Info Assurance Engineer Resume Samples

4.7 (111 votes) for Info Assurance Engineer Resume Samples

The Guide To Resume Tailoring

Guide the recruiter to the conclusion that you are the best candidate for the info assurance engineer job. It’s actually very simple. Tailor your resume by picking relevant responsibilities from the examples below and then add your accomplishments. This way, you can position yourself in the best way to get hired.

Craft your perfect resume by picking job responsibilities written by professional recruiters

Pick from the thousands of curated job responsibilities used by the leading companies

Tailor your resume & cover letter with wording that best fits for each job you apply

Resume Builder

Create a Resume in Minutes with Professional Resume Templates

Resume Builder
CHOOSE THE BEST TEMPLATE - Choose from 15 Leading Templates. No need to think about design details.
USE PRE-WRITTEN BULLET POINTS - Select from thousands of pre-written bullet points.
SAVE YOUR DOCUMENTS IN PDF FILES - Instantly download in PDF format or share a custom link.

Resume Builder

Create a Resume in Minutes with Professional Resume Templates

Create a Resume in Minutes
MG
M Gibson
Maurice
Gibson
5544 Price Light
San Francisco
CA
+1 (555) 994 5982
5544 Price Light
San Francisco
CA
Phone
p +1 (555) 994 5982
Experience Experience
Philadelphia, PA
Info Assurance Engineer
Philadelphia, PA
Halvorson and Sons
Philadelphia, PA
Info Assurance Engineer
  • Interface with Census, Department of Commerce and other organizations’ Security departments to exchange information and provide updates
  • Assisting with the development and implementation of security event monitoring on critical systems
  • Researching, developing and maintaining proficiency in tools, techniques, countermeasures, and trends in computer and network vulnerabilities and exploits
  • Developing and enhancing processes to maintain efficiency
  • Provide briefings to Security and Program management on findings
  • Applicant will be responsible to take developed security concepts provided and implement solutions for a managed (physical and virtual) Windows/Unix based enterprise, storage and network enterprise systems
  • Applicant will support the security engineering management of programs within the ESA IV program; designing and testing state-of-the-art secure operating systems, networks, and database security products. i.e. Nessus/BigFix to scan and detect vulnerabilities within the ESA IV enterprise
San Francisco, CA
Info Assurance Engineer Prin
San Francisco, CA
MacGyver, Bahringer and Welch
San Francisco, CA
Info Assurance Engineer Prin
  • Apply cyber security standards, directives, guidance and policies to architectural frameworks
  • Lead multi-disciplined teams in the design and implementation of the cyber security system architecture
  • Resolve security architecture implementation issues in existing systems
  • Embed advanced forensic tools and techniques for attack reconstruction
  • Compile industry best practices and lessons learned into design iterations and new designs
  • Oversee security tools definition and selection
  • Leidos is a global leader in the integration and application of information, technology and systems working to solve the world’s toughest challenges in the civil, health, defense, intelligence and homeland security markets. The company’s 33,000 diverse employees support vital missions for government and commercial customers in 30 countries. Headquartered in Reston, Virginia, Leidos reported annual revenues of approximately $10 billion for the fiscal year ended January 1, 2016 after giving effect to the recently completed combination of Leidos with Lockheed Martin's Information Systems & Global Solutions business (IS&GS). For more information, visit www.Leidos.com. The company’s diverse employees support vital missions for government and commercial customers. Qualified women, minorities, individuals with disabilities and protected veterans are encouraged to apply. Leidos is an Equal Opportunity Employer
present
Los Angeles, CA
Cybersecurity / Info Assurance Engineer
Los Angeles, CA
Homenick, Prosacco and Lockman
present
Los Angeles, CA
Cybersecurity / Info Assurance Engineer
present
  • Develop sound Cybersecurity processes to include implementation of RMF-based policies and procedures
  • Document the results of Certification and Accreditation activities and technical or coordination activity and prepare the system Security Plans and update the Plan of Actions and Milestones POA&M
  • Perform analyses at all levels of total system product to include: concept, design, fabrication, test, installation, operation, maintenance and disposal
  • The applicant will conducts risk assessment and provides recommendations for application design, to include managed services
  • Monitoring, analyzing, and responding to security events utilizing security event management tools and reports
  • Applicant will be responsible to work with the security, engineering, development and infrastructure teams to configure the enterprise environment, including computer incident problem resolution and investigations
  • Assists with the preparation of security reports to audit and regulatory agencies
Education Education
Bachelor’s Degree in Computer Science
Bachelor’s Degree in Computer Science
Brigham Young University
Bachelor’s Degree in Computer Science
Skills Skills
  • Demonstrated self-starter and team player, able to quickly learn new concepts and share knowledge/information with team members
  • Knowledgeable of Risk Management Framework tools and procedures
  • Strong organizational skills and ability to multi-task
  • Ability to analyze problems and devise workable solutions
  • Certified Information Systems Security Professional (CISSP) certification
  • Ability to build and maintain relationships, collaborate with others, engage in constructive conflict, and manage interpersonal dynamics
  • Strong technical writing skills
  • Basic financial and business acumen
  • Knowledge of Earned Value Management practices
  • Proven ability to prioritize and work multiple efforts simultaneously
Create a Resume in Minutes
1

Info Assurance Engineer Resume Examples & Samples

  • Understanding Unix operating system configuration, security settings, and Solaris patching methodologies is critical to the success of this position. (Specific variants of Unix being used include Solaris and Red Hat.)
  • The applicant will also need to be able to manage reverse proxy configurations
  • Applicant will be responsible to take developed security concepts provided and implement solutions for a managed (physical and virtual) Windows/Unix based enterprise, storage and network enterprise systems
  • Applicant will be responsible to work with the security, engineering, development and infrastructure teams to configure the enterprise environment, including computer incident problem resolution and investigations
  • Applicant will be responsible for validating and verifying system vulnerability patches to ensure security compliance
  • Applicant will support the security engineering management of programs within the ESA IV program; designing and testing state-of-the-art secure operating systems, networks, and database security products. i.e. Nessus/BigFix to scan and detect vulnerabilities within the ESA IV enterprise
  • The applicant will conducts risk assessment and provides recommendations for application design, to include managed services
  • The applicant will be involved in a wide range of security issues including architectures, firewalls, electronic data traffic, network access, encryption technology, penetration and vulnerability analysis of various security technologies, and information technology security research
  • Assists with the preparation of security reports to audit and regulatory agencies
  • Gathering and analyzing information through customer interviews and documentation, performing scoping, and writing reports
2

Info Assurance Engineer / Infosec Engineer Resume Examples & Samples

  • Demonstrated experience working with and standing up a Security Operations Center (SOC)
  • Experience operating on a Computer Incident Response Team (CIRT)
  • Proven ability to work with difficult customers and achieve ambitious goals under difficult constraints
  • Demonstrated ability to build strong and effective interpersonal working relationships
3

Info Assurance Engineer Asc Resume Examples & Samples

  • Familiarity with security/identity protocols such as OpenAM, OpenIG, SAML, etc
  • Familiarity with DataPower and firewall appliances
  • Proficiency with Powershell, Perl, or Java scripting/programming languages
  • Familiarity with Web security
4

Info Assurance Engineer Resume Examples & Samples

  • Experience with Agile methodologies
  • Experience with Splunk, and/or other log management and security testing tools
  • Focus on researching both Cloud and data center security tools and best practices
  • Author short papers and summaries of new technologies and their usefulness to the organization
  • Provide briefings to Security and Program management on findings
  • Aid in the development of tools for Security and Security Operations groups within the Program
  • Act as an advocate for security best practices
  • Maintain and track Security tool licensing and service contract expirations, updates and improvements
  • Maintain contact and a relationship with current security software and license providers and work to ensure the Program is getting maximum use of all services
  • Interface with Census, Department of Commerce and other organizations’ Security departments to exchange information and provide updates
5

Info Assurance Engineer Prin Resume Examples & Samples

  • Demonstrated ability to team internally and externally across organizational and company boundaries to collaborate with and influence others and drive consensus and/or resolution to challenging problems
  • Ability to obtain a minimum of DoD Secret clearance
  • Experience working in business area/programs with an understanding of program lifecycles and supplier interactions
  • Knowledge of global supply chain and program supplier business processes and policies and tools, including Exostar and P2P
  • Understanding of DoD cyber security regulations and associated security requirements (e.g., NIST SP 800-171)
6

Cybersecurity / Info Assurance Engineer Resume Examples & Samples

  • Develop sound Cybersecurity processes to include implementation of RMF-based policies and procedures
  • Execute vulnerability assessments; ensure mitigation of risks and support obtaining certification and accreditation of systems
  • Document the results of Certification and Accreditation activities and technical or coordination activity and prepare the system Security Plans and update the Plan of Actions and Milestones POA&M
  • Conduct technical planning, system integration, verification and validation, cost and risk, and supportability and effectiveness analyses for total systems
  • Perform analyses at all levels of total system product to include: concept, design, fabrication, test, installation, operation, maintenance and disposal
  • Ensure the logical and systematic conversion of customer or product requirements into total systems solutions that acknowledge technical, schedule, and cost constraints
  • Perform functional analysis, timeline analysis, detail trade studies, requirements allocation and interface definition studies to translate customer requirements into hardware and software specifications
  • Bachelor’s Degree in STEM field and relevant experience in cybersecurity engineering/information assurance
  • US citizenship required
  • Ability to obtain an SCI
  • Possess excellent verbal and written communication skills to produce coherent and concise documentation required for certification evaluation
  • Top Secret/SCI security clearance
  • Hold an active DoD 8570 IA Workforce Improvement Program IAT Level II Approved Baseline Certification
7

Info Assurance Engineer Resume Examples & Samples

  • Perform architecture reviews, develop and/or review security designs, perform threat modeling, controls assessments, and risk analysis. Provide risk mitigating controls recommendations in the context of business needs and enterprise risk tolerance
  • Work with customers, vendors, and suppliers in exploration of technologies, services, and products supporting RMS business strategy/initiatives
  • Brief security engineering engagements and deliverables at RMS and CIS milestone reviews
  • Support engineering design and development, prototyping, COTS evaluation (products and services), trade study analysis, for new or changing services
  • Support proposal and presentation of concepts for new or changing services to leadership as well as peers
  • Shadow senior technical professionals
  • Demonstrated work experience within cybersecurity, information assurance, systems engineering, software development, or systems administration (minimum of 1 year)
  • Demonstrated exceptional communication and expectation setting skills with internal and external senior level personnel, colleagues, and peers
  • Strong technical writing skills
  • Demonstrated self-starter and team player, able to quickly learn new concepts and share knowledge/information with team members
  • Prior experience in Corporate Information Security (CIS)
  • Risk Based Governance experience
  • Experience with industrial control systems/operations technology
  • Demonstrated coding experience in at least one of the following - Powershell, Python, Javascript, PERL, or Ruby
  • Demonstrated experience with database technologies (API interfaces to WebApps and Administration in one or more of the following (SQL, MySQL, Oracle, or NoSQL)
  • Demonstrated experience/proficiency (OS configuration, file system structures, Active Directory, etc) with non-*Nix Operating Systems (eg. Windows, iOS)
  • Working Knowledge of Lockheed Martin Information Security policies, architectural standards and controls requirements
  • Exposure to DFARS, NISPOM, NIST as it relates to IT security
  • Experience with ISO 27000 or DIACAP
8

Info Assurance Engineer Asc Resume Examples & Samples

  • Degree in Industrial Engineering, Information Science, Computer Science, Computer Engineering
  • Basic ability to work in a complex system integration environment
  • Familiarity with cybersecurity concepts
  • Ability to obtain an 8570.1 certification
  • Understand system security engineering activities in support of software and system requirements, design, development, testing and sustainment
  • Ability to support the engineering staff
  • Ability to interact effectively with customers and program management
  • Experience in providing customer service
  • Demonstrated an ability to manage an engineering skill set to achieve functional requirements and goals
  • Experience with risk management
  • Experience with system configurations
  • Basic knowledge in the latest industry trends and developments in enterprise IA solutions
  • Understanding of Air Force and government Space Operations
9

Info Assurance Engineer Prin Resume Examples & Samples

  • Address system-of-system architectural needs for new and existing programs
  • Oversee security tools definition and selection
  • Lead multi-disciplined teams in the design and implementation of the cyber security system architecture
  • Apply cyber security standards, directives, guidance and policies to architectural frameworks
  • Provide architectural analysis of cyber security features and relate existing system to future needs and trends
  • Embed advanced forensic tools and techniques for attack reconstruction
  • Provide engineering recommendation based on cyber security needs analysis
  • Review and provide input to system requirements based on cyber security posture
  • Compile industry best practices and lessons learned into design iterations and new designs
  • Provide broad based experience in the systems engineering lifecycle and apply the experience to specific cyber security initiatives relating to architectural design and development
  • Resolve security architecture implementation issues in existing systems
10

Info Assurance Engineer Resume Examples & Samples

  • Ability to obtain security clearance
  • Experience working within similar environment with proven successful results
  • Have strong interpersonal skills and good situational awareness
11

Info Assurance Engineer Resume Examples & Samples

  • Maintaining security and compliance requirements for the tracking of incoming IT assets at the facility
  • Managing a secure environment in accordance with the approved unclassified security plan
  • Coordinating and collaborating with multiple technical points of contacts on requirements
  • Communicating security requirements to mitigate issues before test systems production
  • Interact and partner with the site IT Service Delivery team and engineering, classified security and local security managers
  • Effective interpersonal and team-building skills. Must be comfortable interacting with senior leadership within LM and external customers
  • Demonstrated understanding of LAN and WAN concepts. Basic familiarity with the role of network firewalls and their use in separating networks and permitting by exception specific traffic
  • Demonstrated understanding of Windows server and desktop operating systems from the administration point of view. Understanding of services, network interfaces, server roles, and use of Active Directory security groups for managing access to devices
  • Experience with enterprise IT risk management and mitigation tools. Experience with tools used to patch Windows operating systems such as SCCM or BladeLogic
  • Demonstrated ability to meet objectives with minimal supervision
  • Demonstrated work experience performing to established plans, policies and procedures
  • Demonstrated work experience partnering across functional teams to drive process improvements and deliver results
  • Ability to obtain and maintain DoD Secret level security clearance
  • Certified Information Systems Security Professional (CISSP) certification
  • Previous experience using National Industrial Security Program Operating Manual (NISPOM)
  • Previous work experience performing information systems security testing and evaluation
  • Previous work experience performing as a Network Engineer/System Administrator
  • Demonstrated ability to perform effectively in a diverse, evolving, fast-paced team environment
  • Demonstrated ability to constructively escalate and challenge issues to ensure compliance
  • Willing to take on short-term assignments
  • Ability to travel occasionally as requirements dictate
  • Ability to work with teammates of varied technical disciplines to achieve team objective
  • Experience with managing security of Linux/Unix operating systems
  • Demonstrated work experience reviewing and analyzing system security logs for potential threats
  • Experience with writing and maintaining IT disaster recovery documents
  • Familiarity with infrastructure virtualization tools such as VMWare
  • Knowledgeable of extranet concepts, interface between extranets and corporate intranets, tools used to separate the networks, and the reasons for ensuring those separations
  • Demonstrated work experience securing and hardening IT systems
  • Experience working with customers to evaluate IT requirements to recognizing potential security risks, and being able to work with the customer to address security concerns and find acceptable alternatives
12

Info Assurance Engineer Resume Examples & Samples

  • Fluent using the Linux CLI
  • Versed in Linux system administration and best practices
  • Ability in managing and maintaining Linux repositories
  • General understanding of Linux internals (system calls, file systems, processes, etc.)
  • Familiarity with enterprise network architectures
  • Fluency in programming/scripting skills for automation in Bash, Ruby, Python, and/or Perl
  • General understanding of TCP/IP and related protocols (HTTP, ssh, smtp, etc.)
13

Info Assurance Engineer Resume Examples & Samples

  • Demonstrated broad background in information security tools, concepts and issues across a broad range of technologies including Network and Software Security, Network Penetration Testing, Web Application Penetration testing by related work experience
  • Familiarity with a variety of penetration testing tools and methodologies
  • Experience with Network and Application Layer Firewall Technology
  • Demonstrate excellent verbal and written communication skills
  • Must possess strong interpersonal relations and analytical skills
  • Experience leading and performing Cyber Vulnerability Assessments, Penetration Testing, and Security Technical Implementation
  • Practical experience configuring and administrating Host Based Security System, Splunk, ArcSight, and other network monitoring, incident response, and logging tools
  • Other desired experience areas: Embedded Cyber, SW Secure Coding / Analysis, OSINT Analysis experience, System Engineering / Network Engineering / Network architecture and design experience
14

Info Assurance Engineer Resume Examples & Samples

  • Develops, deploys and maintains enterprise-wide systems and information security requirements, policies, standards, guidelines and procedures for a stakeholder organization or program/sub program
  • Evaluates capability risk/gaps and takes action to meet objectives
  • Analyzes and reports findings from static code analysis and works closely with software developers to remediate identified vulnerabilities
  • Familiarity with Security Content Automation Protocol (SCAP), Tenable Nessus, and Security Technical Implementation Guides (STIGs), or similar utilities, to assess security compliance standards and system/subsystem/application vulnerabilities
  • Analyzes security situations, environmental factors and business objectives
  • Develops and/or advises on a broad range of compliant information security and data protection requirements
  • Analyzes and documents computing security events
  • Identifies root causes, prioritizes threats and recommends and/or implements corrective action
  • Determines acceptability of unique configurations and verifies security parameter placement
  • Tests and deploys risk mitigation processes and tools
  • Investigates, analyzes and resolves questions and issues related to security incidents
  • Tests and deploys incident response processes and tools
  • Collects, preserves and documents security event information to determine facts and maintain chain of custody
  • Performs security compliance monitoring. Participates in security policy assessments and audits
  • Evaluates and tests security controls and applications
  • Contributes to corrective action planning
  • Identifies technology, user behavior and environmental trends
  • Develops training requirements, delivers standard and ad hoc content
  • Assess near and long term training effectiveness
  • Technical bachelor's degree and typically 5 or more years' related work experience or a Master's degree with typically 3 or more years' or a PhD degree or an equivalent combination of education and experience
  • Requires a current/active Secret security clearance
  • Familiarity with common programming languages, Java, C#, and C++
15

Info Assurance Engineer Resume Examples & Samples

  • Knowledge with privilege accounts using privilege management products, and applying least privilege principles
  • Knowledge of role based access controls and two factor authentication methods
  • Experience with troubleshooting techniques, performance tuning, and other best practices
  • Proven effective communication skills (written, verbal and presentation) - Proven effective teaming skills (co-located and virtual) - Proven ability to independently identify and problem solve issues with minimal direction from leadership
  • Ability to obtain, at a minimum, a secret level clearance
  • Experience with configuration privilege management policies
  • Experience with sustaining privileged account security operations, and maintenance experience for managing privileged account security environments
  • Experience with Avecto Privilege Guard suite
  • Experience with production deployments various mechanisms used to deploy software and policies. Group Policy, McAfee ePO
  • Experience with CyberArk privileged account security architecture, and administration, on-boarding, monitoring, troubleshooting, Enterprise deployments
  • CyberArk Certification
  • CISSP and/or CISM security certification (or willingness to pursue)
16

Info Assurance Engineer Resume Examples & Samples

  • TS SCI clearance
  • 5+ years of experience with providing COMSEC support including key management, key renewal, and reporting
  • Knowledge of COMSEC electronic key management systems and local site key management policies
  • Understanding of all security requirements and customer policy such as NIST and FISMA standards, and DHS 4300B and C, or equivalent
  • DHS Program Experience
17

Info Assurance Engineer Resume Examples & Samples

  • 7+ years of experience providing PKI management support including Token Lifecycle Management
  • Experience with hard and soft x.509 certificates, users, and nonperson entities (NPE)
  • Security +
  • DHS Experience
  • Background in identity and access management
18

Info Assurance Engineer Asc Resume Examples & Samples

  • Minimum of current Secret clearance to start
  • Bachelors degree from an accredited college in a related discipline, or equivalent experience/combined education. Entry level
  • Some experience in RedHat Linux
  • Familiarity with the DISA STIGs (Security Technical Implementation Guides)
  • Familiarity with using Bash/Shell to produce hardening scripts and workable knowledge of using utilities such as SCAP and ACAS to identify system vulnerabilities is a plus
  • Risk Management Framework planning and implementation working experience is considered a plus
  • Any security related certification or the pursuit thereof is considered a plus
  • Solid verbal and written communication skills are necessary
19

Info Assurance Engineer Resume Examples & Samples

  • Bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field and a minimum of two years of professional experience or master’s degree in software engineering and zero years of experience
  • Experience in RedHat Linux as a power user (i.e., knowledgeable of some UNIX admin commands and functions)
  • Knowledge of remediation methods using various cybersecurity controls for systems and networks
  • Experience with or knowledge of the Risk Management Framework (RMF) and the DOD Information Assurance Certification & Accreditation Process (DIACAP) methods
  • Software development experience in Java or C++ and/or system administration experience in RedHat Linux
  • Experience integrating computing systems into an enterprise environment
  • Experience using automated static analysis tools along with manual code review
  • Familiarity with high-performance/cloud computing and storage concepts/technologies (Hadoop, GlusterFS, OpenStack)
  • Knowledge of DBMS and SQL (i.e. Oracle Database, PostgreSQL)
  • Knowledge of Directory Services (i.e. Active Directory and OpenLDAP)
  • Knowledge of Web Servers / Services (i.e. Apache HTTP, Apache Tomcat, Eclipse Jetty) and web applications
  • Understanding of encryption concepts. Ability to communicate secure coding concepts and identify potential software defects/flaws
  • Familiarity with using Bash/Shell to produce hardening scripts and workable knowledge of using utilities such as SCAP and ACAS to identify system vulnerabilities
  • Experience in application and OS hardening using Puppet modules
  • CISSP certification or the pursuit thereof is a plus
  • The ability to work independently without much peer guidance
  • Solid verbal and written communication skills
  • Ability to obtain a TS/SCI clearance
20

Senior Info Assurance Engineer Resume Examples & Samples

  • Ability to obtain a Public Trust security clearance
  • Current CISSP, GIAC, CEH, or similar certification
  • Ability to run severity outages or lead security incident responses
  • Minimum 5 years of experience in Information Technology infrastructure
  • Analyzing and evaluating customer requirements and developing solutions to securely meet requirements
  • Providing high-level technical oversight for the implementation and operation of cybersecurity and information security tools, technologies, solutions and methodologies
  • Lead a team of cybersecurity and information security professionals supporting daily operational tasks, security services delivery, projects and initiatives. Ensuring that activities are completed and delivered on schedule and meet the requirements. Recruiting, hiring and retention of highly qualified cybersecurity and information security professionals. Assigning work and establishing priorities. Supervising staff on performance of tasks and activities
  • Providing cybersecurity and information security subject matter expertise and support to the Government and to other contractor personnel
  • Collaborating with other technical leads to solve problems and conduct root cause analysis
  • Defining and maintaining organizational standards, procedures and policies related to cybersecurity and information security
  • Assisting the Government in predicting future cybersecurity and information security needs and developing strategic direction in cybersecurity and information security
  • Providing detailed development cost, resource, and technology estimates for proposed solutions, and providing status updates on projects and service delivery
  • Expert understanding of cybersecurity and information security principles, methodologies, requirements and solutions
  • Knowledge of current and emerging cybersecurity and information security tools, technologies, solutions and methodologies
  • Knowledge and solid understanding of security industry best practices
  • Deep understanding of, and experience in applying, Federal Information Processing Standards (FIPS) and National Institute of Standards and Technology (NIST) Special Publications (800 series) on Computer Security
  • Expert understanding of, and experience in applying, the NIST Risk Management Framework and Government Information Security Continuous Monitoring requirements and best practices
  • Interpreting, implementing and adhering to Agency and Federal standards, policies and directives
21

Info Assurance Engineer Resume Examples & Samples

  • Review user needs and requirements, and interprets and uses IT architectural guidelines to review system architecture designs or system
  • Document design specifications, installation instructions, and other system-related information to integrate and migrate existing and planned platforms in support of an organization’s enterprise architecture
  • CLEARANCE: Must be able to obtain a Position of Public Trust Designation - US Citizen or Green Card Holder. Willingness to submit to a Tier 5 Single-Scope Background Investigation (SSBI)
  • Ability to communicate effectively both written and verbal
22

Info Assurance Engineer Resume Examples & Samples

  • Perform lead role in authoring RMF package artifacts, incorporating applicable supporting references, manuals, guidance, policies, directives, instructions and processes
  • Work with a large team across multiple organizations to design a compliant functional system
  • Collaborate with government security team members to create necessary documentation
  • Provide design guidelines for hardened operating system, network, and virtual infrastructure
  • Travel to supplier and government sites to assess system configuration and perform vulnerability scanning
  • Analyze vulnerability scan results, document findings, recommend and implement remediation and risk mitigations
  • Analyze and document findings from static code analysis and work closely with software developers to remediate identified vulnerabilities
  • Utilize Security Content Automation Protocol (SCAP), Tenable Nessus, and Security Technical Implementation Guides (STIGs), or similar utilities, to assess security compliance standards and system/subsystem/application vulnerabilities
  • Department of Defense (DoD) Risk Management Framework (RMF) and/or Information Assurance Certification and Accreditation Process (DIACAP), in accordance with DoDI 8500.01, 8510.01 and AFI 33-210_AFGM3
  • NIST 800-53 security controls implementation and auditing
  • Tenable Nessus / Assured Compliance Assessment Solution (ACAS)
  • Security Technical Implementation Guides (STIGs)
23

Info Assurance Engineer Resume Examples & Samples

  • Monitoring, analyzing, and responding to security events utilizing security event management tools and reports
  • Communicating security events identified as potential security issues to system administrators and following up to reach closure
  • Escalating security incidents to leadership and the LM Computer Incident Response Team (CIRT) as appropriate
  • Maintaining auditable records of log monitoring activities and responding to audit requests
  • Developing and enhancing processes to maintain efficiency
  • Researching, developing and maintaining proficiency in tools, techniques, countermeasures, and trends in computer and network vulnerabilities and exploits
  • Assisting with the development and implementation of security event monitoring on critical systems
  • Strong analytical skills demonstrated by related work experience
  • Demonstrated experience with computer vulnerabilities and exploits
  • Demonstrated experience analyzing security event log data (Windows, UNIX, Mainframe, Database)
  • Demonstrated experience with networking, architectures and security elements to include firewalls, intrusion detection systems, routers and proxies
  • Demonstrated ability to perform effectively within a diverse team or independently
  • Ability to obtain and maintain DoD Secret Security clearance
  • Previous experience with security tools (ArcSight, Splunk, EnCase, SourceFire IDS)
  • Familiarity with system log reviews
  • Previous Computer Incident Response Team (CIRT) experience
  • Demonstrated knowledge of LM Information Security policies
  • Demonstrated knowledge of Aeronautics policies
  • Demonstrated knowledge of ITSM support tools
  • Security certifications (CISSP, SANS GCFA/GCIH)
  • Demonstrated effective written and verbal communication skills
24

Info Assurance Engineer Resume Examples & Samples

  • AWS experience
  • Thorough understanding of Vulnerability Management concepts and industry best practices
  • Knowledge of IT standards, protocols and methods of exploitation
  • Must be able to execute processes to evaluate and address IA relate
  • CND-certification (CEH or GCIA or GCIH or CISSP)
  • Experience creating security metrics
  • Prior experience leading/establishing NOC/SOC capabilities in an Air Force environment
  • Experience with RMF accreditations
  • SECRET with SSBI or higher
25

Info Assurance Engineer Resume Examples & Samples

  • Risk-based tailoring of the controls baseline
  • Evaluating supplier designs for compliance
  • Developing security assessment reports, residual risk assessment reports, scan reports and other certification artifacts
  • Developing and maintaining a POA&M
26

Info Assurance Engineer Associate Resume Examples & Samples

  • Researches current or emerging technologies for security, compatibility, and/or usability purposes
  • Participates in the security review process by applying basic knowledge of systems testing and evaluation methods for security review; documents gaps found in security architecture to inform the risk management plan
  • Uses basic data gathering skills to document design specifications and user needs; reports findings that contribute to the systems development lifecycle and enterprise architecture activities and decisionsReview user needs and requirements, and interprets and uses IT architectural guidelines to review system architecture designs or system
  • CERTIFICATIONS: (One or more desired) CompTIA Net+, CompTIA A+, CompTIA Security +, Certified Penetration Testing Engineer or Certified Ethical Hacker
  • Strong technical, analytical and interpersonal skills
27

Info Assurance Engineer Resume Examples & Samples

  • Policy Governance
  • DFARS assessments and validations
  • Program IT assessments and risk
  • Lab Compliance
  • Supply Chain IT Security
  • Business Venture and Subsidiary IT Security
  • Contract Data Protection
  • Risk Acceptance/Escalation Processes
  • Hands-on cybersecurity and/or Information Technology experience, within the past year, in one or more of the following disciplines: infrastructure, network engineering, applications, or systems administration (Windows or *nix)
  • Understanding of Security Best Practices
  • Understanding of Network Concepts
  • Effective communication skills
  • Ability to research and analyze problems based on limited or ambiguous data
  • Ability to provided hands-on support and training directly to customers in the exceptions management processes and tools
  • Proven ability to prioritize and work multiple efforts simultaneously
  • Working Knowledge of Lockheed Martin Information Security policies, architectural standards / blue prints and controls requirements Risk Based Governance experience
  • Familiarity with DFARS, NISPOM, NIST as it relates to IT security
  • Experience with ISO 27000, DIACAP, or RMF
28

Info Assurance Engineer Resume Examples & Samples

  • Perform lead role in all aspects of information assurance
  • Oversee the development of RMF package artifacts, incorporating applicable supporting references, manuals, guidance, policies, directives, instructions and processes
  • Degree and typical experience in engineering classification: Bachelor's and 9 or more years' experience, Master's with 7 or more years' experience or PhD with 4 or more years' experience or an equivalent combination of education and experience
  • Bachelor, Master or Doctorate of Science degree from an accredited course of study, in computer science, engineering, mathematics, physics or chemistry. ABET is the preferred, although not required, accreditation standard
29

Info Assurance Engineer Resume Examples & Samples

  • Conducting security risk assessments
  • Working with elements within the Aeronautics Business Area, Aero IT and CIS as needed to ensure the security posture of the business
  • Ability to generate reports based upon security analysis and assessment findings
  • Experience in system security design and analysis
  • Demonstrated self motivated, strategic thinker, and team player
  • Ability to analyze problems and devise workable solutions