This position is full time on site in Chantilly, Va and requires the candidate already have a Top Secret clearance.
As a SIPR Information Systems Security Engineer, you will have in-depth knowledge and be responsible for analyzing, designing, implementing, and documenting robust security measures to protect the organization's information systems and data assets. Your primary focus will be on identifying vulnerabilities, analyzing security threats, and implementing effective security solutions to ensure the confidentiality, integrity, and availability of sensitive information. Working closely with the cybersecurity team and IT staff, you will play a key role in maintaining a secure and compliant information technology environment.
Responsibilities:
Security Implementation: Design, deploy, and configure security configurations, such as MFA, centralized logging, encryption mechanisms, and access control systems, to protect the organization's information systems.
Vulnerability Assessment and Audits: Conduct regular vulnerability assessments and audits to identify weaknesses in the IT infrastructure and applications. Analyze results and collaborate with IT teams to remediate identified security gaps.
Incident Response and Threat Mitigation: Develop and implement incident response procedures to respond effectively to security incidents. Monitor and analyze security logs and alerts to detect and mitigate potential threats promptly.
Security Policy and Standards Development: Assist in the creation, review, and enforcement of information security policies, standards, and guidelines. Ensure compliance with industry best practices and regulatory requirements.
Security Compliance Monitoring: Monitor and track compliance with security policies and procedures, conducting periodic audits and assessments to ensure adherence to established security standards.
Secure Network Architecture: Design and implement secure network architectures, segmenting critical data and systems from less sensitive resources to minimize attack surfaces and potential impact.
Security Incident Investigation: Lead investigations into security breaches, identifying the root cause and recommending preventive measures to enhance security posture.
Data Protection and Privacy: Implement data protection measures, encryption techniques, and privacy controls to safeguard sensitive data and comply with relevant data protection regulations.
Qualifications Required: