Information Assurance Engineer Resume Samples

4.7 (102 votes) for Information Assurance Engineer Resume Samples

The Guide To Resume Tailoring

Guide the recruiter to the conclusion that you are the best candidate for the information assurance engineer job. It’s actually very simple. Tailor your resume by picking relevant responsibilities from the examples below and then add your accomplishments. This way, you can position yourself in the best way to get hired.

Craft your perfect resume by picking job responsibilities written by professional recruiters

Pick from the thousands of curated job responsibilities used by the leading companies

Tailor your resume & cover letter with wording that best fits for each job you apply

Resume Builder

Create a Resume in Minutes with Professional Resume Templates

Resume Builder
CHOOSE THE BEST TEMPLATE - Choose from 15 Leading Templates. No need to think about design details.
USE PRE-WRITTEN BULLET POINTS - Select from thousands of pre-written bullet points.
SAVE YOUR DOCUMENTS IN PDF FILES - Instantly download in PDF format or share a custom link.

Resume Builder

Create a Resume in Minutes with Professional Resume Templates

Create a Resume in Minutes
MF
M Frami
Marjorie
Frami
1560 Mckayla Junction
Chicago
IL
+1 (555) 295 3321
1560 Mckayla Junction
Chicago
IL
Phone
p +1 (555) 295 3321
Experience Experience
Philadelphia, PA
Information Assurance Engineer
Philadelphia, PA
Willms Group
Philadelphia, PA
Information Assurance Engineer
  • Leverage SSA services while working in conjunction with JPMs across the JPEO-CBD to facilitate risk management framework activities
  • System resource management to include managing system accounts, performing system-wide backups and data recovery, load and capacity planning and management
  • Assist in development and tracking of POA&Ms and work with USAR sites for timely closure
  • Verify findings of Site Assistance Visits (SAV)/site inspections have been resolved, and work with the sites to bring their sites and systems into compliance
  • Conducts testing, records and analyzes results, and provides recommendations for improvements for the products/systems under test
  • Manage information-related risks in enterprise architectures, acquisition strategies, and testing and evaluation, and work to achieve cybersecurity C&A
  • Assist in the identification of CPI in terms of their importance to the program being developed
New York, NY
Senior Information Assurance Engineer
New York, NY
Blanda-Oberbrunner
New York, NY
Senior Information Assurance Engineer
  • Analyzes policies and procedures against Federal laws and regulations and provides recommendations for closing gaps
  • Assists with implementation of counter-measures or mitigating controls
  • Migrate existing on-premises applications to a cloud environment
  • Estimate cloud usage costs and identifying operational cost control mechanisms
  • Prepare security control documentation and other items for the Certificate and Accreditation process
  • Conducts security program audits and develops solutions to lessen identified risks
  • Provides assistance in computer incident investigations
present
Detroit, MI
Information Assurance Engineer Senior
Detroit, MI
Smitham-Walter
present
Detroit, MI
Information Assurance Engineer Senior
present
  • Provides Security Operations Management support; maintains and enhances Security Operations Management
  • Performs analysis, design, and development of security features for system architectures
  • Supports customers at the highest levels in the development and implementation of doctrine and policies
  • Applies know-how to government and commercial common user systems, as well as to dedicated special purpose systems requiring specialized security features and procedures
  • Analyzes general information assurance-related technical problems and provides basic engineering and technical support in solving these problems
  • Develops and implements information assurance/security standards and procedures
  • Acts and the Subject Matter Expert (SME) for Security Operations Management associated activities
Education Education
Bachelor’s Degree in Engineering
Bachelor’s Degree in Engineering
Brigham Young University
Bachelor’s Degree in Engineering
Skills Skills
  • The ability to use ACAS to vulnerability scans
  • Experienced and knowledgeable in the latest industry trends and developments in enterprise IA solutions
  • Knowledge of threat management, vulnerability management, and breach management processes to prevent, detect, respond and recover from security incidents
  • Solid knowledge and understanding of operating systems including MS Windows, UNIX, and/or Linux
  • Solid knowledge and understanding of security threats, techniques, and landscape
  • Solid knowledge and understanding of database, network, server, and/remote connectivity security
  • Solid knowledge and understanding of web application security
  • Ability to learn quickly
  • Ability to break down complex issues into understandable components and communicate at the appropriate level for the target audience
  • Strong communications and briefing skills
Create a Resume in Minutes

15 Information Assurance Engineer resume templates

1

Information Assurance Engineer Resume Examples & Samples

  • Effective talent selection, training, coaching, motivating and recognizing
  • Writes and delivers quarterly check-ins, individual development plans and annual performance reviews for team
  • Addresses poor performance. Initiates, administers, and follows up on corrective action
  • Sets, monitors, follows up on productivity goals for Logistics Sellebrities
  • Ensures service, merchandising, and operational standards are met through company-defined practices and processes
  • Monitors, maintains and follows company policies and procedures
  • Accountable for a safe store environment where all Sellebrities actively prevent loss and minimize risk
  • Accountable for meeting store compliance audit requirements
  • Performs additional managerial duties as necessary
  • Drives sales and manages execution of merchandise placement through effective planning, prioritizing, communication and follow-up
  • Accountable for all planning, mapping and execution of merchandise and fixture placement
  • Leads team to identify and execute merchandising decisions based on inventory levels, store layout and customer base, to maximize business opportunities per the brand strategy Actively participates in store walkthroughs with Store Manager, Market Leader, and Territory Visual Manager to ensure the consistency and quality of merchandising and visual execution
  • Fully understands the financial statement and all reports related to product placement and visual execution
  • Partners with Store Manager to schedule seasonal flow and merchandising workload
  • Ensures execution of shipment according to the company best practices
  • Ensures that the merchandise team and store leaders understand how to identify and execute replenishment priorities during their shifts
  • Partners with Operations Manager and/or ASM of Service and Operations to ensure execution of markdowns/signage/marketing aligns with merchandise placement
  • Accountable for the operational execution of shipment, plan-o-gram, on-hand update, back of house and up-stock as defined by company expectations
  • Maintains ongoing inventory of all fixtures and visual elements for the store
  • Ensures all body forms, visual displays, end panels, interior walls and window presentations tell a compelling story to our customers and are executed/detailed to company standards Ensures that all leaders are trained to maintain visual presentation and brand standards
  • Passionate about: apparel trends, specialty retail environments, people - customers and team
  • Demonstrates the following: visual merchandising with attention to detail, training, sales generation, leadership, authentic customer service, conflict management, resolution, business acumen, time management, planning, priority setting, decision quality, ability to coach, provide feedback, excellent verbal and written communication, and computer proficiency
  • Ability to: think creatively, embrace and lead change, and deal with ambiguity
  • College degree or equivalent work experience preferred
  • 2-3 years of soft lines merchandising or visual merchandising experience preferred Ability to effectively communicate with customers and store personnel
  • Ability to maneuver around sales floor, stock room, work with/around cleaning chemicals and lift and carry 50 lbs
  • Ability to work a flexible schedule to meet the needs of the business, including evening, overnight and weekend shifts
  • Opens and closes the store in accordance with company standards
  • Nonexempt ASM’s must punch in and out through the time clock to record all time worked, follow hourly meal/break guidelines, and partner appropriately with the Store Manager regarding any overtime
2

Information Assurance Engineer Resume Examples & Samples

  • System resource management to include managing system accounts, performing system-wide backups and data recovery, load and capacity planning and management
  • Administer classified and unclassified message traffic via electronic mail systems, database operations, implements conversions, and investigate problems in database environment
  • Ensure continuing systems operability by providing ongoing optimization and problem solving support
  • Apply computer security policies to safeguard systems and information
  • Categorize, isolate, and resolve system problems
  • Perform fault isolation by validating, isolating, correcting faults, and verifying service restoral with customers
  • Process, documented and coordinated resolution of trouble calls from lower support echelons
  • Process scheduled and authorized outages
  • Submit outage reports in response to unscheduled outages
  • Perform all other position related duties as assigned or requested
  • Must be experienced with server operating systems, database administration and web technologies
  • Experience with administration of: server-based operating systems, distributed applications, network storage, messaging, and application monitoring, and how they integrate with cyber systems and applications
  • Should have experience performing 3D0X2 personnel support identification, reconnaissance and exploitation of vulnerabilities while enhancing capabilities within cyber environments to achieve desired affects
  • Regular travel is required
  • Must be able to pass and maintain a SECRET security clearance
3

Information Assurance Engineer Resume Examples & Samples

  • Bachelor’s Degree or equivalent and 4+ years of progressive IA experience
  • Experience developing contingency plans
  • Demonstrated understanding and experience with NIST SP 800 and FIPs 199 and 200
  • Excellent communication (verbal and written) and organizational skills
  • Must obtain Certified Authorized Profession (CAP) certification within 3 months of hire date
  • Experience with Department of State and/or Consular Systems and Technology (CST)-specific technology
4

Senior Information Assurance Engineer Resume Examples & Samples

  • Designs, develops and implements security requirements within an organization’s business processes
  • Prepares Security Test and Evaluation plans
  • Provides certificatio n and accreditation support in the development of security and contingency plans and conducts complex risk and vulnerability assessments
  • Analyzes policies and procedures against Federal laws and regulations and provides recommendations for closing gaps
  • Develops and completes system security plans and contingency plans
  • Develops, tests, and integrates computer and network security tools
  • Secures system configurations and installs security tools, scans systems in order to determine compliancy and reports results, and evaluates products and various aspects of system administration
  • Develops strategies to comply with privacy, risk management, and re-authentication requirements
  • Provides information assurance support for the development and implementation of security architectures to meet new and evolving security requirements
  • Evaluates, develops, and enhances security requirements, policy, and tools
  • Performs vulnerability assessments including development of risk mitigation strategies
5

Security & Information Assurance Engineer Resume Examples & Samples

  • Enter observations, evaluation, analysis, and recommended assessments in the report formats requested by the Government
  • If audits are necessary, draft and execute Security and IA audit plans and deliver them to the government in accordance with requirements
  • Familiarity with DoD, NISPOM, and AF security and IA requirements
  • Strong written and verbal skills including writing reports and presenting results to customers
  • Familiarity with USAF launch capabilities, systems, organizations, and stakeholders
  • Proficient computer skills, software to include MS Office and Share Point
6

Information Assurance Engineer, Senior Resume Examples & Samples

  • 10+ years of experience with systems engineering
  • Experience with systems, including DCGS-A
  • Ability to conduct software installation and configuration of DCGS-A equipment
  • Industry Certifications, including CCNA, Microsoft, Linux+, or Security+ a plus
7

Information Assurance Engineer, Junior Resume Examples & Samples

  • 2+ years of experience with developing and presenting technical information to non-technical audiences and clients both orally and in writing
  • Knowledge of DoD 8500, AR 25-2, AR 380-5, AR 380-40, FIPS, and DoD and Army IA policies
  • BA or BS degree required
  • DoD 8570 Compliant IAM-II Certification
  • Experience with the configuration management of military software, including source code, documentation, and fieldable products
  • Experience with software development and testing
  • Experience with the design and operation of airborne military communications systems
  • Knowledge of DIACAP and RMF process and POA&M tracking and resolution
  • Knowledge of Crypto certification
  • Possession of excellent customer service and organizational skills
  • Microsoft IT Professional (MCITP), Microsoft Certified Systems Engineer (MCSE), Microsoft Certified Professional (MCP) on Windows 2003 or 2008 server, or Windows 7 MCSE, or equivalent Operating Systems Certification, or Cisco Certified Security Professional (CCSP) or CCNA Certification a plus
8

Information Assurance Engineer Resume Examples & Samples

  • Participate in discussions at the system engineering level to enhance the security of the customer networks
  • Provide support to system certification activities and efforts related to system certification and accreditation
  • Provide technical support in investigating and minimizing real or potential damage resulting from security incidents
  • Research, analyze, integrate, and distribute IS security tools and associated documentation, subject to USG review and approval
  • Provide on-site assistance for integrating IS security tools into Contractor and Government information systems
  • Develop security procedures for systems and software within area of expertise to ensure consistent security policy implementation for review and approval of USG
  • Support the creation, update, and presentation of Information Assurance (IA) related briefings and other related materials to both internal and external organizations as a security Subject Matter Expert (SME)
  • Participate in and support various Information Assurance forums as directed. Support the Intelligence Community (IC) and Industry-based working groups as directed
  • Conduct ad-hoc cyber security research and assessments, responding to Front Office action reviews, and provide reports and activities
9

Cryptographic Information Assurance Engineer Resume Examples & Samples

  • Work with customer to derive functional, performance and security requirements and trace requirements through to closure
  • Lead efforts to achieve Type 1 certification of cryptographic solutions
  • Support assembly of cryptographic solutions for Low Rate Initial Production (LRIP) and Full Production as necessary
  • Participate in proof-of-concept design and development efforts as necessary
  • 6-10 years of related experience in cryptographic solution engineering
  • 10 years experience with software engineering and/or systems engineering
  • Engineering experience supporting Air Force programs
10

Information Assurance Engineer Resume Examples & Samples

  • Work with customers to integrate cryptographic solutions into existing and new system designs
  • 4-8 years of related experience in cryptographic solution engineering
  • 2 years’ experience designing solutions using FPGAs and/or ASICs
  • Experience with agile software development
  • Must presently have at least a Secret security clearance with the capability of acquiring a Top Secret security clearance
  • 5 years experience with designing FPGA /ASICs solutions
11

Cryptographic Information Assurance Engineer Resume Examples & Samples

  • Oversee the design of new cryptographic solutions that may be built upon ASIC or FPGA technology
  • Lead staff-level cryptographic information assurance (IA) engineers
  • Interface with customers to integrate cryptographic solutions into existing and new system designs
  • Oversee assembly of cryptographic solutions for Low Rate Initial Production (LRIP) and Full Production as necessary
  • Lead proof-of-concept design and development efforts as necessary
  • 4 years’ experience designing solutions using FPGAs and/or ASICs
  • Strong leadership communications and interpersonal skills required
  • Must be a leader, an independent thinker, capable of performing high quality work, both independently and with a team, in a fast-moving environment
  • 2 years experience with management of cryptographic engineering
  • Project Management Professional (PMP)
12

Information Assurance Engineer Designer Resume Examples & Samples

  • Design new cryptographic solutions that may be built upon ASIC or FPGA technology
  • Participate in technical discussions and systems engineering efforts
  • 12-15 years of related experience in cryptographic solution engineering
  • Strong communications and interpersonal skills required
  • Must be able to plan and prioritize personal tasking and be able to communicate effectively verbally and in writing
  • Must be an independent thinker, capable of performing high quality work, both independently and with a team, in a fast-moving environment
  • Certified Information Systems Security Processional (CISSP)
  • B.S. Computer Science or related field
13

Senior Information Assurance Engineer Resume Examples & Samples

  • DOD 8570 IASAE Level 1 (CISSP or CASP)
  • C&A Package Development (RMF/DIACAP)
  • Experience performing IA activities in support of software and system requirements, design, development, testing and sustainment
  • Experience supporting Department of Defense (DOD) or Intel IA Programs
  • Demonstrated experience with employment of DoD IA requirements, policies, and processes to include certification and accreditation
  • Experience with risk and vulnerability assessments and mitigation
  • Experience with system audit configuration, capture, analysis, and reduction of Windows and Linux systems
  • Experienced and knowledgeable in the latest industry trends and developments in enterprise IA solutions
14

Information Assurance Engineer Senior Stf Resume Examples & Samples

  • Candidate will be the lead Information Assurance Engineer for ACURL and or NIRL and will support the Joint Reprogramming Environments (JRE) activities by analyzing the designs and security controls associated with the development of the U.S. and Partner Reprogramming Labs
  • Candidate will assess design and implementation of F-35 systems to create Penetration Test Vectors
  • Candidate will execute Penetration Test Vectors on F-35 systems and generate a Penetration Test Report documenting the results
  • Candidate will work with the owning IPTs to help remediate findings found during the Penetration Test
  • Candidate will research and assist in implementation of automated verification tools for RMF security controls
  • Candidate will coordinate with contractor management and Government personnel to ensure that requirements are properly defined, decomposed, and allocated and that the solution will satisfy Government requirements
  • Candidate will represent the CIO IPT by participating in working groups and site stand ups. The working groups include
15

Information Assurance Engineer Resume Examples & Samples

  • Conducting security assessments, mitigating vulnerabilities and maintaining certification and accreditation status with external agencies
  • Writing and updating Defense Security Service documentation, POA&Ms, MOUs
  • Familiarity with DOD cybersecurity policies and processes
  • Remediating information system vulnerabilities in accordance with DOD standards
  • Familiarity with VMWare, MATLAB, and MS Office as well as hardening Windows, Linux and OSX servers and workstations
  • Excellent technical document preparation skills and verbal communications are required for presentation of technical IA issues and reports to senior government and military officials
  • Familiar with Security Compliance Requirements
  • Must be able to obtain and maintain a SECRET security clearance
  • Candidate will be subject to drug screening as per company policy
16

Information Assurance Engineer Resume Examples & Samples

  • Maintain the operational security posture for the information systems
  • Support information security authorization activities in compliance with security policies and procedures
  • Develop system security plans
  • Work with organizational teams to develop the Security Controls Traceability Matrix (SCTM)
  • Perform vulnerability/risk assessment analysis and reporting
  • Conduct continuous monitoring activities
  • Perform System Security enterprise assessment
  • Experience with FISMA, ICD-503, and other IC policies and processes
  • Experience with NIST SP-800-53 version 4 security controls, and CNSSI 1253A
  • Experience with Telos Xacta IA Manager Framework and Continuum
  • Familiarity with cloud computing, AWS, C2S
17

Information Assurance Engineer Resume Examples & Samples

  • Serving as the Risk Management Lead for assigned information assurance bodies and policies
  • Developing and coordinating IC-wide certification and accreditation policies (ICD 503, DCID 6/3)
  • Assist in the development and coordination of IC-wide information security management (FISMA) reports
  • 12 years or more of developing, implementing, integrating, maintaining, and evaluating security architectures and information protection plans for IT enterprise architectures
  • Five additional years designing, integrating, and maintaining enterprise IT and related mission systems may be substituted for the required Bachelor’s degree
  • Active Certified Information Systems Security Professional certification (CISSP)
  • Active/Current TS/SCI with Polygraph
  • Excellent communications, customer-relations, task leadership, and time management skills
  • 5 years or more developing enterprise-level security policies and information protection plans for IC or DoD portfolios or families of systems
  • Very familiar with at least 1 of NSA, CIA, NRO, NGA, DIA, DHS, FBI or DoD information security architectures
  • Active Certified Ethical Hacker (CEH) certification
18

Information Assurance Engineer Resume Examples & Samples

  • DITSCAP/DIACAP
  • Business continuity, Operations Security, Cryptography
  • Forensics, Regulatory Compliance, Internal Counter-Espionage (insider threat detection and mitigation),
  • Physical security analysis (including facilities analysis, and security management)
  • Validating System Security requirements Definition and Analysis
  • Bachelor's degree with 2 years of experience or Technical Master's Degree with 0 years of experience
  • Demonstrably good writing skills; ability to write final-version deliverable technical documents and reports
  • Active Secret clearance is required prior to commencing employment, with ability to obtain higher clearances involving polygraph. US Citizenship is required
  • Ability to travel occasionally Internationally and Domestically
  • Experience making technical presentations to internal and external customers
19

Information Assurance Engineer, Mid Resume Examples & Samples

  • 3+ years of experience with RMF or DIACAP
  • 2+ years of experience with information assurance
  • 2+ years of experience with developing and presenting, orally and in writing, technical information and presentations to non-technical audiences and clients
  • Knowledge of DoD 8500, AR 25-2, and DoD and Army IA policies, RMF and DIACAP processes, and POA&M tracking and resolution
  • Knowledge of IA and security laws, regulations, and policy, including mandates
  • Knowledge of FISMA and reporting requirements
  • Knowledge of security technical implementation guides (STIGs) and checklists
  • Knowledge of testing tools, including Gold Disk, Security Readiness Review scripts (SRRs), and SCAP and the Retina or Nessus ACAS scanning tool
20

Information Assurance Engineer Resume Examples & Samples

  • Minimum 3 years related systems engineering experience
  • Experience with security features and/or vulnerability of various operating systems as defined by NSA, NIST, DISA (STIGs) and USCYBERCOM
  • Understanding of Systems Engineering requirements, specifications, and processes
  • Experience with network and system security administration, including operating system security configuration and account management best practices for MS Windows, Red Hat Enterprise Linux, and CISCO systems
  • Minimum 1 year of progressive technical (hands-on) experience related to Information Assurance architecture, requirements, determination, development, and implementation
  • Experience implementing DoD and Federal IA Certification and Accreditation Processes, IA controls and developing and maintaining associated certification and accreditation documentation
  • Experience with information security toolset including anti-virus, Vulnerability Assessment, HIDS/ NIDS
  • Experience with IA vulnerability testing and related network and system test tools; e.g., Retina, NMap, Nessus, Security Content Automation Protocol (SCAP)
  • Effective project management, leadership, presentation and communication skills
  • CISSP Certification, DoDI 8570.01-M IAT Level-I, or IAT Level-II Compliant Certification
  • Familiar with the Federal Information Security Management Act (FISMA) and AR 25-1 Army Knowledge Management and IM
  • Security-related Network (e.g., Cisco) and Operating Systems (e.g., Solaris) certification or training
  • Self-starter requiring limited direction and supervision
  • Ability to organize, multi-task and prioritize tasks in a fast paced, deadline driven environment
  • Ability to support periodic travel
21

Information Assurance Engineer, Mid Resume Examples & Samples

  • 3+ years of experience with vulnerability assessment tools, including ACAS, HBSS, SCAP, and DoD STIGs
  • Knowledge of NIST 800-53A security controls
  • Ability to generate DIACAP or RMF packages
  • BA or BS degree in Engineering, Computer Science, or Cyber Security
  • AT Level II Certification, including Security+
  • Experience with Certification & Accreditation (C&A) or Authorization & Accreditation (A&A) preferred
  • Experience with Command Cyber Readiness Inspection (CCRI) a plus
22

Information Assurance Engineer Resume Examples & Samples

  • Develops, deploys and maintains enterprise-wide systems and information security requirements, policies, standards, guidelines and procedures for a stakeholder organization or program/sub program. Evaluates capability risk/gaps and takes action to meet objectives
  • Analyzes security situations, environmental factors and business objectives. Develops and/or advises on a broad range of compliant information security and data protection requirements
  • Analyzes and documents computing security events. Identifies root causes, prioritizes threats and recommends and/or implements corrective action. Determines acceptability of unique configurations and verifies security parameter placement. Tests and deploys risk mitigation processes and tools
  • Perform system scans, write business cases and install operating system updates
  • Perform tracking, testing, validation and verification of complex software applications
  • Follow quality standards and processes
  • Minimal travel may be required
23

Information Assurance Engineer Resume Examples & Samples

  • Perform A&A activities and monitor status, within eMASS and XACTA for all INSCOM G7/Modernization program office systems and sites
  • Work with program personnel, site ISSOs and IAMs to facilitate the collection of data required for accreditation projects
  • Provide Confidentiality, Integrity and Availability by identifying appropriate IA controls within accreditation packages and verify implementation is in accordance with DoD and Army IA standards
  • Analyzes and resolves INFOSEC technical problems
  • Conducts testing, records and analyzes results, and provides recommendations for improvements for the products/systems under test
  • Bachelor's Degree in Computer Science, Information Systems, Engineering, Business, or related scientific or technical discipline
  • 14+ years of general IA experience/certifications, with a minimum of 5 years of demonstrated experience with program support based on NIST Special Publication 800-37 (Guide for Applying the Risk Management Framework to Federal Information Systems)
  • Demonstrated experience with software tools eMASS, XACTA IA Manager, Assured Compliance Assessment Solutions (ACAS) Security Center, Security Content Automation Protocol (SCAP) Compliance Checker (SCC), DISA Security Technical Implementation Guides (STIGs)
  • Demonstrated strong organizational and creative problem solving skills
  • Ability to proactively manage multiple, concurrent tasks
  • Information Assurance Technician Level II or Information Assurance Management Level II Certification
  • ICD 503 Training
  • HBSS Training
24

Information Assurance Engineer, Junior Resume Examples & Samples

  • 1+ years of experience with DoD IA scanning networks or developing DoD Information Assurance Certification and Accreditation Process (DIACAP) and Risk Management Framework (RMF) package documentation
  • Experience with technical writing
  • Experience with systems administration or help desk on a Windows-, UNIX-, or Linux-based system
  • Knowledge of the DoD 8500.2, 8510.01, 8510.01-M, or Common Criteria IA controls
  • Knowledge of DoD 8500.2, 8570.01, and 8570.01-M IA guidance
  • Ability to document, edit, and maintain various levels of systems drawings and topologies using Microsoft Word and Visio
  • Ability to be a self-starter
  • BA or BS degree in Science, Technology, Engineering, or Mathematics
  • Experience with Security Technical Implementation Guides (STIGs) and network testing
  • Experience with Navy and DoD military on one or more of the following systems: OCONUS Navy Enterprise Network (ONE-NET), Automated Digital Network System (ADNS), Integrated Shipboard Network System (ISNS), Sensitive Compartmented Information (SCI) networks, Combined Enterprise Regional Information Exchange System (CENTRIXS), Submarine Local Area Network (SubLAN), or Tactical Command System (TCS)/Video Information Exchange System (VIXS)
  • Security+, Network+, Cisco Certified Network Administrator (CCNA), Cisco Certified Network Professional (CCNP), Certified Information Systems Security Professional (CISSP), or UNIX, Linux, or Windows Operating System (OS) Certification
25

Information Assurance Engineer Associate Manager Resume Examples & Samples

  • Direct customer engagement with government
  • Mentoring and management of Leidos and subcontract employees
  • Development and execution of staffing strategies
  • PMO engagement to ensure appropriate staffing, planning, resources, cost, schedule, reporting, risk and opportunity mitigation
  • Information /Assurance Security Engineering
26

Information Assurance Engineer Senior Resume Examples & Samples

  • CISSP current certification
  • Experienced with all aspects of RMF (Risk Management Framework)
  • Experienced with technical security reviews in support of the A&A process
  • Experienced with SSPs, STIG checklists and ACAS Scans
  • POA&M Management
27

Information Assurance Engineer Senior Resume Examples & Samples

  • Experience with all aspects of RMF (Risk Management Framework)
  • Experience with technical security reviews in support of the A&A process
  • Experience with SSPs, STIG checklists and ACAS Scans
28

Information Assurance Engineer Resume Examples & Samples

  • Minimum of 12 years of experience
  • Excellent organizational and communication skills, both written and oral
  • Demonstrated and proven knowledge of IT
  • Experience with Information Assurance Plans, Policies, and Procedures
  • Exceptional Facilitation skills and experience
  • Experience supporting Government clients
  • Strong planning and project organization skills
  • Exceptional verbal and written communication skills
29

Senior Information Assurance Engineer Resume Examples & Samples

  • Identify, perform and complete requirements associated with DIMS systems accreditation under the risk management framework (RMF)
  • Perform secondary duties as a Systems Administrator
  • Build, maintain, and troubleshoot server and client baseline, test, and production images for DIMS-F and Developer systems across a wide range of hardware platforms
  • Perform system administrator tasks and maintenance on production, development, and test systems in support of the DIMS-F projects and systems
  • Provide technical support to system users, trainers, and administrators
30

Information Assurance Engineer Resume Examples & Samples

  • Demonstrate expert technical knowledge of Information Assurance (IA)/Cyber Security Engineering and all aspects of Certification and Accreditation (C&A)/DoD Information Assurance Certification and Accreditation Process (DIACAP) process, including initial and life-cycle DIACAP C&A initiatives
  • Security test plans and procedures
  • Security related procedures, policies, and DIACAP documentation required for system transition
  • Must have at least ten (10) or more years experience in respective field
  • Attention to detail and effective problem-solving skills
  • Bachelor's Degree in Engineering, Science, Mathematics, or Business
  • Communication (Oral/Written)
31

Information Assurance Engineer Resume Examples & Samples

  • Familiarity with SBIRS Network Architecture
  • Ability to provide guidance on DoD Cyber/IA regulations and requirements to engineering staff
  • Experience working with the Air Force SMC Customer
  • Demonstrated experience with risk and vulnerability assessments and mitigation
  • Experience with Secure Configuration/Hardening of DoD Information Systems
32

Information Assurance Engineer Senior Resume Examples & Samples

  • Expert with all aspects of RMF (Risk Management Framework)
  • Expert with technical security reviews in support of the A&A process
  • Expert with SSPs, STIG checklists and ACAS Scans
33

Information Assurance Engineer Resume Examples & Samples

  • Active CISSP certification
  • Maintenance of RMF A&A documents (SSP, CTP, RMM, SCTM)
  • Familiarity / Knowledge of NIST SP800-53, likely source for IA controls
  • Experience in using the customer’s Xacta implementation for automating the RMF process
  • The ability to use ACAS to vulnerability scans
  • The ability to perform / analyze STIG compliance scans, either executed with SCAP Compliance Checker or ACAS STIG scans
  • Follow open source InfoSec news sources to be alerted of vulnerabilities in software and applications used by the program to proactively push product owners to upgrade versions of applications prior to discovery by ACAS
34

Information Assurance Engineer Resume Examples & Samples

  • Bachelor's Degree or Advanced Degree with experience in Information Security or Cyber Security
  • Information Assurance (IA) trained and certified
  • Possess and maintain a Security +, CISSP, or CEH certification
  • 3 years relevant work experience in the Information Assurance field
  • Knowledge and experience with implementing DoD & IA requirements and the RMF certification process
  • Experience with IA vulnerability scanning software tools, implementing Security Technical Implementation Guides (STIGS), and applying IAVA patches
  • Ability to work 5 days per week, on site, at APG, MD in a classified lab
  • Equivalent experience/education combinations are NOT permitted based on the Typical Minimums for this job. This requisition requires a minimum of 3 years of related experience and a bachelors degree in a related discipline. Only candidates possessing both qualifications can be considered
35

Information Assurance Engineer Resume Examples & Samples

  • Active Top Secret/SCI with Polygraph clearance
  • Experience with Identity and Access Management (IdAM) Systems
  • Knowledge of IdAM principles and best Practices
  • Knowledge of Information Security
  • Experience with Microsoft Windows Server 2012
  • Experience with Microsoft Active Directory to include Active Directory Lightweight Directory Services (AD LDS) and Active Directory Federated Services (AD FS)
  • Experience with Microsoft Active Directory and LDAP schemas
  • Experience integrating software applications
  • Excellent problem solving and skills
  • Demonstrated on-the-job experience architecting distributed Enterprise IT Systems within an AWS-based Hybrid Cloud environment
  • Demonstrated on-the-job experience with scripting
  • Demonstrated on-the-job experience in the application of architecture-based design patterns within a SOA framework
  • Demonstrated on-the-job experience in the use of Visio to create architecture artifacts
  • Knowledge of or experience in the execution of agile-based architecting within the Scaled Agile Framework (SAFe) methodology
  • Knowledge of or experience with eXtenible Access Control Markup Language (XACML)
  • Knowledge of or experience of Virtual Directory Environments (VDE)
  • Security Certification (e.g. CISSP, CEH, CISA, CISM, or Security+)
  • Expertise In security architectures, access control solutions, public key infrastructures, Single Sign On involving SAMUSPML, and federation technology
36

Cyber Security Information Assurance Engineer Resume Examples & Samples

  • Active TS/SCI (w/current investigation w/in the past 5 yrs)
  • 5 years’ experience in Cyber Security/Information Assurance and a bachelor’s degree in Computer Science or Information Technology from an accredited university or institution
  • Prior experience supporting Hanscom AFB desired
37

Information Assurance Engineer, Mid Resume Examples & Samples

  • Experience with in at least two of the following technology areas: DoD Public Key Infrastructure for the tactical environment, event logging and analysis for a Defensive Cyber Infrastructure, Cross Domain Solutions and accreditation, Cryptographic Key Management, or overarching Cyber Forensic analytics capabilities
  • Ability to comprehend network vulnerability scanners, including Retina, ACAS, or Nessus and patch management software, including WSUS, SCCM, SMS, or Hercules
  • BA or BS degree in CS, Information Systems, or Engineering or 4 years of experience with information assurance engineering in lieu of a Bachelor’s degree required
  • 5 years of experience with Cybersecurity program, information systems, networks, or platform IT
  • Knowledge of policies, directives, or regulatory guidance in Cybersecurity field
  • Knowledge of implementing and enforcing security policies across the organization
  • Certified Ethical Hacker Certification preferred
38

Senior Information Assurance Engineer Resume Examples & Samples

  • 50% of the job will be focused on converting DIACAP to RMF framework and the other 50% will be focused on starting new Information Assurance Programs
  • DIACAP/RMF (DoDI 8510.01) package creation/submittal/validation
  • Platform IT (PIT) Risk Approval (PRA) package creation (IAW NAVSEAINST 9400.2)
  • Reduction of vulnerability assessment tool data through the use of scripting, macros and functions (e.g. Excel macros)
  • Ensure compliance with Federal, DoD and DoN Information Assurance (IA) policies. Incumbent utilizes extensive knowledge of all areas of automation security to establish operating standards and procedures for the IA Program. Determines long-range IA program objectives and develops strategies for achieving those objectives. Periodically evaluates, amends, or redefines major program objectives
  • Coordinates all certification and accreditation activities within scope of Program Director, IA PM, System IAM and Designated Approving Authorities (DAAs). Disseminates Information Assurance Vulnerability Alerts (IAVAs) to System Administrators (SAs) and Information Assurance Security Officers (IASOs) to ensure IAVAs are received and acknowledged as required
  • Monitors IAVA compliance and reporting, ensures systems and network security scanning are performed, completed and documented. Ensures patches, hot fixes, and system change packages and Antivirus definition updates are applied utilizing the established change control process. Reports program effectiveness to the program director. Ensures compliance of all program systems to ensure assets are properly reported and scans validated
  • Reviews risk analysis and accreditation documentation for timeliness, completeness and accuracy and insures that all necessary materials are forwarded for review
  • Conducts threat and vulnerability assessments to assess and determine effective measures to minimize risks and ensure LAN is operational and secure. Performs day-to-day interface activities with IT management, SAs, IM Officers (IMO), ISSOs/IAOs, IA Managers (IAM) and users involving IA issues and concerns
  • Assists with implementation of counter-measures or mitigating controls
  • Performs periodic and on-demand system audits and vulnerability assessments, including user accounts, application access, file system to determine compliance
  • Provides guidance and work leadership to less-experienced technical staff members, and may have supervisory responsibilities
  • Minimal travel expected
  • Active DOD Secret Security Clearance is required
  • Bachelor's Degree in Computer Science or a related technical discipline, or the equivalent combination of education, professional training or work experience
  • 5 years of related experience in data security administration
  • DOD IAM Level II Certification (CISSP, CISM, CAP, CASP or GSLC)
  • At least 3 years' experience in Information Assurance for DOD/DON systems with in-depth knowledge of Cyber Security standards
  • Experience developing System Security Plans (SSPs) and supporting Certification and Accreditation (C&A/A&A) documentation for both DIACAP and RMF package formats
  • Experience performing network and host vulnerability scans and documenting results in relation to residual risk identification
  • Experience with the following systems or applications: eMASS, VRAM, ACAS (Nessus), SCAP scanners, and various virtualization technologies
  • Advanced knowledge of data security administration principles, methods, and techniques
  • Knowledge of Operating System hardening and remediation IAW the DISA Security Technical Implementation Guides (STIGs)Information Assurance/Information Security experience with National Security Systems (NSS) to include: US Navy shipboard and land-based Combat Systems; Hull, Mechanical and Electrical (HM&E) systems; or Industrial Control Systems (ICS) in a US Navy environment
  • Ability to evaluate Risk and Threat Analysis of vulnerabilities and exploits as they apply to US Navy shipboard and land-based Combat Systems; Hull, Mechanical and Electrical (HM&E) systems; or Industrial Control Systems in a US Navy environment
39

Information Assurance Engineer Resume Examples & Samples

  • Experience with network and system security administration, including operating system security configuration and account management best practices for Red Hat Enterprise Linux, and CISCO systems
  • Extensive Red Hat Linux expertise including the ability to develop, implement, and troubleshoot Linux security functions
  • Knowledge of C, Java, Python, Perl, Linux Shell scripting
  • Knowledge of Systems and Software development life cycle and development processes, methodologies, and tools
  • Ability to see the overall picture and integrate small tasks into the larger system
  • DoDI 8570.01-M IAT Level-I, or IAT Level-II Compliant Certification
40

Information Assurance Engineer Resume Examples & Samples

  • Maintain operational security posture for the Customer managed information systems
  • Support security authorization activities in compliance with ICD 503 and DCID 6/3
  • Prepare and review documentation to include System Security Plans (SSPs), Risk Assessment Reports, Certification and Accreditation (C&A) packages, and System Requirements Traceability Matrices (SRTMs)
  • Demonstrated experience with updating documents to reflect new security guidelines and impacts
  • Demonstrated experience with reviewing architecture changes for security impacts and possible recertification
  • Demonstrated experience with establishing standards for information systems procedures
  • Knowledge and experience with at least three of the four following criteria
41

Information Assurance Engineer Resume Examples & Samples

  • Act as a trusted advisor to senior leadership with extensive evidence of ability to provide strategic and tactical direction in leading activities in support of team and enterprise objectives
  • 5+ years experience in hands-on CND operational and/or security analysis position
  • SOC and/or CIRT operational experience
  • Experience working on and supporting classified networks in the IC
  • Experience in cyber security tactics, techniques, and procedures
42

Information Assurance Engineer Resume Examples & Samples

  • Perform vulnerability/risk analyses of NAVSEA PMO-IT information systems during all phases of the System Development Life Cycle
  • Interpret Information Assurance requirements into technical solutions and analyze system configurations to determine, maintain and improve security posture
  • Recommend proper system configuration and administration control procedures to enhance system security, performance, and to ensure NAVSEA PMO-IT information systems are compliant with applicable laws and policies, and meet Information Assurance requirements outlined in the Defense Acquisition System guidance as well as all applicable Department of Defense (DoD) and Department of the Navy (DoN) Information Assurance (IA) directives and instructions
  • Assist with documenting and implementing an Information Assurance Vulnerability Management (IAVM) program for NAVSEA PMO-IT information systems
  • Collaborate with internal security and IT staff to ensure the continued compliance and secure operation of accredited information systems
43

Information Assurance Engineer Stf Resume Examples & Samples

  • BS degree in a technical field
  • Demonstrable experience with one or more of the following standards/guides: Common Criteria, NSTISSIP 11, DoD8500.1, DoD8500.2, JAFAN 6/3, DITSCAP, DIACAP, RMF, JSIG, CNSSI 1253
  • Experience with security architecture concepts such as TCB, security communications
  • Experience with embedded avionics systems and architectures
  • Experience with vulnerability analysis assessments
  • Demonstrated aptitude of Risk Management Framework tools and procedures
  • Degree in Computer Science, Software Engineering, Systems Engineering, or Electrical Engineering
  • Experience developing and interpreting design requirements and implementation roadmaps, metrics and other controls to monitor and report on program progress and health
  • Patch Implementation and test verification
  • Organizational skills that would facilitate the development and articulation of Cyber security roadmap and training roll-out plan
  • Ability to work task assignments independently and effectively in a team environment
  • Direct knowledge/experience with F-16 Weapon System (WS) / F-22 Weapon System (WS) / F-35 Air System (AS) architecture and combat aircraft ground systems
  • Experience in Security Risk Assessments, Trusted Software, Cyber Security, and Intelligence
  • Experience with security architecture concepts including TCB, security communications, encryption, knowledge of TEMPEST & NSA crypto requirements, DoD Anti-Tamper
  • Security-related certification (Security +, CISSP, CSSLP)
  • Proven ability to teach and mentor
44

Information Assurance Engineer Associate Resume Examples & Samples

  • Must be a US Citizen. This position will require a government security clearance
  • Bachelor's degree in engineering, computer science, or a related discipline required
  • Demonstrated personal interest in Information Assurance (IA) and/or Security Systems Engineering (SSE)
  • Working knowledge of systems and/or software engineering development lifecycle models
  • Ability to rapidly assimilate complex technical information and produce quality documentation required to achieve program objectives
  • Ability to present complex concepts in a clear and concise manner to a wide variety of target stakeholders
  • Knowledge fundamental configuration management principles and ability to apply those principles in a dynamic environment
  • Experience with requirements allocation and decomposition. (Information Assurance (IA) control requirements desired.)
  • Familiarity with design and development of Trusted Computing Base (TCB) systems and software
  • Experience in identification and mitigation of system security vulnerabilities
  • Experience with automated vulnerability scanning techniques, tools, and procedures
  • Familiarity with F-35 System Architecture
  • Working knowledge of STIG IAVM Compliance
45

Information Assurance Engineer Intermediate Resume Examples & Samples

  • Under general supervision, develops information systems assurance programs and control guidelines, assists in resolving technical problems, priorities, and methods
  • Provide assistance for administrative policies and procedures and resolving technical problems, priorities, and methods
  • Knowledge and experience with COMSEC and COMSEC processes and procedures IAW DoD Policy
  • Understanding of policy and procedures for handling, controlling, and protecting COMSEC assets, disseminate urgent, doctrinal, policy, and procedural COMSEC information
  • Knowledge and experience with operating the Key Management Infrastructure (KMI) for the generation of electronic cryptographic keys and experience issuing COMSEC material to authorized personnel
  • Experience performing COMSEC incident reporting
  • Provide point papers and briefings on COMSEC issues and requirements IAW suspense assigned by the Government
  • Knowledge and understanding of Emissions Security (EMSEC)
  • Be able to serve as a Special Security Representative (SSR) for the USTRANSCOM SCIF
  • Knowledge and experience with Federal Information System Management Act (FISMA) compliance
  • Provide assistance to system owners to ensure FISMA reporting requirements are accomplished
  • Knowledge of Risk Management Framework, and NIST Special Publications
  • Assist with development of reports of analysis and processes the information in accordance with program procedures
  • Provide Cyber Threat Analysis support
  • Be able to provide assistance with development of and distributing cyber threat awareness products (e.g., briefs, information papers, threat tippers, etc)
  • Knowledge and experience with Computer Network Defense (CND) and defensive cyber operations
  • Have a minimum of five (5) years of experience, with at least four (4) of those involving Certification and Accreditation and/or Risk Management Framework
  • Strong attention to detail and organizational skills. Excellent communications skills
  • Possess security certifications (CISSP, Security+, IAT Level II)
46

Information Assurance Engineer Senior Resume Examples & Samples

  • Under general direction, responsible for all activities relating to information assurance procedures and systems
  • Develops information systems assurance programs and control guidelines
  • Confers with and advises subordinates on administrative policies and procedures and resolving technical problems, priorities, and methods
  • Consults with and advises other sections regarding internal controls and security procedures
  • Prepares activity and progress reports relating to the information systems audit functions
  • Currently possess and maintains IAT Level III and ITIL 2011 certifications
  • Experience developing Information assurance documentation, policies, procedures and systems
  • Knowledge and experience with Information Assurance Vulnerabilities Assessments (IAVA) and Bulletins (IAVB) patches
  • Provides Security Operations Management support; maintains and enhances Security Operations Management
  • Acts and the Subject Matter Expert (SME) for Security Operations Management associated activities
  • Knowledge and understanding of network and host-based security devices (e.g., IDS/IPS, firewall, proxy servers, sensors, switches, routers, hubs)
  • Knowledge and understanding of security requirements and best practices applicable to physical, virtual, and cloud infrastructure
  • Knowledge and understanding of Federal and DoD computer security directives, e.g., Security Technical Implementation Guides (STIGs), Electronic Communications Privacy Act, the Health Insurance Portability and Accountability Act (HIPAA), the Federal Information Security Management Act (FISMA), and Digital Millennium Act
  • Thorough understanding of National Institute of Standards and Technology (NIST) SP 800-37 and 800-39, and commercial best practices. Desired knowledge of applicable DoD, USCYBERCOM, and USTRANSCOM security guidelines and best practices
  • Minimum of Bachelor’s Degree in a technical discipline from an accredited college or university
  • Have six or more (6+) years of experience, with at least four (4) of those involving application of DoD policy, direction, and guidance to customer environments
  • Possess security certifications (CISSP, Security+, IAT Level III and ITIL)
47

Information Assurance Engineer, Senior Resume Examples & Samples

  • Experience with Risk Management Framework (RMF), DIACAP, DCIDS6/3, and ICD503 and a strong technical background in guiding policy makers and interpreting existing policy in accordance with Agency objectives
  • Experience with writing multiple System Security Plans (SSP) or System Security Authorization Agreements (SSAA)
  • Experience with achieving ATO, IATO, or IATT on a $10M+ systems delivery or deployment effort
  • Knowledge of security controls and how to create appropriate documentation of system security postures using them, including SCTM and POAM
  • Knowledge of “Big 5” Agency accreditation methodologies
  • Knowledge of DevOps processes, technologies, and practices in order to explain and document how security controls are met using a DevOps toolchain
  • BA or BS degree in a technical field, including Computer Science, Software Engineering, or Computer Engineering
  • Experience with C2S or GovCloud accreditation, software development, including C++, Java, Python, or related, Agile and DevOps environments, version control systems, such as Git and SVN, continuous integration systems, such as GitLab CI and Jenkins, Cloud architecture, such as AWS, Azure, and OpenStack, security scanning tools, such as OpenSCAP, Checkmarx, and Veracode, and hardware virtualization technologies containerization, such as Docker
  • Experience as an ISSE
  • Knowledge of Xacta and ASDS, DoD 8570 Level 3 IAM
  • MA or MS degree in a technical field
  • ISSEP, CISSP, CISM, GSLC, Security+, NET+, or CEH Certification
48

Information Assurance Engineer, Senior Resume Examples & Samples

  • Works with the government leadership as the focal point for planning and execution for the operational plans, project management, problem resolution and is the primary point of contact (POC) for problems relating to AFNet issues and AFNet user issues that are in the purview of the Cyber Management Team (CMT) and Cyber Mission Support teams (CMST)
  • Coordinates with HQ/base Communication Focal Points (CFPs), or Client Support Technicians (CSTs) for physical resolution, as required
  • On behalf of the Chief of Engineering and Infrastructure, directs tasks of the CMT and COST teams through the appropriate team leader as well as coordinating with the ESU on support, maintenance, and user activities for the team
  • Coordinates with appropriate CMTs, CMSTs, Enterprise Service Desk (ESD), Enterprise Service Unit (ESU), Integrated Network Operations and Support Center (INOSC) or other external agencies, as required, to ensure user issues are being resolved
  • Establishes a metrics program to document, trend, perform analyses, and brief the CMTs, CMSTs, and AFNet performance
  • Ensures CMTs/CMSTs documents, tests, validates, and deploys new technology as required
  • Coordinates physical server support, as required
  • Utilizes Remedy to open document, coordinate, route, resolve, and close user issues
  • Ensures CMTs/CMSTs technicians correctly utilize Remedy in the execution of their duties resolving user issues
  • Utilizes Remedy to open, document, coordinate, route, resolve, close server/services tickets
  • Achieves and maintains 8570 certification requirements, as required; Level 2 certification is required for this task
  • Maintains proficiency and knowledge on latest technological efforts
49

Information Assurance Engineer Resume Examples & Samples

  • Experience (5+ years) installing, operating, and maintaining network security tools and applications
  • Knowledge of the Federal Information Security Management Act (FISMA), DoD IA policy, and implementation (DoD 8500.2). Experience with collecting security artifacts and compiling DIACAP/RMF packages
  • Bachelor’s Degree plus 4 years of experience required. 6 Years of experience may be substituted for degree (10 years total)
  • Certified Information System Manager (CISM)
  • Certified Information Security Auditor (CISA)
50

Senior Information Assurance Engineer Resume Examples & Samples

  • Establishes system security designs
  • Supports secure systems operations and maintenance
  • Bachelor's degree and 4-5 years of experience in the field or related area
  • Must be able to manage multiple programs and timelines in order to obtain ATOs in a timely fashion
  • Experience with creating Certification and Accreditation Packages via DoD Information Assurance Certification and Accreditation Process (DIACAP) and/or RMF
  • Expertise in Afloat installation processes, including SCD and RMMCO requirements
  • Secret clearance is required
51

Information Assurance Engineer Resume Examples & Samples

  • Processes DoD Vulnerability alerts when released from USCYBERCOM
  • Notifies each Line of Service (LoS) via email that new vulnerabilities have been posted to the USSTRACOM SharePoint Site
  • Verifies the vulnerability currency status (has not been superseded and no open change request). If vulnerability has been superseded, close change request
  • Uses the USSTRACOM Consolidated Reports to determine which LoS are affected and require a change request
  • Tracks change requests for closure
  • Sends follow up e-mail to LoS to update applicable compliance numbers
  • Initiates POA&M on those vulnerability notices that have superseded the 21 day suspense to meet compliance
  • Updates the Daily Summary Report (DSR) and Top Vulnerabilities for Friday’s meeting
  • Completes monthly audit on as directed by USCYBERCOM
  • Bachelor's degree in computer science or related field preferred
  • Four or more years of experience in network, host, data and/or application security in multiple operating system environments
  • Experience working with NIST Special Publications and C & A process methodology
  • Possess security certifications (CISSP, CCNA, etc) and/or top secret security clearance
  • CISSP Cert. required
  • Certified Ethical Hacker (CEH)
  • Cyber Security
  • Secret clearance required, Top Secret preferred
  • Good analytical and problem solving skills to troubleshoot and resolve network/operating system security issues
52

Information Assurance Engineer Resume Examples & Samples

  • Prepares recommendations for the DAA
  • Identifies alternative functional IA security strategies to address organizational security concerns
  • Reviews security safeguards to determine that security concerns identified in approved policies, plans, and doctrine have been fully addressed
  • Develops and implements programs to ensure that systems, network, and data users are aware of, understand, and follow IA policies and procedures
  • Implements effective security monitoring protocols; appropriately responds to and remediates information security threats
  • Conducts information security risk assessments and effectively communicates risk to program manager and client
  • Assures successful implementation and functionality of security requirements and appropriate IT policies and procedures that are consistent with the organization's mission and goals
  • Develops procedures to maintain security and protect systems from security threats. Works with IT Support Manager to ensure that best practices are incorporated into policy in support of our quality management efforts
  • Ensures adherence to IA/cybersecurity policies, procedures and training for all assigned staff
  • Serves as the primary point of contact for IA/cybersecurity policy, guidance, and DIACAP Certification and Accreditation (C&A) and RMF requirements and implementation
53

Information Assurance Engineer Resume Examples & Samples

  • Responsible for the day-to-day support of IA functions to include the following
  • Must have at least 5 years' experience in information assurance, security engineering, and/or system administration
  • Must be fully 8570.1 certified; operating system certifications and IA certifications (Security+ or SSCP (CISSP, CISM, or GSLC highly desired))
  • Network engineering design and architecture, security implementation, firewall/IDS, Juniper and CISCO router/switch configuration experience
  • Vulnerability assessment and analysis experience utilizing Assured Compliance Assessment Solution (ACAS), DISA Gold Disk, and DISA STIGs implementation across multiple platforms (Windows, Network, DNS, Enclave, etc.)
  • Experience remediating, mitigating, and reporting system vulnerabilities (IAVAs)
  • Army certification and accreditation experience performing authoring, maintaining, and submitting accreditation and Risk Management
  • Framework (RMF) packages thereby achieving Authorizations To Operate (ATO)
  • Experience working with Host Based Security System (HBSS)
  • DOD Experience
  • Strong communications and briefing skills
54

Information Assurance Engineer Resume Examples & Samples

  • Lead security protection working groups and recommend secure AIS architecture solutions for modifications of existing systems and for new system deployments
  • Assist with the implementation of security and Information Assurance (IA) objectives for new and existing components by providing Systems Security Engineering support to COMM programs and projects
  • Collaborate on IA activities with COMM, IA Program Office and the customer to ensure incorporation of IA strategic goals and objectives
  • Work with A&A authorities within the customer and the IC to ensure IA measures are taken to meet mission objectives IAW applicable security policies and directives
  • Generate and maintain system A&A documentation, including Security Plan, Risk Management Matrix (RMM), POA&M, System Requirements Traceability Matrix (SRTM), and Certification Test Plan, in accordance with the customer's implementation of ICD 503 Risk Management Framework A&A processes.”
  • Analyze and implement security controls that are applicable depended on the type IS (Information System) in order to develop and execute certification test plans
  • Conduct reviews of assessment artifacts (Certification Test Plans, System Security Plans, Security Requirements Traceability Matrix, etc.)
  • Knowledge of configuration management and integration testing for the Government's Assessment & Authorization process
  • Generate, maintain, and implement Security Engineering and Integration methodologies and procedures to ensure critical assets are protected throughout the system lifecycle
  • Identify IA risks and vulnerabilities for customer programs and projects, provide Security Engineering recommendations, and plan and implement System Security Engineering approaches that use repeatable engineering processes for built-in security measures in development engineering activities
  • Provide support to systems integration activities: derive system security requirements or provide security requirements evaluations; review system security design; prepare security test plans and procedures; and participate in certification testing. Facilitate working groups for the advisement and recommendation to the customer on AIS Architecture Solutions for modification of existing systems and new systems
  • Experience with federal and national Cybersecurity policies, IA standard security principles, standards and industry best practices
  • Must possess an active TS/SCI clearance with ability to successfully obtain a polygraph
  • 5-7 years’ solid IA experience with a Bachelor’s degree combined with a Security+ related certification
  • Familiar with industry/government IA best practices supporting information assurance management
  • A&A experience supporting Systems Engineering and Integration efforts for DoD, other Government Agencies or commercial programs or projects
  • 4 years’ experience in organizing and maintaining online technical information libraries, performing the data management role maintaining the baseline repository for the respective A&A programs or projects
  • Experience writing and delivering technical documents and briefings
  • Candidate will have excellent verbal, written, and organizational skills
  • Candidate will be an extremely motivated individual who is a self-starter and a team player
  • Working knowledge of Microsoft Office tool suite
  • BS or MS in Information Assurance Engineering, Computer Science, or related IT field with 7 years’ experience
  • Prior A&A experience with U.S. Intelligence customers preferred
  • CISSP certification a plus or other DoD 8570 level 3 certifications
  • Microsoft Office tools familiarity including PowerPoint presentation and Excel spreadsheet development skills preferred
55

Cyber Security Assessment Support Information Assurance Engineer Resume Examples & Samples

  • B.S. required
  • 12+ years’ experience with cyber vulnerability assessments techniques and procedures
  • 01-M IAT Level II required
  • In-depth understanding of information assurance processes, procedures, and controls
  • Excellent problem-solving skill
  • Attention to detail and ability to work independently and as part of a cross-functional team
  • Knowledge and proficiency in using the Adobe Acrobat and MS Office Suite (Word, Excel, PowerPoint, and Project)
  • Knowledge of MS Outlook
  • Requires an active Secret clearance with the ability to obtain a TS/SCI security clearance
  • M.S. or PhD preferred
  • Familiarity with the Air Force Life Cycle Management’s cybersecurity assessment support program is a plus
56

Information Assurance Engineer Resume Examples & Samples

  • Investigate the intricacies of migrating JPEO-CBD applications to cloud computing environments, examining the vulnerabilities involved and developing methodology to mitigate such vulnerabilities. In addition, assist the Government to successfully implement Chemical, Biological, Radiological, and Nuclear (CBRN) capabilities within the various cloud environments
  • Manage information-related risks in enterprise architectures, acquisition strategies, and testing and evaluation, and work to achieve cybersecurity C&A
  • Ensure fielded information systems and networks are defended to maintain confidentiality, integrity, availability, authentication, and non-repudiation by identifying, developing, and applying risk management framework technical-, operational-, and management-related security controls and protection mechanisms
  • Examine JPEO-CBD programs and system characteristics to develop strategies for compliance, when required, with DODI 8500.01 and DODI 8510.01
  • Guide JPEO-CBD programs in the development of Acquisition Cybersecurity Strategy
  • Ensure that each JPEO-CBD program, when required, has a cybersecurity Strategy that is consistent with DOD policies, standards, and architectures, to include relevant standards
  • Identify CPI in terms of their importance to the program being developed
  • Identify foreign collection threats to the program, identify elements that require classification, and determine the phases at which such classification should occur and the duration of such controls
  • Identify Critical Technology and address CPI as well as other relevant information requiring protection, including export-controlled information and sensitive but unclassified information
  • Document programs’ overall cybersecurity approach and requirements, including determining the appropriate C&A process, contributing content for LCMPs, assisting programs in the creation of a SCG, and assisting in the development of PPPs
  • Manage the HBSS and install, configure, and maintain computer and network security software, including instances of the ACAS, the DISA STIG Viewer, and other cybersecurity software test and scanning software applications
  • Directly interface with JPM customers, representing SSA in discussions concerning cybersecurity, including (but not limited to) topics which address use of the DISA STIG in the software application and system development process, use of the DISA Enterprise Mission Assurance Support Service (eMASS) tool to document program progress during the C&A process, and the Risk Management Framework and its critical alignment with a program's System Development Life Cycle (or Software Development Life Cycle, as appropriate.)
  • Leverage SSA services while working in conjunction with JPMs across the JPEO-CBD to facilitate risk management framework activities
  • Active/current Secret clearance is required
  • Master’s degree in Engineering, Computer Science, Business Management, Information Systems Management, or a related discipline, as well as ten (10) years of general experience and six (6) years of relevant experience
  • Alternate/Tradeoff Education: Bachelor’s degree in Engineering, Computer Science, Business Management, Information Systems Management, or a related discipline, as well as twelve (12) years of general experience and eight (8) years of relevant experience
  • Must have five (5) years of experience providing information technology support services, including information assurance
  • Shall possess, or obtain within the first six months of assignment, the appropriate Risk Management Framework training and certification
  • Shall possess, or obtain within the first six months of assignment, an active security-related certification (e.g., CISSP, CAP, or Security+)
  • Must have organizational skills, as well as excellent interpersonal and communication skills, both oral and written
  • Familiarity with JPEO-CBD programs
57

Information Assurance Engineer Resume Examples & Samples

  • Examine JPEO-CBD programs and system characteristics to determine whether compliance with Department of Defense Instruction (DODI) 8500.01 is recommended or required, and will develop an Acquisition Cybersecurity Strategy when required
  • Ensure that each JPEO-CBD program, when required, has a Cybersecurity Strategy that is consistent with Department of Defense (DOD) policies, standards, and architectures, to include relevant standards
  • Assist in the identification of Critical Program Information (CPI) and Critical Technology in terms of their importance to the program being developed
  • Assist in the identification of foreign collection threat to the program, identify elements that require classification, and determine the phases at which such classification should occur and the duration of such controls
  • Provide support for Development Test (DT), User Demonstration (UD), User Feedback Event (UFE), Operational Assessment (OA), and Operational Test (OT) events and address each CPI as well as other relevant information requiring protection, including export-controlled information and sensitive but unclassified information
  • Manage the Host-Based Security System (HBSS) and install, configure, and maintain computer and network security software, including instances of the Assured Compliance Assessment Solution (ACAS), the Defense Information Systems Agency (DISA) Security Technical Implementation Guide (STIG) Viewer, and other cybersecurity software test and scanning software applications
  • Document programs’ overall cybersecurity approach and requirements, including determining the appropriate Certification and Accreditation (C&A) process, contributing content for Life Cycle Management Plans (LCMPs), assisting programs in the creation of a Security Classification Guide (SCG), and assisting in the development of Program Protection Plans (PPPs)
  • Bachelor’s degree in Engineering, Computer Science, Business Management, Information Systems Management, or a related discipline, as well as eight (8) years of general experience and five (5) years of relevant experience
  • Alternate/Tradeoff Education: Associate’s degree or Professional Certificate in Engineering, Computer Science, Business Management, Information Systems Management, or a related discipline, as well as ten (10) years of general experience and seven (7) years of relevant experience
  • Must have three (3) years of experience providing information technology support services, including information assurance
  • Shall possess, or obtain within the first six months of assignment, an active security-related certification (e.g., Certified Information Systems Security Professional (CISSP), Certified Authorization Professional (CAP), or Security+)
  • Familiarity with Joint Program Executive Office for Chemical and Biological Defense (JPEO-CBD) programs
58

Information Assurance Engineer Resume Examples & Samples

  • Validate system compliance with essential information assurance and Computer Network Defense (CND) requirements, including DOD C&A policy guidance (e.g., 5200, 8500, 8100.3, etc.), and provide updates to program managers
  • Draft, review, analyze, and comment on information assurance and C&A documentation, Statements of Work (SOWs), plans, and policies
  • Translate information assurance and CND threat data into relevant issues that have the potential to impact fielding and planned deployments
  • Manage information-related risks in enterprise architectures, acquisition strategies, testing and evaluation, and in achieving information assurance C&A
  • Ensure that fielded information systems and/or networks are defended to maintain integrity, availability, authentication, confidentiality, and non-repudiation by applying appropriate safeguards
  • Create Information Assurance Strategies
  • Must have an in-depth understanding of information assurance
  • Must have an in-depth understanding of installation Command, Control, Communications, Computers, and Intelligence (C4I) policies
  • Must have an in-depth knowledge of the DOD Information Assurance Certification and Accreditation Process (DIACAP) and extensive experience with policies and processes for obtaining DIACAP approval
  • Support the development of installation-specific DIACAP documents (e.g., System Identification Profile (SIP), DIACAP Implementation Plan (DIP), Plan of Action and Milestones (POA&M), etc.) regarding the integration of information management systems, existing sensors, and capabilities into DOD installation network systems
  • Possess an adept ability coordinating information assurance standards and protocols with local authorities and Other Governmental Agencies (OGAs)
  • Experience working with Naval Network Warfare Command (NETWARCOM)
  • Must have technical knowledge and leadership skills required to help develop an effective and integrated Emergency Management (EM) protection and response program for DOD installations around the world
  • Must be technically focused
59

Information Assurance Engineer Resume Examples & Samples

  • Assist in the identification of CPI in terms of their importance to the program being developed
  • Assist in the identification of foreign collection threats to the program, identify elements that require classification, and determine the phases at which such classification should occur and the duration of such controls
  • Assist in the identification of Critical Technology and address CPI as well as other relevant information requiring protection, including export-controlled information and sensitive but unclassified information
60

Senior Information Assurance Engineer Resume Examples & Samples

  • Shall have a minimum of five years of Cybersecurity experience supporting DoD Acquisition programs/projects
  • Shall have a minimum of three years cybersecurity experience with the IC
  • Shall have a minimum of one year experience in applying the Risk Management Framework (ICD 503) for the accreditation of DoD or IC Information Technology Systems
61

Senior Information Assurance Engineer Resume Examples & Samples

  • Bachelor's degree and at least 10 years of relevant experience
  • Current CISSP certification
  • Working knowledge of MS SharePoint
62

Lead Information Assurance Engineer Resume Examples & Samples

  • Five to seven years of experience in Information Security, application security or development preferred
  • Three to five years of experience working in and performing risk/architecture assessments on applications, network, mobile and SaaS solutions preferred
  • Experience performing penetration testing and web application security assessments
  • Experience performing vendor risk assessments strongly desired
  • Experience in using penetration testing tools (Canvas, Nessus, Burp Suite, Metasploit) preferred, but not required
  • Experience in working with and deploying vulnerability management solutions (Qualys, Rapid 7) preferred but not required
  • Experience with static and dynamic analysis tools preferred
  • Experience with IAST and RASP tools preferred
  • Strong understanding of OWASP Top 10 and CWE 25; as well as experience in implementing and integrating remediation strategies
  • Strong understanding of agile development processes and integrating secure development practices into the model
  • Strong interpersonal skills with the ability to effectively collaborate with cross-organizational teams
  • Self-starter with the ability to work independently as well as the ability to negotiate and bring consensus to diverse priorities of product development and solution delivery teams
  • Excellent verbal and written communication skills including the ability to describe or explain complex processes and issues in a concise manner
  • Ability to understand complex information systems, prioritize tasks, and meet deadlines with minimal supervision
  • Hands on experience with one or more of the following programming languages: C#, C++, JavaScript preferred but not required
  • One or more of the following certifications (preferred, but not required): CISSP, CISM, GPEN, GWAPT, or CEH
  • Must be able to communicate effectively, be customer service focused, and well organized
63

Information Assurance Engineer, Mid Resume Examples & Samples

  • Level policy, coordinate exceptions to policy with higher headquarters, as needed, identify IA requirements for major systems in acquisition or development to comply with published Security Technical Implementation Guides (STIGs) and policy, and participate in the requirements development and design process. Provide support to portions of the Army vulnerability management and Certification and Accreditation (C&A) processes, including writing, reviewing, or verifying Plans of Action and Milestones (POA&Ms), evaluate the overall risk posed by vulnerabilities to Army missions, networks, and data, and make recommendations. Coordinate C&A and VM activities within established time lines, recommend courses of action for program managers and system owners to ensure compliance with DoD and Army orders and policy, and maintain an acceptable level of risk. Track information system status, prioritize and plan for annual IA control compliance activities and validation, and collect and verify continuity of operations (COOP) and disaster recovery (DR) plans to validate compliance with mission assurance requirements and standards. Support the development of Cybersecurity education, training, and awareness to client personnel, as required
  • Knowledge of NIST 800
  • 53A security controls
64

Information Assurance Engineer, Senior Resume Examples & Samples

  • Experience in at least two of the following technology areas: DoD Public Key Infrastructure for the tactical environment, event logging and analysis for a Defensive Cyber Infrastructure, Cross Domain Solutions and accreditation, cryptographic key management, or overarching Cyber forensic analytics capabilities
  • Knowledge of DoD information assurance and RMF standards
  • Ability to comprehend network vulnerability scanners, including Retina, ACAS, or Nessus and patch management software, such as WSUS, SCCM, SMS, or Hercules
  • BA or BS degree in CS, Information Systems, or Engineering or 4 years of experience with information assurance engineering in lieu of a Bachelors degree required
  • Certified Information Systems Security Professional (CISSP) Certification
  • 8 years of experience with Cybersecurity program, information systems, networks, or platform IT
  • Experience with Firewalls and IPS, IDS, and Web content filtering
65

Information Assurance Engineer, Senior Resume Examples & Samples

  • Experience with Risk Management Framework (RMF), DIACAP, DCIDS6/3, and ICD503, guiding policy makers, and interpreting existing policy in accordance with Agency objectives
  • Experience with writing multiple system security plans (SSPs) or system security authorization agreements (SSAAs)
  • Knowledge of Big 5 Agency accreditation methodologies
  • Knowledge of how to use DevOps processes, technologies, and practices in order to explain and document how security controls are met using a DevOps toolchain
  • BA or BS degree in CS, Software Engineering, or Computer Engineering
  • Experience with C2S or GovCloud accreditation, software development, including C++, Java, Python, or related, Agile and DevOps environments, version control systems, including Git and SVN, continuous integration systems, including GitLab CI and Jenkins, Cloud architecture, including AWS, Azure, and OpenStack, security scanning tools, including OpenSCAP, Checkmarx, and Veracode, and hardware virtualization technologies containerization, including Docker
  • Knowledge of Xacta, ASDS, and DoD 8570 Level 3 IAM
66

Information Assurance Engineer Resume Examples & Samples

  • Validates and verifies system security requirements definitions and analysis and establishes system security designs
  • Designs, develops, implements and/or integrates IA and security systems and system components including those for networking, computing, and enclave environments to include those with multiple enclaves and with differing data protection/classification requirements
  • Builds IA into systems deployed to operational environments
  • Assists architects and systems developers in the identification and implementation of appropriate information security functionality to ensure uniform application of Agency security policy and enterprise solutions
  • Supports the building of security architectures
  • Enforce the design and implementation of trusted relations among external systems and architectures
  • Assesses and mitigates system security threats/risks throughout the program life cycle
  • Contributes to the security planning, assessment, risk analysis, risk management, certification and awareness activities for system and networking operations
  • Reviews certification and accreditation (C&A) documentation, providing feedback on completeness and compliance of its content
  • Applies system security engineering expertise in one or more of the following to : system security design process; engineering life cycle; information domain; cross domain solutions; commercial off-the-shelf and government off-the-shelf cryptography; identification; authentication; and authorization; system integration; risk management; intrusion detection; contingency planning; incident handling; configuration control; change management; auditing; certification and accreditation process; principles of IA (confidentiality, integrity, non-repudiation, availability, and access control); and security testing
  • Support security authorization activities in compliance with NSA/CSS Information System Certification and Accreditation Process (NISCAP) and DoD Information Assurance Certification and Accreditation Process (DIACAP) process, the NIST Risk Management Framework (RMF) process, and prescribed NSA/CSS business processes for security engineering
  • Candidate may be required to respond to after-hours requests as required in a 24 x 7 environment
  • Seven (7) years’ experience as an ISSE on programs and contracts of similar scope, type, and complexity within the Federal Government required
  • Bachelor’s degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or university is required
  • Four (4) years of additional ISSE experience may be substituted for a bachelor’s degree
  • DoD 8570 compliance with IASAE Level 2 is required
67

Infrastructure Information Assurance Engineer Resume Examples & Samples

  • Must possess an active US DoD Secret or higher clearance US Citizenship required
  • 4+ years of relevant experience related to infrastructure-level system builds, including both installation and configuration
  • Experience with infrastructure build automation using Chef and Ruby (or similar products) for O/S builds, COTS software installations, security patches and configuration changes, and software updates
  • Systems Integration experience – documenting and resolving issues as they arise while adhering to schedule milestones
  • Proven ability to troubleshoot configuration problems and/or complex system issues
  • Experience with Windows and/or Linux System Administration
  • Strong scripting skills (i.e. PowerShell, Python, Ruby)
  • Solid background in COTS product Installation
  • General knowledge of IA concepts and requirements
  • Experience in automation of environment hardening to meet IA requirements, e.g. DISA STIGs
  • Experience in IA scanning and reporting, including development of IA artifacts such as POAMs
  • Understanding of DevOps concepts
  • Experience with VMware– vCenter, ESXi, vSphere
  • Understanding of Change Management processes - Version Control of software and applications using Clearcase and familiarity with DR’s, CR’s, and IR’s written with ClearQuest
  • Proficiency with the Microsoft Office suite of products
68

Information Assurance Engineer Resume Examples & Samples

  • Maintain and verify compliance of USAR systems
  • Recommend best business practices and secure methodologies to maintain and/or improve security posture of USAR Information Systems, the network, and remedy deficiencies
  • Awareness of vulnerabilities and newest patches
  • Verify the USAR has applied appropriate patches, STIGs, and control mechanisms as per directives
  • Assist in development and tracking of POA&Ms and work with USAR sites for timely closure
  • Provide recommendations to address gaps in compliance
  • Verify findings of Site Assistance Visits (SAV)/site inspections have been resolved, and work with the sites to bring their sites and systems into compliance
  • Generate compliance assessment reports based on compliance data and scanning results gathered from existing tools
  • Provide expertise to resolve computer security incidents and vulnerability compliance, assessing vulnerabilities due to evolving technologies, and security engineering services with recommendations throughout project lifecycles
  • Experience working in a team environment and possess the ability to plan and execute tasks efficiently and gather and disseminate information working with peers, subordinates and management
  • Technical understanding of network computer security including processing of data from Unclassified to SECRET, server hardware and software, data bases, file systems, and integration of cryptographic components
  • Demonstrated expertise in integration of security requirements applied computer networks connected to US Government and foreign government networks
  • Ability to analyze results of CCRIs in support of Information Assurance / Computer Network Defense / Cyber Defense accreditation for unclassified and classified information systems and networks
  • Experience with developing and flowing requirements, security design definition, integration and testing
  • Experience with Information Assurance Vulnerability Management (IAVM) tools and procedures and other cyber protection tools
  • Experience performing vulnerability analysis assessments
  • Ability to work independently under general direction with subordinates, staff and supervisors to define and translate IAVM compliance reports
  • Posses an in-depth understanding of networking architectures and security elements to include 3 or more of the following: network and host based intrusion detection systems, antivirus, SIEM and event correlation, incident response, file integrity monitoring, full packet capture, forensics, and encryption
  • In-depth experience with vulnerability analysis assessments; experience in verification methods for determining that appropriate patches, STIGs, and control mechanisms have been applied and are compliant
  • Advanced communication and presentation skills (verbal and written)
  • Strong interpersonal, organizational and critical thinking/problem solving skills
  • DoD 8570 IAT Level 2 (Security+)
  • Bachelors degree from an accredited college in a related discipline, or equivalent experience/combined education, with 2 years of professional experience; or no experience required with a related Masters degree
  • Experience working in a customer environment
  • At least one of the following certifications: CISSP, CAP, CISM, CISA, CASP
  • Experience with development or review of PO&AMs
  • Experience in scanning tools such as ACAS, current DIACAP or RMF repository tools such as the Enterprise Mission Assurance Support Service (eMASS)
  • Knowledgeable of DoD and Army Ports, Protocols, and Services Management (PPSM)
  • Knowledgeable of POA&M tracking
  • Experience with NIST RMF processes and artifact development
  • Degree in Cyber, Information Assurance, Computer Science, Software Engineering, Systems Engineering, or Electrical Engineering
  • Ability to decompose requirements to assure accurate and efficient flow to meet and help drive business guidelines and program contractual needs
  • Additional certifications for DoD Information Assurance Technical (IAT) Level II. Certification for DoD Information Assurance Manager (IAM) Level III and have one of the following certifications: GIAC Security Leadership Certification (GSLC), Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP) or Associate
69

Information Assurance Engineer Lead Resume Examples & Samples

  • CISSP certification preferred
  • Experience defining, implementing, and improving security operations processes and procedures to perform Continuous Monitoring under RMF
  • Experience with FEDRAMP approval processes and compliance
  • Experience working with the Defense Information Systems Agency (DISA)
  • Familiarity with the DISA Security Requirements Guide and Information Impact Levels
  • DoD Joint Information Environment experience
  • Cloud Computing environment knowledge
  • Coordinate and lead accreditation efforts for several COTS product implementations in DISA
  • Interface with DISA and serve as the primary liaison for the project
  • Author and maintain accreditation documentation (System Security Plan, Privacy Plan, Access Control Plan, Vulnerability Management Plan, etc.)
  • Collaborate with Software and System Engineers to document application system Ports and Protocols and validate them against the DISA Information Assurance Vulnerability Assessment databases
  • Develop and execute Certification and Accreditation Test/Validation procedures to validate compliance against NIST 800-53 security controls, generating objective evidence and required reports
  • Leidos is a global leader in the integration and application of information, technology and systems working to solve the world’s toughest challenges in the civil, health, defense, intelligence and homeland security markets. The company’s 33,000 diverse employees support vital missions for government and commercial customers in 30 countries. Headquartered in Reston, Virginia, Leidos reported annual revenues of approximately $10 billion for the fiscal year ended January 1, 2016 after giving effect to the recently completed combination of Leidos with Lockheed Martin's Information Systems & Global Solutions business (IS&GS). For more information, visit www.Leidos.com. The company’s diverse employees support vital missions for government and commercial customers. Qualified women, minorities, individuals with disabilities and protected veterans are encouraged to apply. Leidos is an Equal Opportunity Employer
70

Information Assurance Engineer Resume Examples & Samples

  • Perform architecture design & development along with integration of new architectural features into existing infrastructures while maintaining the integrity and security of enterprise-wide cyber systems and networks. Address system-of-system architectural needs by drilling through layers of embedded security within the given Wide Area Network/Local Area Network (WAN / LAN) architecture
  • Apply cyber security standards, directives, guidance and policies to an architectural framework. Provide architectural analysis of cyber security features and relate existing system to future needs and trends
  • Support launch network hardening activities for United Launch Alliance’s Network Segmentation project in support of ISO-27001 and CNSSI 1253 certifications. Design network and infrastructure configuration and hardening scripts for ULA Launch Network assets. Configure routers, switches, and security features on equipment from multiple vendors including Cisco, Juniper, Palo Alto, etc
  • Provide engineering recommendations based on cyber security needs analysis. Review and provide input to system requirements based on cyber security posture. Compile industry best practices and lessons learned into future iterations and new designs. Provide broad based experience in the systems engineering lifecycle and apply the experience to specific cyber security initiatives relating to architectural design
  • Work with application developers and communicate effectively and transparently with stakeholders on progression, shortfalls, and achievements during lifecycle activities (build, configure, test, decommission)
  • Must have Bachelors degree from an accredited college in a related discipline with 9 years of professional experience or 7 years of experience with a related Masters degree
  • Must be a United States citizen
  • Must have an active Secret security clearance
  • Virtualization: VMware vSphere Enterprise Plus 6.0, build-out and troubleshooting
  • Hardening Experience: STIG hardening to include for VMware vSphere and ESXi 6.x, RHEL, and Windows Server
  • Administration: NFS, ZFS configuration and troubleshooting on multiple *NIX platforms, as well as network and SAN troubleshooting to include NetApp 2240s
  • Application: Oracle Database installation and configuration, embedded application troubleshooting to include architectural, library, and inter-application dependencies. Microsoft Visio skills
  • Multi-site L2TPv3 and TACACS configuration experience
  • Network Design: Cisco Nexus 5K, 4500-X network and dynamic routing configuration, hands-on data center experience to include Fiber Channel connectivity, configuring and automating out of band management on HPE and Oracle-SPARC gear, Palo Alto Networks rules evolution and network troubleshooting to include tcpdump, wireshark, packet capture, and application attribute collection
  • Server Configuration to support current and legacy SunOS platforms as well as transitions. Solaris x86_64 and IRIX hardening, SPARC virtualization, and Solaris M4000 FC connections
71

Information Assurance Engineer Resume Examples & Samples

  • Provides guidance to one or more security engineers
  • Twenty (20) years’ experience as an ISSE on programs and contracts of similar scope, type, and complexity within the Federal Government is required
  • A Master’s degree in Computer Science, Information Assurance, Information Security System Engineering, or related discipline may be substituted for two (2) years of experience, reducing the requirement to eighteen (18) years of experience
  • Four (4) years of additional ISSE experience may be substituted for a bachelor’s degree. DoD 8570 compliance with IASAE Level 3 is required
  • Both Information Systems Security Engineering Professional (ISSEP) and CISSP Certifications are required
72

Information Assurance Engineer Resume Examples & Samples

  • Security + certification required
  • Experienced System Administrator Skills (certification is a plus) in some or all of the following: Windows Server 2008, 2012, Window 7 or Windows 10
  • Responsible for the design, development, implementation, and/or integration of a DoD IA architecture, system, or system component for use within Computing Environment (CE), Network Environments (NE), and enclave environments. Ensure that the architecture and design of Department of Defense (DoD) Information Systems (IS) are functional and secure. This may include designs for program of record systems and special purpose environments with platform IT interconnectivity
  • May also be responsible for system or network designs that encompass multiple CE and/or NE to include those with differing data protection/classification requirements
  • Has experience with IA vulnerability scanning software tools, implementing Security Implementation Guides (STIGS), and applying IAVA patches
  • Cybersecurity/Network Engineer with experience in configuring and maintaining Host Based Security Systems (HBSS) client and server components with specific experience with the DISA approved HBSS modules such as the Asset Baseline Monitor (ABM), Data Loss Prevention DLPe), ePolicy Orchestrator (ePO), Host Intrusion Prevention (HIPS), McAfee Agent (MA), Policy Auditor (PA) and Rogue System Detection (RSD)
  • Familiarity with RMF accreditation
  • Has experience creating and maintaining various security documents such as the SCP/VSR, System Backup and Recovery Plans (SBRPs) and Plan of Action and Milestone (POA&M) tables
  • Expertise with MS Exchange is a plus
  • Expertise in supporting platform integration issues with Oracle, SQL databases on a windows server is a plus
  • BA/BS and 5 yrs of related experience or no degree but 7 years IA experience
73

Network Security Information Assurance Engineer Resume Examples & Samples

  • Plan network development and expansion as needed. Engineer technical solutions and advise military counterparts of cost impact and timelines for implementing them
  • Responsible for providing technical and operational engineering support to functional users within the ACE-IT AOR for managing, monitoring and maintaining situational awareness of the networks and systems
  • Advise on technical and operational requirements to improve performance and quality of service for all networks and systems under the responsibility of the Data Center
  • Analyze and troubleshoot networks, to include router and switch management and configuration
  • Analyze and troubleshoot Microsoft Windows Operating Systems, and Microsoft mail applications
  • Perform network vulnerability analysis and provide incident and violation response support
  • Provide cyber security awareness and training as required
  • Apply knowledge of IA policies to include infrastructure to identify and correct anomalies within the infrastructure
  • Incorporate security disciplines, recommend and develop requirements, specifications, designs, and procedures to satisfy program security policy and planning guidance
  • Exercise network security policies and procedures
  • Perform network performance tuning of network infrastructure including routers, switches, fast Ethernet links, network address translations and firewalls
  • Generate reports, collect and analyze data, determine ways to improve and streamline the network
74

Information Assurance Engineer Resume Examples & Samples

  • IA Experience
  • Hunger to learn
  • Can be someone’s first job out of training or school
  • Intern’s welcome
  • U.S. citizens ONLY due to government or federal requirement
  • Applicants selected for employment may be subject to a federal background investigation and may need to meet additional eligibility requirements for access to classified information or materials
  • ACAS
75

Senior Information Assurance Engineer Resume Examples & Samples

  • Bachelor’s Degree (or equivalent) and at least 5 years related experience
  • Compliance with DoD 8570 certification requirements (e.g. CISSP preferred), security plus, network plus
  • A polished communicator (verbal and written) to support program office needs
  • Experience with Information Systems (IS) inventory procedures and safeguards
  • Experience reviewing and recommending actions on AIS security inventory, tracking, and sanitization plans, and experience working with customers on efficient, practical, and cost effective AIS security inventory procedures and technical safeguards
  • Working knowledge of multiple Agencies. Working knowledge of both DCID 6/3 computer security standards and regulations and ICD 503 security standards and regulations
76

Principal Information Assurance Engineer Resume Examples & Samples

  • Bachelor’s Degree (or equivalent) and at least 9 years related experience
  • Working knowledge of cloud design and implementation, especially from a security perspective
  • Working knowledge of Windows/Linux operating systems, networking, video teleconferencing, and systems configuration
  • Experience reviewing and recommending action on IS security plans and experience working with customers on efficient, practical, and cost effective IS security procedures and safeguards
  • Experience working with tools to monitor potential security offenses and investigate suspicious network activity
  • Certified Ethical Hacker
77

Information Assurance Engineer Senior Isso Cissp Hbss Poa&m Resume Examples & Samples

  • HBSS (Host Based Security System)
  • POA&M (Plan of Action and Milestones) Management
  • Code review
  • OSD Scorecards
78

Information Assurance Engineer Resume Examples & Samples

  • Designing and validating security standards, policies and solutions that align with the dynamic and agile nature of Cloud environments
  • Documenting and communicating the security standards, policies and solutions to allow for quicker and easier adoption
  • Automating security solutions using tools standard in the Cloud / DevOps world
  • Knowledge of common DevOps tools such as Chef, Puppet, Jenkins, Git
  • Recognized cloud certification (CSSP, AWS CSA, CompTIA Cloud+, CCSK or others)
79

Information Assurance Engineer Stf Resume Examples & Samples

  • Experience with security architecture concepts
  • Experience in systems engineering, system security design and/or requirements analysis
  • Degree in Computer Science, Software Engineering, Systems Engineering, Electrical Engineering, or Security
80

Information Assurance Engineer Resume Examples & Samples

  • Active DoD TS/SCI clearance
  • Intelligence program experience
  • Expert level of knowledge implementing system security measures, including knowledge of DoD security scanning tools and applying system configuration modifications or mitigation
  • BS degree in Computer Science and 6 years of relevant experience supporting the JDISS program or other DoD Intelligence Community program, or a High School diploma and 10 years of relevant experience supporting the JDISS program or other DoD Intelligence Community program
  • DoD 8570 IAT-III certification and Linux or Windows Computing Environment certifications
  • Knowledgeable of ICD 503 Risk Management Framework processes
  • Experience authoring and reviewing security documentation including System Security Plans, system security test plans, Certification and Accreditation documents, and other security-related documents and deliverables
  • System Integrator experience
  • WAN/LAN/Tactical networking experience
  • Experience with and vendor certification in storage and network technologies
81

Security / Information Assurance Engineer Resume Examples & Samples

  • Develops and executes system security and information assurance (cyber security) audit plans in accordance with NISPOM and applicable cyber security and information assurance guidance, requirements, and policy
  • Assesses New Entrant compliance with system security and information assurance (cyber security), identifies risks and risk mitigation plans, reports on schedule status
  • Coordinates the activities of the launch site system and information assurance (cyber security) personnel
  • Interfaces with on-site certification representatives to include USAF, Government, New Entrant, FFRDC, and other Government agencies
  • Applies company quality assurance requirements to all certification products, reports, and reviews
  • Reports to the Certification Team Lead on status of system security and information assurance (cyber security) activities and products
  • Other Duties as Assigned
  • BA/BS degree; will consider less experience in lieu of advanced degrees and more experience in lieu of degree
  • 8+ years of experience applying DoD system security and information assurance (cyber security) requirements to DoD systems and/or equipment
  • Evaluation and analysis of cybersecurity/IA systems, networks, architectures, procedures, and practices
  • CISSP preferred, but not required
  • Experience interfacing with computer-based database and schedule tools
  • Prior Air Force SMC or AFRL program experience
82

Information Assurance Engineer Resume Examples & Samples

  • IA Management
  • Federal Information Security Management Act (FISMA) and Audit Coordination Support
  • Risk Management Framework Application
  • IA Compliance Measurements and Metrics
  • Assessment and Authorization Support
  • Vulnerability Management
  • IT Vulnerability Lifecycle Management
  • Vulnerability Identification and Remediation
  • Situational Awareness
  • Information Assurance Engineer III with recent and relevant IC, DOD, or government experience in IT, IA, or Information Security, related fields, or IA disciplines
  • Must have demonstrated, recent, and relevant experience working with senior government managers of IA issues
  • IA Engineers could help architect, plan, configure, deploy, maintain, and upgrade COTS hardware and application to address vulnerabilities and/or implement security controls
  • Apply a combination of expert engineering knowledge of enterprise IT and security solutions to design, develop and/or implement solutions to ensure they are consistent with enterprise architecture security policies
  • Includes security control design and solution planning at the system, mission, and enterprise level, security-in-depth/defense-in- depth, and other related IAM/ISSO/ISSE support functions
  • Researches and evaluates cyber capabilities and new security tools and products against operational requirements and introduces them to the enterprise in alignment with IT security strategy, and to support the offensive and defensive capability design and troubleshoot and problem solve technical and non-technical issues
  • Requires a BS within a Science, Technology, Engineering, or Mathematics discipline from an accredited college with 6 years’ relevant experience
  • Information Assurance Technical III with recent and relevant IC, DoD, or government experience in IT, IA, or Information Security, related fields, or IA disciplines
  • ACTIVE TS/SCI
  • Information Technology Virtualization
  • Cryptography
  • Public Key Infrastructure
  • Network and Host-Based Intrusion Detection and Prevention Systems
  • Operational Readiness, Verification, and Validation Reviews
83

Information Assurance Engineer Resume Examples & Samples

  • Updating computer systems to ensure compliance with the latest DISA STIGs
  • Securing computer operating systems, primarily Microsoft OS
  • Creating and updating tools to configure remote systems with minimal assistance from on-site personnel
  • Providing support for system certification and accreditation process
  • IT experience maintaining Microsoft operating systems
  • Familiarity with DISA STIGs
  • Ability to develop scripts using command languages such as MS PowerShell
  • Ability to obtain a Secret DoD clearance
  • Experience with the configuration, maintenance, and troubleshooting of
84

Cyber Information Assurance Engineer Resume Examples & Samples

  • Information Technology/ Information Assurance experience focused on DIACAP and the Risk Management Frame work
  • Network vulnerability assessments to include exploiting and post exploit activities
  • Password Strengths assessments on various systems along with some social engineering cryptographic attacks
  • Test filters and rules within firewalls and IDSs by generating/crafting pseudo-malicious network traffic. Provides technical engineering services for the support of integrated security systems and solutions to manage information-related risks
  • Participates with the client in the strategic design process to translate security and business requirements into technical designs
  • Configures and validates secure systems and physical controls, and tests security products and systems to detect security weakness
  • Bachelor's degree in related field or equivalent and 11+ years relevant experience
  • Strong understanding of US Army information system accreditation process to include DIACAP and RMF
  • Required Qualifications
  • Ability to quickly generate scripts and applications using Perl, PHP, Python or PowerShell
  • Strong background in Linux or Windows Server and Active Directory
  • Experience with common penetration tools to include Kali Linux, Aircrack, Nmap, Nessus, Ettercap, wireshark and Cobalt Strike / Armitage
  • DoD 8500.2, ACAS, NESSUS Pro, Security Compliance Checker, Security Technical Implementation Guides, and DISA Security Readiness Review
  • DoD Information Assurance Certification and Accreditation Process (DIACAP)
  • Ability to create professional reports for system owners and technical staff that accurately describes test events and results
  • Certificated Information Systems Security Professional (CISSP)
  • Certified Ethical Hacker (CEH) Certification required
  • Offensive Security Certified Professional (OSCP) certification is highly desired
85

Information Assurance Engineer Resume Examples & Samples

  • Candidate must have strong communication and writing skills
  • Must possess and maintain CISSP, or have equivalent relative experience
  • Must have experience working with vulnerability analysis and assessment in a C/C++ and Java application environment
  • Must have experience with Fortify
86

Information Assurance Engineer Resume Examples & Samples

  • Expert knowledge and experience in A&A with ICD-503
  • Knowledge of NIST 800-53, DIACAP, and DODIIS security requirements
  • Experience with system hardening including STIGs
  • Proficiency in validating and verifying system security requirements definitions and analysis and establishes system security designs for controls
  • Ability to design, develop, implement and/or integrate IA and security systems and system components including those for networking, computing, virtualization, cloud, and enclave environments to include those with multiple enclaves and with differing data protection/classification requirements
  • Experience with building IA into systems and services deploying into operational environments at multiple classification levels
  • Ability in assisting architects and services developers in the identification and implementation of appropriate information security controls and potential security functionality to ensure uniform application of security policy and enterprise solutions
  • Experience with assessing and mitigating system security threats/risks throughout the program life cycle
  • Knowledge of security planning, assessment, risk analysis, risk management, and awareness activities for system and networking operations
  • Experience with creating and reviewing A&A Body of Evidence documentation, providing feedback on completeness and compliance of its content. Develops and executes Security Test Plan (STP) in close cooperation with team members
  • Strong knowledge and experience with NIST SP 800-53 and associated security controls implementation and verification
  • Proficiency in scanning systems and assisting the team in remediating vulnerabilities
  • Proficiency in the development and maintenance of System Security Plans, Security Compliance Traceability Matrix, Security Test Plans, and Plan of Action & Milestones
  • Strong Windows administration and hardening experience
  • Strong network and host security background in Windows
  • Hyper-V, SCCM, WSUS, and patching experience
  • Outstanding communication skills including verbal and written; Word, PowerPoint, Excel, Visio, Project, and other tools to communicate with peers and customers at all technical levels
  • Ability to communicate effectively with senior management in government and contractor teams
  • Experience ensuring systems comply with key government security requirements and demonstrate that through verification testing with government security stakeholders
  • Experience working on and supporting classified networks
  • Familiarity with cloud and virtual hosting environments
  • Security architecture design experience
  • Experience with ACAS, and other scanning tools
  • Master’s degree in IA/Cyber Security/Computer Science
  • Active Directory (architecture, design, disaster recovery and troubleshooting), IIS and ISA
  • Debugging skills in the Windows Platform
  • Background with Windows 7 and Windows 10 client
  • Experience with network captures and network troubleshooting
87

Information Assurance Engineer Resume Examples & Samples

  • Delivers learning solutions to an individual contributor and first level management audience to engage the learner, encourage participation, and produce desired outcomes
  • Participates in the creation of instructional and delivery methods using various learning solutions and technologies
  • Contributes to a learning environment with advance preparation, constructive feedback, and response to learner needs
  • Establishes credibility by demonstrating developed knowledge of solution content
  • Incorporates legal, ethical, and cultural issues relevant for solution delivery as defined
  • 5+ years of professional experience and a Bachelor of Arts/Science or equivalent degree in computer science or related area of study; without a degree, three additional years of relevant professional experience (8+ years in total)
  • CompTIA Security+ and at least 1 current Computing Environment certification
  • Active Secret Clearance Required
88

Information Assurance Engineer, Senior Resume Examples & Samples

  • Provide technical and programmatic Information Assurance Services to internal and external customers in support of network and information security systems
  • Design, develop, and implement security requirements within an organization’s business processes
  • Prepare documentation from information obtained from customer using accepted guidelines such as DITSCAP (DoD Information Technology Security Certification and Accreditation Process)
  • Prepare Security Test and Evaluation plans
  • Provide certification and accreditation support in the development of security and contingency plans and conducts complex risk and vulnerability assessments
  • Analyze policies and procedures against Federal laws and regulations and provide recommendations for closing gaps
  • Develop and complete system security plans and contingency plans
  • Recommend system enhancements to improve security deficiencies
  • Develop, test, and integrate computer and network security tools
  • Secure system configurations and install security tools, scan systems in order to determine compliancy and report results, and evaluate products and various aspects of system administration
  • Conduct security program audits and develop solutions to lessen identified risks
  • Develop strategies to comply with privacy, risk management, and e-authentication requirements
  • Evaluate, develop, and enhance security requirements, policy and tools
  • Provide assistance in computer incident investigations
  • Perform vulnerability assessments including development of risk mitigation strategies
  • >As the USTC LNO during the tier 1 exercise Joint Exercise Life Cycle (JELC), liaison with DoD Agency and Military Services systems program managers and developers to assess the impact of CYBER requirements and validate/document the implementation of mandated Information Assurance controls before and during planned exercises
  • During the DOT&E Exercise Execution phase, perform Cybersecurity Assessments during DOT&E Exercise Events. Research and recommend Cybersecurity architectures and procedures, executing Cyber assessments in complex operational network environments
  • During the DOT&E Execution and Post Execution phase, conduct Cybersecurity data analysis, generate and manage cybersecurity assessment briefings and reports all thru the CCMD JELC
  • Function as a senior SME and has the ability to identify conflicts between the need for DoD USTC and Military Service systems functionality and CYBER requirements. The candidate will be able to guide all parties to a conflict resolution
  • Must have familiarity with and hand-on experience with planning and scheduling of DoD Blue Teams (vulnerability assessments) Green Teams (specialized training events) and Red Team (Cyber OPFOR) during the DoD JELC Cycle
  • Responsible for providing CYBER technical support of DoD, USTC and Military Service during DOT&E Exercise events. The includes staffing of Standing ground Rules/Rules of Engagement for all Blue/Green/Red Teams for CRC events
  • Manage Cybersecurity readiness campaign (CRC) events and ensure the all campaign events are a part of the flow up to the designated Capstone Tier-1 exercise event. Plan, schedule and monitor the CRC events to include scheduling of Blue Teams/Green Team and Red Teams ensuring the JITC and USTC needs are met
  • Plan, schedule and monitor the Cybersecurity exercise readiness reviews in accordance with the DOT&E CAP Handbook ensuring the customer needs are met
89

Information Assurance Engineer Sensitive Information Analyst Resume Examples & Samples

  • Administer and support the Company�s Data Protection Program
  • Leverage industry-standard DLP and UBA products to identify, track and remediate security and compliance issues related to the storage and use of sensitive information
  • Correlate and analyze large amounts of data from multiple systems to identify anomalous user activity
  • Consult with other business and IT teams on secure and authorized use of sensitive information
  • Assist in assessing, measuring, evaluating, and improving the Company�s readiness to deal with cyber security and compliance risks
  • Identify and evaluate: 1) business and technology risks, 2) internal controls which mitigate risks, and 3) methods and technologies to improve the internal control environment
  • A Bachelor Degree in Computer Science, Management Information Systems, Mathematics, Data Analytics or related field
  • 3+ years recent experience with relational databases and SQL queries
  • 2+ years recent experience with one or more scripting languages: perl, python, PowerShell
  • Demonstrated experience with correlating and analyzing large amounts of data
  • Demonstrated understanding of control objectives, cyber threats and vulnerabilities
  • Must be flexible and able to handle stressful situations in a professional manner
  • High degree of self-motivation, commitment and integrity
  • Ability to work well with others and as a member of a team
  • No BAPT required
90

Information Assurance Engineer Resume Examples & Samples

  • Demonstrated effective customer service skills
  • Ability to organize and prioritize multiple tasks
  • Cyber Security certification and accreditation experience, previous assignments in evaluating / documenting compliance with associated standards/specifications
  • Experience supporting vulnerability/risk assessment analysis to achieve certification and accreditation
  • Experience in the preparation and review of security engineering documentation including System Security Plans (SSPs), Risk Assessment Reports, and Certification and Accreditation (C&A) packages
  • Experience with incorporating STIGS, assessing systems for compliance, establishment of security controls, POA&M and mitigation efforts supporting the development and approval of C&A packages
  • Ability to obtain DoD 8570 IAT Level II certification (e.g., Security+ CE) within 6-months
  • CISSP certification or equivalent
  • Incident response experience
  • Experience with DoD IA policy, and host and network security tools, including HBSS, Exacta, NESSUS, eMASS, VMS, DISA STIGs, IAVMs, Risk Management Framework (RMF), or DIACAP
  • Ability to break down complex issues into understandable components and communicate at the appropriate level for the target audience
  • Ability to communicate at multiple levels both orally and in writing, internally and externally
91

Information Assurance Engineer Stf Resume Examples & Samples

  • Serving as a team lead & effective decision maker in order to provide guidance, direction, leadership, training, and mentoring to security engineers
  • Documentation and technical writing requirements (performing research to compile and validate data)
  • Supporting special assignments requested by customer leadership
  • Working with elements within the Aeronautics Business Area, Aero IT and EBS as needed to ensure the security posture of the business
  • Preparing security reports and presentations to both program/project and senior management
92

Senior Information Assurance Engineer Resume Examples & Samples

  • Experience supporting Information Assurance activities as either a Systems Administrator, Network Engineer, Software Engineer or Systems Engineer
  • Knowledge of RMF and Assessment & Authorization activities
  • Cybersecurity professional with 8570.1 experience
  • Knowledge or experience with HBSS, SCAP, NESSUS, SPLUNK, ACAS, PKI
  • Ability to provide guidance on DoD Cyber/IA regulations and requirements to customers, program management, and the program engineering staff
93

Information Assurance Engineer Resume Examples & Samples

  • Enforce the Army IA security and training program. Ensure all users have completed the mandated awareness training as required. Maintain IA training and certification records for all personnel. A monthly training compliance report will be delivered to the IA branch chief on the last business day of each month
  • Enforce Information Assurance Vulnerability Management (IAVM) dissemination, reporting, compliance, and verification procedures as described in regulations, policies, and Army Best Business Practices. IAVA compliance will be measured against metrics included in scorecard reporting
  • Complete all scorecard reporting requirements. Scorecard reporting is to be delivered to the IA branch chief no later than 3 working days before scorecard due date
  • Report security violations and incidents to the servicing RCERT in accordance with Incident and Intrusion Response policy. At a minimum, an executive summary for all incidents must be completed no later than 24 hours after IA has been notified of an incident
  • Prepare the institute for IT security inspections, assessments, tests, and reviews using available Army approved products, checklists, and programs. Assessment reports regarding IA readiness for any inspection will be delivered to the IA branch chief as needed prior to inspections, assessments, tests, or reviews
  • Verify that all ISs within the scope of responsibility are properly certified and accredited in accordance with DIACAP and CM policies and practices before operating or authorizing the use of hardware and software on an IS or network
  • Maintain a repository for all systems Assessment and Authorization (A&A) documentation and modifications, version control, and management of GOTS, COTS, and non-developmental items (NDIs) for USAMRIID. Conduct semi-annual reviews of all ISs and networks to ensure no security changes have been made to invalidate the Authorization to Operate (ATO). Review all IA ATO support documentation packages and system fielding, operations, or upgrades requirements to ensure accuracy and completeness, and that they meet minimal risk acceptance standards. Results and recommendations resulting from the semi-annual review will be delivered to the IA branch chief
  • Conduct risk assessment for all incoming systems (major IT systems) and make recommendations regarding additional protection mechanisms necessary prior to operation of the incoming ISs
  • Maintain baseline and computing environment certifications based on current Army Training best business practice. Contractor is responsible for all certification related maintenance fees and costs
  • Submit and track all software Certificate of Networthiness (CoN) submissions. Report CoN status for required scorecard reporting as needed
  • Implement and maintain all locally required IA guidance, policies, procedures, and regulations. Annual review of policies and revise as needed. Submit report of annual review to IA branch chief
  • Ensure that IA personnel are maintaining and auditing access and log data using approved and available tools. Audit logs will be reviewed weekly
  • Assist, support, and report to USAMRMC and NEC IAMs as directed by the IA branch chief
  • Provide IA security guidance to Help Desk and Technicians as needed
  • The contractor will ensure that 100% of USAMRIID users have completed CURRENT training requirements for Cyber Security, as defined in AR25-2. The contractor will use the Army Training and Certification Tracking System (ATCTS) to record IA training status of all USAMRIID personnel. Contractor will ensure that personnel are notified prior to expiration of training. Contractor will ensure that personnel have the necessary system access to complete training in a timely manner
  • Provide administrative support to USAMRIID Security manager during events that involve cyber security threats or attacks
  • Report security violations and incidents to the USAMRIID Chief Information Officer (CIO) in accordance with regulations and policies
  • Perform Personal Information Assessments (PIA) as needed to ensure that no Personally Identifiable Information (PII) is at risk in any systems
  • Provide on-call support during non-business hours
  • Positively adjudicated SSBI-SF86 investigation
94

Enterprise Scripting Information Assurance Engineer Resume Examples & Samples

  • Establish and execute scripts, plans and executes strategies to comply with the approximately 40 Cyber tasking orders monthly
  • Establish and execute scripts, plans and executes strategies to remediate the approximately 240,000 vulnerabilities (on average) across the 25,000 workstations and 800 servers in AFRC
  • Educate and facilitate vulnerability management with PMO and non-PMO system owners to include sharing and executing scripts, if requested
  • Design and execute other methods, as required, to facilitate vulnerability management
  • Ensure NIPR/SIPR CAT vulnerabilities for each assigned server does not exceed AFRC, AF, DISA, or DoD vulnerability thresholds; must be <2.49 vulnerabilities per each assigned server
  • Server administrators will implement AF Maintenance Tasking Orders (MTOs), TCNOs, and CCOs by established deadlines with 95% compliance for MTOs; 100% compliance for TCNOs and CCOs. All non-compliant MTOs will be corrected within 5 days
  • Comply with CCRI evaluation criteria [e.g., STIGs and Computer Network Defense (CND) Directives] include these overarching categories
95

Senior Information Assurance Engineer Resume Examples & Samples

  • Support the Risk Management Framework (RMF) process, including reviewing RMF artifacts, working with information providers to secure systems, and recommending authorization to operate decisions
  • Bachelor’s Degree in Computer Engineering, Computer Science, Electrical Engineering, Information Systems, Information Technology, or a closely related Engineering or IT discipline
  • 2 years’ experience with RMF process
  • Information Assurance Policy, Governance and Strategic Planning
  • IT and Information Security experience to support Information Security and Information Technology proposals
  • Risk Assessments
  • Experience with FISMA compliance of all the IC elements and the development and delivery of the FISMA reports
  • Experiencing leading IC in collaborative work with to develop IA metrics such as FISMA
  • Policy SME for the inter-relationship of DNI, DOD, and Federal Cyber Authorities
  • Experience developing risk scoring and security assessment methodologies to assess the security posture of IC network and systems
  • Certified Information Systems Security Professional (CISSP) Required
  • ITIL Foundations - Desired
96

Information Assurance Engineer, Senior Resume Examples & Samples

  • Career level with a complete understanding and wide application of technical principles, theories and concepts. Working under only general direction, provides technical solutions to a wide range of difficult problems. Independently determines and develops approach to solutions. Bachelors (or equivalent) with 5 - 7 yrs of experience, or a Masters and 3 to 5 yrs of experience
  • Must have experience in DoD or US Navy Information Assurance policies and procedures
  • US Citizenship required. An active secret level clearance is required
97

Information Assurance Engineer Resume Examples & Samples

  • Five (5) years of demonstrated experience in all of the following
  • Utilizing DoD host-based security products (e.g., McAfee ePolicy Orchestrator, Symantec End Point Protection)
  • Security log analysis
  • Testing and analysis of IA controls and secure configuration using the Assured Compliance Assessment Solution (ACAS)
  • Three (3) years of demonstrated experience in all of the following
  • Policy development and enforcement, as well as auditing and Certification and Accreditation (C&A) processes
  • Development of C&A artifacts
  • Secure system configuration per DISA STIG using STIGviewer, SCAP Compliance Checker, and Open SCAP
  • Demonstrated knowledge of Database maintenance and MS Windows PowerShell or other scripting languages
  • Demonstrated knowledge of DIACAP (for GENSER systems), National Institute of Standards & Technology (NIST) SP 800-53 (forUnclassified systems), Department of Defense Instruction (DoDI) 8500.01 – DIACAP or RMF
98

Information Assurance Engineer Senior Manager Resume Examples & Samples

  • CISSP - Certified Information Systems Security Professional (minimum IASEA Level II)
  • CISM - Certified Information Security Manager
  • CPTE – Certified Penetration Testing Engineer
  • CISA - Certified Information Systems Auditor
  • CRISC - Certified in Risk and Information Systems Control
  • CEPT – Certified Expert Penetration Tester
  • Information Technology Infrastructure Library (ITIL)v3 Founda¬tion
  • Project Management Professional (PMP®)
99

Information Assurance Engineer Senior Resume Examples & Samples

  • ITIL Program Experience – Foundation or better
  • Experience with security test tools (e.g. Nessus, Web Inspect), enterprise configuration management tools (e.g. SPLUNK, Big Fix, SCCM, SPDR), enterprise security services (e.g. IDS, log aggregation, credential management, PKI)
  • Experience with Windows administration including Active Directory
  • Experience with Linux and/or Unix administration
  • Familiarity with cloud computing and applicable security practices (e.g. FedRAMP)
  • Experience with ATF or DOJ
  • Ability to recognize security risks, document risk, and clearly communicate findings and recommendations
  • Experience supporting Incident Response events
  • Experience supporting review and certification of Physical Security elements of a facility
100

Cyber Information Assurance Engineer Resume Examples & Samples

  • Provide technical security engineering direction and support for projects involving software/hardware/network systems
  • Perform in depth reviews of proposed network changes and change documentation to ensure cybersecurity and engineering requirements are being met
  • Oversee and manage vulnerability remediation efforts from identification to completion
  • Full grasp of infrastructure design with a focus on implementing new technologies within STIG compliance
  • Implement cybersecurity technology during implementation of new technologies and tools like cloud services, enterprise applications, etc
  • Attend and lead complex technical interchanges with Government and Contract customers regarding cybersecurity issues
  • Complete reviews of Windows and Linux systems to include patch management activities and audit log reviews to ensure normal maintenance functions are performing properly
  • Bachelor's Degree in STEM (Science, Technology, Engineering, Math) discipline and 15 years relevant work experience
  • Must be able to work within DISA sponsored tools such as eMASS and STIG Viewer
  • Technical skills related to cybersecurity tools like HBSS and ACAS, Windows Operating Systems, Red Hat Enterprise Linux
  • Must possess significant knowledge of Security Technical Implementation
  • Knowledge of intrusion detection and firewall system architecture and management with the ability to document current structure for potential upgrades and accreditation
101

Information Assurance Engineer Resume Examples & Samples

  • � Administer and support the Company�s privilege management program and technologies
  • � Identify, track and remediate Windows-based security and compliance issues
  • � Consult with other IT teams on secure implementation procedures for our Windows environment
  • � Conduct cyber security gap analysis assessments against industry standards, applicable regulations, and best practices
  • � Assist in assessing, measuring, evaluating, and improving the Company�s readiness to deal with cyber security and compliance risks
  • � Identify and evaluate: 1) business and technology risks, 2) internal controls which mitigate risks, and 3) methods and technologies to improve the internal control environment
  • � Member of Incident Response Support Teams
  • � A Bachelor Degree in Computer Science, Computer Engineering, Management Information Systems, or related field
  • � 3+ years experience in Windows administration and/or security
  • � 2+ years recent experience with one or more scripting languages: perl, python, PowerShell
  • � Demonstrated experience with GPO, SCCM and SCOM
  • � Excellent written and dynamic verbal communication skills
  • � Strong analytical and technical skills
  • � Demonstrated understanding of control objectives, cyber threats and vulnerabilities
  • � Must be flexible and able to handle stressful situations in a professional manner
  • � Demonstrated ability to work under minimal supervision
  • � High degree of self-motivation, commitment and integrity
  • � Ability to work well with others and as a member of a team
  • � No BAPT required
102

Information Assurance Engineer Resume Examples & Samples

  • *This position is contingent on contract award***
  • Perform high-level systems analysis, evaluation, design, integration, documentation, and implementation of complex applications that require athorough knowledge of administrative and technical skills
  • Participate in all phases of system development, to include planning, analysis, evaluation, integration, testing, acceptance, and operations phases
  • Develop information systems assurance programs and control guidelines
  • Confer with and advise subordinates on administrative policies and procedures and resolving technicalproblems, priorities, and methods
  • Consult with and advise other personnel regarding internal controls and security procedures
  • Prepare activity and progress reports relating to the information systems audit function
  • Design and prepare technical reports and related documentation, and makes charts and graphs to record results
  • Prepare and deliver presentations and briefings
  • Provide technical and analytical guidance to the integration team
  • Integrate and translate complex concepts into tactical action plans
  • Contribute cyber engineering knowledge in improving the security architecture
  • Must be a US Citizen with an active Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance
  • Strong understanding of security design and requirements
  • Knowledge of Information Assurance (IA) and Information Operations technologies and development activities
  • Understanding of the processes and guidelines for Certifyingand Accrediting (C&A) information systems based upon experience on a large-scale development program
  • Experience with Risk Management Framework (RMF), DIACAP and other Government security frameworks
  • Possess or able to quickly develop a comprehensive understanding of Government Information Security policies, regulations, and guidelines
  • Insider Threat Monitoring
  • Vulnerability Assessment testing
  • Experience with cyber operations, development, integration, sustainment and fielding projects and programs for U.S. Government and/or commercial clients
  • Experience with process development and deployment
  • Experience with theNational Institute of Standards and Technology (NIST) Risk Management Framework and DoDI 8510.01 Risk Management Framework (RMF) for DoD Information Technology (IT), or ICD 503
  • Experience working on Department of Homeland Security (DHS) Programs
  • Experience with DHS Standard DHS 4300A, B, C or equivalent
  • Experience with USG cypto standards
  • Experience with prototyping innovative cyber security technologies
  • BS Cyber Engineering, Systems Engineering, Engineering Management, Computer Systems Engineering, or related degree and at least six (6+) years related experience (MS desired). Two years of additional related work experience may be substituted for each year of degree level education
  • DOD 8570.01-M Compliance at IAT Level II or IAT Level III
103

Information Assurance Engineer / rmf Lead Resume Examples & Samples

  • DoD 8570.1M IAM level 2 is required (i.e., CISSP)
  • Resource must have a minimum of 8 years of experience in CyberSecurity
  • Resource will act as the ISSO for hosted systems, assuming the responsibilities as outlined in AR 25-2
  • Resource will update and/or assist the hosted system's personnel in updating artifacts of the accreditation package and store the artifacts in organizationally defined repository; i.e., system diagram (logical and physical) Hardware/Software/Firmware Inventory, Interface & Ports, Protocols and Services listing, etc
  • Resource will assist in the preparation of network infrastructure specifications or designs incorporating required information security features
  • Resource will review and evaluate Information Systems Design Plans, Continuity of Operation Plans, Communication Plans, engineering change proposals and configuration changes for compliance with relevant security regulations, policies, and best industry practice
  • Experience with Amazon Web Services is desired
  • DoD 8570.1M IAM level II certification is required
104

Information Assurance Engineer Resume Examples & Samples

  • Performs high-level systemsanalysis, evaluation, design, integration, documentation, and implementation ofcomplex applications that require a thorough knowledge of administrative andtechnical skills
  • Participating in all phases ofsystem development, to include planning, analysis, evaluation, integration,testing, acceptance, and operations phases
  • Develops information systemsassurance programs and control guidelines
  • Confers with and advisessubordinates on administrative policies and procedures and resolving technicalproblems, priorities, and methods
  • Consults with and advises otherpersonnel regarding internal controls and security procedures
  • Prepares activity and progressreports relating to the information systems audit function
  • Designs and prepares technicalreports and related documentation, and makes charts and graphs to recordresults
  • Preparing and deliveringpresentations and briefings
  • Provides technical and analyticalguidance to the integration team
  • Integrates and translates complexconcepts into tactical action plans
  • Contributes cyber engineeringknowledge in improving the security architecture
  • Must be a US Citizen
  • Must have active TopSecret/Sensitive Compartmented Information (TS/SCI) security clearance
  • Experience implementing cyber security for complex hardware, software, andnetwork infrastructures
  • Strongunderstanding of security design and requirements
  • Knowledge of Information Assurance and Information Operations technologies anddevelopment activities
  • Understanding of the processes and guidelines for Authenticating &Accrediting information systems based upon experience on a large-scale developmentprogram
  • Possesses or quickly develop a comprehensive understanding of GovernmentInformation Security policies, regulations, and guidelines
  • Experience integrating complexhardware and software systems
  • 4+ years directly relevant experience
  • Proficiency with MS OfficeApplications
  • Must be able to workcollaboratively across agencies and physical locations
  • Must work well in a team environment as well as independently
  • Must exhibit good time management skills, independent decision makingcapability; focus on customer service
  • Experience with three or more ofthe following
  • Operating System Hardening
  • Identification and Authenticationschemes
  • Public Key Infrastructure andIdentity Management
  • COMSEC System Management
  • Excellent communication andinterpersonal skills
  • Experience with cyber operations,development, integration, sustainment and fielding projects and programs forU.S. Government and/or commercial clients
  • Existing DHS Suitability
  • Experience with regulatorycompliance, policy development, and policy enforcement
  • Experience withprocess development and deployment
  • Experience working inan agile development environment
  • Experience with theNational Institute of Standards and Technology (NIST) Risk Management Frameworkand DoDI 8510.01 Risk Management Framework (RMF) for DoD Information Technology(IT), or ICD 503
  • Experience with FISMAcontrols
  • Experience working onDepartment of Homeland Security (DHS) Programs
  • Experience with DHSStandard DHS 4300A, B, C or equivalent
  • Experience withEINSTEIN 3 Accelerated (E3A)
  • Experience with USGcypto standards
  • Experience withprototyping innovative cyber security technologies
  • 4 yrs. BS/BA in Cyber Engineering, Systems Engineering, Engineering Management,Computer Systems Engineering, or 2 yrs. with MS/MA in Cyber Engineering,Systems Engineering, Engineering Management, Computer Systems Engineering, or 0years with PhD in Cyber Engineering, Systems Engineering, EngineeringManagement, Computer Systems Engineering. Two years of related work experiencemay be substituted for each year of degree level education
105

Information Assurance Engineer / rmf Lead Resume Examples & Samples

  • Act as the ISSO for hosted systems, assuming the responsibilities as outlined in AR 25-2
  • Assist hosted customer in obtaining and maintaining Risk Management Framework (RMF) for DOD IT, DIACAP, and other certifications as required
  • Update and/or assist the hosted system's personnel in updating artifacts of the accreditation package and store the artifacts in organizationally defined repository; i.e., system diagram (logical and physical) Hardware/Software/Firmware Inventory, Interface & Ports, Protocols and Services listing, etc
  • Assist in the preparation of network infrastructure specifications or designs incorporating required information security features
  • Review and evaluate Information Systems Design Plans, Continuity of Operation Plans, Communication Plans, engineering change proposals and configuration changes for compliance with relevant security regulations, policies, and best industry practice
  • Work is located in Fort Belvoir, VA
  • 1 year of hands-on experience working with Risk Management Framework (RMF)
  • Experience with Amazon Web Services
106

Information Assurance Engineer Resume Examples & Samples

  • Provide technical expertise on information security technologies and concepts
  • Participate in the design, build and maintenance of information security systems
  • Monitor computer and network systems for suspicious behavior
  • Pro-actively identify and resolve system vulnerabilities
  • Ability to analyze and design system architectures addressing issues related to security controls
  • Manage adherence to defined standards throughout the design, development and implementation processes for security technologies and models
  • Bachelors and Five (5) years experience. Four additional years of experience may be considered in lieu of a degree
  • Design and implement security controls
  • Recommend changes to information security standards and system baselines as technology changes
  • Design security controls to meet policy and standard requirements
  • Conduct and lead internal security reviews and assessments
  • Provide thought leadership in development and governance of standards and guidelines around all aspects of information security
  • Maintain extensive knowledge of industry trends, and utilizes this knowledge to educate leadership and team members on opportunities to build better target cyber solutions
  • Demonstrate deep knowledge of a wide variety of technology discipline
107

Senior Information Assurance Engineer Resume Examples & Samples

  • Knowledge of RMF Assessment & Authorization activities
  • DoD 8570 experience
  • CISSP, CISM, or GSLC Certification
108

Senior Information Assurance Engineer Resume Examples & Samples

  • Experience with systems and/or software engineering development
  • Demonstrated personal interest in Information Assurance (IA) and/or Security
  • Knowledge/Experience of C&A policies, standards, and processes
  • Familiarity with design and development of Trusted Computing Base (TCB)
  • Ability to present complex concepts in a clear and concise manner to a wide
  • Knowledge fundamental configuration management principles and ability to
109

Jdiss Information Assurance Engineer Resume Examples & Samples

  • HS Diploma
  • 4 years of directly related system level UNIX or Windows IT system support experience
  • Familiar with ICD 503 or NIST Risk Management Frameworks
  • Understand how to build a body of evidence to support system accreditation including System Security Plans and IA Controls
  • Top Secret clearance, based upon a SSBI, current within the past five (5) years
  • Ability to achieve CompTIA Security+ certification
  • Bachelor’s Degree in Computer Science or a related technical discipline
  • 3 years of directly related JDISS product support experience
  • Software development for Windows or UNIX systems
  • SQL-based system experience
  • Experience using DISA ACAS, SRR, Gold, SECSN, WAASP, and/or Retina
  • Experience with NIST, FISMA, DIACAP, and/or CAG
  • Experience with IAVAs and Patch Repositories: DoD, Retina, McAfee, Symantec, Red Hat, Oracle and Microsoft
  • Experience testing systems and components and work flow management
  • Experience producing/maintaining SSAAs, SSPs, Test Plans, Matrixs, Test Reports, and other supporting artifacts
  • CISSP, GIAC, GSEC, and CCNA certifications
110

Information Assurance Engineer Resume Examples & Samples

  • Implement Information Assurance (IA) processes, provide guidance, and develop documentation throughout the system development life-cycle. Draft briefings, timelines, and design reviews for system development in accordance with prevailing IA regulations and policies
  • Draft and review documentation for all phases of the security authorization process, for Certification and Accreditation (C&A), required for program initiatives to receive Authorization(s) To Operate (ATO)s, Interim ATOs (IATO)s, Interim Authority To Test (IATT), and Certificates of Networthiness (CON) fro systems that reside on NSANET, NIPRNET, SIPRNET, and JWICS networks
  • Evaluate hardware design, operating systems, and software applications proposed for programs to ensure that each adequately address IA security requirements and provide confidentiality, integrity, availability, authentication, and non-repudiation. Ensure program system designs properly mitigate identified threats/vulnerabilities and facilitate test and evaluation activities to validate as such
  • Be knowledgeable in IA policy to include AR 25-2 Information Assurance, DoDI 8510.01, DoD Information Assurance Certification and Accreditation Process (DIACAP), Director of Central Intelligence Directive (DCID 6/3), USCENTCOM 25-28 process, and DISA Security Technical Implementation Guides (STIG) and shall keep pace with changing policies and mandates
  • Coordinate with government Information System Security Officer (ISSO) on preparation of the Security Authorization and Information System Continuous Monitoring package
  • Manage Plan of Action and Milestones (POAMs) and identify, analyze, and propose risk mitigation strategies to facilitate efficient risk mitigation and closure
  • Assess and continuously monitor the effectiveness of mitigation strategies
  • Review systems security documentation in order to identify potential security weaknesses, recommend improvements to address vulnerabilities, implement changes and document security relevant changes
  • Provide advice and guidance on the application of FISMA requirements for cloud computing
  • Maintain system asset records in Xacta, to include development of system security controls, development and updates to the System Security Plan (SSP), and creation of a Certification Test Plan (CTP)
  • Perform vulnerability and compliance scanning on a monthly basis
  • Review vulnerability scan results and facilitate the resolution of all high and medium vulnerabilities in a timely manner
  • Run and review CIS hardening compliance scans and ensure system compliance with the clients baselines; work with system and database administrators to resolve discrepancies
  • Assess project issues and develop innovative solutions to meet productivity, quality, and client-satisfaction goals and objectives
  • Develop mechanisms for monitoring project progress and for intervention and problem solving with project and operations managers and system engineers
  • Must have and maintain an Active TOP SECRET/SCI clearance
  • Bachelor’s degree in computer science, computer engineering, network security, or equivalent experience, significant domain knowledge and customer intimacy
  • Minimum of 8 years of experience in security engineering, information security, programming or equivalent experience
  • Experience with tools such as Splunk, Cenzic, Foundstone, Cenzic, Rapid7, Tripwire, Bladelogic (or comparable tools)
  • Experience working with NIST Special Publications and A & A process methodology
  • Master's degree in pertinent field preferred
  • Army background is preferred
  • Knowledge of IC functional manager’s organizations, roles and responsibilities within the current customer intelligence community
111

Senior Information Assurance Engineer Resume Examples & Samples

  • Background in Systems Engineering with emphasis on cyber security
  • Bachelor’s degree in Computer Science (or similar technical field) and 10+ years relevant professional experience; or commensurate education and experience
  • Experience with configuring, hardening and vulnerability assessment of Windows servers and workstations
  • Experience with configuring, hardening and vulnerability assessment of Network products such as Routers, Switches and Firewalls (CISCO, Juniper)
  • Experience with security assessment and authorization activities required for Federal information systems
  • Experience using security tools such as Nessus/ACAS, STIGs, McAfee, HP WebInspect, Solarwinds Event Manager, and Solarwinds patching tool
  • Experience with the design, implementation, and operation of Intrusion Detection Monitoring systems, sensors, and security taps
  • Experience with the design, implementation, and operation of Host Based Security Systems
  • DoDI 8570 IAT or IAM Level 3 compliant professional certification (i.e. CISSP, CISM, GSLC, GCIH, CISA, GCED, or SCNA)
  • Strong knowledge of the SPLUNK SIEM system, Gigamon monitoring taps, and Palo Alto Firewall systems
  • Ability to generate documentation that describes standard operating procedures, which will be used by operational support personnel
  • Previous experience supporting a Government and/or Department of Defense customer supporting multiple domain classifications
  • Solid written and verbal communication skills in a cybersecurity setting
  • Experience with application of DoD IAVAs and STIGs
  • Strong investigative drive and listening skills, self-motivated individuals
  • The ability to work under pressure and be flexible with their time to include off hours support actions during weekends
112

Senior Information Assurance Engineer Resume Examples & Samples

  • Document the results of Certification and Accreditation activities and technical or coordination activity and prepare the
  • Create plans and schedules for the Certification and Accreditation
  • Work closely with other DoD cyber security organizations
  • Interface with system administrators, maintaining system compliance with DoD security requirements
  • Deploy, manage, and operate scalable, highly available, and fault tolerant systems in a cloud environment
  • Migrate existing on-premises applications to a cloud environment
  • Implement and control the flow of data to and from the cloud
  • Participate in the selection of the appropriate cloud service based on compute, data, or security requirements
  • Identify appropriate use of cloud operational best practices
  • Estimate cloud usage costs and identifying operational cost control mechanisms
  • Basic Qualifi cations:- Bachelor's Degree and a minimum of 8 years of relevant experience
  • Working experience utilizing DISA STIGs
  • Must have experience with Certification & Accreditation under a DIACAP/RMF process to include authorize, monitor,
  • Systems administration experience with RedHat, Linux, or Windows operating systems
  • Experience with DoD Information Assurance systems: HBSS, ACAS, eMass
  • DoD Security Clearance
113

Senior Information Assurance Engineer Resume Examples & Samples

  • DOD 8570 Experience
  • A&A Package Development (RMF)
  • Experience with RHEL
  • Ability to provide guidance on DoD Cyber regulations and requirements to engineering and software development staff
114

Information Assurance Engineer, Senior Resume Examples & Samples

  • Design, development, implementation, and support of IA solutions for Navy C4ISR systems
  • Navy C4ISR systems and networks, and an understanding of Transport Control Protocol/Internet Protocol (TCP/IP) networks
  • Navy C4ISR systems and networks, and an understanding of Asynchronous Transfer Mode (ATM) networks
  • DIACAP and Risk Management Framework (RMF) processes as mandated by the Office of the Designated Approving Authority (ODAA) is required
115

Information Assurance Engineer, Senior Resume Examples & Samples

  • 5+ years of experience with C&A or A&A processes for either NIST or DoD
  • Experience with eMASS
  • Knowledge of NIST special publications, CNSS policies, DoD guidance and instructions, and other requirements documents associated with the RMF
  • Ability to act independently, prioritize tasks, and manage a schedule
  • Ability to work as part of a team in a fast–paced client environment
  • 01M Compliant IASAE III Certification, including CISSP-ISSAP or CISSP-ISSEP
  • Experience with developing the RAR, RAR Executive Summary, SAP, System Categorization form, SAR, or SAR Executive Summary
  • Experience with Retina, ACAS, or STIGs
  • Experience with current RMF or DIACAP DoD Cybersecurity and Acquisition policies
  • Experience with the performance of Risk Management Framework (RMF) steps execution, including the generation of documentation, controls compliance testing, and continuous monitoring and controls validation activities
  • Experience with supporting the US Navy
  • BA or BS degree in IT or Engineering
116

Information Assurance Engineer Resume Examples & Samples

  • Perform tasks associated with safeguarding customer's information systems with focus on risk analysis, and Federal and Agency policy compliance by conducting Information Assurance (lA) security assessments, performing a risk assessment for each Information System and providing authorization recommendations for information systems including: Operational Authority to Test (OATT), Approval to Proceed (ATP), Authority to Connect (ATC), & Authority to Operate (ATO)
  • Support the DoD Certification and Accreditation process as described in DoD Information Assurance Certification and Accreditation Process (DIACAP) or any replacement process (such as the Risk Management Framework) and be responsible for ensuring required IA artifacts are present in eMASS and any other data stores associated with IA; Support the maintenance and revision of documentation needed for the C&A process
  • Maintain the security posture and accreditation boundary documentation for Forge.mil systems on DoD Classified (SIPRNet) and Unclassified (NIPRNet) networks
  • Prepare and submit Plan Of Action & Milestone (POA&Ms) as required and manage open findings to closure
  • Publish and distribute Notifications which address major information security threats, i.e. hacking, malicious activity, damaging vulnerabilities with exploits in the wild, Trojans, Worms, and Viruses
  • Report information security Events and Incidents to appropriate internal and external agency authorities
  • Develop security architectures, and engineering system specifications
  • Conduct research pertaining to the latest viruses, worms, etc. and the latest technological advances in combating unauthorized access to information
  • Advise the government community of best security practices, as necessary
  • Provide input to draft InfoSec policies
  • Information Assurance Management
  • Code scanning tools such as ACAS (Nessus), SonarQube, etc
  • Risk Management Framework (RMF) process
  • Security Technical Implementation Guides, IAVMs, CTOs, etc
  • Service Oriented Architecture (SOA)
  • Source Code Security
  • Agile Software Development methodology
  • Expert professional knowledge and experience of information systems security policies and practices, computer science, state-of-the-art security tools and applications, and a thorough knowledge of IT
  • Knowledge of DoD system security control requirements
  • Knowledge of security technical implementation guides, IAVMs, CTOs, etc
  • Knowledge of the DoD Information Assurance Certification and Accreditation Process (DIACAP)
  • Knowledge of Risk Management Framework (RMF) process
  • Knowledge and experience with Vulnerability Management System and eMass
117

Lead Information Assurance Engineer Resume Examples & Samples

  • Develop and maintain IT infrastructure security documentation
  • Maintain Information Assurance Accreditations (e.g., Authorization to Operate (ATO)
  • Maintain operational and situational awareness through the continued monitoring of the IT infrastructure and conduct reviews of IT infrastructure security scans
  • Identify and report IT infrastructure security event, notifications, and deficiencies to the Government
  • Provide IT infrastructure security vulnerability management support to the SOC
  • Evaluate and validate that all changes to the IT infrastructure comply with Government security controls, processes, and procedures
  • Deploy and maintain guards and gateways, e.g., firewalls, intrusion detection systems to monitor, prevent, detect, respond, report, and correct the unauthorized release of unclassified and classified data
  • In coordination with the Government, determination of the schedule for deploying Information Assurance and Vulnerability Alerts (IAVAs), patches, and service packs
  • Support program reviews and briefings; identify and report on issues or related problems and potential risks
  • Maintain currency on IA/security tools and technologies and provide inputs for white papers and proposals
  • Active TOP SECRET (TS) security clearance
  • Bachelor’s degree and 12 years of prior relevant experience
  • 5 years of experience supervising or leading teams or projects
  • Active Information Assurance Management (IAM), Level II, DoD 8570.01 Manual Certification
  • Experience securing IT systems and services to Government and industry Information Assurance standards, policies, guidelines, and best practices
  • Experience actively managing IT systems and services operations to maintain confidentiality, integrity, and availability
  • Experience with the Risk Management Framework (RMF) and DoD or DHS certification and accreditation security controls, procedures, and policies
  • Experience with Information Security Vulnerability Management (ISVM) and Plan of Actions and Milestones (POA&Ms)
  • Experience identifying security risks and develop and apply security risk mitigation strategies
  • Knowledge and experience with Type 1 encryption devices and procedures as they relate to classified networks
  • Demonstrated written and oral communication skills, including experience in presenting material to senior Government officials and communicating and coordinating with other Government contractors and industry
118

Information Assurance Engineer Resume Examples & Samples

  • CompTIA Advanced Security Practitioner (CASP)
  • Computer Information Security Manager (CISM)
  • Certified Information Systems Security Professional (CISSP)
  • Generalized Sidelobe Canceller (GSLC)
119

Information Assurance Engineer Resume Examples & Samples

  • Bachelors degree from an accredited college in a related discipline, or equivalent experience/combined education, with 4-8 years of professional experience. 4+ years of additional related years of experience is accepted in lieu of a degree; or 9+ years of professional experience with a related Masters degree
  • Knowledge of IA concepts, practices, and procedures
  • Experience developing Plan(s) of Action and Milestones (POA&M) as needed to correct any weakness or deficiencies in the security controls
  • Familiar with latest Security Technical Implementation Guides (STIGS), to include the latest approved upgrades and patches are applied Experience performing security assessments
  • Experience addressing residual vulnerabilities in the application, software, hardware, or system
  • Experience with eMASS Experience with DoD Risk Management Framework (RMF) or DOD Information Assurance Certification and Accreditation Process (DIACAP), certification and accreditation (C&A) processes that support the net-centric, Global Information Grid (GIG)-based environment
  • Computer Security Awareness & Training (CSAT)
  • Computer Security Incident Response Information, System, Data, & Physical Security
  • Automated Information Security Support Security Architecture Design
  • Remote Monitoring/ Intrusion Detection Security Hardening