Network Designs, Inc. · 3 months ago
Information Systems Security Engineer #1628132
Network Designs, Inc. (NDi) is a leading Federal contractor specializing in information technology and network solutions for government customers. The Information Systems Security Engineer will be responsible for ensuring the security and compliance of National Security Systems, conducting vulnerability assessments, implementing security best practices, and managing risk.
Information ServicesInformation Technology
Responsibilities
Ensure adherence to NIST 800-53, RMF (Risk Management Framework), FISMA, and Zero Trust Architecture (ZTA) requirements
Maintain Authorizations to Operate (ATO) and oversee the continuous monitoring (Step 6) process
Conduct security assessments, penetration tests, and audits for the system
Establish and maintain an incident handling capability, including real-time logging, detection, analysis, containment, and recovery
Monitor security alerts and advisories and take immediate action to mitigate threats
Implement and enforce multi-factor authentication (MFA) and HSPD-12 compliant authentication
Manage user authentication, access privileges, and system access control policies
Perform continuous vulnerability scans, risk assessments, and remediation of security gaps
Establish and maintain baseline security configurations for all covered information systems
Provide annual security awareness training to all personnel supporting the program
Ensure compliance with OMB Memorandum M-22-18 for software procurements
Report security incidents, risk mitigation activities, and compliance updates to leadership and stakeholders
Oversee encryption policies and data-at-rest/data-in-transit security
Ensure compliance with Cross Domain Solutions (CDS) policies and secure network segmentation
Qualification
Required
U.S Citizenship required
This role is fully onsite (5days / week) in Washington DC
Occasional travel will also be required to data centers and field offices
Current Top-Secret Clearance with the capability of obtaining SCI / CI Poly
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience)
10+ years of experience in cybersecurity, information assurance, or IT security operations
Experience in implementing RMF and obtaining ATOs for federal systems
Expertise in network security tools, SIEM (Splunk, ArcSight), IDS/IPS, and forensic analysis
Knowledge of security policies, insider threat detection, and IT security frameworks
Preferred
Experience with Cloud Security, Zero Trust, and CSfC (Commercial Solutions for Classified)
Familiarity with IT asset security using ServiceNow
Working knowledge of penetration testing methodologies and vulnerability exploitation
CISSP (Certified Information Systems Security Professional)
CISM (Certified Information Security Manager)
Security+ (CompTIA Security+)
CEH (Certified Ethical Hacker)
Benefits
Comprehensive health, dental, vision, pet, and legal insurance
401(k) retirement matching
Paid leave
Paid holidays
Health and wellness programs
Employer-paid life and disability insurance
Professional development
Education benefits