Responsible for the design, test, operation and implementation of secure operating systems, networks, and database products. This role is 100% on-site
*Principal Duties and Responsibilities (Essential functions)
- Designs, develops, tests, and implements cyber applications, secure operating systems, and database products to find secure solutions for enterprise-wide cyber systems and networks.*
- Manages the full range of security issues including architectures, firewalls, electronic data traffic, and network access. *
- Performs research and analysis at the deepest levels of total system product to include concept, design, fabrication, test, installation, operation, maintenance, and disposal. *
- Designs encryption, penetration testing, and vulnerability analysis solutions of various security technologies.*
- Integrates architectural features into existing infrastructures and designs cyber security architectural artifacts. *
- Provides full assessments of system’s security posture.
- Performs security testing to verify cyber security integrity of the system. Designs and recommends mitigations.
- Conducts architectural analysis and relates existing system to future needs and trends.*
- Embeds advanced forensic tools and techniques for attack reconstruction. *
- Develops security policies and procedures to be applied across multiple system architectures.*
- Provides technical expertise and guidance to more junior team members.*
- May interface with external agencies (law enforcement, intelligence/government agencies, etc.)
- May design and develop cloud computing and mobile devices application security products.
- Work hand-in-hand with the customer and Sr. ISSO/ISSE/ISSMs to navigate through the ATO process and Continuous Monitoring
- Maintain system currency with STIG and SCAP requirements
- Update security documentation (SSP, Test Plans & scripts, POA&M, etc.) as required
- Participate in Configuration Advisory Boards (CAB)
- Document the various security control implementations as well as gather the artifacts that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation for various Assessment and Authorization (A&A) efforts
- Gather the information by working with various team members to write various additional A&A related documents, such as Contingency Plan (CP), General User Guide (GUG), Privileged User Guide (PUG), Standard Operating Procedures (SOP’s), etc.
- Support Accreditation and Authorization (A&A) reviews by ISSO/E/M, as well as the Security Controls Assessor (SCA)
_At COLSA, people are our most valuable resource and centered at our core value. We invite you to unite your talents with opportunity and be a part of our “Family of Professionals!” Learn about our employee-centric culture and benefitshere. _
Required Skills
Required Experience
Required Qualifications
- Bachelor’s degree in computer science, information technology, cyber security, engineering, or related field or equivalent work experience. Advanced degree preferred.
- Minimum of 10 or more years of experience in information security, cyber security, or a related field.
- 10 + years working as an ISSE and/or Linux system administrator
- Ability to clearly present and communicate technical approaches and findings
- DoD 8570 IAT Level 2 certification (Security+ CE or higher)
- Good verbal and written communication
- Linux experience, specifically with security hardening
- BASH or other Linux scripting to validate security compliance
- Familiarity with ICD 503 and NIST 800-53
- Experience executing DISA SCAP testing
- Experience with Xacta and eMASS
- Splunk configuration experience is a PLUS
- Active Top Secret clearance with SCI eligibility
- Must be able to pass CI poly within 6 months of hire date
- U.S. Citizenship required
- This role is 100% on-site
Preferred Qualifications
- TS/SCI Security Clearance
- Cloud familiarity
Applicant selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. COLSA Corporation is an Equal Opportunity Employer, Minorities/Females/Veterans/Disabled. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.