Systems Engineer
Job Description
2HB Incorporated is seeking a Database Developer in order to support its government customer based in Herndon, VA. The Sponsor manages security assessment, security compliance, change management, and continuous monitoring responsibilities across 5 cloud service providers (Amazon Web Services, Google Cloud, Oracle Cloud, Microsoft Azure, and IBM Cloud).
The work requires a healthy mix of technical and policy knowledge. The Sponsor requires support in understanding and implementing standards like ICD 503, NIST Risk Management Framework, and cloud technologies. The Sponsor needs polished skills in information system security engineering, and security control assessment. The work will be driven by the Sponsors needs and priorities.
Position Requirements:
The Sponsor will direct priorities and delegate tasks.
- The Candidate will work in a Team environment, that manages security assessment, security compliance, change management, and continuous monitoring activities across 5 cloud service providers (Amazon Web Services, Google Cloud, Oracle Cloud, Microsoft Azure, and IBM Cloud) through the Sponsor's office.
- The Candidate Team shall assess cloud security technologies for security gaps and weaknesses according to industry standards.
- The Candidate Team shall analyze security scan findings and perform risk analysis on security scan findings.
- The Candidate Team shall review cloud security body of evidence packages for completeness and accuracy.
- The Contractor Team shall collaborate with other internal components and security peers to determine security and potential weaknesses of cloud infrastructure and cloud services.
- The Candidate Team shall advise Sponsor leadership on cloud security services.
- The Candidate Team shall analyze system alerts to determine if a security weakness exists and document risk mitigation procedures.
- The Candidate Team shall sustain and evolve the Sponsor's standard operating procedures to meet Program Objectives.
- The Candidate Team shall facilitate technical exchange meetings (TEMs) with cloud service providers to review cloud service architectures.
Relevant Candidate Requirements and Demonstrated Experience:
- Demonstrated experience facilitating TEMs with cloud service providers to review cloud service architectures
- Demonstrated experience maintaining assessment and authorization (A&A) packages across multiple services or systems in accordance with FIPS-199, NIST 800-53, and CNSS 1253 requirements.
- Demonstrated experience designing, implementing, assessing or reviewing systems that utilize cloud technology with either Amazon Web Services, Oracle Cloud, Google Cloud, IBM Cloud, or Microsoft Azure cloud architecture.
- Demonstrated experience utilizing or reviewing cross domain technology and common architecture designs.
- Demonstrated experience consulting project teams on system architecture and security posture.
- Demonstrated experience with continuous monitoring requirements to include scan analysis for critical or high findings with common scan tools such as Rapid 7, Nessus, and Qualys.
- Demonstrated experience creating, monitoring, or closing system or service Plans Actions and Milestone items (POA&Ms).
- Demonstrated experience utilizing compliance tools to track assessment and authorization activities such as Xacta 360, Risk Vision, RSA Archer.
- Demonstrated experience with the common control provider concept within the NIST Risk Management Framework.
- Demonstrated experience with security control assessments to include working with SCAs and preparing security packages for SCAs.
- Demonstrated experience conducting information system security engineering activities.
This is a full-time position, and requires a TS/SCI/Full Scope Polygraph Clearance.
Explore More
Date Posted
08/10/2023
Views
8
Similar Jobs
2025 Sensor Modeling and Simulation Analysis Engineer - The Aerospace Corporation
Views in the last 30 days - 0
The Aerospace Corporation is a trusted partner to the nations space programs providing technical expertise and innovative solutions across satellite l...
View DetailsInformation Security Consultant - Application Security Engineer - MassMutual
Views in the last 30 days - 0
MassMutual is seeking an experienced Application Security Engineer to join their dedicated team The role involves driving security best practices cond...
View DetailsRegional Director Public Sector Sales DOW - Chainguard
Views in the last 30 days - 0
The job seeks a Regional Director with sales expertise and security clearance to lead public sector initiatives and build partnerships Responsibilitie...
View DetailsManager, Customer Success - Bold Penguin
Views in the last 30 days - 0
Bold Penguin a leading digital solution platform for small commercial insurance is seeking a Manager of Customer Success The role involves leading a t...
View DetailsManager, Project Manager - Capital One
Views in the last 30 days - 0
Capital One a Fortune 500 company and one of the nations top 10 banks is seeking a Manager Project Manager The role involves leading critical and stra...
View Details