Software Guidance & Assistance, Inc., (SGA), is searching for a
Staff Security Engineer (Python/Bash/AWS)for a
Contract assignment with one of our premier
Regulatory clients in
Rockville, MD.
This position is hybrid (3 days per week onsite) - Rockville or Tysons
Must be local to DC Metro area. The Staff Security Engineer works under limited supervision and will perform information security tasks commensurate with their experience that ensure applications and projects meet defined quality standards.
Responsibilities :
- Apply established processes and techniques to identify, validate, and prioritize security risks.
- Architect and design security control systems to address requirements.
- Operate and monitor established security controls.
- Ensure that controls are operating effectively; resolve operating discrepancies.
- Review, triage, and prioritize control output. Recommend actions to resolve identified security discrepancies.
- Evaluate and recommend new security technologies, techniques, and tools.
- Review and help define information security policies, standards, guidelines, and procedures.
- Monitor and enforce compliance with internal and external regulations, policies, and standards. Recommend strategies to ensure that compliance is effectively monitored and enforced.
- Lead / Co-lead internal project/program level process improvement initiatives. Provide feedback on processes by offering suggestions.
- Informally mentor more junior staff.
- Assist with adherence to technology policies and comply with all security controls.
Required Skills:
- Bachelor's degree in Computer Science, Information Systems or related discipline with at least three (3) years of related experience, or equivalent training and / or work experience.
- Solid Python/Bash Scripting experience (Automation) - MUST
- AWS - Lambda, EC2, RDS, Step functions - MUST
- Experience must include direct experience in more than one of the following areas: securing networks and systems architecture, design and implementation, secure software assurance, intrusion detection, defense and incident response, security configuration management, access controls design and implementation and security policy and standards development.
- Knowledge of communications protocols.
- Experience with one or more Cyber Security tools, including: Configuration Assessment, Log Aggregation, Integrity Verification, Web Application Security Testing, Network Access Control System, Network Intrusion prevention systems, and Endpoint Security Solutions.
- Strong written and verbal technical communication skills.
- Demonstrated ability to develop effective working relationships that improved the quality of work products.
- Should be well organized, thorough, and able to handle competing priorities.
- Ability to maintain focus and develop proficiency in new skills rapidly.
- Ability to work in a fast paced environment.
- Solid knowledge of more than one Information Security principle and discipline
SGA is a technology and resource solutions provider driven to stand out. We are a women-owned business. Our mission: to solve big IT problems with a more personal, boutique approach. Each year, we match consultants like you to more than 1,000 engagements. When we say let's work better together, we mean it. You'll join a diverse team built on these core values: customer service, employee development, and quality and integrity in everything we do. Be yourself, love what you do and find your passion at work. Please find us at .
SGA is an Equal Opportunity Employer and does not discriminate on the basis of Race, Color, Sex, Sexual Orientation, Gender Identity, Religion, National Origin, Disability, Veteran Status, Age, Marital Status, Pregnancy, Genetic Information, or Other Legally Protected Status. We are committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, and our services, programs, and activities. Please visit our company to request an accommodation or assistance regarding our policy.
#LI-KJ1