Search for More Jobs
Get alerts for jobs like this Get jobs like this tweeted to you
Company: SAIC
Location: Aurora, CO
Career Level: Mid-Senior Level
Industries: Technology, Software, IT, Electronics

Description

Description

SAIC is seeking a Multi-Disciplined Information Technology (IT) Engineer to join the Space and `Intelligence Business Group. You would work on a joint Intelligence Community (IC) and Department of Defense (DoD) crown jewel program providing highly specialized space/counter-space engineering, scientific, and analytical services from Aurora, Colorado. We support the Nation's leading-edge IC and DoD space programs and offer compelling, deep-technical work that has direct influence and impact on program development and operations. Our team has Subject Matter Experts (SMEs) across a variety of disciplines, including physics, math, RF, optics, space acquisition and operations, and intelligence collection and analysis.

This IT Engineer will support the team with the implementation and compliance of the Risk Management Framework (RMF) process of Intelligence Community Directive (ICD) 503 at multiple security levels. This role encompasses elements of IT Systems Engineering/Integration, information security, network security and software management. The ideal candidate will:

  • Be able to define IT requirements and interfaces, provide end-to-end project management, and support incident and problem management
  • Have a strong knowledge of information security principals, the RMF process, and related NIST publications
  • Have demonstrated experience interfacing with multi-agency customer programs, offices, and application owners, as well as responding to addressing infrastructure needs and requests

Duties and responsibilities include:

Systems Engineering & Integration:

  • Interface directly with analysts within the organization to understand their workflows, software needs, hardware processing needs, data sources, and customers
  • Define system requirements to ensure that analyst workstations on multiple networks are optimal for performing their workflows
  • Interface directly with infrastructure service providers in various agencies to:
    • Understand the diverse set of security requirements to implement the optimal architecture that enables mission success
    • Coordinate network connections and data transfer mechanisms according to established security requirements

Information Security:

  • Assist in the development, implementation, and assessment of Risk Management Framework (RMF) processes to ensure compliance with security requirements and regulations
  • Ensure IT system owners are securing the appropriate accreditations on time to ensure no lapses in system operability
  • Provide recommendations to the customer and collaborate with A&A members on risk and impact assessments, vulnerability and security change requests as part of the Authority to Operate (ATO) RMF process
  • Identify, develop (either directly or in coordination with applicable experts), review and incorporate common artifacts found in RMF accreditation packages using XACTA:
    • System architecture, boundaries, and data flows
    • Hardware and software lists
    • Risk assessment reports
    • Plans of Action and Milestones POA&Ms
  • Either directly or in coordination with applicable experts, implement required security controls and perform vulnerability scanning to produce reports and findings
  • Manage and track all change requests and POA&M updates in XACTA post-authorization
  • Interface broadly with internal and external stakeholders to achieve the program's strategic goals and objectives and meet C&A and Security Control requirements
  • Maintain and report assessment and authorization statuses and issues. Assist with CM for information system security software and hardware

Software Management:

  • Assist with managing software approval requests on multiple systems
  • Assist with managing software licenses across multiple systems and funding organizations
  • Oversee the implementation of software patches on select systems

Qualifications

  • Minimum of a Bachelor's Degree and 7 or more years (5 or more with a Masters) of direct experience
  • Active TS/SCI Clearance with Special Access eligibility and consent to a Counter Intelligence (CI) polygraph. US Citizenship is required
  • Technical skills with Windows and Linux/Ubuntu operating systems
  • Strong understanding of security principles and practices, specifically ICD 503 RMF requirements and process
  • Experience with various security technologies and vulnerability scanning tools
  • Knowledge of relevant regulations and compliance standards, such as Security Technical Implementation Guides (STIGs)
  • Demonstrated record of effective individual and group work behaviors, with abilities to proactively initiate and operate in dynamic and incompletely defined environments
  • Strong written and verbal communication skills with experience conveying IT concepts, requirements, and status to internal customers, external customers, and stakeholders

Strongly Desired Qualifications:

  • CompTIA Security+ CE (preferred), Systems Security Certified Practitioner (SSCP), or CCNA-Security
  • Proficiency with XACTA
  • Proficiency with implementing security controls and performing vulnerability scanning

Target salary range: $200,001 - $240,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.


 Apply on company website