Base-2 Solutions, LLC-posted 5 months ago
MD
51-100 employees

Base-2 Solutions is seeking a highly skilled and motivated Information Systems Security Engineer (ISSE) to join our team. Our ISSEs play a critical role in safeguarding cutting-edge systems that support national defense and mission-critical operations. We are looking for security professionals who bring expertise in system security design, risk management, and cybersecurity frameworks, as well as strong leadership qualities and an eagerness to tackle complex challenges. Our ideal candidate will demonstrate versatility, attention to detail, and a commitment to protecting sensitive information and systems as we continue to push technology forward.

  • Develops, implements, and maintains security solutions for complex systems to ensure confidentiality, integrity, and availability.
  • Conducts system security analysis, risk assessments, and vulnerability assessments to identify and mitigate risks.
  • Supports the development of security architecture and system security engineering artifacts based on NIST, DoD, and IC policies and guidelines.
  • Collaborates with system architects, software engineers, and network engineers to incorporate security requirements into system design.
  • Develops and maintains System Security Plans (SSPs), Security Assessment Reports (SARs), and related Risk Management Framework (RMF) documentation.
  • Performs continuous monitoring and ensures compliance with applicable security standards (NIST SP 800-53, ICD 503, CNSS, etc.).
  • Provides recommendations for improving system security posture and addresses security incidents as they arise.
  • Engages in security testing, evaluation, and certification & accreditation (C&A) activities.
  • Interfaces with government customers and stakeholders to effectively communicate technical information and security strategies.
  • Experience with security frameworks and standards such as NIST SP 800-53, RMF, ICD 503, CNSS, DoD STIGs.
  • Familiarity with security tools such as ACAS, Nessus, Tenable, Splunk, Wireshark, HBSS, McAfee ePO.
  • Knowledge of security technologies including Firewalls, IDS/IPS, SIEMs, VPNs, PKI, Multi-Factor Authentication.
  • Experience with system security documentation: SSPs, POA&Ms, SARs, Security Control Traceability Matrix (SCTM).
  • Proficiency with Linux, Unix, Windows, and Virtualization technologies (VMware, Hyper-V).
  • Experience with cloud platforms such as AWS, Azure, Google Cloud with a focus on cloud security.
  • Understanding of encryption protocols and technologies such as TLS/SSL, IPsec, VPN, PKI.
  • Experience with security testing tools: Nmap, Metasploit, Burp Suite, Kali Linux.
  • Scripting and automation experience: Python, PowerShell, Bash.
  • Knowledge of system development lifecycle (SDLC), software assurance, and secure coding practices.
  • Familiarity with collaboration and issue-tracking tools like JIRA, Confluence, ServiceNow.
  • Certifications such as CISSP, CAP, CEH, Security+, AWS Security Specialty, or equivalent.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service