Information System Security Engineer

1 day ago


Philadelphia, United States ISHPI Information Technology Full time


Information System Security Engineer (ISSE) III - Hybrid

Job Locations

US-PA-Philadelphia

ID

2024-1777

Category

Core IT Svc.

Type

Regular Full-Time

Overview

Ishpi Information Technologies, Inc. (DBA ISHPI) is passionate about providing our customers with technical solutions that satisfy their business needs. Through collaborative interactions with customers, team members, subject matter experts (SMEs), technical leaders, and partners we design practical solutions that solve real problems for major government and business organizations. As a member of our group, you will work with a team focused on delivering innovative business solutions using emerging technologies through proven successful methods.

Responsibilities

The ISSE III will provide support to the Naval Surface Warfare Command in Philadelphia, PA. Shall provide cybersecurity support for the Code 104 Information Technology Operations Division in the area of Information System Security Engineer (ISSE) support. These duties include but are not limited to:

  • Assessment & Authorization (A&A)
  • Cybersecurity Compliance and Audit Readiness
  • Information Assurance Vulnerability Management (IAVM)
  • Vulnerability Scanning and Remediation
  • Application and Implementation of Security Technical Implementation Guides (STIGs) and Security Requirements Guide (SRGs)

Shall assist with the developing, maintaining, and tracking Risk Management Framework (RMF) system security plans which include System Categorization Forms, Platform Information Technology (PIT) Determination Checklists, Assess Only (AO) Determination Checklists, Implementation Plans, System Level Continuous Monitoring (SLCM) Strategies, System Level Policies, Hardware Lists, Software List, System Diagrams, Privacy Impact Assessments (PIA), and Plans of Action and Milestones (POA&M).

  • Execute the RMF process in support of obtaining and maintaining Interim Authority to Test (IATT), AO approval, Authorization to Operate (ATO), and Denial of Authorization to Operate (DATO).
  • Identify and tailor IT and CS security control baselines based on RMF guidelines and categorization of the RMF boundary
  • Perform Ports, Protocols, and Services Management (PPSM).
  • Perform IT and CS vulnerability-level risk assessments.
  • Execute security control testing as required by a risk assessment or annual security review (ASR).
  • Mitigate and remediate IT and CS system level vulnerabilities for all assets withing the boundary per STIG requirements
  • Develop and maintain Plans of Actions and Milestones (POA&M) in Enterprise Mission Assurance Support Service (eMASS).
  • Develop and maintain system level IT and CS policies and procedures for respective RMF boundaries and/or guidance provided by the command ISSMs
  • Implement and assess STIG and SRGs.
  • Perform and develop vulnerability assessments with automated tools such as Assured Compliance Assessment Solution (ACAS), Security Content Automation Protocol (SCAP) Compliance Check (SCC) and Evaluate STIG.
  • Deploy security updates to Information System components.
  • Perform routine audits of IT system hardware and software components.
  • Maintain inventory of Information System components.
  • Participate in IT change control and configuration management processes.
  • Upload vulnerability data in Vulnerability Remediation Asset Manager (VRAM).
  • Image or re-image assets that are part of the assigned RMF boundary
  • Install software and troubleshoot software issues as necessary to support compliance of the RMF boundaries' assets.
  • Assist with removal of SSD, HDD or other critical components of assets before destruction and removal from the RMF boundary.
  • Provide cybersecurity patching of assets in times of DoD and DoN TASKORDs, FRAGORDs, or even designated by Command ISSM, ACIO, and/or Code 104 management.
  • Support configuration change documentation and control processes and maintaining DOD STIG Compliance.
  • Support cyber compliance of assets that are part of an enterprise IT network to include Windows server and CISCO networking hardware. This includes assessing vulnerabilities, patching and meeting requirements of the STIG for the hardware.
  • Report compliance issues of network hardware to management as not cause an operational of the network.
Qualifications

Education: Bachelor's degree in Computer science, Information Technology, or an equivalent technical degree from an accredited college or university.

Experience: Seven (7) years professional experience capturing and refining information security operational and security requirements, and ensuring those requirements are properly addressed through purposeful architecting, design, development, and configuration; and implementing security controls, configuration changes, software/hardware updates/patches, vulnerability scanning, and securing configurations.

Minimum Certification Requirement includes one of the following:

CASP+ CE

CCNP Security

CISA

CISSP (or Associate)

GCED

GCIH or

CCSP

Security Clearance: Requires U.S. Citizenship and an active government security clearance.

"Ishpi Information Technologies, Inc. is an Equal Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, disability, or status as a protected veteran."

Expression of Interest: By applying to this job, you are expressing interest in this position and could be considered for other career opportunities where similar skills and requirements have been identified as a match. Should this match be identified, you may be contacted for this and future openings.

*cj



  • Philadelphia, United States GBS Group Full time

    Description Information System Security Engineer The GBS Group has an exciting opportunity for an ISSE. You will work both independently and with a team of Engineering and technical professionals at NAVSEA on Information Systems projects related to Naval ship systems platforms. The position will manufacture systems media and software packages and contribute...


  • philadelphia, United States Data Intelligence, LLC Full time

    Data Intelligence, LLC (DI) is searching for a full time Information Systems Security Engineer III in Philadelphia, PA.Responsibilities:Provide full life cycle DoD Risk Management (RMF) support Perform system scans of hardware/software builds using ACAS (or related tools)Assist in the Assessment & Authorization (A&A) process, supporting development of...


  • Philadelphia, United States Data Intelligence, LLC Full time

    Data Intelligence, LLC (DI) is searching for a full time Information Systems Security Engineer III in Philadelphia, PA.Responsibilities:Provide full life cycle DoD Risk Management (RMF) support Perform system scans of hardware/software builds using ACAS (or related tools)Assist in the Assessment & Authorization (A&A) process, supporting development of...


  • philadelphia, United States Data Intelligence, LLC Full time

    Data Intelligence, LLC (DI) is searching for a full time Information Systems Security Engineer III in Philadelphia, PA.Responsibilities:Provide full life cycle DoD Risk Management (RMF) support Perform system scans of hardware/software builds using ACAS (or related tools)Assist in the Assessment & Authorization (A&A) process, supporting development of...


  • Philadelphia, United States Alutiiq Full time

    Taxable Entity ALUTIIQ INFORMATION MANAGEMENT LLC Job Title Sr Information Systems Security Engineer Location PA Philadelphia NSWC - Philadelphia, PA 19112 US (Primary) Category IT and Computer Related Job Type Full-time Typical Pay/Range $110,000 to $130,000 yearly Education Bachelor's Degree Travel Up to 25% Security Clearance Required Secret POSITION...


  • Philadelphia, United States Armada Full time

    Type: Full Time Location: NSWC Philadelphia, PA Overtime Exempt: Yes Reports To: ARMADA HQ Security Clearance Required: Active Secret ******CONTINGENT UPON AWARDING OF GOVERNMENT CONTRACT***** Duties & Responsibilities: The Information System Security Engineer (ISSE) shall assist with the developing, maintaining, and tracking Risk Management Framework (RMF)...


  • Philadelphia, United States Armada Full time

    Type: Full Time Location: NSWC Philadelphia, PA Overtime Exempt: Yes Reports To: ARMADA HQ Security Clearance Required: Active Secret *****CONTINGENT UPON AWARDING OF GOVERNMENT CONTRACT***** Duties & Responsibilities: The Information System Security Engineer (ISSE) shall assist with the developing, maintaining, and tracking Risk Management Framework (RMF)...


  • Philadelphia, United States Armada Full time

    Type: Full TimeLocation: NSWC Philadelphia, PAOvertime Exempt: YesReports To: ARMADA HQSecurity Clearance Required: Active Secret*****CONTINGENT UPON AWARDING OF GOVERNMENT CONTRACT*****Duties & Responsibilities:The Information System Security Engineer (ISSE) shall assist with the devel...


  • Philadelphia, United States Armada Full time

    Type: Full TimeLocation: NSWC Philadelphia, PAOvertime Exempt: YesReports To: ARMADA HQSecurity Clearance Required: Active Secret******CONTINGENT UPON AWARDING OF GOVERNMENT CONTRACT*****Duties & Responsibilities:The Information System Security Engineer (ISSE) shall assist with the dev...


  • Philadelphia, United States Armada Ltd Full time

    Type: Full TimeLocation: NSWC Philadelphia, PAOvertime Exempt: YesReports To: ARMADA HQSecurity Clearance Required: Active Secret*****CONTINGENT UPON AWARDING OF GOVERNMENT CONTRACT*****Duties & Responsibilities:The Information System Security Engineer (ISSE) shall assist with the developing, maintaining, and tracking Risk Management Framework (RMF) system...


  • Philadelphia, Pennsylvania, United States Securitas Electronic Security Inc Full time

    Job Summary:Securitas Electronic Security Inc is seeking a skilled Security Systems Technician to perform preventative maintenance on intrusion, video, access control, fire, and integrated systems. The ideal candidate will have excellent communication skills and be able to interact with customers in a professional manner.Key Responsibilities: Perform...


  • Philadelphia, United States Tri-Force Consulting Services, Inc. Full time

    Job Title: Senior Information Security Engineer Duration: 12 Months Client: City of Philadelphia Location: Philadelphia PA Note: This is an onsite position with an inperson interview. "The applicant is at the heart of our universe." Job Description: The ideal candidate will be a subject matter expert in...


  • Philadelphia, United States Tri-Force Consulting Services, Inc. Full time

    Job Title: Senior Information Security Engineer Duration: 12 Months Client: City of Philadelphia Location: Philadelphia PA Note: This is an onsite position with an inperson interview. "The applicant is at the heart of our universe." Job Description: The ideal candidate will be a subject matter expert in...


  • Philadelphia, United States HTC Global Services Full time

    HTC Global Services wants you. Come build new things with us and advance your career. At HTC Global you'll collaborate with experts. You'll join successful teams contributing to our clients' success. You'll work side by side with our clients and have long-term opportunities to advance your career with the latest emerging technologies. At HTC Global Services...

  • Security Engineer

    4 weeks ago


    philadelphia, United States Insight Global Full time

    Title: Level 2 Security Engineer – looking for a well rounded level 2 security engineer who has hands on experience with IR/IDS/IPS and also knows GRC. Duration: Contract to hire Location: Philadelphia hybrid – 3 days onsite Tuesday-Thursday Must-haves- 3+ years working as a level 2 Security Engineer - Well-rounded cybersecurity experience in any of the...

  • Security Engineer

    1 month ago


    philadelphia, United States Insight Global Full time

    Title: Level 2 Security Engineer – looking for a well rounded level 2 security engineer who has hands on experience with IR/IDS/IPS and also knows GRC. Duration: Contract to hire Location: Philadelphia hybrid – 3 days onsite Tuesday-Thursday Must-haves- 3+ years working as a level 2 Security Engineer - Well-rounded cybersecurity experience in any of the...

  • Security Engineer

    3 weeks ago


    philadelphia, United States Insight Global Full time

    Title: Security EngineerLocation: HybridDuration: PermanentCompensation: $120,000/yr - $140,000/yrExact compensation may vary based on several factors, including skills, experience, and education.Required Skills & ExperienceBachelor's degree in security, computer science, information technology or related fieldCurrent security certifications preferred or...


  • Philadelphia, United States Ciber Full time

    HTC Global Services wants you. Come build new things with us and advance your career. At HTC Global you'll collaborate with experts. You'll join successful teams contributing to our clients' success. You'll work side by side with our clients and have long-term opportunities to advance your career with the latest emerging technologies. At HTC Global Services...

  • Security Engineer

    3 weeks ago


    Philadelphia, United States Insight Global Full time

    Title: Security EngineerLocation: HybridDuration: PermanentCompensation: $120,000/yr - $140,000/yrExact compensation may vary based on several factors, including skills, experience, and education.Required Skills & ExperienceBachelor's degree in security, computer science, information technology or related fieldCurrent security certifications preferred or...

  • Security Engineer

    2 months ago


    Philadelphia, United States American Board of Internal Medicine Full time

    The American Board of Internal Medicine (ABIM) is currently seeking a Security Engineer to join our Information Strategy and Security Operations team. In this role, the Security Engineer will help deploy and operate an effective security program that aligns with business needs. The position is responsible for supporting operational innovation and providing...