Information Systems Security Engineer - Entry to Mid Level (Maryland)
National Security Agency/Central Security Service · Fort Meade, Maryland
Skills in this posting
The posting
Information System Security Professionals at NSA play a vital role in in the architecting, designing, operating, defending, and maintaining secure state of the art Information Technology (IT) systems executing NSA's SIGINT and Cybersecurity missions. NSA is advancing technology to deliver mission outcomes.
As such, Cybersecurity Professionals have the opportunity to work across a broad set of technologies including commercial cloud fabrics, artificial intelligence, high performance computing, and advanced cryptographic systems.
These personnel are involved in the full life cycle of systems: designing, maintaining and monitoring the systems so they can be protected from the most sophisticated nation-state adversaries.
Some examples of tasks include: - Design system/network architectures to enforce levels of confidentiality, integrity and availability - Ability to implement systems engineering principles/methodology - Define and manage remediation plans across applications, infrastructure, and cloud - Ensure compliance with cybersecurity standards and regulatory requirements (e.g.
NIST) - Assess and mitigate risks in legacy systems, misconfigurations, and vulnerabilities - Analyze and prioritize vulnerabilities with cross functional teams - Lead and provide oversight to activities to patch and harden infrastructure systems - Define information system security requirements and functionality - Review security configuration options of cloud services and recommend security configurations - Understand cryptography and the ability to program (Python, Java, etc.) - Assess effectiveness of security solutions against cybersecurity frameworks (e.g.
MITRE ATT&CK) - Monitor the cybersecurity hygiene for a family of IT systems directing remediation of configuration and vulnerability findings to reduce the adversary risks to systems - Understand concepts, principles, structure and standards used to design, implement, monitor and secure operating systems, equipment, networks, applications and controls - Operate within teams focused on implementing and evolving procedures and security settings designed to protect data and applications in cloud environments - Conduct security engineering/hardening of the latest operating systems, tailoring them for use in the specific mission area - Ability to implement automation and artificial intelligence across the RMF authorization life cycle and into continuous monitoring
The qualifications listed are the minimum acceptable to be considered for the position.
Relevant experience must be in one or more of the following areas: computer or information systems design/development; programming; information/ cyber/network security; system or network administration; vulnerability analysis; penetration testing; computer forensics; systems engineering; computer systems research; reverse engineering; or updating information assurance documentation (for example System Security Plans, Risk Assessment Reports, Certification and Accreditation packages, and System Requirements Traceability Matrices).
Completion of military training in a relevant area such as JCAC (Joint Cyber Analysis course), Undergraduate Cyber Training (UCT), Network Warfare Bridge Course (NWBC)/Intermediate Network Warfare Training (INWT), or Cyber Defense Operations will be considered towards the relevant experience requirement (i.e., 20-24 weeks course will count as 6 months of experience, 10-14 weeks will count as 3 months of experience).
Cybersecurity Certifications (e.g., NET+, Security+, Certified Information System Security Professional (CISSP), and Certification Accreditation Professional (CAP)) may count as a total of 1 year of experience. ENTRY/DEVELOPMENTAL Entry is with an Associate's degree plus 2 years of relevant experience, or a Bachelor's degree and no experience.
FULL PERFORMANCE Entry is with an Associate's degree plus 5 years of relevant experience, or a Bachelor's degree plus 3 years of relevant experience, or a Master's degree plus 1 year of relevant experience, or a Doctoral degree and no experience.
The PivotHop read
- What a security engineer actually earnsmedian, seniority, by country
- Security Engineer career changes, measuredevery measured route out
- All open security engineer rolesthe full board
Where these skills also reach
- 150 open network engineer roles71% readiness from security engineer
- 40 open penetration tester roles65% readiness from security engineer
- 600 open systems administrator roles44% readiness from security engineer
- 600 open solutions architect roles42% readiness from security engineer
More security engineer roles
Fachkraft für Arbeitssicherheit (SiFa) / Sicherheitsingenieur (mensch) – Brandenburg at Argumed GmbHBrandenburgTodayApply
Fachkraft für Arbeitssicherheit (SiFa) / Sicherheitsingenieur (mensch) – Berlin at Argumed GmbHBerlinTodayApply
Backend Security Engineer at Micro1RemoteTodayApply
Identity & Access Management (IAM) Security Analyst(Bilingual English) at ConcentrixMexico · RemoteTodayApply
Staff Security Engineer at Robots & PencilsUnited States · RemoteTodayApply
Backfilled listing, refreshed with the nightly scrape; the employer has not claimed it yet. Are you the employer? Claim this listing and it can be featured to the candidates whose skills already reach it, first month free.