Cyber Security Engineer
B4Corp
About the role
Description
Position Requires a Top Secret (TS/SCI) Clearance with a Polygraph.
Seeking an Information Systems Security Engineer (ISSE) for a technical development program supporting cloud-based applications, and its associated cloud infrastructure located on a highly secure network. The ISSE will work with a large team of developers, system engineers, DevOps engineers, database administrators, and system architects.
Core business hours for the team are from 9 AM to 3 PM daily – exceptions outside of those hours for the candidate may be negotiated in consultation with management.
The typical day for an ISSE supporting the cloud-based applications is as follows:
- The ISSE will participate in the team’s regularly scheduled Agile tag up (scrum) meetings and report on the status of their assigned Jira issues
- Attend ad-hoc TEMs with the team to discuss and weigh in on numerous architectural aspects of the systems for assessing security impacts that may arise with system changes
- Assist with and/or lead security scans of the systems and report and analyze findings for impacts
- Review any security findings (CVEs) as noted by outside entities for system impact analysis and how best to proceed with addressing them
- Participate in team TEMs and review future system changes/new features for security impacts
Primary Responsibilities
- Identifying, selecting, implementing and assessing NIST SP 800-53 security and privacy controls.
- Developing, establishing and integrating secure configuration baselines per DISA STIGs and CIS benchmark guidelines
- Participate in creating secure architectures and designs
- Ensuring security requirements are integrated into the System/Software Development life cycle (SDLC).
- Performing Continuous Monitoring (ConMon) activities to support Assessment and Authorization (A&A) requirements
- Reviewing, creating and maintaining relevant Assessment and Authorization (A&A) artifacts
- Performing security analysis and monitoring of a 100 percent AWS, cloud-based system
- Performing vulnerability scanning and analysis of the system
- Perform remediation and develop security implementations based on security findings
- Interface with Information System Security Managers (ISSM) to develop and accredit the system
- Participate in or lead technical exchange meetings, document meeting outcomes as needed, and brief management
Mandatory Requirements
- Experience level: 6-10 years (senior)
- Typically requires a Bachelor of Science (BS) degree, or relevant demonstrable experience
- Hands on experience with Linux (CLI)
- Hands on experience with scripting and programming languages like BASH and Python
- Solid understanding of, experience with networking (e.g., ports, routing tables, subnets, VPNs, firewalls, routers, etc.) to include design, integration and troubleshooting issues
- Experience in working on teams utilizing Agile workflows and processes
- Strong understanding of NIST SP 800-37, NIST SP 800-53, NIST SP 800-160, DISA/CIS STIGs, and Common Vulnerabilities and Exposures (CVEs)
- Experience with RMF workflow tools
- Strong communication, organizational, and writing skills
- Must be able to clearly and directly articulate their findings and recommendations.
- Must be open minded to considering alternative approaches to possible security issues noted by other team members
Optional Requirements
- Relevant IT certifications (e.g., CISSP, AWS Cloud Practitioner, AWS Cloud Security, AI security, etc.)
- Experience working with Infrastructure as Code (IaC) solutions such as Ansible / Terraform, or other configuration and automation tools
- Experience in working in a cloud-based environment (AWS)
B4CORP Company Information
B4Corp is a small defense contracting company that focuses on providing an optimum environment for mission-focused, highly skilled consultants to support the United States of America’s intelligence community and other defense organizations. B4Corp provides a low overhead, highly efficient, high salary environment that allows employees to excel at meeting the client’s needs. B4Corp is looking for information technology professionals that have a high sense of personal responsibility, self-motivation, and mission drive.
B4Corp’s dedication and care for its employees is reflected in our outstanding compensation and benefits package. B4Corp’s benefits reflect the company’s policy of putting the employees first. B4Corp’s maximum flexibility comp / makeup time policy, along with the company’s cafeteria-style benefit plan that allows employees to maximize their Benefit Dollars, reflects B4Corp’s commitment to its employees.
Compensation
- Outstanding Salaries
Retirement
- Full Vanguard 401k Plan – Featuring a full scope of investment options – 100% employer matched contribution up to 6% of employee's salary – Ability to max out 401k savings $57k ($63.5k if over 50)
- Employees receive B4Corp phantom stock each year (2-year vesting period)
Insurance
- Medical – United Health Care (UHC) (multiple plan options)
- Dental – United Concordia (UC) Flex Plan
- Vision – Vision Service Plan Insurance Co (VSP) Signature Plans
- Mutual of Omaha short-term disability (60% of salary up to $2,000.00/week)
- Mutual of Omaha long-term disability (60% of salary up to $10,000.00/month)
- Mutual of Omaha life insurance ($200,000.00)
Employee Referral Bonus
- Refer a friend or a coworker and receive $3,000 per year for every year the person works for B4CORP
Paid Time Off (PTO)
- Seven weeks of leave per year (including ten federal holidays)
- Flexible work schedule with comp time (with customer approval)
Internal Tracking
-LF-SC-51
If You Would Like To Complete a Detailed B4Corp Employment Application, Please Do So Using This Form (You Only Need To Fill Out This Application Once For B4CORP Or If You Have Updates To The Information.)
https://b4corp.com/b4corp-employment-application/
This form will help us find you the best position quicker.
B4Corp is an EEO and e-Verify employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation or national origin. Please take the time to review and complete these three voluntary identification forms if you choose to do so and email them to hr@b4corp.com.
Skills
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free