Cybersecurity Engineer

1 month ago


Springfield, United States USAJobs Full time
Duties

ADDITIONAL INFORMATION: This CIO-T (IT Services Directorate) position resides within the Cyber Security Office (TES), Cyber Technology and Monitoring Division (TESC) at NGA Washington.
The Cybersecurity Office (TES) safeguards the NGA mission through collaborative, forward-leaning, and risk-balanced solutions to ensure trust in GEOINT services and data.
The Cybersecurity Office (TES) assesses and conveys the level of Agency cybersecurity risk in the context of overall NGA mission goals and objectives. To achieve this, we establish the policies and procedures governing cybersecurity. The office prioritizes cybersecurity initiatives, integrates all cybersecurity solutions and facilitates the review and approval of all NGA cross domain services. We implement the Risk Management Framework and other applicable national and community-level policies within the Agency, balancing risk to realize maximum performance.
This position in TESC works across the key component and agency to integrate cybersecurity technologies and solutions into NGA products, programs and operations in order to support continuous monitoring and agency risk awareness. Conducts both internal and external Red Team and penetration tests to identify vulnerabilities in the NGA network and systems. This role requires an understanding of ethical hacking, network security, and penetration testing techniques.
Specific Responsibilities: TESC is looking for an experienced cybersecurity analyst to provide leadership and cyber security/testing/operations and Computer Network Operations (CNO) / Computer Network Exploitation (CNE) /Computer Network Attack (CAN) /Computer Network Defense support in Mission Assurance, Red Team Vulnerability Assessments, Pentest, and Threat or Adversary Emulation. Advanced knowledge of offensive cyber concepts and methods such as passive and active reconnaissance, infiltration, internal network pivoting and exploration, and data exfiltration in order to emulate adversarial actions and attacks and expose vulnerabilities when conducting red cyber assessments is critical. Advanced knowledge of conducting both penetration testing and deploying cyber-attack vectors in simulated network environments in order to conduct assessment-specific activities to identify and exploit vulnerabilities as well as enhancing technical training and development material is a key component of this position. A successful candidate would demonstrate knowledge in exploit development including the modification of COTS and/or government developed tools for application in on-net assessments of DoD and non-DoD networks and would have experience in creating and developing unique tools required for specific network assessment operations in order to emulate adversaries and conduct thorough, network-specific threat assessments.
Certification in any of the following would be advantageous to this position: OSCP, OSCE, OSEE, GSE, GXPN, GRTP, RTAC or equivalent certification.
TES allows up to 16 hours of ad hoc telework per pay period for this position.
Additional Application Requirement: You may be asked to complete one or more assessments in addition to the application you submit on this website as part of your application to NGA. These assessments may include but are not limited to: 1) Online questionnaires or assessments that require you to describe your job-related knowledge, skills, abilities, or other characteristics that are aligned with the mandatory and desirable qualifications of this job posting. The information you provide in the application you submit must support the response you provide to this questionnaire. You will receive an email to describe any additional assessments required. Please monitor your emails and complete any required assessments as soon as possible.
This position may be eligible for a RECRUITMENT INCENTIVE: selected candidates may be offered an incentive as part of the offer of employment. To receive the incentive, selected candidates must be eligible under 5 CFR Part 575, Subpart A, upon issuance of the Final Offer Letter. Changes in federal employment status prior to issuance of the Final Offer Letter may affect eligibility. To receive the incentive, selected candidates will be required to sign a service agreement to stay within the position at NGA for the agreed upon time. If the service agreement is terminated before its completion, the employee may be required to repay a pro rata share amount of the incentive to the government. Additional information regarding recruitment incentives for current federal employees can be found in DoDI 1400.25, Volume 2006.

Requirements

Conditions of Employment

Security Investigation

SPECIAL INFO:
As a condition of employment at NGA, persons being considered for employment must meet NGA fitness for employment standards.

- U.S. Citizenship Required

- Security Clearance (Top Secret/Sensitive Compartmented Information)

- Polygraph Test Required

- Position Subject to Drug Testing

- Two Year Probationary Period

- Direct Deposit Required

SPECIAL REQUIREMENTS:
You must be able to obtain and retain a Top Secret security clearance with access to Sensitive Compartmented Information. In addition, you are subject to a Counterintelligence Polygraph examination in order to maintain access to Top Secret information. All employees are subject to a periodic examination on a random basis in order to determine continued eligibility. Refusal to take the examination may result in denial of access to Top Secret information, SAP, and/or unescorted access to SCIFs.

Employees with SCI access and who are under NGA cognizance are required to submit a Security Financial Disclosure Report, SF-714, on an annual basis in order to determine continued eligibility. Failure to comply may negatively impact continued access to Top Secret information, Information Systems, SAP, and/or unescorted access to SCIFs.

NGA utilizes all processes and procedures of the Defense Civilian Intelligence Personnel System (DCIPS). Non-executive NGA employees are assigned to five distinct pay bands based on the type and scope of work performed. The employee's base salary is established within their assigned pay band based on their unique qualifications. A performance pay process is conducted each year to determine a potential base pay salary increase and/or bonus. An employee's annual performance evaluation is a key factor in the performance pay process. Employees on term or temporary appointments are not eligible to apply for internal assignment opportunity notices.

This position is a DCIPS position in the Excepted Service under 10 U.S.C. 1601. DoD Components with DCIPS positions apply Veterans' Preference to preference eligible candidates as defined by Section 2108 of Title 5 USC, in accordance with the procedures provided in DoD Instruction 1400.25, Volume 2005, DCIPS Employment and Placement. If you are an external applicant claiming veterans' preference, as defined by Section 2108 of Title 5 U.S.C., you must self-identify your eligibility.

Qualifications

MANDATORY QUALIFICATION CRITERIA: For this particular job, applicants must meet all competencies reflected under the Mandatory Qualification Criteria to include education (if required). Online resumes must demonstrate qualification by providing specific examples and associated results, in response to the announcement's mandatory criteria specified in this vacancy announcement:

1. Demonstrated experience capturing cybersecurity acquisition requirements for multi-domain enterprise environments.
2. Demonstrated experience assessing and/or implementing security controls to meet compliance thresholds.
3. Demonstrated experience engineering, acquiring, deploying, and/or decommissioning cybersecurity tools in multi-domain enterprise environments.
4. Demonstrated experience assessing risks to identify potential impacts and vulnerabilities.
5. Demonstrated experience applying cybersecurity policies and/or controls to secure virtual systems, cloud environments, and/or data infrastructures in multi-domain enterprise environments.

EDUCATION REQUIREMENT: A. Education: Bachelor's degree from an accredited college or university in Systems Engineering, Computer Science, Information Assurance, or a related field, or degree that provided a minimum of 24 semester hours in one or more of the fields identified above and required the development or adaptation of applications, systems, or networks. -OR- B. Combination of Education and Experience: A minimum of 24 semester (36 quarter) hours of coursework in any area listed in option A, plus experience in systems engineering, IT standards development, IT security testing, IT security engineering, implementation, and integration, or a related area that demonstrates the ability to successfully perform the duties associated with this work. As a rule, every 30 semester (45 quarter) hours of coursework is equivalent to one year of experience. Candidates should show that their combination of education and experience totals 4 years. -OR- C. Experience: A minimum of 4 years of experience in systems engineering, IT standards development, IT security testing, IT security engineering, implementation, and integration, or a related area that demonstrates the ability to successfully perform the duties associated with this work. -AND- LICENSES/CERTIFICATIONS: Information Assurance System Architect and Engineer Level 1 -OR- Information Assurance Technician I (IAT I) certification -OR- Technical Level III Certification (as outlined by the DoDD 8140.01), must be obtained as directed by management. -AND- Relevant Competencies: IT-related experience demonstrating each of the four competencies: Attention to Detail, Customer Service, Oral Communication, and Problem Solving.

DESIRABLE QUALIFICATION CRITERIA: In addition to the mandatory qualifications, experience in the following is desired:

1. Demonstrated experience analyzing data and datasets to support cybersecurity continuous monitoring activities.
2. Demonstrated experience with network security architecture and systems security engineering concepts, including topology, protocols, components, and principles and incorporating security solutions into proposed technologies.
3. DoD 8570/8140 cybersecurity certification.
4. Demonstrated experience making decisions in ambiguous situations.
5. Experience developing and leading project activities (resources, cost, schedule, and performance).
6. Experience with planning and implementing data collection techniques to discover unauthorized activities or changes.



  • Springfield, Illinois, United States USAJobs Full time

    DutiesADDITIONAL INFORMATION: This CIO-T (IT Services Directorate) position resides within the Cyber Security Office (TES), Cyber Technology and Monitoring Division (TESC) at NGA Washington.The Cybersecurity Office (TES) safeguards the NGA mission through collaborative, forward-leaning, and risk-balanced solutions to ensure trust in GEOINT services and...


  • Springfield, Virginia, United States inventium LLC Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Engineer to join our team at Inventium LLC. As a key member of our technical staff, you will be responsible for designing and implementing cybersecurity solutions that meet the needs of our clients in the defense and scientific communities.Key ResponsibilitiesDesign and develop cybersecurity solutions...


  • Springfield, Illinois, United States MITRE Full time

    About the RoleWe are seeking an experienced Cybersecurity Engineer to join our team at MITRE. As a Cybersecurity Engineer, you will play a critical role in enhancing the security of our nation's cyber systems.Key ResponsibilitiesSupport technical requirements outreach sessions with sponsor stakeholders to identify existing data sources, formats, and...


  • Springfield, Virginia, United States General Dynamics Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:Job Family:Information SecurityJob Qualifications:Skills: Computer Security, Cybersecurity, Data SecurityCertifications: IAM II certification requiredExperience:...


  • Springfield, Virginia, United States General Dynamics Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:Job Family:Information SecurityJob Qualifications:Skills: Computer Security, Cybersecurity, Data SecurityCertifications: IAM II certification requiredExperience:...


  • Springfield, Virginia, United States General Dynamics Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public TrustJob Family:Information SecurityJob Qualifications:Skills: Computer Security, Cybersecurity, Data SecurityCertifications: IAM II certification requiredExperience: 10+ years of...


  • Springfield, Virginia, United States Strategic ASI Full time

    Strategic ASI is looking for a Lead Cybersecurity Solutions Engineer to enhance our team. Key Responsibilities: Facilitate Cyber Operations initiatives to ensure the timely publication of updated cybersecurity tool signatures. Conduct in-depth analysis, including reverse engineering of malware, to investigate intrusions, anomalies, and malicious...


  • Springfield, Virginia, United States General Dynamics Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:Job Family:Information SecurityJob Qualifications:Skills: Computer Security, Cybersecurity, Data SecurityCertifications: IAM II certification requiredExperience:...


  • Springfield, Virginia, United States Vectrus Full time

    About the RoleAt Vectrus, we are seeking a highly skilled Cybersecurity Tools Administrator to join our team. As a Cybersecurity Tools Administrator, you will play a critical role in implementing and maintaining our cybersecurity toolsets, ensuring the security and integrity of our systems and data.Key ResponsibilitiesConfigure, troubleshoot, and maintain...


  • Springfield, Virginia, United States V2X Full time

    About the RoleV2X is seeking a highly skilled Cybersecurity Tools Administrator to join our team. As a Cybersecurity Tools Administrator, you will be responsible for implementing and maintaining the Directorate's cybersecurity toolsets, ensuring the security and integrity of our global WAN.Key ResponsibilitiesImplement and Maintain Cybersecurity Toolsets:...


  • Springfield, Virginia, United States General Dynamics Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Job Family:Information SecurityJob Qualifications:Skills: Computer Security, Cybersecurity, Data SecurityCertifications: IAM II certification requiredExperience: 10+ years of...


  • Springfield, Illinois, United States First Information Technology Services Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Training Lead to join our team at First Information Technology Services, Inc. (FITS). As a key member of our organization, you will be responsible for designing and delivering cutting-edge cybersecurity training programs that drive impactful learning experiences.Key ResponsibilitiesProgram Development:...


  • Springfield, Virginia, United States General Dynamics Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret SCI + PolygraphClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:Job Family:Information SecurityJob Qualifications:Skills: Computer Security, Cybersecurity, Data SecurityCertifications: Experience: 10 + years of related...


  • Springfield, Virginia, United States Rigil Corporation Full time

    Job OverviewPosition: Cybersecurity Training LeadCompany Overview:Rigil Corporation is a distinguished, woman-owned small business recognized for its expertise in technology consulting, strategic planning, and product innovation. We prioritize collaboration and are committed to fostering effective leadership.Location: Springfield, VAEmployment Type: Full...


  • Springfield, Illinois, United States V2X Full time

    Job DescriptionJob Summary:V2X is seeking a highly skilled Cybersecurity Vulnerability Specialist to join our team. As a key member of our cybersecurity team, you will be responsible for developing and executing our continuous vulnerability assessment strategy.Key Responsibilities:Develop and Execute Vulnerability Assessment Strategy: Develop and execute the...


  • Springfield, United States First Information Technology Services Full time

    Job DescriptionJob DescriptionFITS is a full-service IT consulting firm with over 20 years of expertise. We are proud to be a minority, veteran-owned firm that provides comprehensive IT consulting services, information security, and cloud computing security to clients of all sizes since 2000. We are dedicated to helping our clients achieve their security and...


  • Springfield, Virginia, United States Rigil Corporation Full time

    Job OverviewPosition: Cybersecurity Training LeadAbout Rigil Corporation: Rigil Corporation is a distinguished, woman-owned enterprise specializing in technology consulting, strategic guidance, and product innovation. We prioritize collaboration and are committed to nurturing effective leadership.Location: Springfield, VAEmployment Type: Full TimeRole...


  • Springfield, Virginia, United States General Dynamics Information Technology Full time

    Type of Requisition:RegularClearance Level Must Currently Possess:Top SecretClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:Job Family:Systems EngineeringJob Qualifications:Skills:Databasing, Documentation, Systems EngineeringCertifications:Experience:6 + years of related experienceUS Citizenship...


  • Springfield, Illinois, United States First Information Technology Services Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Training Program Manager to join our team at First Information Technology Services, Inc. (FITS). As a key member of our organization, you will be responsible for designing and delivering cutting-edge cybersecurity training programs that drive impactful learning experiences.Key ResponsibilitiesProgram...


  • Springfield, Illinois, United States Network and Data Solutions Integrators (NDSI) Full time

    About the RoleWe are seeking a highly skilled Data Center Engineer to join our team at Network and Data Solutions Integrators (NDSI). As a Data Center Engineer, you will play a critical role in ensuring the security and integrity of our data centers.Key ResponsibilitiesDevelop Computer Systems Specifications: You will develop computer systems specifications...