Job Title:
Information System Security Engineer
Location:
Suffolk, VA (Onsite 5 days per week)
Duration:
Contract to Hire (6 months)
Citizenship: is able to obtain clearance
Top
Skills:
Strong in Elasticsearch
Vulnerability experience
Level II IAT Cert
Serve as the primary Subject Matter Expert (SME) for all aspects of the Continuous Network Defence cybersecurity tools in accordance with all applicable DoD Instructions (DoDI), policies and regulations.
Utilise Tenable and Nessus to perform regularly scheduled discovery and vulnerability scans, provide analysis of results, and development mitigation strategies to reduce overall risk surface.
Manage Trellix ePO and deploy endpoint products such as ENS, PA, DLP, etc., to implement and enforce endpoint security policies in accordance with the response to and mitigation of potential threats.
Implementation of Fore Scout policies for the Comply-To-Connect (C2C) initiative, to ensure continuous compliance and quarantining of unauthorised, noncompliant devices.
Monitoring of Cortex Xpanse to identify and assess external-facing assets and respond to alerts with corrective action to mitigate the findings.
Ensure continuous data flow is active for the Continuous Monitoring and Risk Scoring (CMRS) DoD system, including endpoint security data (Trellix), vulnerability and flaw remediation (Tenable), and security compliance data (Fore Scout).
Configuration, modification and deployment of security policies on Cisco Firepower Management Console (FMC) to ensure intrusion prevention (IPS) is enforced at the network security level.
Utilise and validate DNS and DHCP data within Infoblox, monitoring for anomalous records, unauthorised entries, and removal of duplicate records.
Implementation of AD Audit Engine to detect and investigate anomalous, malicious or malformed activity within Active Directory, to identify potential insider threats and/or compromised accounts.
Conduct threat hunts and active/passive reconnaissance using network traffic analysis, heuristic analysis, and cybersecurity data analysis to identify and mitigate indicators of compromise (IoC), misconfigured systems, and advanced persistent threat actors (APTs).
Certifications (IAT Level II)
One of the following:
CySA+
Security+
CCNA Security
GICSP
GSEC
SSCP
Required Skills and Experience
A master's degree in Cybersecurity or related degree, or 10 years of experience in cybersecurity engineering focused on Government-approved cybersecurity tools.
At least 5 years of experience related to DoD cybersecurity vulnerability detection and response utilizing tools within FISMA compliance.
Experience with big data analytical tools such as Elasticsearch and Splunk.
Thanks and Regards,
Murali Sharma
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).