Senior Scientist, Information Security Systems Engineer

2 weeks ago


San Francisco, California, United States L3Harris Full time

Job Title: Senior Scientist, Information Security Systems Engineering

Job Location: Salt Lake City-UT

Job Code: 11556

Job Schedule: 9/80, every other Friday off

Position Overview:

This Subject Matter Expert will apply current systems security engineering methods, practices and technologies to the architecture, design, development, evaluation and integration of systems and networks to maintain system security and execute system CONOPS. The Sr. Scientist will work closely with Government customers and program stakeholders to ensure that the security protection needs, concerns and requirements are defined and implemented with appropriate fidelity and rigor, early and in a sustainable manner throughout the life cycle of system that will allow for the security authorization of the system of interest.

Job Description:

Works with systems developers or commercial product vendors in the design and evaluation of state-of-the-art secure systems, networks, and database products.

Uses methods such as encryption technology, vulnerability analysis and security management.

Responsible for integration of multiple methods into a cohesive system security perimeter and environment and the policies and procedures necessary to monitor and maintain such an environment. Prepares Assessment and Authorization documentation using multiple standards under RMF and derivative processes (DOD M, JSIG, ICD-503, CNSSI 1253), to achieve security authorization of supported systems.

Represents program security needs, concerns, and requirements at customer meetings.

Leads and contribute to all Product or Network Information Security Engineering activities pertaining to CDRLs, trade studies, security requirements analysis, secure architecture development, management & compliance with security controls, design review milestones (SRR, SDR, PDR, CDR) and security test/verification activities

Performs system CONOP analysis and development

Contributes to all Product and/or Security Engineering activities pertaining to CDRLs, trade studies, security requirements analysis, secure architecture development, management & compliance with security controls, design review milestones (SRR, SDR, PDR, CDR) and security test/verification activities

Perform functional analysis, timeline analysis, detailed trade studies, requirements derivation and allocation, and interface definition studies to translate customer Information Security requirements into hardware and software specifications

Provide Cyber technical leadership for development teams building new multi-discipline (mechanical, electrical, software, hardware etc.) products

Provide Cyber technical leadership to development teams at internal and external gate reviews such as technical baseline reviews and design reviews

Identify security risks, threats and vulnerabilities of networks, systems, applications, and new technology initiatives (hardware, software, cross-domain solutions, cryptographic devices, firewalls, intrusion detection systems, anti-virus systems and software deployment tools)

Ensure RMF Information Security requirements and Program Protection requirements are addressed in all phases of the System Development Lifecycle (SDLC)

Conduct security architecture analysis to evaluate and mitigate risks

DoD M IASAE Level 3 certification (e.g. CISSP, ISSEP, ISSAP)

Active Top Secret

Required Qualifications:

Bachelors Degree with a minimum of 15 years of prior related experience. Graduate Degree with a minimum of 13 years of prior related experience. In lieu of a degree, minimum of 19 years of prior related experience.

Preferred Qualifications:

Active Top Secret/SCI Security Clearance preferred

Minimum of 7 years of experience with vulnerability research and analysis of computer hardware, appliances, and/or embedded systems

Minimum of 7 years of experience with Risk Management Framework (RMF) accreditation and authorization (A&A) processes to include RMF steps 1-4 (categorization, controls selection, control implementation, security assessment) and standard body of evidence (BoE) package development

Minimum of 2 years of experience in writing and managing RMF body of evidence documents (e.g., System Security Plan (SSP), Security Compliance Traceability Matrix (SCTM), Certified Test Plan (CTP), Risk Assessment Report (RAR), Continuous Monitoring (ConMon) Plan, Plans of Action and Milestones (POA&M), and Security Assessment Plans and Procedures (SAPP)

Minimum 2 years of experience with system testing and evaluation methods and RMF assessment methodology & processes

Minimum of 10 years of experience with IC and DoD Cyber organizations, including structure, engagement, customer relationship management, and Business Development

Minimum of 5 years of experience with DCO and OCO Cyber Effects Operations (CEO)

Minimum of 5 years of experience leading technical teams, decomposing requirements, solution development, implementation, and testing/qualification across a portfolio

Minimum of 5 years of experience with computer hardware architecture, components, and protocols

Minimum of 3 years of experience with Modular Open Systems Approach (MOSA) standards

Experience in validating the NSA Crypto Modernization

Experience developing security overlays, data flow diagrams, internal requirements, CONOPs and interface control documents from customer and/or product requirements

Experience with administration and securing Linux (RHEL/CentOS), Microsoft products including Windows Server 2016+, Windows 10, Microsoft System Center Configuration Manager, and WSUS

Experience in configuration and use of cyber defense and vulnerability assessment tools such as ACAS/Nessus, Rapid7 Nexpose, etc

Experience with architectures integrating VLANs, VRF, virtual switching, multi-layer switching, Multi-layer Firewalls, ACLs, secure configuration, VPN (IPSEC)

Foundational knowledge of Layer 3 architecture and diagramming within Visio or other commercial products

Understanding of routing and switching as employed in telecommunications and network traffic

General knowledge of common threats to information systems and how compromise would damage system integrity

Exposure to model-based systems engineering (MBSE) tool suites (e.g., Cameo) and associated processes

Experience with application of STIGs, CIS Benchmarks, and/or SCAP and developing associated POAMs

Working knowledge of embedded systems, appliances, FPGA, single-board computers, chipsets, and microprocessors

Engineering experience in non-traditional national security missions

#LI-CJ1

L3Harris Technologies is proud to be an Affirmative Action/Equal Opportunity Employer. L3Harris is committed to treating all employees and applicants for employment with respect and dignity and maintaining a workplace that is free from unlawful discrimination. All applicants will be considered for employment without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender (including pregnancy, childbirth, breastfeeding or other related medical conditions), gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, citizenship status, characteristic or membership in any other group protected by federal, state or local laws. L3Harris maintains a drug-free workplace and performs pre-employment substance abuse testing and background checks, where permitted by law.



  • San Francisco, California, United States Railhead Inc Full time

    Railhead, Inc. is seeking a qualified Information Systems Security Engineer to join our Defense Enclave Services (DES) team at Fort Meade, MD. The selected candidate will support an extensive digital modernization program critical to DISA and Fourth Estate Agencies. You will support information technology discovery, optimization, and transformation into a...


  • San Francisco, California, United States Harris Geospatial Solutions Full time

    Job Title:Sr.Specialist, Information Security Systems Engineering Job Code: 11427 Job Location: Salt Lake City, UT Job Schedule: 9/80 Job Description:As a Sr. Specialist, Information Security Systems Engineer at L3Harris Technologies, you will be involved in the securing of communication capabilities for the warfighter. We are looking for people with...


  • San Francisco, California, United States Harris Geospatial Solutions Full time

    Job Title:Information Security Systems Engineer Specialist Company: L3Harris TechnologiesLocation: Salt Lake City, UtahWorking Schedule:9/80 (every other Friday off)Description:Are you passionate about ensuring secure communication capabilities for the warfighter? Join our team at L3Harris Technologies as an Information Security Systems Engineer Specialist,...


  • San Francisco, California, United States Applied Insight Full time

    Job Description About Us: Innovating to solve real-world problems Applied Insight enhances the ability of federal government customers to preserve national security, deliver justice and serve the public with advanced technologies and quality analysis. We work closely with agencies and industry to overcome technical and cultural hurdles to innovation,...


  • San Francisco, California, United States Motion Recruitment Full time

    Outstanding long-term contract opportunity A well-known Financial Services Company is looking for a Information Security Engineer in San Francisco (Hybrid). Work with the brightest minds at one of the largest financial institutions in the world. This is long-term contract opportunity that includes a competitive benefit package Our client has been around for...


  • San Francisco, California, United States Motion Recruitment Full time

    Outstanding long-term contract opportunity A well-known Financial Services Company is looking for a Information Security Engineer in San Francisco (Hybrid). Work with the brightest minds at one of the largest financial institutions in the world. This is long-term contract opportunity that includes a competitive benefit package Our client has been around for...


  • San Francisco, California, United States Motion Recruitment Full time

    Information Security Engineer San Francisco, CA Hybrid Contract $61.53/hr - $69.33/hr Outstanding long-term contract opportunity A well-known Financial Services Company is looking for a Information Security Engineer in San Francisco (Hybrid).Work with the brightest minds at one of the largest financial institutions in the world. This is long-term contract...


  • San Diego, California, United States BAE Systems Full time

    Job Description Ready to make a difference? Our employees design, integrate, and test the world's next generation communication and electronic warfare systems for the United States DoD and international customers. You will be among the brightest minds, working on the aerospace and defense industry's most difficult problems. Drawing strength from our...


  • San Francisco, California, United States Ivalua Full time

    Senior Security Engineer (Cloud and Infrastructure Security) - Pitsburgh,PAAbout IvaluaA "Magic Quadrant" leader, Ivalua's solutions work in a complex global economy. Our innovative Source-to-Pay solutions include automating customized workflows to source, contract, request, procure, receive, and pay for goods and services across the enterprise, refining the...


  • San Francisco, California, United States Opal Security Full time

    Opal is building the next generation of access management. We've all felt the pain of not getting the access we need to do our job. At Opal, we're building a central hub for authorization to make access management automated, intelligent, and easy to use. We are taking an age old problem in enterprise software and making it simple. Our product prioritizes...


  • San Francisco, California, United States HEALTH[at]SCALE Technologies Full time

    Health at Scale is the market leader in precision health -- digital health programs that offer smart, hyper-personalized insights to help individuals choose the best providers, treatments, care settings and lifestyle choices for their unique healthcare needs. Founded by leading machine learning and clinical faculty from MIT, Stanford, Harvard and the...


  • San Francisco, California, United States Strategic Resilience Group Full time

    SRG is seeking an experienced Information Network Operations Engineer to join our team of Cyber Operation Analysts and Subject Matter Experts (SMEs) to support planning, coordination, synchronization, and execution of offensive and defensive cyberspace operations in support of aligned combatant command and designated sub-unified commands. This includes a...


  • San Francisco, California, United States Arista Networks Full time

    Company DescriptionArista Networks is an industry leader in data-driven, client-to-cloud networking for large data center, campus and routing environments. What sets us apart is our relentless pursuit of innovation. We leverage the latest advancements in cloud computing, artificial intelligence, and software-defined networking to provide our clients with a...


  • San Francisco, California, United States The Judge Group Inc. Full time

    Location: San Francisco, CASalary: $55.00 USD Hourly - $60.00 USD HourlyDescription: Our client is currently seeking a Information Security Engineer Job Title: Information Security Analyst Location: 100% Remote - Base location- San Francisco, CA Duration: 12 months Minimum Qualifications:A minimum of five years in Information Security Engineering, or an...


  • San Francisco, California, United States TEEMA Full time

    Job Description Job Description Job Title:Information Security Engineer Job ID:ARLocation:San Francisco, CAOverview:Our client is looking for an Information Security Engineer to help them build the world's knowledge engine and unlock data-native product experiences. Their vision is to create a decentralized knowledge graph protocol that maps 10 billion...


  • San Francisco, California, United States COMSO, Inc. Full time

    COMSO, Inc. is a powerhouse when it comes to empowering federal government stakeholders to fulfill their mission with confidence and efficiency. Our staff brings knowledgeable IT systems expertise, software development proficiency, innovative learning solutions for workforce development, and exceptional operations and production support. We were founded in...


  • San Francisco, California, United States DAED Industries LLC Full time

    Review technical security assessments to identify points of vulnerability and non-compliance with established Information Assurance (IA) standards and recommend mitigation strategies; Review certification and accreditation (C&A) documentation and provide feedback on completeness and compliance; CISSP Required


  • San Francisco, California, United States Randstad Full time

    information security engineer. san francisco , california (remote) posted 10 days ago job details summary $ $61.57 per hour temp to perm bachelor degree category computer and mathematical occupations reference job details job summary: Randstad Digital is hiring and we're looking for someone like YOU to join our team If you are seeking a new...


  • San Francisco, California, United States Xwing Full time

    Meet one of your future colleaguesAbout Us:Xwing is a cutting-edge aerospace technology company focused on revolutionizing the future of aviation. Backed by industry veterans and top-tier investors, our mission is to build a safer, more efficient, and more accessible air transportation system powered by autonomous flight. By combining artificial...


  • San Francisco, California, United States Chime Full time

    About the Role As a Senior Security Engineer, you'll be essential in protecting our advanced web software and backend services. You'll collaborate with diverse teams to implement technical solutions that will help mitigate security vulnerabilities and reduce security risk across Chime. Your clear communication will be crucial as you explain security...