Description
Description
SAIC is seeking a motivated, career and customer-oriented Lead Network Security Engineer to join our team and begin an exciting and challenging career.
This position is contingent upon contract award.
Responsibilities:
- Oversees security requirements development, tracking, and testing as defined during security planning, documentation, and cybersecurity architectural design to ensure acceptable operational risk and compliant operations during system authorization and ATO decision
- Identifies vulnerabilities and risks to the system through ongoing vulnerability testing, monitoring vendors for new SW to repair their products, and threat hunters who identify intruder trends and attack vectors.
- Coordinates project team technical activities and reporting of system status, including Plan Of Action & Milestones (POA&M) to independent validation & verification (IV&V) in working with client Information System Security Officers (ISSOs) and Information System Security Managers (ISSMs) to enable client continuous diagnostic monitoring and congressional FISMA reporting
- Develop, manage, and maintain compliance documentation, SSP, POA&Ms, continuous monitoring reports, and security activities in coordination with 3PAO, system operations and development teams and client ISSMs
- Develop security control requirements based on Cloud Service Provider (CSP) Microsoft Azure's Infrastructure as a Service FedRAMP controls, and NIST SP 800-53
- Coordinate with SOC2 auditing companies for SOC2 certification of the program and environment
- Review and oversee security, user management, intrusion detection, incident response, vulnerability testing, logging, access control, configuration management, and contingency planning with quarterly reviews of user accounts and weekly reviews of Sentinel and Defender
- Provides cybersecurity consulting on agency security program risks and corrective actions
- Support activities proposal for new features and enhancements
- Serve as an active member of the software development team participating in daily stand-ups.
- Provide security support, as needed, for solutions deployed to production.
- Interface with the stakeholders for project requirements
- Apply and promote good software engineering practices such as test automation, modularization, and simplification.
- Document software designs, which may include design diagrams, data flow diagrams, software module descriptions, etc.
- Comfortable with Windows Operating systems and environments.
Qualifications
Required:
- BS Computer Science and minimum 9 years' network security experience. (Four additional years of professional experience may be considered in lieu of a degree)
- Ability to pass background check and maintain status for contract that requires US citizenship.
- Certified Information System Security Professional (CISSP)
- Hands on experience with POA&Ms and working knowledge of FedRAMP controls
- Experience with Azure Devops and pipelines; Agile development using Azure Devops
- Ability to work in team environments across a diverse set of projects with multiple stakeholders.
- Proactive approach to problem solving and a delivery mindset.
- Excellent written and oral communications skills and able to work in a team which consists developers with different skillsets
Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.
Apply on company website