Job Title:
Information Assurance Security Engineer

Company: Leidos

Location: Herndon, VA

Created: 2024-05-09

Job Type: Full Time

Job Description:

Description Leidos has an opportunity for an Information Assurance/Security Engineer) to support the EAMS Program. The ideal candidate will be joining a small team and will share the knowledge, workload and the future for a mission critical application.Must be able to work on-site in Herndon, VA. Remote/hybrid work is NOT available for this position. Work hours are flexible.Primary Responsibilities•       Support the ISSO with Log Review/Analysis using SIEM tools (Splunk, etc.) to determine appropriate actions•       Conduct Vulnerability Analysis and Review of ACAS scans•       Assist with analysis and completion of DISA STIGs to ensure STIG-compliant solutions•       Utilize DevOps, SecOps methodologies to analyze and ensure that development requirements effectively integrate security requirements throughout the entire process•       Ensure ConMon requirements are addressed at the system level•       Employ best practices when implementing controls including software engineering methodologies; system and security engineering principles; secure -enhancing design, secure-enhancing architecture, and secure -enhancing coding techniques•       Coordinate security activities with system leads, ISSO's and program managersDetermine, design, implement, and evaluate the security requirements and measures of computer systems and networks•       Assess potential risks, mitigation measures, residual risks, and providing recommendations to stakeholders•       Develop and implement technical solutions to address security vulnerabilities•       Conduct risk assessments and provide recommendations for mitigating risks•       Lead the technical aspects of internal security audits and investigations•       Ensure compliance with government regulations and industry standardsBasic QualificationsBachelor's degree and 8+ years of experience OR additional 4 years of experience required in lieu of a degree (will consider at Staff level with the appropriate years of experience).Experience that includes supporting Assessment and Authorization (A&A) and information assurance processes and documentation using RMF,Experience working with software developers and architects to understand security requirementsExperience guiding application developers on security policy, identifying security requirements, providing technical guidance for the satisfaction of requirementsDISA STIGs and STIG Viewer experienceHands-on experience in developing and validating control implementations and test proceduresKnowledge of current security risks and protocolsDoD Approved 8570 IA Technical (IAT)/IA Management (IAM) Level 2 Certification (e.g., Security+)RMF, Xacta experienceClearance Requirement: TS/SCI with Poly required for Position or TS/SCI and willingness to obtain a polygraph.Preferred QualificationsExperience working with AWS/Google cloud-hosted information systems or applicationsExperience working with Redhat or CentOS Linux operating systemsExperience working in a DevSecOps environment and tool chainCreating and using security tools and processes for scanning, testing, monitoring, and reportingExperience in planning and overseeing configuration changes for major applications across multiple networksGood analytic and problem-solving skillsOriginal Posting Date:2024-05-01While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $101,400.00 - $183,300.00The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.