Job Requirements
Fairfax, VA Denver, CO
Top Secret/SCI CI Polygraph
Senior Level Career (10+ yrs experience)
$150,000 - $210,000
Job Description
Shadowgate Partners is seeking an Information System Security Engineer (ISSE) for our client, a leading provider of Signals Intelligence (SIGINT) and specialized communications systems to the Intelligence Community, with over 40 years of deep expertise across strategic and tactical missions.
This is a fully funded position with the client serving as prime on the contract, available for immediate start. This role is 100% onsite at the client's facility either in Fairfax, VA or Denver, CO.
The role of the ISSE is to bridge the gap between high-level security policies/requirements and the technical/operational implementation of those requirements. Candidates should have an in-depth understanding of cybersecurity policies and procedures for Government (DoD, Intelligence Community) sector information systems, along with sufficient technical knowledge and experience to implement them. The ISSE will work closely and effectively with the Information System Security Manager (ISSM) and the Program Manager on all aspects of their development and implementation programs.
The ISSE will provide guidance, standards, and oversight to program/development teams as they work toward accreditation and then to maintain it. The candidate will contribute to the team's Assessment and Authorization (A&A) process activities (ICD-503 RMF) and related documentation such as security concept of operations, systems security plans, security control assessments, contingency plans, configuration management plans, incident response plans, plans of action and milestones, risk management plans, vulnerability and compliance scanning, and/or vulnerability management plans.
The ISSE will be an experienced System Administrator and Cyber Security Expert, supporting a larger team of developers, engineers, and analysts charged with expanding, operating, and maintaining information systems built on hundreds of Linux instances across virtual and bare-metal hardware. Team responsibilities include Linux system build automation, network architecture and implementation, all facets of cybersecurity compliance, and deployment and management of core subsystems and services. The ISSE will assume responsibility for the ICD-503 RMF process across multiple information systems, including patching, scans, reports, documentation, coordinating plans of action and milestones, audit log reviews, and other related duties.
The ISSE will help determine and recommend appropriate solutions and implementations to meet program needs. Candidates must be able to communicate effectively and be flexible, adaptable, and willing to take ownership of projects. Depending on experience, candidates will have several technical areas of primary responsibility and will be expected to cross-train and support other areas as needed. Superior attention to detail is required, along with a positive attitude and strong customer service skills in sometimes stressful situations, such as outage troubleshooting and resolution.
Required Skills
- Information Assurance (IA) and Information Security (InfoSec) experience working with Intelligence Community (IC) customers, including developing and reviewing security concept of operations, systems security plans, security control assessments, contingency plans, configuration management plans, incident response plans, plans of action and milestones, risk management plans, vulnerability and compliance scanning, and/or vulnerability management plans. Must have significant expertise in the ICD-503 A&A process and documentation preparation.
- Security engineering experience, including systems engineering principles, configuration management, supply chain, requirements analysis, system development (software and hardware), network security architecture concepts (topology, protocols, components), and/or IT security principles and methods (firewalls, demilitarized zones, encryption).
- Required experience with ICD-503 security frameworks, including A&A process and documentation preparation. Experience with NIST SP 800-37, CNSS publications, and other Risk Management Framework (RMF) processes is also desired.
- Experience providing continuous monitoring support for information systems, including expertise in USG security compliance processes, scan tools, and systems (NESSUS, NMAP, Trivy, ICD-503 RMF, SNOW).
- Advanced problem-solving skills — able to apply prior experience and knowledge to new situations, especially during client interactions.
- Experience providing assistance to A&A test and evaluation activities.
- Proficiency with Red Hat Linux/Unix and Kubernetes environments, including Red Hat Certified System Engineer (RHCSE) or equivalent skills. 5+ years of experience as a Linux system engineer/admin.
- Real, hands-on Linux technical background — near system administrator level, not just familiarity.
- Working knowledge of various Cross Domain Service (CDS) technologies and implementations.
- Demonstrated advanced analytical skills — able to seamlessly incorporate new knowledge during client interactions.
- Demonstrated ability to work seamlessly with program and development teams to communicate security practices tied to development requirements.
- Ability to evaluate proposed security architectures and designs and assess their adequacy against required security compliance objectives.
- Security certification (Security+ or CISSP).
Desired Skills
- Current or former Cisco Certified Network Associate (CCNA) and CCNA Security, or equivalent skills and experience
- Proficient, efficient, and confident writing and deploying Linux/UNIX scripts for system administration and file management
- Experience with Puppet and/or Ansible
- Experience with SNOW and ServiceNow
- Experience configuring, securing, managing, and troubleshooting Linux/Unix systems
- Familiarity with source code control tools such as Git, GitLab, CVS, SVN
- Experience with log aggregation tools for audit log purposes across Linux, networking equipment, and applications
- Experience with public key infrastructure (PKI), SSH configuration and troubleshooting, sssd, httpd
- Experience with Amazon Web Services or other cloud technologies
- Experience deploying enterprise monitoring tools such as Grafana
- Experience with VMware
- Experience with relational database technologies such as Oracle and MySQL
- Advanced writing skills — able to clearly articulate ideas for both executive and technical audiences
Education
Bachelor's Degree in Computer Science, Information Technology, or a related field, plus 10 years of experience desired.
Security Clearance
TS/SCI with CI polygraph
Salary Range
$150K - $210K
Benefits
Our Client offers an incredible benefits package including a 25% 401(k) company contribution, an additional 25% Individual Benefits Account (IBA) contribution covering health insurance premiums, 8 weeks of PTO, and 100% tuition and books reimbursement.
This is a fully funded position with the client serving as prime on the contract, available for immediate start. This role is 100% onsite at the client's facility either in Fairfax, VA or Denver, CO.
The role of the ISSE is to bridge the gap between high-level security policies/requirements and the technical/operational implementation of those requirements. Candidates should have an in-depth understanding of cybersecurity policies and procedures for Government (DoD, Intelligence Community) sector information systems, along with sufficient technical knowledge and experience to implement them. The ISSE will work closely and effectively with the Information System Security Manager (ISSM) and the Program Manager on all aspects of their development and implementation programs.
The ISSE will provide guidance, standards, and oversight to program/development teams as they work toward accreditation and then to maintain it. The candidate will contribute to the team's Assessment and Authorization (A&A) process activities (ICD-503 RMF) and related documentation such as security concept of operations, systems security plans, security control assessments, contingency plans, configuration management plans, incident response plans, plans of action and milestones, risk management plans, vulnerability and compliance scanning, and/or vulnerability management plans.
The ISSE will be an experienced System Administrator and Cyber Security Expert, supporting a larger team of developers, engineers, and analysts charged with expanding, operating, and maintaining information systems built on hundreds of Linux instances across virtual and bare-metal hardware. Team responsibilities include Linux system build automation, network architecture and implementation, all facets of cybersecurity compliance, and deployment and management of core subsystems and services. The ISSE will assume responsibility for the ICD-503 RMF process across multiple information systems, including patching, scans, reports, documentation, coordinating plans of action and milestones, audit log reviews, and other related duties.
The ISSE will help determine and recommend appropriate solutions and implementations to meet program needs. Candidates must be able to communicate effectively and be flexible, adaptable, and willing to take ownership of projects. Depending on experience, candidates will have several technical areas of primary responsibility and will be expected to cross-train and support other areas as needed. Superior attention to detail is required, along with a positive attitude and strong customer service skills in sometimes stressful situations, such as outage troubleshooting and resolution.
Required Skills
- Information Assurance (IA) and Information Security (InfoSec) experience working with Intelligence Community (IC) customers, including developing and reviewing security concept of operations, systems security plans, security control assessments, contingency plans, configuration management plans, incident response plans, plans of action and milestones, risk management plans, vulnerability and compliance scanning, and/or vulnerability management plans. Must have significant expertise in the ICD-503 A&A process and documentation preparation.
- Security engineering experience, including systems engineering principles, configuration management, supply chain, requirements analysis, system development (software and hardware), network security architecture concepts (topology, protocols, components), and/or IT security principles and methods (firewalls, demilitarized zones, encryption).
- Required experience with ICD-503 security frameworks, including A&A process and documentation preparation. Experience with NIST SP 800-37, CNSS publications, and other Risk Management Framework (RMF) processes is also desired.
- Experience providing continuous monitoring support for information systems, including expertise in USG security compliance processes, scan tools, and systems (NESSUS, NMAP, Trivy, ICD-503 RMF, SNOW).
- Advanced problem-solving skills — able to apply prior experience and knowledge to new situations, especially during client interactions.
- Experience providing assistance to A&A test and evaluation activities.
- Proficiency with Red Hat Linux/Unix and Kubernetes environments, including Red Hat Certified System Engineer (RHCSE) or equivalent skills. 5+ years of experience as a Linux system engineer/admin.
- Real, hands-on Linux technical background — near system administrator level, not just familiarity.
- Working knowledge of various Cross Domain Service (CDS) technologies and implementations.
- Demonstrated advanced analytical skills — able to seamlessly incorporate new knowledge during client interactions.
- Demonstrated ability to work seamlessly with program and development teams to communicate security practices tied to development requirements.
- Ability to evaluate proposed security architectures and designs and assess their adequacy against required security compliance objectives.
- Security certification (Security+ or CISSP).
Desired Skills
- Current or former Cisco Certified Network Associate (CCNA) and CCNA Security, or equivalent skills and experience
- Proficient, efficient, and confident writing and deploying Linux/UNIX scripts for system administration and file management
- Experience with Puppet and/or Ansible
- Experience with SNOW and ServiceNow
- Experience configuring, securing, managing, and troubleshooting Linux/Unix systems
- Familiarity with source code control tools such as Git, GitLab, CVS, SVN
- Experience with log aggregation tools for audit log purposes across Linux, networking equipment, and applications
- Experience with public key infrastructure (PKI), SSH configuration and troubleshooting, sssd, httpd
- Experience with Amazon Web Services or other cloud technologies
- Experience deploying enterprise monitoring tools such as Grafana
- Experience with VMware
- Experience with relational database technologies such as Oracle and MySQL
- Advanced writing skills — able to clearly articulate ideas for both executive and technical audiences
Education
Bachelor's Degree in Computer Science, Information Technology, or a related field, plus 10 years of experience desired.
Security Clearance
TS/SCI with CI polygraph
Salary Range
$150K - $210K
Benefits
Our Client offers an incredible benefits package including a 25% 401(k) company contribution, an additional 25% Individual Benefits Account (IBA) contribution covering health insurance premiums, 8 weeks of PTO, and 100% tuition and books reimbursement.
group id: 91173572