Information System Security Engineer (ISSE) – Risk Management Framework (RMF), AWS, ACAS, Splunk
Indexed description
Applied Research Associates, Inc. (ARA) is looking for a bright, motivated, and energetic individual who embraces our core values of Passion, Freedom, Service, and Growth! As an Information System Security Engineer, you will participate in a dynamic team to develop, test, and validate Department of Defense (DoD) Risk Management Framework (RMF) security controls across cloud environments. You will also be offered learning opportunities that will help you grow your technical and professional skills and allow you to pursue the work you are passionate about.
What you’ll do as an Information System Security Engineer:
- Work alongside system administrators, software developers, and customers to identify and remediate cybersecurity vulnerabilities
- Become responsible for managing tools such as Assured Compliance Assessment Solution (ACAS), Splunk, Microsoft Defender, and Clam AV to monitor system health, assess security compliance, and investigate findings
- Apply Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIG), security best practices, and configuration management processes to harden systems and maintain compliance with DoD cybersecurity requirements
- US citizenship (Selected applicants will undergo a security investigation and must meet eligibility requirements at the time of employment)
- Active DoD Secret Clearance (At the time of hire)
- BS or higher in Cybersecurity, Computer Science, Information Technology, Engineering, Applied Mathematics, or a closely related field
- 2-4 years of relevant work experience with a bachelor’s degree, or 0-2 years of relevant work experience with a master’s degree
- Excellent communication, documentation, and collaboration skills
- Ability to work onsite 3 days per week in Raleigh, NC or San Antonio, TX
- Relevant AWS Certification
- CompTIA Security +
- Experience supporting or implementing the DoD RMF
- Experience with ACAS and other vulnerability scanners
- Experience using security monitoring and endpoint protection tools such as Splunk, Microsoft Defender, and Clam AV
- Experience applying DISA STIGs and Security Requirement Guides (SRGs)
- Experience identifying, prioritizing, and remediating operating system, application, and infrastructure vulnerabilities
- Familiarity with continuous monitoring, vulnerability management, and security compliance processes
- Experience with cloud platforms such as AWS or Azure
- Experience with Infrastructure as Code (IaC) and/or Configuration as Code (CaC) tools such as Terraform, Salt, or Ansible
- Familiarity with Windows and Linux systems administration
ARA also prides itself, on having a challenging culture where innovation & experimentation are the norm. The motto, “Engineering and Science for Fun and Profit” sums up the ARA experience. Employee ownership ensures you have a voice in what happens in the company. We are also very proud of our Women’s Initiative Network (WIN), whose purpose is to motivate, support, and encourage professional career development for women to maximize career and professional accomplishments.
To find out more about what the Software Enterprise Division has to offer, visit our website at: https://www.ara.com/benefits/
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search