Senior Security Engineer
Summary
Senior Security Engineer responsible for securing and hardening systems, managing vulnerabilities, and ensuring compliance with DoD standards for a government-focused product team in Orlando.
This position is for the NCRC Range Modernization (RM) Senior Security Engineer position providing senior-level development, testing, and security support associated with their designated NCRC product scrum teams.
Responsibilities:
- Vulnerability Management:
1. Implement patching procedures for multiple Operating Systems (Linux, Windows, VMware, Cisco)
2. Run and review vulnerability scans and STIGs
3. Prioritize vulnerability remediation efforts across endpoints, networks, and applications
4. Automate patching process for multiple Operating Systems (Linux/Windows)
5. Responsible for securing and hardening hardware and software systems.
- Governance, Risk & Compliance:
1. Support tracking, resolution, and milestones for the program's Plan of Action and Milestones (POA&M) items
2. Develop and maintain security policies, procedures, and standards
3. Ensure compliance with relevant standards, directives, and regulations
4. Conduct risk assessments and support audit activities
5. Remain abreast of emerging technologies, cyber threats, and security tools
- Security Architecture & Engineering
1. Design, implement, and manage security solutions (e.g., SIEM, EDR, firewalls, IDS/IPS, IAM, VPN)
2. Evaluate and integrate new security technologies and tools
- Advise ISSO and ISSM on issues related to securing and monitoring classified DoD networks
- Creation and maintenance of data flow and system boundary diagrams
- Agile/Scrum process