Security Engineer Lead
$150,000–$200,000 year
HybridColorado Springs, Colorado, United States or Annapolis Junction, Maryland, United States
Job Summary
Provide subject matter expertise to security requirements allocation and architecture processes, translating NIST and government cybersecurity standards into actionable tasks. Review evidence verifying vulnerability remediation and system artifacts for Assessment & Authorization processes, including Security Plans, Contingency Plans, and Configuration Management Plans. Lead preparation of responses to federal ad hoc reporting requirements and draft written assessments, briefings, or presentations as accomplishment reports. Determine security impacts of new technologies or policies on the TSA information security program through documented Security Impact Analysis processes. Ensure security requirements are identified, allocated, and addressed throughout mission systems architectures while supporting weekly team staff meetings.
Required Qualifications
- Bachelor's Degree
- 15 years of related security engineering experience
- Must have a CISSP or a CISM
- Subject matter expertise in security requirements allocation and security architecture processes
- Expert technical guidance in translating National Institute for Standards and Technology (NIST), and government agency cybersecurity standards, policies, and procedures into actionable tasks
- Experience with Security scan tools and techniques
- Tenable Security Center
- Invicti 360
- Trustwave DbProtect
- CyberArk Certificate Manager (formerly known as Venafi)
- Portswigger Burp Suite Pro
- Ability to pass a comprehensive background investigation required to obtain a Government suitability determination
- Work location in Annapolis Junction, Maryland or Colorado Springs, Colorado
- Hybrid work schedule with 4 days of work on site each week
- Travel 4-5 times per year for weeklong assignments
- Ability to start 2 to 3 weeks after notification of contract award
- Willingness to sign a binding letter of commitment
- Excellent verbal and written skills
- Security Clearance
Desired Qualifications
- Self-motivated
- Ability to work in a geographically dispersed team of highly technical security personnel
- Loves problem solving
- Hand's on security engineering
- Ability to translate technical work and help manage tasks for more junior level staff
- Ability to discuss complex topics with senior leadership
- Experience reviewing and analyzing evidence used to verify security vulnerabilities have been sufficiently addressed and/or system artifacts such as those used in the Assessment & Authorization (A&A) process
- Experience reviewing draft documents and providing feedback on allocation of security and privacy requirements
- Experience determining the security impact of new technologies or policies on the TSA information security program
- Experience ensuring security requirements are identified, appropriately allocated, and addressed throughout mission systems' architectures
- Experience leading the preparation of responses to federal ad hoc reporting requirements
- Experience leading written reviews or assessments in the form of short briefings, written documents, or presentations
- Experience helping develop alternatives of IT system designs and/or architectures which consider trade-offs between security requirements, functional/operational requirements and cost
- Experience helping determine the impact of new or changing applicable NIST, DHS, and TSA cybersecurity standards and policy changes
- Experience leading the impact assessments of new or revised legislation and regulations
- Experience supporting standard operating procedure documentation and updates
- Support weekly security team staff meetings
- Review and ensure security compliance deliverables are accurate and correct
- Skilled in MS office Suite
- Works independently, proactively identifies, and completes task
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.