We are seeking an experienced System Security Engineerto design, implement, and manage secure systems and infrastructure across complex environments. The ideal candidate will bring expertise in system hardening, vulnerability management, cloud security, and DevSecOps principleswhile ensuring compliance with Federal, DoD, and Intelligence Community (IC) security requirements.
Primary Duties & Responsibilities
- Define system security requirements, including authorization boundaries, security domains, and data classifications.
- Design security interfaces, interconnections, and trust relationships between system components and external systems.
- Implement secure system architectures using COTS, GOTS, and open-source technologies.
- Oversee hardening and configuration of systems and components per Federal, DoD, and IC guidance.
- Manage security assessments using automated tools (e.g., Tenable Nessus, SCAP).
- Coordinate vulnerability assessments, identify control failures, and recommend corrective actions.
- Support business continuity and disaster recovery (BC/DR) strategies.
- Administer servers, backups, monitoring tools, and multi-network environments.
- Contribute to CI/CD pipelines, automation, and infrastructure security improvements.
Desired Skills & Requirements
- Strong knowledge of DevSecOps principles with the ability to advise cross-functional teams and simplify technical communication.
- Hands-on experience with Red Hat Enterprise Linux (RHEL), Windows administration, OpenShift, and Kubernetes.
- Certification or proven experience as Red Hat OpenShift Administrator.
- Cloud expertise with AWS (Cloud Practitioner), Azure (Solutions Architect/DevOps Engineer).
- 2+ years configuring/managing F5 Firewall infrastructure in enterprise environments.
- Experience managing web server architectures (e.g., Apache Tomcat on RHEL).
- Familiarity with CI/CD and development tools: GIT, Helm, Fortify, SonarQube, Chef, Docker, OpenShift, Kubernetes, OKTA, F5 APM, ADFS.
- Experience with middleware technologies (RabbitMQ, Java, .NET runtime).
- Knowledge of web technologies: HTML4/5, XML, SOAPUI.
- Proficiency with network analysis tools: Splunk, Wireshark, SD Elements, Sniffer, MS Network Monitor.
- Cybersecurity certifications preferred: CCSP, CISSP.
- Strong scripting skills (e.g., PowerShell) for automation, cloud management, and CI/CD pipelines.
Qualifications
- Bachelors degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
- Minimum 5+ years of IT/system security experience with increasing responsibility.
- Proven track record of designing, securing, and supporting enterprise-level systems.