Cyber Security Engineer 4

Base-2 Solutions
Bethesda, MD
Job Description
Role Overview

Support multiple task orders under the DOMEX Technology Platform contract supporting NMEC by designing, developing, and implementing secure systems in on-premises infrastructure and integrating security across the system lifecycle.

What You Will Do

Support the secure architecture, design, and implementation of DoD systems in accordance with DoDI 8510.01, NIST SP 800-53, and other DoD security guidance. Lead integration of RMF activities into the SDLC, including selection, implementation, and validation of security controls.

Why It Might Be a Fit

The ideal candidate will have experience reviewing cybersecurity vulnerabilities for risk and relevance, architecting, designing, and deploying vulnerability scanning solutions, and working with XACTA, eMASS, or similar tools.

Requirements

  • Active TS/SCI with ability to obtain a CI Polygraph
  • Bachelor's degree with a minimum of ten years of experience in the category field
  • At least one DoD 8570.01-M IASAE Level II certification: CISSP, CISSP-ISSAP, CISSP-ISSEP, CSSLP, or CASP+ CE
  • Developer experience preferred in at least one scripting or programming language
  • Experience reviewing cybersecurity vulnerabilities for risk and relevance and building mitigation/remediation plans across systems, network, application, and database vulnerabilities
  • Ability to architect, design, troubleshoot, maintain, and deploy vulnerability scanning solutions such as OWASP, Fortify, SonarQube, and Tenable
  • Experience with XACTA, eMASS, or similar tools
  • Strong understanding of Microsoft Windows and Linux/UNIX operating systems
  • Experience with middleware/web technologies, databases, TCP/IP networking, and CI/CD platforms
  • Familiarity with NIST 800-171, 800-172, NIST SSDF, CMMC, and CNSSI 1253
  • Experience supporting DoD/IC systems through the RMF+ process
]]>