting the Federal Aviation Administration (FAA) by providing top-tier technical resources. They are seeking a Cybersecurity Systems Engineer to perform security assessments and implement security controls on various systems and technologies, particularly focusing on Linux systems.
AerospaceDatabaseProject ManagementRisk Management
Responsibilities
Perform security assessments and implement security controls on a range of systems and technologies
Proficient Linux experience (comfortable on the terminal, writing bash scripts, configuring packages and servers)
Hands-on working knowledge of Linux OS system structure and configuration (e.g. directory structure, device files, network configuration, file management)
Proficient using automation tools such as Ansible, Docker, Jenkins, etc
Hands-on experience of networking, including network design, VLAN/subnetting, configuring managed routers/switches
Knowledge of network protocol interactions
Ability to coordinate IP address/subnet requests and firewall rule requests using tables and spreadsheets
Experience performing hands-on port scanning & vulnerability scanning, including remediating, at the technical level, each finding in the scans, including proving false failures (why a scan result may be invalid)
Working knowledge of security standards, e.g. NIST 800-53, HSPD-23, ISO 27001
Experience performing penetration testing to verify new security controls are effective
Familiarity using cryptographic protocols (asymmetric/symmetric ciphers, hashing, key exchange)
Experience documenting security requirements for Statements of Work (SOWs), Contract Data Requirements Lists (CDRLs), and Data Item Descriptions (DIDs)
Experience conducting and participating in technical interchange meetings
Strong, clear verbal and written communication skills
Qualification
Required
Proficient Linux experience (comfortable on the terminal, writing bash scripts, configuring packages and servers)
Hands-on working knowledge of Linux OS system structure and configuration (e.g. directory structure, device files, network configuration, file management)
Proficient using automation tools such as Ansible, Docker, Jenkins, etc
Hands-on experience of networking, including network design, VLAN/subnetting, configuring managed routers/switches
Knowledge of network protocol interactions
Ability to coordinate IP address/subnet requests and firewall rule requests using tables and spreadsheets
Experience performing hands-on port scanning & vulnerability scanning, including remediating, at the technical level, each finding in the scans, including proving false failures (why a scan result may be invalid)
Working knowledge of security standards, e.g. NIST 800-53, HSPD-23, ISO 27001
Experience performing penetration testing to verify new security controls are effective
Familiarity using cryptographic protocols (asymmetric/symmetric ciphers, hashing, key exchange)
From a system acquisition perspective, experience documenting security requirements for Statements of Work (SOWs), Contract Data Requirements Lists (CDRLs), and Data Item Descriptions (DIDs)
Strong logic/reasoning skills (e.g., can understand/analyze requirements, and identify logical gaps)
Experience conducting and participating in technical interchange meetings
Strong, clear verbal and written communication skills
Proficient in two or more of: C/C++, Python, Golang, Rust
Usage of version control software (e.g., Git)
Knowledge of software design patterns and anti-patterns
Comfortable with common software data structures and algorithms
Preferred
A Bachelor's Degree in Computer Science, Engineering, or related discipline and at least 6-15 years of experience is preferred
Familiarity with embedded Linux system design and implementation, including performance optimization
Benefits
Health benefits (medical, dental, vision, and life)
401K with a generous employer match
Paid time off
Paid holidays