BAE Systems-posted 3 months ago
$122,870 - $208,890/Yr
Full-time • Mid Level
VA
5,001-10,000 employees

BAE Systems, a top-ten prime contractor to the U.S. Department of Defense, enables the U.S. government to transform data into intelligence and provides engineering, integration and sustainment support for critical military platforms and systems. Intelligence & Security provides services and products to the Department of Defense, the intelligence community, federal law enforcement officials, and troops deployed around the world. At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills and training they need to succeed. We are all about trust, camaraderie and a shared ambition to lead the world in defense technologies and national security services. We offer flexible work environment to support the balance in your life and keep you performing at your best. Be a part of a company that is part of the community; driven to improve our future and protect our freedom. We are looking for an ISSE to join our technology-based program supporting a key government customer. This program will deliver engineering services for network infrastructure as well as sophisticated enterprise computing infrastructure including end-point devices, data center hosted servers, multi-Cloud services as well as virtualized applications, and storage systems. Enterprise Computing Engineering services include modern application technology including containerized solutions with orchestrated workflow that function both on customer premise, and via remote Cloud services. Network infrastructure engineering services are comprised of core infrastructure, voice and video engineering, field engineering, application management and development for networks, network analytics, firewalls, network access controls and bandwidth service delivery.

  • Document the various security control implementations as well as gather the artifacts that support the Risk Management Framework (RMF) and ICD 503 Security Accreditation for various Assessment and Authorization (A&A) efforts.
  • Document and obtain a general understanding of the architecture being developed or that was developed for each project in order to write the Systems Security Plans (SSP)/CONOPS in the Xacta application.
  • Gather the information by working with various team members in order to write various additional A&A related documents such as Contingency Plan (CP), General User Guide (GUG), Privileged User Guide (PUG), Standard Operating Procedures (SOP’s), etc.
  • Support Accreditation and Authorization (A&A) reviews by ISSO/M, as well as the Security Controls Assessor (SCA).
  • Document the Plans of Actions and Milestones (POA&Ms) implementation responses or mitigations, as well as provide all required artifacts (i.e. evidence gathering from the teams).
  • Coordinating with various contractor and staff personnel to obtain the A&A content, as well as working with various customer organizations to navigate the customer’s A&A process in order to achieve Authority to Develop (ATD), Interim Authority to Operation (IATT), as well as Authority to Operate (ATO).
  • Keep track of where each of the various A&A projects are within the customer’s A&A process in order to know when it’s time to re-submit for accreditation or an accreditation extension.
  • Minimum of 6 years' experience in Cyber Security Systems Engineering.
  • Bachelor's or Master’s Degree preferred in one or more discipline, but can be waived if previous direct ISSE support to this customer’s agency.
  • Possess multi-tasking skills, as well as be a good communicator/facilitator.
  • Knowledge of the complex network environments involving shared networks and multiple security enclaves.
  • Ability to bridge the technical implementation into commonly understood security words.
  • Experience in documenting security control implementations and gathering artifacts.
  • Previous ISSE experience directly supporting the customer.
  • Previous ISSO experience directly supporting the customer.
  • Experience with various security tools and reports such as Xacta, RoadRunner, Rapid 7, WebInspect, App Detective, and Splunk.
  • Public, private and hybrid Cloud experience (AWS, Microsoft Azure, etc.).
  • Virtualization experience (VDI & VMWare).
  • Basic knowledge of Cloud security control implementation, PKI implementation, STIG compliance and vulnerability management, and Security Development and Operations (SecDevOps).
  • CISSP or GSLC certification.
  • AWS Certified Security Specialty.
  • Basic Excel and Microsoft Office365 skills.
  • Health, dental, and vision insurance.
  • Health savings accounts.
  • 401(k) savings plan.
  • Disability coverage.
  • Life and accident insurance.
  • Employee assistance program.
  • Legal plan.
  • Discounts on home, auto, and pet insurance.
  • Paid time off.
  • Paid holidays.
  • Paid parental leave.
  • Paid military leave.
  • Paid bereavement leave.
  • Federal and state sick leave.
  • Company recognition program.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service