Information System Security Engineer III

3 days ago


Bedford, United States HRUCKUS Full time

Veteran-Owned Firm Seeking an Information Systems Security Engineer III for an Onsite Assignment at Hanscom Air Force Base (AFB) in Bedford, MAMy name is Stephen Hrutka. I lead a Veteran-Owned management consulting firm in Washington, DC. We specialize in Technical and Cleared Recruiting for the Department of Defense (DoD), the Intelligence Community (IC), and other advanced defense agencies.At HRUCKUS, we support fellow Veteran-Owned businesses by helping them recruit for positions across organizations such as the VA, SBA, HHS, DARPA, and other leading-edge R&D-focused defense agencies. We seek to fill an Information Systems Security Engineer III position at Hanscom Air Force Base (AFB) in Bedford, MA.The ideal candidate will have an active Top-Secret Security Clearance, DoD 8570.01 MMGT512 compliant certification, and extensive experience with the Risk Management Framework (RMF). If you’re interested, I'll gladly provide more details about the role and discuss your qualifications further. Thanks, Stephen M Hrutka Principal Consultant HRUCKUS LLC Executive Summary: HRUCKUS is seeking an Information Systems Security Engineer III with Top-Secret Clearance for a role at Hanscom Air Force Base (AFB) in Bedford, MA. The Senior Information Systems Security Engineer (ISSE) candidate to work within HNJ at Hanscom, AFB. The Special Programs Division (AFLCMC/HNJ) focuses on leading edge, advanced technology solutions for the warfighter’s needs in areas such as electronic and cyber warfare.Responsibilities:Support the system/application authorization and accreditation (A&A) effort for weapon systems and PIT Systems, to include assessing and guiding the quality and completeness of A&A activities, tasks, and resulting artifacts mandated by governing DoD and Air Force policies (i.e., Risk Management Framework (RMF). Understanding of how RMF intersects with the acquisition process and how it’s used to generate requirements; how RMF and Cybersecurity should be covered in contracts – requirements, deliverables, PWS/SOW language.Understanding how to work through RMF and controls with a program to establish appropriate levels of risk based on program lifecycle and mission requirements.Recommend policies and procedures to ensure the reliability of and accessibility to information systems and to prevent and defend against unauthorized access to systems, networks, and data.Develop, execute, and track the performance of security measures to protect information and network infrastructure and computer systems.Review and assess architectures and recommend cybersecurity strategies to developmental and legacy system designs.Assess threats to determine impact and recommend corrective actions to program managers to reduce risk.Translate program/system requirements into technical requirements and architectures needed to meet program objectives.Life cycle development Promote awareness of security issues among management and ensuring sound security principles are reflected in program’s’ visions and goals. Participate in systems design.Understanding of DevSecOps environments to check for security flaws and vulnerabilities during code review.Understanding of operating systems including Linux, Ubuntu, IoT systems, ZTA environments and Cloud development.Identify, define, and document system security requirements and recommend solutions to management.Plan, develop, implement, and update Cyber Security Strategy Information within the Program Protection Plan (PPP) and assess CPI (Critical Program Information) and CC (Critical Components) analysis.Recommend and review Tempest requirements, systems security contingency plans and disaster recovery procedures.Experience with compliance and vulnerability and software scanning tools (STIGs, Nessus, ACAS, SCC/ SCAP, etc.) to include the review and creation of mitigation reports.Review the Vendor submitted Contract Data Requirement List (CDRL) items for Cybersecurity related areas, to ensure technical requirements have been met, and provided substantial comments and recommendations to the Program Management (PM) team as to adequacy of the CDRL.Other duties as assigned. Required Qualifications:Clearance: Active Top-Secret ClearanceOne of the following education/experience combinations:BA/BS Degree, and 15 years of Cyber-Security experience and 5 years DoD experience ORMA/MS Degree and 12-year experience, 5 years in DoD OR20 years of directly related experience with proper certifications of which 8 years are in DoD.DoD 8570.01 MMGT512 compliant certification.Experience with the Risk Management Framework (RMF).Details:Job Title: Information Systems Security Engineer (ISSE) IIILocation: Hanscom AFB, MAClearance Requirement: Top-Secret ClearanceAssignment Type: Full-time, OnsiteSalary Range: $170,000 - $190,000 per year



  • Bedford, MA, United States HRUCKUS Full time

    Veteran-Owned Firm Seeking an Information Systems Security Engineer III for an Onsite Assignment at Hanscom Air Force Base (AFB) in Bedford, MA My name is Stephen Hrutka. I lead a Veteran-Owned management consulting firm in Washington, DC. We specialize in Technical and Cleared Recruiting for the Department of Defense (DoD), the Intelligence Community...


  • Bedford, United States General Dynamics Information Technology Full time

    The Information Systems Security Officer (ISSO) III is responsible for ensuring the appropriate operational security posture is maintained for an information system and as such, works in close collaboration with the ISSM and ISO. The position shall have the detailed knowledge and expertise required to manage the security aspects of an information system and,...


  • Bedford, MA, United States HRUCKUS Full time

    Veteran-Owned Firm Seeking an Information Systems Security Engineer III for an Onsite Assignment at Hanscom Air Force Base (AFB) in Bedford, MA My name is Stephen Hrutka. I lead a Veteran-Owned management consulting firm in Washington, DC. We specialize in Technical and Cleared Recruiting for the Department of Defense (DoD), the Intelligence Community (IC),...


  • Bedford, MA, United States General Dynamics Information Technology Full time

    Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret/SCI Clearance Level Must Be Able to Obtain: Top Secret SCI + Polygraph Public Trust/Other Required: None Job Family: Cyber and IT Risk Management Job Qualifications: Skills: Information Security, Information Security Management, Information System Security Certifications: Cisco...


  • Bedford, MA, United States General Dynamics Information Technology Full time

    Type of Requisition: Regular Clearance Level Must Currently Possess: Top Secret/SCI Clearance Level Must Be Able to Obtain: Top Secret SCI + Polygraph Public Trust/Other Required: None Job Family: Cyber and IT Risk Management Job Qualifications: Skills: Information Security, Information Security Management, Information System Security Certifications: Cisco...


  • USA MA Bedford - Customer Proprietary (MAC), United States GD Information Technology Full time $98,345 - $133,055 per year

    Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphPublic Trust/Other Required:NoneJob Family:Cyber and IT Risk ManagementJob Qualifications:Skills:Information Security, Information Security Management, Information System SecurityCertifications:Cisco Certified...


  • Bedford, United States General Dynamics Information Technology Full time

    Information Systems Security Manager (ISSM) I The ISSM’s primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under their purview. Primary support will be working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force,...


  • Bedford, United States General Dynamics Information Technology Full time

    Information Systems Security Manager (ISSM) I The ISSM’s primary function serves as a principal advisor on all matters, technical and otherwise, involving the security of information systems under their purview. Primary support will be working within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force,...


  • Bedford, United States General Dynamics Information Technology Full time

    Transform technology into opportunity as a Activity Security Representative (ASR) III with GDIT. A career in enterprise IT means connecting and enhancing the systems that matter most. At GDIT you’ll be at the forefront of innovation and play a meaningful part in improving how agencies operate.At GDIT, people are our differentiator. As a Activity Security...


  • Bedford, United States Modern Technology Solutions Inc Full time

    Modern Technology Solutions, Inc. (MTSI) is seeking a Cyber Security - Information Systems Security Engineer ( ISSE) in Dayton, OH or Hanscom Air Force Base, MA. As a Cybersecurity Engineer / Information Systems Security Engineer (ISSE) with MTSI you will support a customer operating out of Wright Patterson AFB) in Dayton, OH or Hanscom AFB, MA. Position...