IT Security Spec Sr Prin

Apply Now

Company: BAE Systems

Location: Sterling, VA 20164

Description:

Job Description

As an information systems security engineer (ISSE), you will support the customer in safeguarding networks against unauthorized modification, destruction, or disclosure. Activities include but are not limited to:
  • Conducting risk analysis on products reviewing CVEs, plugins, CWEs etc;
  • Understanding how to explain and remediate the technical security controls;
  • Facilitating Technical Insertions (the introduction of any new and/or improved hardware or software capabilities into an established operational system) for new products;
  • Reviewing change requests for security impacts and technical documentation from a security perspective;
  • Participates in Agile Planning Events to provide technical input
  • Providing technical input into trade studies for tools;
  • Providing technical expertise in implementation of technical security controls in government cloud environments (cloud security experience is highly desired);
  • Researching, evaluating, testing, recommending, communicating, and implementing new security software or devices;
  • Implementing, enforcing, communicating internet, network, or other information security policies or security plans for data, internet, software applications, hardware, telecommunications, and computer installations;
  • Managing all aspects of an organization's information security system, including researching, testing, training and implementing programs designed to safeguard sensitive information from any possible breaches.
The ISSE supports the Information systems security officer (ISSO) in managing all aspects of an organization's information security system, including researching, testing, training and implementing programs designed to safeguard sensitive information from any possible breaches. The ISSE will support the ISSO in the following activities (including but not limited to):
  • Conducting risk analyses from vulnerability, compliance scans, pen testing results, or other audit activity; writes including but not limited to Plan of Action and Milestones, System Security Plans, Security Control Traceability Matrices, Configuration Management Plans, Contingency Plans and Test Results, Business Impact Analyses, and Security Impact Analyses;
  • Submitting monthly scan data in support of FISMA scorecard compliance requirements;
  • Responding to data calls, scan requests and weekly and monthly reporting requirements.


Required Skills and Education

Bachelor's Degree with 7 years related experience
OR
10 total years of experience in Information Assurance and IT Security
Experience with technical cloud security work.
Familiarity with JSON, YAML, HCL, and similar for cloud-related tasks and to structure exchange data over the internets.
Familiarity with infrastructure as Code (IaC) using Terraform AWS IaC, tool similar to AWS CloudFormation, to create, update, and version the AWS Architecture.
Familiarity with high level programming languages such as C++, C#, Java, Python, Perl, Ruby, Visual Basic

About BAE Systems Intelligence & Security

BAE Systems, Inc. is the U.S. subsidiary of BAE Systems plc, an international defense, aerospace and security company which delivers a full range of products and services for air, land and naval forces, as well as advanced electronics, security, information technology solutions and customer support services. Improving the future and protecting lives is an ambitious mission, but it's what we do at BAE Systems. Working here means using your passion and ingenuity where it counts - defending national security with breakthrough technology, superior products, and intelligence solutions. As you develop the latest technology and defend national security, you will continually hone your skills on a team-making a big impact on a global scale. At BAE Systems, you'll find a rewarding career that truly makes a difference.

Intelligence & Security (I&S), based in McLean, Virginia, designs and delivers advanced defense, intelligence, and security solutions that support the important missions of our customers. Our pride and dedication shows in everything we do-from intelligence analysis, cyber operations and IT expertise to systems development, systems integration, and operations and maintenance services. Knowing that our work enables the U.S. military and government to recognize, manage and defeat threats inspires us to push ourselves and our technologies to new levels.

Our Commitment to Diversity, Equity, and Inclusion:
At BAE Systems, we work hard every day to nurture an inclusive culture where employees are valued and feel like they belong. We are conscious of the need for all employees to see themselves reflected at every level of the company and know that in order to unlock the full potential of our workforce, everyone must feel confident being their best, most sincere self and be equipped to thrive. We provide impactful professional development experiences to our employees and invest in social impact partnerships to uplift communities and drive purposeful change. Here you will find significant opportunities to do meaningful work in an environment intentionally designed to be one where you will learn, grow and belong.

EEO Career Site

Equal Opportunity Employer. Minorities . females . veterans . individuals with disabilities . sexual orientation . gender identity . gender expression

Similar Jobs