Information Systems Security Engineer - (100% Remote)

Posted on Sep 27, 2024 by Serco North America
Orlando, FL
Health & Safety
Immediate Start
Annual Salary
Full-Time - Remote
Position Description :

Are you an Information Systems Security Engineer looking for a place to make a difference every day? Serco is the place for you! Join our team in support of our Navy customer on our Anti-Terrorism/Force Protection Ashore Sustainment Program.

The Anti-Terrorism/Force Protection (AT/FP) Ashore Sustainment Program is executed by the Commander Navy Installations Command (CNIC) N3S AT/FP Ashore Program Management Office (PMO), NAVFAC Expeditionary Warfare Center (EXWC), and CNIC Regional Program Managers (RPMs). The primary goal of the CNIC AT/FP Ashore Sustainment Program is to provide both preventive and corrective maintenance services to Navy installations as required to sustain AT/FP Ashore Program systems in accordance with their operational requirements. This position is remote and may be based out of any location within the Continental United States (CONUS). 

As an AT/FP GSC Information Systems Security Engineer, you will support the CNIC N3S Public Safety Systems Ashore Programs and their mission is to design, procure, integrate, install, and sustain the systems/equipment hardware, associated firmware, and software required to provide the ability to protect mission-critical assets and personnel from natural disasters, acts of terrorism and other human-caused disasters.

In this role, you will:

Perform RMF support for Authorization Steps 1 through 4 and Step 6 throughout the systems cybersecurity life-cycle

Establish RMF Security Plan in eMASS

Ensure proper Architecture, Boundary, and Dataflow diagrams are completed for systems being authorized

Inventory and document hardware/software/firmware within assessment boundary

Develop Continuous Monitoring Strategy

Provide Security Control Tailoring including establishment of inheritance models with key security service providers

Complete eMASS Implementation Plan based on Continuous Monitoring Strategy

Assist assigned Validator in drafting the RMF Security Assessment Plan

Support all key stakeholders during RMF Step 2 Concurrence process

Ensure 100% execution of the approved Security Assessment Plan

Ensure ACAS automated vulnerability scans are completed on all assets with-in assessment boundary and establish hardened baseline configuration with consistent, repeatable successful results

Ensure system(s) are DISA STIG compliant – through SCAP scripts and manual checks

Ensure analysis and results of NIST SP 800-52 rev. 4 Assessment Procedures are updated within eMASS and support documentation uploaded as evidence of compliance

Serve as an IT Security subject matter expert supporting the Validator during on-site Independent Validation and Verification (IV&V) of IT solutions

Maintain the RMF Plan of Action & Milestones (POA&M) to accurately portray the risk posture of assigned solutions

Detail all relevant mitigation and remediation activities to vulnerabilities noted on the RMF POA&M through the Change Management Process

Monitor HW/SW lifecycles and provide recommendation for upgrade/sustainment to leadership

Ensure all RMF documentation is updated based on change and vulnerability management efforts

Perform continuous security reviews of RMF Security Controls (per approved continuous monitoring strategy)

Support Information Assurance/Cybersecurity (IA/CS) support activities including testing, mitigation, annual IA/CS compliance, sustainment, vulnerability and risk management, system engineering support

Work and support other ISSEs on team who also work remotely

Qualifications:

To be successful in this role, you will have:

An active DoD Secret clearance

An active DoD IAM Level I compliant certification

A minimum 4 years' related Information Security experience

A high school diploma/GED

Ability to travel up to 10% of the time as needed

Additional desired experience and skills:

CISSP certification

Bachelors degree in related discipline

Apply today to discover your place in our world!

In compliance with state and local laws regarding pay transparency, the salary range for this role is $101,939 to $169,898; however, Serco considers several factors when extending an offer, including but not limited to, the role and associated responsibilities, a candidate's work experience, education/training, and key skills.

Company Overview :

Serco Inc. (Serco) is the Americas division of Serco Group, plc. In North America, Serco’s 9,000+ employees strive to make an impact every day across 100+ sites in the areas of Defense, Citizen Services, and Transportation. We help our clients deliver vital services more efficiently while increasing the satisfaction of their end customers. Serco serves every branch of the U.S. military, numerous U.S. Federal civilian agencies, the Intelligence Community, the Canadian government, state, provincial and local governments, and commercial clients. While your place may look a little different depending on your role, we know you will find yours here. Wherever you work and whatever you do, we invite you to discover your place in our world. Serco is a place you can count on and where you can make an impact because every contribution matters.

To review Serco benefits please visit: . If you require an accommodation with the application process please email: or call the HR Service Desk at (phone number removed), option 1. Please note, due to EEOC/OFCCP compliance, Serco is unable to accept resumes by email.

Candidates may be asked to present proof of identify during the selection process. If requested, this will require presentation of a government-issued I.D. (with photo) with name and address that match the information entered on the application. Serco will not take possession of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please see our .

Serco does not accept unsolicited resumes through or from search firms or staffing agencies without being a contracted approved vendor. All unsolicited resumes will be considered the property of Serco and will not be obligated to pay a placement or contract fee. If you are interested in becoming an approved vendor at Serco, please email .

Serco is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.

Reference: 202589741

https://jobs.careeraddict.com/post/95630019

Information Systems Security Engineer - (100% Remote)

Posted on Sep 27, 2024 by Serco North America

Orlando, FL
Health & Safety
Immediate Start
Annual Salary
Full-Time - Remote
Position Description :

Are you an Information Systems Security Engineer looking for a place to make a difference every day? Serco is the place for you! Join our team in support of our Navy customer on our Anti-Terrorism/Force Protection Ashore Sustainment Program.

The Anti-Terrorism/Force Protection (AT/FP) Ashore Sustainment Program is executed by the Commander Navy Installations Command (CNIC) N3S AT/FP Ashore Program Management Office (PMO), NAVFAC Expeditionary Warfare Center (EXWC), and CNIC Regional Program Managers (RPMs). The primary goal of the CNIC AT/FP Ashore Sustainment Program is to provide both preventive and corrective maintenance services to Navy installations as required to sustain AT/FP Ashore Program systems in accordance with their operational requirements. This position is remote and may be based out of any location within the Continental United States (CONUS). 

As an AT/FP GSC Information Systems Security Engineer, you will support the CNIC N3S Public Safety Systems Ashore Programs and their mission is to design, procure, integrate, install, and sustain the systems/equipment hardware, associated firmware, and software required to provide the ability to protect mission-critical assets and personnel from natural disasters, acts of terrorism and other human-caused disasters.

In this role, you will:

Perform RMF support for Authorization Steps 1 through 4 and Step 6 throughout the systems cybersecurity life-cycle

Establish RMF Security Plan in eMASS

Ensure proper Architecture, Boundary, and Dataflow diagrams are completed for systems being authorized

Inventory and document hardware/software/firmware within assessment boundary

Develop Continuous Monitoring Strategy

Provide Security Control Tailoring including establishment of inheritance models with key security service providers

Complete eMASS Implementation Plan based on Continuous Monitoring Strategy

Assist assigned Validator in drafting the RMF Security Assessment Plan

Support all key stakeholders during RMF Step 2 Concurrence process

Ensure 100% execution of the approved Security Assessment Plan

Ensure ACAS automated vulnerability scans are completed on all assets with-in assessment boundary and establish hardened baseline configuration with consistent, repeatable successful results

Ensure system(s) are DISA STIG compliant – through SCAP scripts and manual checks

Ensure analysis and results of NIST SP 800-52 rev. 4 Assessment Procedures are updated within eMASS and support documentation uploaded as evidence of compliance

Serve as an IT Security subject matter expert supporting the Validator during on-site Independent Validation and Verification (IV&V) of IT solutions

Maintain the RMF Plan of Action & Milestones (POA&M) to accurately portray the risk posture of assigned solutions

Detail all relevant mitigation and remediation activities to vulnerabilities noted on the RMF POA&M through the Change Management Process

Monitor HW/SW lifecycles and provide recommendation for upgrade/sustainment to leadership

Ensure all RMF documentation is updated based on change and vulnerability management efforts

Perform continuous security reviews of RMF Security Controls (per approved continuous monitoring strategy)

Support Information Assurance/Cybersecurity (IA/CS) support activities including testing, mitigation, annual IA/CS compliance, sustainment, vulnerability and risk management, system engineering support

Work and support other ISSEs on team who also work remotely

Qualifications:

To be successful in this role, you will have:

An active DoD Secret clearance

An active DoD IAM Level I compliant certification

A minimum 4 years' related Information Security experience

A high school diploma/GED

Ability to travel up to 10% of the time as needed

Additional desired experience and skills:

CISSP certification

Bachelors degree in related discipline

Apply today to discover your place in our world!

In compliance with state and local laws regarding pay transparency, the salary range for this role is $101,939 to $169,898; however, Serco considers several factors when extending an offer, including but not limited to, the role and associated responsibilities, a candidate's work experience, education/training, and key skills.

Company Overview :

Serco Inc. (Serco) is the Americas division of Serco Group, plc. In North America, Serco’s 9,000+ employees strive to make an impact every day across 100+ sites in the areas of Defense, Citizen Services, and Transportation. We help our clients deliver vital services more efficiently while increasing the satisfaction of their end customers. Serco serves every branch of the U.S. military, numerous U.S. Federal civilian agencies, the Intelligence Community, the Canadian government, state, provincial and local governments, and commercial clients. While your place may look a little different depending on your role, we know you will find yours here. Wherever you work and whatever you do, we invite you to discover your place in our world. Serco is a place you can count on and where you can make an impact because every contribution matters.

To review Serco benefits please visit: . If you require an accommodation with the application process please email: or call the HR Service Desk at (phone number removed), option 1. Please note, due to EEOC/OFCCP compliance, Serco is unable to accept resumes by email.

Candidates may be asked to present proof of identify during the selection process. If requested, this will require presentation of a government-issued I.D. (with photo) with name and address that match the information entered on the application. Serco will not take possession of or retain/store the information provided as proof of identity. For more information on how Serco uses your information, please see our .

Serco does not accept unsolicited resumes through or from search firms or staffing agencies without being a contracted approved vendor. All unsolicited resumes will be considered the property of Serco and will not be obligated to pay a placement or contract fee. If you are interested in becoming an approved vendor at Serco, please email .

Serco is an equal opportunity employer. We evaluate qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, and other legally protected characteristics.

Reference: 202589741

Share this job:
CareerAddict

Alert me to jobs like this:

Amplify your job search:

CV/résumé help

Increase interview chances with our downloads and specialist services.

CV Help

Expert career advice

Increase interview chances with our downloads and specialist services.

Visit Blog

Job compatibility

Increase interview chances with our downloads and specialist services.

Start Test