We are seeking a Baseline Security Engineer, Lead to develop and implement security solutions in alignment with security strategy. The successful candidate will have 5+ years of experience in IT operations, creating security baselines, and working with government stakeholders. The role requires a bachelor's degree and experience with various technologies, including networking, operating systems, and cloud services.
Requirements
- 5+ years of experience providing support to Information Technology (IT) operations
- Experience creating security baselines using CIS and STIG benchmarks
- Experience creating security baselines from scratch using vendor documentation
- Experience with modifying CIS and STIG benchmarks to meet organizational requirements
- Experience working with the NIST 800 Special Publication series guidance for risk management and security control implementation, including 800-30,800-37, 800-53, 800-60, 800-63, 800-115, or 800-137
- Experience reviewing, developing, or customizing general security configuration baselines
- Knowledge of the National Vulnerability Database (NVD) and Common Vulnerability Enumeration (CVE)
- Ability to translate the low-level security baseline requirements into high-level FISMA and NIST requirements and client-specific security
- Ability to obtain and maintain a Public Trust or Suitability/Fitness determination based on client requirements
- HS diploma or GED
- Additional Qualifications: Experience with networking, including CISCO, Juniper, or Palo Alto, operating systems, including Windows Server, Red Hat, or Linux, cloud services, including AWS, Azure, Salesforce, Okta, O365, or ServiceNow, or Mobile Technologies, including iOS or Xen Mobile
- Experience designing, building, and implementing automation tools, including Ansible, Chef, or Puppet
- Experience with Infrastructure as Code tools, including Cloud Formations or Terraform
- Experience with container platforms, including OpenShift
- Experience with chaos engineering and blue or green deployments
- Experience with Serverless, including Lambda, API Gateway, Step Functions, and SAM
- Experience with application performance analysis and monitoring, including ELK
- Experience with JSON or YMAL programming
- Bachelor's degree
- AWS Certified Solutions Architect, AWS Certified Developer, CCNA, MSCE, RHCSA, EBSA, or ECSS Certification
Benefits
- health, life, disability, financial, and retirement benefits
- paid leave, professional development, tuition assistance, work-life programs, and dependent care
- recognition awards program