ECS is seeking a Mid-level SIEM Engineer to work in our Washginton, DCoffice.
ECS Federal is a leading information security and information technology company in Washington DC. We are looking to hire a Mid Security Engineer to support a full range of cyber security services on a long-term contract. The position is full-time/permanent and will support a US Government civilian agency. The position is available immediately upon finding a qualified candidate with the appropriate background clearance.
Position Responsibilities:
- Designhardware, operatingsystems, andsoftwareapplicationstoadequately addresscybersecurity requirements.
- Design and develop cybersecurity or cybersecurity-enabled products.
- Developanddirectsystemtestingandvalidationproceduresand documentation.
- Develop dashboardingcapabilities,utilizingthe enterpriseSIEMandEnterpriseGovernance Risk and Compliance (eGRC) solution, for the ISSO’s to perform real time monitoring of Agency information systems
- Develop detailedsecurity designdocumentationforcomponentandinterface specificationstosupport system design and development.
- Implementsecuritydesignsforneworexistingsystem(s).
- Incorporatecybersecurity vulnerabilitysolutionsintosystemdesigns(e.g.,CybersecurityVulnerability Alerts).
- CreateandtrackmetricsusingthedashboardintheSIEM/eGRCsolution
- Design,implement,test,andevaluatesecureinterfaces betweeninformationsystems,physical systems, and/or embedded technologies.
- Design,develop,integrate, andupdatesystemsecuritymeasuresthatprovideconfidentiality,integrity, availability, authentication, and non-repudiation.
- Performsecurityreviewsandidentifysecuritygapsinarchitecture.
- Tracesystemrequirementstodesigncomponentsandperformgap analysis.
- Verifystability,interoperability,portability,and/orscalabilityofsystemarchitecture.
Salary Range: $108,000- $125,000
General Description of Benefits
- Strong written and verbal communication skills.
- Knowledge of secure configuration management techniques. (e.g., Security Technical Implementation Guides (STIGs), cybersecurity best practices on cisecurity.org).
- Knowledge of CRIBL.
- Knowledge of software development models (e.g., Waterfall Model, Spiral Model).
- Knowledge of software engineering.
- Knowledge of structured analysis principles and methods.
- Experience designing architectures and frameworks.
- Knowledge of system design tools, methods, and techniques, including automated systems analysis and design tools.
- Knowledge of the systems engineering process.
- Knowledge of Supply Chain Risk Management Practices (NIST SP 800-161)
- Knowledge of critical infrastructure systems with information communication technology that were designed without system security considerations.
- Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense-in-depth).
- Knowledge of network systems management principles, models, methods (e.g., end-to-end systems performance monitoring), and tools.
- ExperiencewithWindows,Linux,UNIX,anyothermajoroperatingsystems
- ExperiencewithprogramminginPython,C,Java,Perl,Shelland/orbashshellscripting.
- FamiliaritywithRESTAPIbestpracticesandusage
- Familiarity withsecuritytechnologies(firewalls,IDS/IPS,AV,etc.)andotherSIEMproducts
Certifications/Licenses:
- 5+ years’experiencesecurityengineeringexperienceandSIEM (securityincidentandevent monitoring) administration, deployment, and/or architectural design
- Certifications addressingsecurity and risk management, asset security, security engineering, communications and networksecurity,identity andaccess management,security assessment and testing,security operations,softwaredevelopmentsecurity,systemsecurity, networkinfrastructure
- ActivePublicTrustclearanceoreligibletoobtainaPublicTrustclearance