Cybersecurity Engineer

1 month ago


Springfield, Illinois, United States USAJobs Full time
Duties

ADDITIONAL INFORMATION: This CIO-T (IT Services Directorate) position resides within the Cyber Security Office (TES), Cyber Technology and Monitoring Division (TESC) at NGA Washington.
The Cybersecurity Office (TES) safeguards the NGA mission through collaborative, forward-leaning, and risk-balanced solutions to ensure trust in GEOINT services and data.
The Cybersecurity Office (TES) assesses and conveys the level of Agency cybersecurity risk in the context of overall NGA mission goals and objectives. To achieve this, we establish the policies and procedures governing cybersecurity. The office prioritizes cybersecurity initiatives, integrates all cybersecurity solutions and facilitates the review and approval of all NGA cross domain services. We implement the Risk Management Framework and other applicable national and community-level policies within the Agency, balancing risk to realize maximum performance.
This position in TESC works across the key component and agency to integrate cybersecurity technologies and solutions into NGA products, programs and operations in order to support continuous monitoring and agency risk awareness. Conducts both internal and external Red Team and penetration tests to identify vulnerabilities in the NGA network and systems. This role requires an understanding of ethical hacking, network security, and penetration testing techniques.
Specific Responsibilities: TESC is looking for an experienced cybersecurity analyst to provide leadership and cyber security/testing/operations and Computer Network Operations (CNO) / Computer Network Exploitation (CNE) /Computer Network Attack (CAN) /Computer Network Defense support in Mission Assurance, Red Team Vulnerability Assessments, Pentest, and Threat or Adversary Emulation. Advanced knowledge of offensive cyber concepts and methods such as passive and active reconnaissance, infiltration, internal network pivoting and exploration, and data exfiltration in order to emulate adversarial actions and attacks and expose vulnerabilities when conducting red cyber assessments is critical. Advanced knowledge of conducting both penetration testing and deploying cyber-attack vectors in simulated network environments in order to conduct assessment-specific activities to identify and exploit vulnerabilities as well as enhancing technical training and development material is a key component of this position. A successful candidate would demonstrate knowledge in exploit development including the modification of COTS and/or government developed tools for application in on-net assessments of DoD and non-DoD networks and would have experience in creating and developing unique tools required for specific network assessment operations in order to emulate adversaries and conduct thorough, network-specific threat assessments.
Certification in any of the following would be advantageous to this position: OSCP, OSCE, OSEE, GSE, GXPN, GRTP, RTAC or equivalent certification.
TES allows up to 16 hours of ad hoc telework per pay period for this position.
Additional Application Requirement: You may be asked to complete one or more assessments in addition to the application you submit on this website as part of your application to NGA. These assessments may include but are not limited to: 1) Online questionnaires or assessments that require you to describe your job-related knowledge, skills, abilities, or other characteristics that are aligned with the mandatory and desirable qualifications of this job posting. The information you provide in the application you submit must support the response you provide to this questionnaire. You will receive an email to describe any additional assessments required. Please monitor your emails and complete any required assessments as soon as possible.
This position may be eligible for a RECRUITMENT INCENTIVE: selected candidates may be offered an incentive as part of the offer of employment. To receive the incentive, selected candidates must be eligible under 5 CFR Part 575, Subpart A, upon issuance of the Final Offer Letter. Changes in federal employment status prior to issuance of the Final Offer Letter may affect eligibility. To receive the incentive, selected candidates will be required to sign a service agreement to stay within the position at NGA for the agreed upon time. If the service agreement is terminated before its completion, the employee may be required to repay a pro rata share amount of the incentive to the government. Additional information regarding recruitment incentives for current federal employees can be found in DoDI , Volume 2006.

Requirements

Conditions of Employment
  • Security Investigation

    SPECIAL INFO:
    As a condition of employment at NGA, persons being considered for employment must meet NGA fitness for employment standards.

    - U.S. Citizenship Required

    - Security Clearance (Top Secret/Sensitive Compartmented Information)

    - Polygraph Test Required

    - Position Subject to Drug Testing

    - Two Year Probationary Period

    - Direct Deposit Required

    SPECIAL REQUIREMENTS:
    You must be able to obtain and retain a Top Secret security clearance with access to Sensitive Compartmented Information. In addition, you are subject to a Counterintelligence Polygraph examination in order to maintain access to Top Secret information. All employees are subject to a periodic examination on a random basis in order to determine continued eligibility. Refusal to take the examination may result in denial of access to Top Secret information, SAP, and/or unescorted access to SCIFs.

    Employees with SCI access and who are under NGA cognizance are required to submit a Security Financial Disclosure Report, SF-714, on an annual basis in order to determine continued eligibility. Failure to comply may negatively impact continued access to Top Secret information, Information Systems, SAP, and/or unescorted access to SCIFs.

    NGA utilizes all processes and procedures of the Defense Civilian Intelligence Personnel System (DCIPS). Non-executive NGA employees are assigned to five distinct pay bands based on the type and scope of work performed. The employee's base salary is established within their assigned pay band based on their unique qualifications. A performance pay process is conducted each year to determine a potential base pay salary increase and/or bonus. An employee's annual performance evaluation is a key factor in the performance pay process. Employees on term or temporary appointments are not eligible to apply for internal assignment opportunity notices.

    This position is a DCIPS position in the Excepted Service under 10 U.S.C DoD Components with DCIPS positions apply Veterans' Preference to preference eligible candidates as defined by Section 2108 of Title 5 USC, in accordance with the procedures provided in DoD Instruction , Volume 2005, DCIPS Employment and Placement. If you are an external applicant claiming veterans' preference, as defined by Section 2108 of Title 5 U.S.C., you must self-identify your eligibility.

    Qualifications

    MANDATORY QUALIFICATION CRITERIA: For this particular job, applicants must meet all competencies reflected under the Mandatory Qualification Criteria to include education (if required). Online resumes must demonstrate qualification by providing specific examples and associated results, in response to the announcement's mandatory criteria specified in this vacancy announcement:

    1. Demonstrated experience capturing cybersecurity acquisition requirements for multi-domain enterprise environments.
    2. Demonstrated experience assessing and/or implementing security controls to meet compliance thresholds.
    3. Demonstrated experience engineering, acquiring, deploying, and/or decommissioning cybersecurity tools in multi-domain enterprise environments.
    4. Demonstrated experience assessing risks to identify potential impacts and vulnerabilities.
    5. Demonstrated experience applying cybersecurity policies and/or controls to secure virtual systems, cloud environments, and/or data infrastructures in multi-domain enterprise environments.

    EDUCATION REQUIREMENT: A. Education: Bachelor's degree from an accredited college or university in Systems Engineering, Computer Science, Information Assurance, or a related field, or degree that provided a minimum of 24 semester hours in one or more of the fields identified above and required the development or adaptation of applications, systems, or networks. -OR- B. Combination of Education and Experience: A minimum of 24 semester (36 quarter) hours of coursework in any area listed in option A, plus experience in systems engineering, IT standards development, IT security testing, IT security engineering, implementation, and integration, or a related area that demonstrates the ability to successfully perform the duties associated with this work. As a rule, every 30 semester (45 quarter) hours of coursework is equivalent to one year of experience. Candidates should show that their combination of education and experience totals 4 years. -OR- C. Experience: A minimum of 4 years of experience in systems engineering, IT standards development, IT security testing, IT security engineering, implementation, and integration, or a related area that demonstrates the ability to successfully perform the duties associated with this work. -AND- LICENSES/CERTIFICATIONS: Information Assurance System Architect and Engineer Level 1 -OR- Information Assurance Technician I (IAT I) certification -OR- Technical Level III Certification (as outlined by the DoDD , must be obtained as directed by management. -AND- Relevant Competencies: IT-related experience demonstrating each of the four competencies: Attention to Detail, Customer Service, Oral Communication, and Problem Solving.

    DESIRABLE QUALIFICATION CRITERIA: In addition to the mandatory qualifications, experience in the following is desired:

    1. Demonstrated experience analyzing data and datasets to support cybersecurity continuous monitoring activities.
    2. Demonstrated experience with network security architecture and systems security engineering concepts, including topology, protocols, components, and principles and incorporating security solutions into proposed technologies.
    3. DoD 8570/8140 cybersecurity certification.
    4. Demonstrated experience making decisions in ambiguous situations.
    5. Experience developing and leading project activities (resources, cost, schedule, and performance).
    6. Experience with planning and implementing data collection techniques to discover unauthorized activities or changes.



  • Springfield, Illinois, United States MITRE Full time

    About the RoleWe are seeking an experienced Cybersecurity Engineer to join our team at MITRE. As a Cybersecurity Engineer, you will play a critical role in enhancing the security of our nation's cyber systems.Key ResponsibilitiesSupport technical requirements outreach sessions with sponsor stakeholders to identify existing data sources, formats, and...


  • Springfield, Illinois, United States First Information Technology Services Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Training Lead to join our team at First Information Technology Services, Inc. (FITS). As a key member of our organization, you will be responsible for designing and delivering cutting-edge cybersecurity training programs that drive impactful learning experiences.Key ResponsibilitiesProgram Development:...


  • Springfield, Illinois, United States V2X Full time

    Job DescriptionJob Summary:V2X is seeking a highly skilled Cybersecurity Vulnerability Specialist to join our team. As a key member of our cybersecurity team, you will be responsible for developing and executing our continuous vulnerability assessment strategy.Key Responsibilities:Develop and Execute Vulnerability Assessment Strategy: Develop and execute the...


  • Springfield, Illinois, United States First Information Technology Services Full time

    Job SummaryWe are seeking a highly skilled Cybersecurity Training Program Manager to join our team at First Information Technology Services, Inc. (FITS). As a key member of our organization, you will be responsible for designing and delivering cutting-edge cybersecurity training programs that drive impactful learning experiences.Key ResponsibilitiesProgram...


  • Springfield, Illinois, United States Network and Data Solutions Integrators (NDSI) Full time

    About the RoleWe are seeking a highly skilled Data Center Engineer to join our team at Network and Data Solutions Integrators (NDSI). As a Data Center Engineer, you will play a critical role in ensuring the security and integrity of our data centers.Key ResponsibilitiesDevelop Computer Systems Specifications: You will develop computer systems specifications...


  • Springfield, Illinois, United States MITRE Full time

    Why Choose MITRE?At MITRE, we believe in the balance between impactful work and a rewarding life. Our team is dedicated to addressing the most pressing challenges facing our nation, while we prioritize the well-being of our employees. As a not-for-profit organization, we operate without commercial conflicts, focusing solely on the public interest. Our...


  • Springfield, Illinois, United States Oracle Full time

    Position OverviewAs a leader in cloud technology, Oracle is dedicated to delivering a comprehensive suite of integrated cloud services within a vast, multi-tenant environment. We are focused on empowering our clients to achieve success through innovative cloud solutions.We are currently seeking a seasoned Senior Cybersecurity Specialist to join our Oracle...


  • Springfield, Illinois, United States State of Illinois Full time

    Agency: State of Illinois Salary: $75,035 - $92,205 Job Type: Hourly Number of Vacancies: 1 ****************A RESUME IS REQUIRED FOR THIS JOB POSTING****************Please attach a DETAILED Resume/Curriculum Vitae (CV) to the MY DOCUMENTS section of your application. You WILL NOT be considered for the position if you attach a CMS100, CMS100b or any other...


  • Springfield, Illinois, United States State of Illinois Full time

    Agency: State of Illinois Salary: $75,035 - $92,205 Job Type: Hourly Number of Vacancies: 1 ****************A RESUME IS REQUIRED FOR THIS JOB POSTING****************Please attach a DETAILED Resume/Curriculum Vitae (CV) to your application. You WILL NOT be considered for the position if you attach any document that is not a Resume or CV.Position...


  • Springfield, Illinois, United States SAIC Full time

    About the RoleWe are seeking a highly skilled Microsoft Configuration Specialist to join our team at SAIC. As a key member of our System Configuration Management (SCM) team, you will be responsible for managing and maintaining our enterprise infrastructure, including multiple Microsoft Endpoint Configuration Manager (MECM) infrastructures and Windows-based...


  • Springfield, Illinois, United States GuidePoint Security LLC Full time

    An active Top Secret/SCI clearance is required prior to consideration for this role.A Network Security Engineer is part of a team of skilled Cybersecurity professionals that support the design, build, and sustainment of network based cyber defense capabilities within the organization.Network Security Engineers interact daily with a wide variety of industry...


  • Springfield, Illinois, United States Horizontal Talent Full time

    Job Description:As a Cybersecurity Program Manager, you will have the opportunity to tap into your curiosity and collaborate with some of the most innovative and diverse people around the world. Here, you will make an impact by:Providing leadership and direction to project teams, overseeing project execution ensuring overall program deliverables are met per...


  • Springfield, Illinois, United States NorthHill Technology Full time

    Company Name: NorthHill Technology ResourcesJob Title: Information Systems Security EngineerLocation: Springfield, VAPosition Overview:As a key member of our team, you will deliver specialized technical expertise across various dimensions of Information Security. Your responsibilities will include:Drafting comprehensive information security...


  • Springfield, Illinois, United States Parsons Corporation Full time

    Role Overview: The Information System Security Engineer is responsible for the development, maintenance, and execution of information security protocols, policies, and best practices for various applications and databases.Essential Qualifications:Possession of an active TS/SCI security clearance.A minimum of 5 years of experience in security...


  • Springfield, Illinois, United States SentinelOne Full time

    About Us:SentinelOne is a leading cybersecurity company that is revolutionizing the way organizations protect themselves against threats. Our XDR platform provides real-time prevention, detection, and response capabilities, enabling our customers to stay ahead of the evolving threat landscape.Our Culture:We are a values-driven team that prioritizes...


  • Springfield, Illinois, United States Parsons Corporation Full time

    Position Overview:The role involves the development, maintenance, and execution of information security protocols, procedures, and guidelines tailored for applications and databases.Essential Qualifications:Possession of an active TS/SCI security clearance.A minimum of 5 years of experience in security engineering.Familiarity with the National Institute of...


  • Springfield, Illinois, United States Parsons Corporation Full time

    Position Overview:The role involves the development, maintenance, and execution of information security protocols, procedures, and guidelines tailored for applications and databases.Essential Qualifications:Possession of an active TS/SCI security clearance.A minimum of 5 years of experience in security engineering.Familiarity with the National Institute of...


  • Springfield, Illinois, United States Parsons Corporation Full time

    Position Overview:The role involves the development, upkeep, and execution of information security protocols, procedures, and best practices for software applications and database systems.Essential Qualifications:Possession of an active TS/SCI security clearance.A minimum of 5 years of experience in security engineering.Familiarity with the National...


  • Springfield, Illinois, United States SAIC Full time

    About the RoleThis is an exciting opportunity to join the Vanguard 2.2.1 program as a MECM Infrastructure Engineer within the System Configuration Management (SCM) team at SAIC. The SCM team is responsible for managing multiple MECM infrastructures, comprising physical and virtual systems, across a large enterprise.Key ResponsibilitiesMonitor and...


  • Springfield, Illinois, United States SentinelOne Full time

    About Us:SentinelOne is a leading cybersecurity company that is revolutionizing the industry with its cutting-edge XDR platform. Our platform automatically prevents, detects, and responds to threats in real-time, providing unparalleled protection for our customers.Our Culture:We are a values-driven team that is passionate about innovation and collaboration....